Connection Problems
If you have problems connecting to the HSM, it is a good idea to make sure that your HSM is configured properly.
-
Verify your HSM is running.
-
Make sure your configuration file is configured according to your HSM (e.g. you typed in the correct IP address).
-
Verify that you are using the right cs_pkcs11_R2.dll, there is a 32-bit and a 64-bit version. If you are unsure whether you are using the correct module, use the absolute path when typing in the PKCS#11 module name. If you installed the Utimaco software normally, this should not be a problem.
An easy way to check your connection is by using p11tool2 to check connectivity or PKCS#11 CryptoServer Administration if it is installed.
If you can communicate with the HSM by using these tools, but Fetch Slots fails, restarting your server normally solves the problem.
If you were able to fetch the available slots of your HSM, but Test Connection does not work, you should check if you entered the correct PIN/password for the slot and that the token is initialized. If all input is correct, but Test Connection still fails, it is also recommended to restart your server.
Supported functionalities
The Utimaco HSM supports all functionalities you can use within ADSS Server, except for the verification of RIPEMD-128 signatures.
Persisting Problems
For persisting or other problems, do not hesitate to contact us. Further information and contact information can be found below.