You can configure a Hardware Security Module (HSM) to store and protect your cryptographic keys, or optionally use the SoftHSM software-based implementation for demonstration or testing purposes.

Configuring an HSM for the Software Appliance is irrevocable. To change an HSM configuration, you need to reset the Software Appliance.

Configure the Hardware Security Module (HSM)

To configure an Utimaco CryptoServer LAN for your Software Appliance, follow the steps below.

For instructions on how to configure the HSM, see:

Next Step: Configure EJBCA

Next, create a CA and a Crypto Token in EJBCA, see Step 4 - Configure EJBCA.