Encryption Key Provisioning

To generate key in attached u.trust GP HSM, select Key Source Type as

Hardware Security Module

and the assigned Key Manager token, in this case

CryptoServer PKCS11 Token

Select “Add Key” and “generate” to create a new key on the HSM.

tmpgidlrmu_.jpg

Or if key already exists, simply choose from the dropdown box.

tmp_e_ne7zy.jpg

Ensure you import a key from the key manager before you submit the key wrapper.


tmp0w52q62y.jpg

The new key can be found on the GP HSM as an object using the

p11tool2

tool.


tmpdl4h8ee2.jpg