sysconf tls groups set

Set a group or groups of ciphers that the Luna Network HSM 7's TLS service uses to negotiate client connections.

NOTE   This feature requires minimum Luna Appliance Software 7.9.1 and Luna HSM Client 10.9.2.

Groups can be specified as follows:

>Groups in the list must be separated by colons (:).
For example:

X25519MLKEM768:MLKEM1024

>The list/template can contain a maximum of 255 characters, including colon separators. To avoid reaching this character limit, specify only the groups you intend to use. It is not necessary to include the entire list.

User Privileges

Users with the following privileges can perform this command:

>Admin

Syntax

sysconf tls groups set -list <group_list> [-force]

Argument(s) Shortcut Description
-list <group_list> -l Colon-separated list of groups to apply.
-force -f Force the action without prompting.

Example

lunash:>sysconf tls groups set -list X25519MLKEM768:MLKEM1024

This operation will set the TLS groups to use the following groups:

Configured Groups
--------------------------------------------------
X25519MLKEM768
MLKEM1024

This operation will restart the TLS related services (NTLS, STCD, CBS).
Type 'proceed' to set groups and restart TLS related services, or 'quit'
    to quit now. > proceed

Restarting NTLS, STC and CBS services.... Done

Command Result : 0 (Success)

Example

lunash:>sysconf tls groups set -l secp256r1:secp256r1:secp256r1

This operation will set the TLS groups to use the following groups:

Configured Groups
--------------------------------------------------
secp256r1

This operation will restart the TLS related services (NTLS, STCD, CBS).
Type 'proceed' to set groups and restart TLS related services, or 'quit'
    to quit now. > proceed

Restarting NTLS, STC and CBS services.... Done

Command Result : 0 (Success)