Skip to main content

Quickstart

The process described in this document allows for maintaining ownership and management over your cryptographic keys and generating them using entropy in a safe environment within the Securosys Primus HSM or CloudHSM as well as maintaining a secure copy for disaster recovery scenarios.

This Quickstart section provides a comprehensive task listing of the Primus Tools installation and configuration process. For more detailed instructions please consult the Installation section. Visit Prerequisites for the necessary preparations beforehand.

HSM Setup and Configuration

Setting up the on-premises Primus HSM is not covered in this document. Please refer to the Primus HSM User Manual, downloadable from the Securosys Support Portal.

The Securosys Primus HSM and CloudHSM need specific policy settings:

  • JCE API enabled and appropriate license
  • Crypto policy (and User policy) configuration to allow Key Export for the used partition
note

The CloudHSM partition already comes preconfigured for use.

Install and Configure Primus Tools

Download the latest Primus Tools collection from the Primus Tools Download section. Extract the files in a folder and configure your permanent secret.

For more details on Primus Tools installation see the Installation section.

HSM Access Credentials and connection

Prepare your connectivity parameters and access credentials to be able to use the HSM. Don't forget to fetch the permanent secret.

For more details, see HSM Connection and Access Credentials.

Command Overview

See the Tutorials section for both a command overview and a deeper dive into Primus Tools commands.