Certificate Authority
EJBCA
Configure the Vectera Plus
2min
You can complete most tasks in this section by using either Excrypt Manager or FXCLI. The exception is the second option of task 7 (Create connection certificates for mutual authentication), for which you must use FXCLI.
You can optionally complete steps 4 through 6 by using the (see the applicable guide for configuring HSMs for PKCS #11 integrations by using the ).
If you are using a virtual HSM for the integration, you must connect to it over the network through FXCLI, the Excrypt Touch, or the Guardian Series 3
To establish a connection between the PKCS #11 library and the , perform the following configuration tasks:
Steps to configure the :
- Connect to the HSM through the front USB port by using Excrypt Manager or FXCLI.
- Validate the enabled features on the HSM.
- Set up the network configuration.
- Load the FTK, PMK, and BEK major keys.
- Configure a transaction processing connection and create a new application partition.
- Create a new identity that has access to the new application partition.
- Configure TLS Authentication by using one of the following options:
- Enable server-side authentication.
- Create client certificates for mutual authentication.
- Enable the DUS and EWV multi-usage combinations for asymmetric keys
The following sections detail each of these action items.
Updated 25 Aug 2024
Did this page help you?