Supported Hardware Security Modules (HSMs)

The following table lists the Hardware Security Modules (HSMs) supported for each EJBCA deployment type. Supported integration methods include the PKCS#11 interface and REST APIs.

HSM Type

Software stack

SaaS

Cloud

Software Appliance

Hardware Appliance

Container Set

Network HSMs integrated with REST APIs

AWS Key Management Service (KMS)

check mark
Doc link

check mark
Doc link

check mark
Doc link



check mark
Doc link

Azure Key Vault / MS Managed HSM​

check mark
Doc link

check mark
Doc link

check mark
Doc link

check mark
Doc link

Fortanix Data Security Manager (DSM)​

check mark
Doc link

check mark
Doc link

check mark
Doc link

Securosys Primus HSM and CloudHSM Service

check mark
Doc link

check mark
Doc link

check mark
Doc link

check mark

check mark
Doc link

Network HSMs integrated with PKCS#11

AWS CloudHSM​

check mark
Doc link

check mark
Doc link

check mark
Doc link

check mark
Doc link

Bull TrustWay Proteccio​

check mark
Doc link

check mark
Doc link

check mark
Doc link

check mark

check mark
Doc link

Crypto4A QxHSM

check mark
Doc link


check mark
Doc link




Entrust nShield Connect​

check mark
Doc link

check mark
Doc link

check mark
Doc link

check mark

check mark
Doc link

Thales DPoD​

check mark
Doc link

check mark
Doc link

check mark
Doc link

check mark

check mark
Doc link

Thales Luna 7​

check mark
Doc link

check mark
Doc link

check mark
Doc link

check mark

check mark
Doc link

Thales TCT​

check mark
Doc link

check mark
Doc link

check mark
Doc link

check mark

check mark
Doc link

Utimaco CryptoServer​

check mark
Doc link

check mark
Doc link

check mark
Doc link

check mark

check mark
Doc link

Utimaco u.trust Anchor​

check mark
Doc link

check mark
Doc link

check mark
Doc link

check mark

check mark
Doc link

Internal Hardware Appliance PCIe HSMs integrated with PKCS#11

Thales Luna PCIe

check mark




check mark
Doc link


Utimaco PCIe

check mark




check mark
Doc link


USB HSMs integrated with PKCS#11

Thales Luna USB




check mark