Uploaded image for project: 'Red Hat OpenStack Services on OpenShift'
  1. Red Hat OpenStack Services on OpenShift
  2. OSPRH-18981

Execute Adoption Steps for Successfully Adopting Proteccio HSM

XMLWordPrintable

    • Icon: Story Story
    • Resolution: Done
    • Icon: Undefined Undefined
    • rhos-18.0.14 FR 4
    • None
    • None
    • None
    • DFG Security: Test Sprint 9, DFG Security: Test Sprint 10, DFG Security: Sprint 11
    • 3

      Goal: 

      To actually implement the adoption steps of a Proteccio HSM as a secure backend for the Barbican (Key Manager) service, migrating from a legacy RHOSP 17.1 environment to RHOSO 18.

      Acceptance Criteria:

      • Secure network connectivity is established and verified between the OpenStack Key Manager (Barbican) service pods and the Eviden Proteccio HSM.
      • The Barbican service is configured with the PKCS#11 driver and successfully uses the Eviden Proteccio HSM as its cryptographic backend for all secret storage operations.
      • End-to-end validation tests pass, confirming that secrets can be created, retrieved, and deleted via the Barbican API, with HSM-level logs verifying that all cryptographic functions are being processed by the hardware.

              rh-ee-mharley Mauricio Harley
              rh-ee-mharley Mauricio Harley
              Milana Levy
              rhos-dfg-security
              Votes:
              0 Vote for this issue
              Watchers:
              1 Start watching this issue

                Created:
                Updated:
                Resolved: