Credential management
Versasec vSEC:CMS

Create an OSKS with HSM in vSEC:CMS

3min

Perform the following tasks to create an Operator Service Key Store (OSKS) with HSM in vSEC:CMS:

  1. Log in to the vSEC Operator Console (OC).
  2. Add Service Key Store with HSM.

Log in to the OC

Perform the following steps to log in to the vSEC OC:

1

Start the vSEC Admin application.

2

When prompted, insert your System Owner (SO) hardware credential.

3

Enter the operator passcode for the System Owner and select [ Authenticate ].

If authentication is successful, the Admin application starts, and you are logged in to the Operator Console.

Add Service Key Store

Perform the following steps to add the Service Key Store with HSM:

1

In the navigation menu, select Options > Operators.

2

Select [ Add service key store ] to open the Add Service Key Store (HSM) dialog.

3

Select the PKCS #11 library in the Key store drop-down menu, specify a Store name, and select [ Add ].

4

Enter the operator passcode for the System Owner, and select [ OK ].

The new service key store is created, and the master keys are stored on the . You should see a message confirming that the operation succeeded.

Now, all administration key operations performed with the vSEC, such as registering a smart card token or PIN unblock operations, use the master keys stored in .