Zeroizing or Resetting the HSM to Factory Conditions

During the lifetime of a Luna HSM, you might have cause to take the HSM out of service, and wish to perform actions to ensure that no trace of your sensitive material remains. Those events might include:

>Placing the unit into storage, perhaps as a spare

>Shipping to another location or business unit in your organization

>Shipping the unit back to Thales for repair/re-manufacture

>Removing the HSM permanently from operational use, for disposal at end-of-life

This chapter describes the available options in the following sections:

>HSM Zeroization

>Resetting the Luna PCIe HSM to Factory Condition

>Decommissioning the HSM Card

>Comparing Zeroize, Decommission, and Factory Reset

>Comparison of Destruction/Denial Actions

>Stored Data Integrity  

>Effects of Administrative Actions on Functionality Modules

>RMA and Shipping Back to Thales

>End of Service and Disposal