SafeNet, The Foundation of Information Security
 
 
Language: English English Japanese Chinese Chinese Spanish Portuguese
sample image
Blank
Email this page Print this page Feedback
   Luna CA4
Blank
Ensure the integrity of your information.
Blank

Root Key Hardware Security Module

Luna® CA4 offers a complete hardware security solution for the protection of sensitive root keys at the heart of PKI installations.

Luna_CA4 Luna CA4 card

Overview

The Luna CA4 addresses the security and operational needs required to maintain the integrity of PKIs with true hardware key management, trusted path multi-person authentication, and direct hardware-to-hardware backup. Featuring comprehensive key management technology, under review for FIPS 140-2, Level 3 validation and PKCS#11 compatibility, Luna CA4 is the trusted choice and de facto standard for Root Key protection.

Solutions

Luna CA4 offers the strictest hardware security for Certificate Authorities (CA) issuing digital identities in PKIs. Luna CA4, under FIPS 140-2, Level 3 review, protects the PKI root key and performs all key management, key storage, and key operations (such as digital signing) exclusively within hardware. Comprehensive security policies, split user roles, and two-factor, trusted path authentication prevent unauthorized access to critical root keys. Direct hardware-to-hardware backup permits auditable backups of key material for backup and disaster recovery. Tight integration with leading Certificate Authority software, including Microsoft Certificate Services and Entrust Authority, makes it easy to add security and integrity to enterprise PKI.

Highlights

  • Most Secure
    Keys are 3DES encrypted, encoded with M of N encryption, and stored on a tamper-proof hardware security token to ensure their integrity.
    • Secure Key Storage
      Keys are 3DES encrypted, encoded with M of N encryption, and stored on a tamper-proof hardware security token to ensure their integrity. Luna CA4 also securely supports all ECC Suite B algorithms.
    • Two-factor Trusted Path Authentication
      True two-factor, trusted path, multi-person authentication of HSM administrative users to prevent unauthorized access to sensitive HSM administration functions.
    • FIP 140-2, Level 3 Validation (in process) for Root Key Protection
      Luna CA4 is in the process of FIPS 140-2, Level 3 validation to meet Recommended Industry Best Practices to provide the highest levels of security.
  • Easy Hardware Key Management
    Hardware-based key lifecycle management from generation, verification, storage, and backup. All key operations are performed exclusively within hardware to prevent unauthorized access to your keys.
  • Easy Integration
    Luna CA4 offers unparalleled support and integration, offering full integration with the most popular Certificate Authorities, including Microsoft Certificate Services, Entrust Authority, VeriSign, and many more. Support for PKCS#11 Open API and Microsoft CryptoAPI allow easy integration with your custom solutions. In addition, existing Luna CA3 models can be easily migrated to the Luna CA4.

 

Arrow Contact Us
Request Information
Technical Support
General Contact
Find a Partner