Adding a Thales Luna provider
Add a Thales Luna (formerly Safenet Luna) provider to begin using hardware security module (HSM)-stored key pairs in PingAccess.
Before you begin
-
Configure your HSM.
-
Configure a Luna client on the PingAccess system. The PingAccess service must have full permissions over the client.
-
Move the appropriate Luna Client library to the
deploydirectory on the PingAccess system.Choose from:
-
Windows: Move the
C:\Program Files\SafeNet\LunaClient\cryptoki.dlllibrary. -
Linux: Move the
/usr/safenet/lunaclient/lib/libCryptoki2_64.solibrary.
-
Steps
-
Click Security, then go to HSM Providers.
-
Click Add HSM Provider.
-
In the Name field, enter a name for the HSM provider.
-
In the Type list, select Thales Luna Provider.
-
In the Slot ID field, enter the slot ID of the HSM slot to use.
-
In the Library field, enter the name of the library you copied from the Luna client to the
deploydirectory. -
In the Password field, enter a password for connecting to the HSM provider.
-
Click Save.
-
Restart PingAccess.