Requirements
The following components are required to add an nCipher HSM as a key management service to DataCore vFilO:
- One (or more) nCipher HSM hardware device(s)
- One 64-bit Linux server that conforms with nCipher Web Services Option Pack (WSOP) requirements.
- CentOS 7.6 or newer works well.
- A virtual machine is sufficient, but a bare metal box will also work.
- Installation of a GUI desktop is not required.
- 32 GB of disk space is recommended.
- At least 4 GB of RAM is recommended.
- At least 2 CPUs are required; 4 is recommended for better performance.
- The system should be configured with a static IP address.
- A DNS hostname is optional, but highly recommended to make certificate management simpler in the face of future network configuration changes.
- The required nCipher Security World software components should be installed on the WSOP system, along with the WSOP components. This document describes the process for installing version 12.50.4 of nCipher Security World and version 1.0.0 of the Web Services Option Pack.
- The optional Java JCE Security World components are also required. These come bundled with Security World and using them does not incur an additional cost.
- The Security World installed on the WSOP server should be configured with the nCipher HSM devices.
- The WSOP server should be configured with appropriate PKI materials.
The following sections provide specific instructions for setting up the requirements outlined above: