Updating Firmware
The SafeNet ProtectToolkit-C firmware that operates on the HSM hardware can be upgraded to newer versions via a secure upgrade facility. The firmware upgrade can only be performed by the SafeNet ProtectToolkit-C administrator using the ctconf command line utility. This facility will only allow firmware versions that have been digitally signed by SafeNet.
NOTE Depending on the security policy in place, the HSM may perform a soft-tamper before the upgrade process is executed. This tamper will erase all key and configuration data on the HSM. Please see Security Policies and User Roles for more information on security policies.
Firmware upgrades are distributed in the form of a digitally-signed file.
Prior to performing a firmware upgrade, ensure that:
>All important user data and keys have been backed up
>The current HSM configuration has been noted
>All applications using the HSM have been closed
The HSM firmware is upgraded by entering the following at a command prompt:
ctconf –g<filename>
where <filename> refers to the name of the firmware upgrade file. The user will be prompted for the Administrator password.
Notification of the firmware upgrade's success or failure will be displayed.
Following an upgrade, normal operation of SafeNet ProtectToolkit-C may be resumed.