Product Documentation

An important first step before using an HSM in a new installation is to perform an HSM Clear to ensure the HSM is in a pristine state before creating new key material on it. Clearing out production data is also an important security procedure taken before shipping an HSM from site to site.

After a Clear is issued, the next step to bringing the HSM back to an operational state is to load the correct Utimaco-provided firmware into the HSM. This firmware is stored locally on each SAKA server in the /usr/local/software/hsm/utimaco directory and is also distributed to customers on Utimaco-supplied DVDs.

Once the firmware is restored and the HSM is in operational state, it is recommended to check the Real Time Clock (RTC) to ensure the time on the HSM is correct. With the HSM cleared, firmware loaded, and clock synchronized, the HSM is ready to securely contain sensitive materials.