Introduction

Thank you for purchasing our CryptoServer security system. We hope you are satisfied with our product. Please do not hesitate to contact us if you have any complaints or comments.

About this Guide

This guide describes how to enable HSM integration with PrimeKey SignServer, including PrimeKey SignServer installation.

Target Audience for this Guide

This guide is intended for PrimeKey SignServer administrators and HSM administrators.

Document Conventions

The following conventions are used in this guide:

Convention

Use

Example

Bold

Items of the Graphical User Interface (GUI), e.g., menu options

Select Details and click on Properties button

Monospaced

Code that is given for explanation or as an example, file paths

certreq.exe -new request.inf IISCertRequest.csr

Italic

References and important terms

Operating system listed in Tested Versions

Document conventions

We use special icons to highlight the most important notes and information.

Here you will find important safety information that should be followed.

Here you will find additional notes or supplementary information.

This message marks the result expected after the successful execution of an instruction.

Abbreviations

We use the following abbreviations in this guide:

Abbreviation

Meaning

HSM

Hardware Security Module

PKI

Public Key Infrastructure

TSP

Time-Stamp Protocol

CSP

Cryptographic Service Provider

CNG

Cryptography API: Next Generation

API

Application programming interface

MBK

Master Backup Key

CXI

Cryptographic eXtended Interface

CAT

CryptoServer Administration Tool

TLS

Transport Layer Security

TS-SO

Security Officer for the TimestampServer

CLI

Command Line Interface

CSR

Certificate Signing Request

CA

Certificate Authority

List of abbreviations