Fortanix Hardware Security Module (HSM)

Consolidate all HSMs into a single cost-effective solution

Download Solution Brief

Hardware Security Module HSM

Problem

Legacy HSM systems are hard to use and complex to manage. Today, large enterprises often have 2-3 different HSMs, key management, and encryption solutions each solving only part of the problem at a premium price with costly maintenance and additional costs for every new application. To add to the woes, these systems do not integrate with public cloud/hybrid infrastructures, requiring customers to maintain separate solutions for on-premises applications and public cloud. Today’s already overburdened application teams, database administrators, data analysts, and security administrators don’t have time or patience to use outdated technology.

Solution Overview

Fortanix provides an integrated FIPS 140-2 level 3 HSM and manages legacy HSMs with HSM gateway. Fortanix HSM Gateway connects to the legacy HSMs you already have and makes their keys manageable and accessible through Fortanix. Applications and databases standardize on a single source of cryptographic services, and security teams get a single pane of glass for management.

Benefits

icon

INTEGRATED DATA SECURITY PLATFORM

Fortanix provides a Data Security as a Service (DSaaS) platform with integrated hardware security module (HSM), key management, encryption, shared secrets, and tokenization capabilities.
icon

ACCELERATE CLOUD MIGRATION

Fortanix HSM Gateway provides a consistent set of unified APIs and services across all your on-prem, hybrid and cloud applications, keys stay secure in the existing HSM, while applications and databases (on-premises or in the cloud) get a single source of cryptographic services.
icon

SINGLE PANE OF GLASS

Fortanix provides a “single pane of glass” modern, multitenant, and intuitive user interfaces for simplified administration and increased control, including extensive logging and auditing across your entire infrastructure.
icon

REDUCE COST

Reduce the cost and complexity of the HSM infrastructure by consolidating all HSMs into a single cost-effective solution. Over time customers can migrate keys and replace HSM hardware with a modern scalable solution.
quote icon

There is sensitive data stored in our systems, whether it is consumer data, sales data, or corporate secrets. This data has to be protected, but we had a challenge. How exactly? How do you protect the keys? In a large organization , we want to avoid the situation where teams and stakeholders that decide how to protect data and keys differently. So, we decided to provide a key management system and HSM as one of the security services for the rest of the organization.

Adidas

quote icon

How it Works

CONSOLIDATE AND MANAGE YOUR HSM INFRASTRUCTURE

The Fortanix HSM Gateway proxies all crypto API calls from both on-premises and cloud applications and databases to legacy on-premises HSMs through a unified set of interfaces including REST, PKCS#11, KMIP, JCE and CNG. Master key material remains in the legacy HSM, while Fortanix creates corresponding virtual keys. All keys are managed, rotated, and revoked through the Fortanix web interface or APIs. When administrators are ready to migrate from their legacy HSMs, they can migrate keys to Fortanix FX 2200 appliances (FIPS 140-2 Level 3) and/or use Fortanix DSM in public cloud.

key-management-solution

Background image

Ready to test Fortanix Runtime Encryption?

request a demo
thumbnail