RSA Certificate Manager (RCM)
Sun Solaris 2.8
SafeNet Luna SA 4.3.2
SafeNet Luna SA
Hardware Security Module (HSM)
RCM will not allow me to create a CA with SHA-256 in RSA for the SafeNet device.
With RSA Certificate Manager 6.8 build 514 and RSA Certificate Manager API can create keys on tokens. Luna CA3 supports key generation for varying key lengths in RSA and DSA key pairs.
RSA: 1024 bits, 2048 bits, 4096 bits
DSA: 512 bits, 1024 bits, 2048 bits
This is been added with with latest RCM Hot Fix, and it shows this in README:
****
Ability to support the SHA-2 algorithms using a PKCS #11 device
Prior to build 517, the SHA-2 algorithms using PKCS #11 device was not supported. Even if the PKCS #11 device supported the SHA-2 algorithms, these algorithms were not listed while creating the CA using Certificate Manager. As a result, Certificate Manager was unable to use the SHA-2 algorithms while creating the CA keys using PKCS #11 devices.
In RSA Certificate Manager 6.8 build517, this issue is fixed. Certificate Manager can now create the CA with SHA-256, SHA-384, or SHA-512 hash algorithms while using PKCS #11 devices.
****
Contact RSA Support and request RCM 6.8 build 517 hot fix.
Related Articles
Cloud Access Service - RADIUS 10Number of Views SecurID Governance & Lifecycle 7.5.2 Online Help 4Number of Views RSA Governance & Lifecycle Recipes : Dashboard - Review Results - Outstanding Reviewers 17Number of Views Guidelines and resources for upgrading to SecurID Governance & Lifecycle 7.5.2 585Number of Views RSA Identity Governance and Lifecycle 7.5 Release Notes 35Number of Views
Trending Articles
Troubleshooting RSA SecurID Access Identity Router to RSA Authentication Manager test connection failures RSA SecurID Software Token 5.0.2 Downloads for Microsoft Windows RSA Authentication Manager 8.9 Release Notes (January 2026) Quick Setup Guide - Passwordless Authentication in Windows MFA Agent for Active Directory RSA Authentication Manager 8.8 Setup and Configuration Guide