[Cryptech Tech] Firewalls

Peter Stuge peter at stuge.se
Sat Jun 3 22:56:29 UTC 2017

Peter Gutmann wrote:
> >SafeNet Luna SA 5.2.1 or later
> >Thales Nshield Connect 11.62 or later"
> >
> >"HSM client" has nothing to do with PKCS#11.
> Given that the native API for the Luna tokens is PKCS #11,

According to the original poster the firewall appliance communicates
with those HSMs exclusively via network.

The vendor documentation that I linked to seems to support that.
In any case, there is no mention of PKCS#11 whatsoever on those few
documentation pages, which seem the most relevant ones to HSM use
with that firewall product.


More information about the Tech mailing list