Auto Light Dark
Auto Light Dark

About This Guide

This guide describes the integration of the Ascertia ADSS Server with the Utimaco u.trust GP HSM. It provides an overview of the integration architecture, prerequisites, configuration steps, and validation procedures required to deploy the ADSS Server with the Utimaco u.trust GP HSM. This integration enables the ADSS Server to perform cryptographic operations using keys securely stored within the HSM.

Target Audience

This guide is intended for ADSS Server administrators responsible for the installation and configuration of ADSS Server with the Utimaco u.trust GP HSM. It is assumed that the reader has a basic understanding of PKI, HSMs, Linux commands, and IT security.

Purpose of the Integration

The purpose of this integration is to combine the Ascertia ADSS Server with the Utimaco u.trust GP HSM to provide secure key management and hardware-backed cryptographic operations. The Utimaco u.trust GP HSM ensures that cryptographic keys are generated, stored, and used within a tamper-resistant hardware boundary, preventing key exposure and reducing the risks associated with software-based key storage.

The integration enables the ADSS Server to perform digital signing, signature verification, and other cryptographic operations using keys protected by the HSM. It enhances overall security, improves auditability, and supports compliance with industry and regulatory requirements by ensuring that sensitive cryptographic material remains protected throughout its lifecycle.

Abbreviations

Abbreviation

Meaning

HSM

Hardware Security Module

ADSS

Advanced Document Security Server

PKI

Public Key Infrastructure

PKCS

Public Key Cryptography Standards

PKCS#11

PKCS Part 11: Cryptographic Token Interface Standard

SO

Security Officer

MBK

Master Backup Key

GUI

Graphical User Interface

LAN

Local Area Network

PCIe

Peripheral Component Interconnect Express

CLI

Command Line Interface

DLL

Dynamic Link Library

IP

Internet Protocol

Abbreviations

Document Conventions

The following conventions are used in this guide:

Convention

Use

Example

Bold

Items of the Graphical User Interface (GUI), e.g., menu options

Click Fetch Slots

Monospaced

Code that is given for explanation or as an example, file paths

Edit the cs_pkcs11_R3.cfg file and make appropriate changes.

Italic

References and important terms

Refer to the ADSS Server Product Documentation

Document conventions

We use special icons to highlight the most important notes and information.

Here you will find important safety information that should be followed.

Here you will find additional notes or supplementary information.

This message indicates the expected result after the successful execution of an instruction.