Vault integration with PKCS11 supported Smartcard for MasterKey Storage

322 views
Skip to first unread message

San

unread,
Aug 14, 2016, 9:32:53 PM8/14/16
to Vault
Hi,

I have gone through the Enterprise vault feature which support the CloudHSM but its really a costly solution, instead of using CloudHSM, i am thinking to use smartcard which is bit cheaper choice. as per the documentation, current Vault application doesn't support or have an interface for smartcards to store the MasterKey same like CloudHSM. Cloud you share some documents if i would like to perform SmartCard integration with Vault? 

Regards,
San

Jeff Mitchell

unread,
Aug 14, 2016, 9:49:55 PM8/14/16
to vault...@googlegroups.com

Hi San,

Vault HSM supports any solution that implements needed parts of the PKCS#11 specification, and has been tested with SafeNet Luna (which is what CloudHSM uses), Utimaco, and Thales HSMs. If your smart card supports it and you want to use it with Vault HSM, get in touch with one of our solutions engineers via https://www.hashicorp.com/vault.html#vault-contact and we can work with you to make sure it is supported!

Best,
Jeff


--
This mailing list is governed under the HashiCorp Community Guidelines - https://www.hashicorp.com/community-guidelines.html. Behavior in violation of those guidelines may result in your removal from this mailing list.
 
GitHub Issues: https://github.com/hashicorp/vault/issues
IRC: #vault-tool on Freenode
---
You received this message because you are subscribed to the Google Groups "Vault" group.
To unsubscribe from this group and stop receiving emails from it, send an email to vault-tool+unsubscribe@googlegroups.com.
To view this discussion on the web visit https://groups.google.com/d/msgid/vault-tool/d1189eaa-80a5-4aa0-a248-5564e0138b35%40googlegroups.com.
For more options, visit https://groups.google.com/d/optout.
Reply all
Reply to author
Forward
0 new messages