View guides on integrating EJBCA with third-party applications.
Integrate with Third-Party Applications
View guides on how to integrate EJBCA with various third-party applications and drivers.
Integrating with Third-Party Applications
Hardware Security Modules (HSMs)
EJBCA supports integration with various Hardware Security Modules (HSMs), each providing its own interface for key generation and maintenance, independent of EJBCA. For an overview of HSM integrations in the EJBCA Software Stack, see . For details on which Hardware Security Modules (HSMs) are supported per deployment type, see Hardware Security Module (HSM) Integration.
The following table lists the Hardware Security Modules (HSMs) supported for each EJBCA deployment type. Supported integration methods include the PKCS#11 interface and REST APIs.
|
HSM Type |
Software stack |
SaaS |
Cloud |
Software Appliance |
Hardware Appliance |
Container Set |
|
Network HSMs integrated with REST APIs |
||||||
|
AWS Key Management Service (KMS) |
|
|
||||
|
Azure Key Vault / MS Managed HSM |
|
|
||||
|
Fortanix Data Security Manager (DSM) |
|
|
|
|||
|
Securosys Primus HSM and CloudHSM Service |
|
|
|
|||
|
Network HSMs integrated with PKCS#11 |
||||||
|
AWS CloudHSM |
|
|
|
|||
|
Bull TrustWay Proteccio |
|
|
|
|
||
|
Crypto4A QxHSM |
|
|
|
|
||
|
Entrust nShield Connect |
|
|
||||
|
Thales DPoD |
|
|
|
|
||
|
Thales Luna 7 |
|
|
|
|||
|
Thales TCT |
|
|
|
|||
|
Utimaco CryptoServer |
|
|
|
|||
|
Utimaco u.trust Anchor |
|
|
|
|
||
|
Internal Hardware Appliance PCIe HSMs integrated with PKCS#11 |
||||||
|
Thales Luna PCIe |
|
|
|
|
|
|
|
Utimaco PCIe |
|
|
|
|
|
|
|
USB HSMs integrated with PKCS#11 |
||||||
|
Thales Luna USB |
|
|
|
|
|
|