Skip to main content
Complete these configuration steps on the Vectera Plus. These tasks are required before proceeding with the Ascertia ADSS Server integration.
You can complete most tasks in this section by using either Excrypt Manager or FXCLI. The exception is the second option of task 8 (Create connection certificates for mutual authentication), for which you must use FXCLI.You can optionally complete steps 4 through 6 by using the Guardian Series 3. Refer to the applicable guide for configuring HSMs for PKCS #11 integrations by using the Guardian Series 3.
If you use a virtual HSM for the integration, you must connect to it over the network through FXCLI, the Excrypt Touch, or the Guardian Series 3.
To establish a connection between the Futurex PKCS #11 library and the Vectera Plus, perform the following configuration tasks:
  1. Connect to the HSM through the front USB port by using Excrypt Manager or FXCLI.
  2. Set up the network configuration.
  3. Validate the enabled features on the HSM.
  4. Create a new application partition for the integration.
  5. Create a new identity that has access to the new application partition.
  6. Configure a transaction processing connection.
  7. Load the FTK, PMK, and BEK major keys.
  8. Configure TLS Authentication by using one of the following options:
    • Enable server-side authentication.
    • Create client certificates for mutual authentication.
The following sections detail each of these action items.