Luna HSM Features

Luna HSMs have a variety of features that distinguish them, as summarized below:

Security

Luna HSMs are designed and manufactured to high security standards, to comply with FIPS Level 3 and Common Criteria certifications, and updated validations are sought whenever major changes/improvements are introduced. Luna HSMs protect your data from unwanted tampering with secure anti-intrusion and vulnerability detection mechanisms.

See Security for details.

Redundancy

Luna HSMs are equipped with physical features and configurations that enable auto-recovery of your HSMs.

See Redundancy and Reliability for details.

Networking

Luna HSMs support secure NTLS and STC network connections for client applications. The Luna Network HSM appliance has multiple ports, allowing flexible network connections.

See Networking for details.

Access control

Luna HSM products offer multiple identities, some mandatory and some optional, that you can invoke in different ways to map to roles and functions in your organization.

See User Access Control for details.

Authentication

Luna HSMs are factory configured to be either

>password-authenticated (single-factor authentication) or

>PED-authenticated (multi-factor authentication with option for quorum authentication),

depending on the level of security and oversight with which you wish to protect your data.

See Authentication for details.

Administration

The Luna Network HSM appliance can be managed using several administrative interfaces.

See Appliance Administration for details.

Capabilities and policies

Luna HSMs, and partitions within them, are characterized by capabilities that are set at the factory or added by means of capability updates, and that are adjusted by means of settable policies that correspond to some of them.

See Capabilities and Policies for details.

Backups

Luna HSMs contain sensitive material that, if lost, could be detrimental. The Luna Backup HSM and RBS securely back up and store such information that can be restored in case of failures in primary HSM functioning.

See Flexible Backups for details.

Logging and reporting

Luna HSMs are equipped with performance monitoring and audit logging features to monitor security and provide audits of HSM activity.

See Logging and Reporting for details.