stc

Use these commands to configure and manage secure trusted channel (STC) partition-client network links.

NOTE   Secure Trusted Channel (STC) changes format for Luna HSM Firmware 7.7.0; LunaSH commands used by the HSM SO for STC are described here for Luna HSM Firmware 7.4.2 and older, and are discontinued for Luna HSM Firmware 7.7.0 and newer.

For Luna HSM Firmware 7.7.0 and newer, only the Partition SO can configure these STC options, using LunaCM (see stcconfig) after the partition is initialized.

You must be logged in as the HSM SO to use the stc commands.

Syntax

stc

activationtimeout
cipher
hmac
partition
rekeythreshold

Argument(s) Shortcut Description
activationtimeout a Set the activation timeout for an STC link. See stc activationtimeout.
cipher ci Disable the use of a symmetric encryption cipher algorithm for data encryption on an STC link. See stc cipher.
hmac h Disable the use of an HMAC message digest algorithm for identity verification on an STC link. See stc hmac.
partition p

Export the specified partition's public key to a file. See stc partition.

This command syntax has changed in Luna Appliance Software 7.7.0 and newer. See partition stcidentity.

rekeythreshold rek Set the key life for the symmetric key used to encrypt data on the STC link for the specified partition. See stc rekeythreshold.