View guides on integrating EJBCA with third-party applications.
Integrate with Third-Party Applications
For guides on how to integrate EJBCA with various third-party applications and drivers, see Integrating with Third-Party Applications.
Hardware Security Modules (HSMs)
EJBCA Enterprise supports integration with various Hardware Security Modules (HSMs), each providing its own interface for key generation and maintenance, independent of EJBCA. For an overview of HSM integrations in the EJBCA Software Stack, see Hardware Security Module (HSM) Integration.
ENTERPRISE
The following table lists the Hardware Security Modules (HSMs) supported for each EJBCA deployment type. Supported integration methods include the PKCS#11 interface and REST APIs.
|
HSM Type |
Software stack |
SaaS |
Cloud |
Software Appliance |
Hardware Appliance |
Container Set |
|
Network HSMs integrated with REST APIs |
||||||
|
AWS Key Management Service (KMS) |
|
|
||||
|
Azure Key Vault / MS Managed HSM |
|
|
||||
|
Fortanix Data Security Manager (DSM) |
|
|
|
|||
|
Securosys Primus HSM and CloudHSM Service |
|
|
|
|||
|
Network HSMs integrated with PKCS#11 |
||||||
|
AWS CloudHSM |
|
|
|
|||
|
Bull TrustWay Proteccio |
|
|
|
|
||
|
Crypto4A QxHSM |
|
|
|
|
||
|
Entrust nShield Connect |
|
|
||||
|
Thales DPoD |
|
|
|
|
||
|
Thales Luna 7 |
|
|
|
|||
|
Thales TCT |
|
|
|
|||
|
Utimaco CryptoServer |
|
|
|
|||
|
Utimaco u.trust Anchor |
|
|
|
|
||
|
Internal Hardware Appliance PCIe HSMs integrated with PKCS#11 |
||||||
|
Thales Luna PCIe |
|
|
|
|
|
|
|
Utimaco PCIe |
|
|
|
|
|
|
|
USB HSMs integrated with PKCS#11 |
||||||
|
Thales Luna USB |
|
|
|
|
|
|