Skip to content
Discussion options

You must be logged in to vote

The whole idea with using an HSM is that the keys can not be exported. You will not be able to export keys from your HSM (talk to Thales about that).
What is left are the certificates issued in EJBCA, you can easily just download your CA certificate, CRL, etc from the web UI, REST API, or similar to store those. But I think you knew that already, keys on an HSM is a no-go, completely outside of EJBCA's control.

Replies: 1 comment 1 reply

Comment options

You must be logged in to vote
1 reply
@YanuarGuo
Comment options

Answer selected by YanuarGuo
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
Q&A
Labels
None yet
2 participants