Skip to main content
banner image
venafi logo

Need a Scalable Security Solution for Your Hardware Security Modules [HSM]?

Need a Scalable Security Solution for Your Hardware Security Modules [HSM]?

hardware security modules
April 24, 2018 | Heather Robertson

A few weeks ago, Venafi introduced Advanced Key Protect, an add-on module for the Venafi Platform that integrates with HSMs to provide strong keys and key storage. This new module integrates the Venafi Platform with Thales and Gemalto HSMs, and provides tremendous value to organizations who currently use products from either company.

HSMs provide the strongest key generation on the market. These keys are generated with high entropy, also referred to as randomness, and they are more difficult to break than keys generated by other means. I see this as more options for customers to choose the level of security they require.

How strong is your machine identity management strategy? Find out how you stack up. 

Additionally, Advanced Key Protect can also use the HSM for key storage. Many customers have difficulties maintaining keys that are used to generate certificates because they are often stored in flat files with the applications themselves. Customers have long used the Venafi Platform to centrally store and manage keys so they aren’t vulnerable to accidental deletion, copying, and are easier to revoke and replace quickly if necessary. With Advanced Key Protect, customers can now use their HSMs to generate and store keys securely – the keys never leave the HSM.

I had a wonderful conversation with my counterpart at Thales last week at RSA (disclaimer, he’s also an old friend) and he mentioned how wonderful this new product was to our mutual customers. It truly does extend the value of the security infrastructure our customers have already purchased. What’s more is that Venafi chose to integrate with leading HSMs rather than build another solution in-house to reduce the amount of disparate solutions our customers have. Integration is key to building a best-in-breed security solution.

Although this new module requires the Venafi Platform and either a Thales or Gemalto HSM, it provides tremendous value to existing customers who currently own both products. If you are an HSM owner and want to learn more about Venafi products, please don’t hesitate to set up a call.

Learn more about machine identity management. Explore now.

Related blogs

Like this blog? We think you will love this.
image representing big data
Featured Blog

Was ist homomorphe Verschlüsselung, und wie wird sie verwendet?

Was ist homomorphe Verschlüsselung? Zweck der

Read More
Subscribe to our Weekly Blog Updates!

Join thousands of other security professionals

Get top blogs delivered to your inbox every week

See Popular Tags

You might also like

TLS Machine Identity Management for Dummies

TLS Machine Identity Management for Dummies

Certificate-Related Outages Continue to Plague Organizations
White Paper

CIO Study: Certificate-Related Outages Continue to Plague Organizations

About the author

Heather Robertson
Heather Robertson
Read Posts by Author
get-started-overlay close-overlay cross icon
get-started-overlay close-overlay cross icon
Venafi Risk assessment Form Image

Sign up for Venafi Cloud

Venafi Cloud manages and protects certificates

* Please fill in this field Please enter valid email address
* Please fill in this field Password must be
At least 8 characters long
At least one digit
At last one lowercase letter
At least one uppercase letter
At least one special character
* Please fill in this field
* Please fill in this field
* Please fill in this field

End User License Agreement needs to be viewed and accepted

Already have an account? Login Here

get-started-overlay close-overlay cross icon

How can we help you?

Thank you!

Venafi will reach out to you within 24 hours. If you need an immediate answer please use our chat to get a live person.

In the meantime, please explore more of our solutions

Explore Solutions

learn more

Email Us a Question

learn more

Chat With Us

learn more