stm

Configure, or display information about Secure Transport Mode (STM).

NOTE   The stm commands appear only when LunaCM's active slot is set to the administrative partition on a Luna PCIe HSM 7, Luna USB HSM, or Luna Backup HSM 7. On Luna Backup HSM G5s, Secure Transport Mode is implemented using a secure recovery key (SRK). See About Luna Backup HSM G5 Secure Transport and Tamper Recovery and lunacm:> srk for more information. To access the STM feature on Luna Network HSM 7, use lunash:> hsm stm.

STM allows you to verify that an HSM has not been tampered while in transit or storage. STM is optional. When invoked, STM provides comparison strings that you can visually verify, and imposes a pause during the STM recover operation where you indicate that you have seen the command output and decided to resume using the HSM, or to leave the HSM in Secure Transport Mode pending further investigation. For more information, see Secure Transport Mode.

Syntax

stm

recover
show
transport

Argument(s) Shortcut Description
recover r Recover an HSM that has been placed in STM. See stm recover.
show s Displays the current STM state. See stm show.
transport t Access commands that allow you to enable or disable STM. See stm transport