PingAccess

Adding a Safenet Luna provider

Add a Safenet Luna provider to begin using hardware security module (HSM)-stored key pairs in PingAccess.

Before you begin

  • Configure your hardware security module.

  • Configure a Luna client on the PingAccess system. The PingAccess service must have full permissions over the client.

  • Move the /usr/safenet/lunaclient/lib/libCryptoki2_64.so library on Linux systems, or the \Program Files\SafeNet\LunaClient\win32\cryptoki.dll library on Windows systems, to the deploy directory on the PingAccess system.

Steps

  1. Click Security and then go to HSM Providers.

  2. Click Add HSM Provider.

  3. In the Name field, enter a name for the HSM provider.

  4. From the Type list, select Safenet Luna Provider.

  5. In the Slot ID field, enter the slot ID of the HSM slot to use.

  6. In the Library field, enter the name of the library you copied from the Luna client to the deploy directory.

  7. In the Password field, enter a password for connecting to the HSM provider.

  8. Click Save.

  9. Restart PingAccess.