Audit and backup procedures for hardware security modules

  • Authors:
  • Túlio Cicero Salvaro de Souza;Jean Everson Martina;Ricardo Felipe Custódio

  • Affiliations:
  • LabSEC -- UFSC, Florianópolis -- SC -- Brasil;University of Cambridge, Cambridge -- United Kingdom;LabSEC -- UFSC, Florianópolis -- SC -- Brasil

  • Venue:
  • Proceedings of the 7th symposium on Identity and trust on the Internet
  • Year:
  • 2008

Quantified Score

Hi-index 0.00

Visualization

Abstract

Hardware Security Modules (HSMs) are an useful tool to deploy public key infrastructure (PKI) and its applications. This paper presents necessary procedures and protocols to perform backup and audit in such devices when deployed in PKIs. These protocols were evaluated in an implementation of a real HSM, enabling it to perform secure backups and to provide an audit trail, two important considerations for a safe PKI operation. It also introduces a ceremony procedure to support the operation of such HSMs in a PKI environment.