This prevents keys from being exposed or duplicated in software.
Hardware security module aws.
Aws iot greengrass supports the use of hardware security modules hsm through the pkcs 11 interface for secure storage and offloading of private keys.
This feature is available for aws iot greengrass core v1 7 and later.
The aws cloudhsm service helps you meet corporate contractual and regulatory compliance requirements for data security by using dedicated hardware security module hsm instances within the aws cloud.
For years hardware security modules have been used to securely manage encryption keys within an organization s own data centers these hardware appliances which are designed and certified to be tamper evident and intrusion resistant provide the highest level of physical security.
A hardware security module hsm is a physical device that provides extra security for sensitive data.
This type of device is used to provision cryptographic keys for critical functions such as encryption decryption and authentication for the use of applications identities and databases.
With cloudhsm you can manage your own encryption keys using fips 140 2 level 3 validated hsms.
For example businesses may use an hsm to secure trade secrets that have significant value by ensuring.