Can I install RSA Key Recovery Manager without a hardware security module (HSM)?
Originally Published: 2008-11-26
Last Modified: 2023-10-06
Article Number
Applies To
Redhat Linux Advanced Server 4.0
RSA Key Recovery Manager
Issue
Is it possible to install KRM without an HSM?
Resolution
It is mandatory to use an HSM to do key recovery as the recovery process implies that
1. The private key which should be owned by an end user will now also resides somewhere else, on the HSM
2. That private key can be retrieved by someone which is not the owner, the Key Recovery Operators
Because of those two concepts, the private key must be stored in the most secure way and be also recovered in a secure manner, which the HSM provides.
We do support nCipher nShield and netHSM, and also any PKCS #11-compliant HSM, including the nCipher P11 library. RSA has tested Key Recovery Manager with Safenet Luna SA.
Related Articles
SSO Agent Performance and Scalability Guide 16Number of Views RSA SecurID Access Free Trial Amazon Web Services Guide 7Number of Views RSA Authentication Manager 8.7 SP1 Performance and Scalability Guide 36Number of Views RSA Authentication Manager 8.3 Performance and Scalability Guide 45Number of Views RSA Authentication Manager 8.9 Performance and Scalability Guide 23Number of Views
Trending Articles
How to manipulate imported RSA SecurID Software Token(s) on an iPhone or iPad device Reporting on RSA Authentication Manager 8.x users with On-Demand Token, a fixed passcode or a hardware/software token assi… How to Download OTP Token Seed Files from myRSA Anomalix idGenius - SAML Relying Party Configuration - RSA Ready Implementation Guide RSA MFA Agent 2.5 for Microsoft Windows Installation and Administration Guide
Don't see what you're looking for?