Skip to main content

Sixscape IDcentral Key Management

Sixscape’s IDcentral Key Management Platform with Securosys' Hardware Security Modules (HSMs) allows to securely escrow S/MIME encryption key pairs using the Sixscape:

S/MIME key escrow in Sixscape’s IDcentral Key Management Platform ensures secure, compliant, and centralized storage and management of cryptographic keys, enabling data recovery and business continuity in case of key loss. This enhances security, supports regulatory compliance, and simplifies key management for users.

Architecture overview

Prerequisites

As a prerequisite for integration, please ensure that you fulfill the following requirements:

  • A Hardware Security Module (HSM):
    • On-premises: Securosys Primus HSM (cluster), OR
    • Cloud: Securosys CloudHSM with PKCS#11 API.
  • Primus HSM PKCS#11 Provider, downloaded for the installation on the IDcentral Identity Registration Platform (IRP).
  • IDcentral Identity Registration Platform (IRP):
    • installed in the enterprise network and
    • configured with the required issuing CA connection and certificate profile to generate the S/MIME certificates.
  • IDcentral Key Management installed and configured with IDcentral IRP.
  • Sixscape’s Email Security Suite Add-In installed on end-user devices.

Get started with Sixscape IDcentral

To integrate Sixscape IDcentral with Securosys Hardware Security Modules (on-premises and cloud), follow the instructions provided on Sixscape’s support portal (Sixscape login required).