Integrating Discover SSL Keys with HSM
This appendix describes integration methodologies for specific HSM vendors. A Hardware Security Module (HSM) provides both logical and physical protection of sensitive data from non-authorized use and potential adversaries.
In an HSM environment, the key file is stored on the HSM and retains an additional layer of access control to prevent its movement. Discover creates reference keys to access the keys that are stored on the HSM. So, the keys used by the Discover run time inherit the protective measures that are offered by the HSM.