About This Guide

This guide describes how to deploy and configure the ESKM virtual appliance on Proxmox Virtual Environment (Proxmox VE). It provides the required procedures for provisioning the ESKM virtual machine, configuring the necessary virtual hardware resources, network settings, and performing the initial setup to prepare ESKM for operation within a Proxmox VE environment.

Target Audience

This guide is intended for Proxmox VE administrators, virtualization engineers, and ESKM administrators responsible for deploying and managing ESKM virtual appliances in enterprise environments.

Purpose of the Integration

Deploying ESKM on Proxmox VE enables organizations to host and operate ESKM within a cost-effective, open-source virtualization platform while maintaining the security and reliability required for cryptographic key management.

The deployment provides a flexible virtualized environment for running ESKM and allows organizations to leverage Proxmox VE's virtualization capabilities for managing ESKM infrastructure.

Abbreviations

Abbreviation

Meaning

HSM

Hardware Security Module

PKI

Public Key Infrastructure

TDE

Transparent Data Encryption

PKCS

Public Key Cryptography Standards

PKCS#11

PKCS Part 11: The Cryptographic Token Interface Standard

SO

The PKCS#11 cryptographic slot Security Officer

DB

Database

JRE

Java Runtime Environment

MBK

Master backup key

P11CAT

the PKCS#11 graphical interface tool

CXI

Cryptographic eXtended Interface

FIPS

Federal Information Processing Standards

VE

Virtual Environment

ESKM

Enterprise Secure Key Manager

Abbreviations

Document Conventions

The following conventions are used in this guide:

Convention

Use

Example

Bold

Items of the Graphical User Interface (GUI), e.g., menu options

Press OK 

Monospaced

Code that is given for explanation or as an example, file paths

chsm-create

Italic

References and important terms

See Sample Chapter in the CryptoServer - Sample Manual

Document conventions

We use special icons to highlight the most important notes and information.

Here you will find important safety information that should be followed.

Here you will find additional notes or supplementary information.

This message indicates the expected result after the successful execution of an instruction.