Skip to main content
Skip table of contents

EJBCA Hardware Appliance 5.1.2 Release Notes

AUGUST 2025

We are pleased to announce the release of EJBCA Hardware Appliance 5.1.2.

With this release, we have added support for FIPS enablement with both variants of HSMs: Luna S790 and u.trust and Se100/Se2K.

The release also brings a new version of EJBCA and a list of improvements and bug fixes.

Highlights

New version of EJBCA Enterprise

EJBCA Enterprise has been updated to version 9.3.3. For more information, see the EJBCA Release Notes.

New Features

  • Using the HSM in FIPS mode: with this release it is possible to select during the first installation or when restoring a backup either to run the HSM in FIPS mode or not. The procedure to enable FIPS mode might require extra steps compared to the non-FIPS setup of the HSM. Please refer to the documentation for further details.

Improvements and Corrections

The following lists other corrections included in the release.

  • Bug fixes:

    • Backup tab crashes on webconf when trying to connect to non reachable NFS server.

    • u.trust HSM firmware update fails on the cluster nodes other than node 1.

    • Uploading Key Synchronisation packages generated on versions 5.1.0 and 5.1.1 on u.trust HSM breaks the backup and restore functionality.

    • If a backup is taken from version 5.1.1 or older, and restored on one of the mentioned version, the u.trust HSM Firmware update process will be broken.

    • Factory reset not successful without a configured DHCP or Static IP address

Upgrade Information

  • When updating the firmware version of cluster nodes from any older version to either 5.1.0 or 5.1.1, you would run into an issue to update the u.trust HSM firmware on the nodes other than node 1. To fix the issue you would need to rebuild the cluster which will automatically update the HSM firmware. The fix of this bug is delivered with version 5.1.2 and updating to this version and newer is safe.

  • If a u.trust firmware update is not successful on version 5.1.0 or 5.1.1 on a standalone node that has been restored from a backup that was taken on version 5.1.1 or older, you need take a new backup (if possible), factory reset the appliance, update the appliance to version 5.1.2 then restore the taken backup.

Downgrade Information

  • Downgrading of the firmware version of the appliance would also require downgrading the u.trust HSM firmware version if the versions between these two firmware versions are different.
    A factory reset of the appliance would therefore be mandatory.

JavaScript errors detected

Please note, these errors can depend on your browser setup.

If this problem persists, please contact our support.