{"id":3398,"date":"2023-12-19T06:31:01","date_gmt":"2023-12-19T06:31:01","guid":{"rendered":"https:\/\/signmycode.com\/resources\/?p=3398"},"modified":"2024-09-17T07:44:52","modified_gmt":"2024-09-17T07:44:52","slug":"how-to-configure-oracle-key-vault-to-use-luna-hsm","status":"publish","type":"post","link":"https:\/\/signmycode.com\/resources\/how-to-configure-oracle-key-vault-to-use-luna-hsm","title":{"rendered":"How to Configure Oracle Key Vault to use Luna HSM?"},"content":{"rendered":"\n<p class=\"wp-block-paragraph\">The Oracle Key Vault is a phenomenal solution used by enterprises to store and manage the keys. Security firms highly recommend it due to its effortless configuration, advanced features, and compliance with industry standards.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">In addition, it works seamlessly with every HSM. But, in this blog, we are going to understand the procedure for using Luna HSM with Oracle Key Vault.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">What is Oracle Key Vault?<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">Oracle Key Vault or OKV is software that is available as an ISO image. You are required to install it on its dedicated servers to leverage its features and functionalities. <\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>Under the OKV ISO image, you avail of the following components:<\/strong><\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Oracle Database<\/li>\n\n\n\n<li>Oracle Key Vault<\/li>\n\n\n\n<li>Pre-configure OS<\/li>\n<\/ul>\n\n\n\n<p class=\"wp-block-paragraph\">Let&#8217;s specifically talk about the Oracle Key Vault. It&#8217;s a full-stack platform that helps you centralize the management of encryption\/decryption, cryptographic, and other keys in an organization. In addition, it supports preventing illegitimate activities aligned with the required industry standards, such as FIPS 140-2 Level 3.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">The Prerequisites for Using Luna HSM with Oracle Key Vault<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">Before you start with the Luna HSM configuration on the Oracle Key Vault platform, you should fulfill the below requirements:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>An Oracle Key Vault account<\/li>\n\n\n\n<li>Availability of Luna Cloud HSM Service (Configure the requirement of FIPS and number of slots per your business needs)<\/li>\n<\/ul>\n\n\n\n<h2 class=\"wp-block-heading\">Complete Process To Configure Oracle Key Vault To Use Luna HSM<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">To configure the Oracle Key Vault for using Luna HSM, you are required to follow the below procedure:<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong><mark style=\"background-color:rgba(0, 0, 0, 0);color:#00b373\" class=\"has-inline-color\">Step 1:<\/mark><\/strong> <strong>Create an account on the Oracle Key Vault management platform<\/strong> and <strong>access the console as a user with administrative controls<\/strong>.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">You can access the console using the URL: https:\/\/&lt;Oracle_Key_Vault_Server_IP&gt;<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong><mark style=\"background-color:rgba(0, 0, 0, 0);color:#00b373\" class=\"has-inline-color\">Step 2:<\/mark><\/strong> Use <strong>left-click<\/strong> on \u201c<strong>System<\/strong>\u201d and choose \u201c<strong>Settings<\/strong>\u201d<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong><strong><mark style=\"background-color:rgba(0, 0, 0, 0);color:#00b373\" class=\"has-inline-color\">Step 3:<\/mark><\/strong><\/strong> Under \u201c<strong>Settings<\/strong>\u201d, choose \u201c<strong>Hardware Security Module<\/strong>\u201d.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong><strong><mark style=\"background-color:rgba(0, 0, 0, 0);color:#00b373\" class=\"has-inline-color\">Step 4:<\/mark><\/strong><\/strong> Click on the \u201c<strong>Initialize<\/strong>\u201d to open the \u201c<strong>Initialize HSM<\/strong>\u201d dialog window.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong><strong><mark style=\"background-color:rgba(0, 0, 0, 0);color:#00b373\" class=\"has-inline-color\">Step 5:<\/mark><\/strong><\/strong> From the \u201c<strong>Vendor<\/strong>\u201d menu, choose \u201c<strong>Thales Luna<\/strong>\u201d<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong><strong><mark style=\"background-color:rgba(0, 0, 0, 0);color:#00b373\" class=\"has-inline-color\">Step 6:<\/mark><\/strong><\/strong> Fill out the \u201c<strong>HSM Credentials<\/strong>\u201d and the \u201c<strong>Recovery Password\/Passphrase<\/strong>\u201d<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong><strong><mark style=\"background-color:rgba(0, 0, 0, 0);color:#00b373\" class=\"has-inline-color\">Step 7:<\/mark><\/strong><\/strong> Choose the \u201c<strong>Use Token Label<\/strong>\u201d checkbox and input the \u201c<strong>Token Label<\/strong>\u201d<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong><strong><mark style=\"background-color:rgba(0, 0, 0, 0);color:#00b373\" class=\"has-inline-color\">Step 8:<\/mark><\/strong><\/strong> Click on \u201c<strong>Initialize<\/strong>\u201d<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong><strong><mark style=\"background-color:rgba(0, 0, 0, 0);color:#00b373\" class=\"has-inline-color\">Step 9:<\/mark><\/strong> <\/strong>Wait for the <strong>process to complete<\/strong> and <strong>check the HSM status<\/strong>.<br><br>If the Luna HSM is configured accurately, a green arrow in an upward direction will be displayed. In addition, to check the master encryption key, you can execute \u201c<strong>partition content<\/strong>\u201d under \u201c<strong>lunacm<\/strong>.\u201d<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">The Oracle Key Vault Backup Procedure For Maximum Availability<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">It&#8217;s always recommended to back up the Oracle Key Vault. It enables us to be sure of private key availability in case of system failure and data loss. <\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>To execute the backup, you are required to execute the following steps:<\/strong><\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong><mark style=\"background-color:rgba(0, 0, 0, 0);color:#00b373\" class=\"has-inline-color\">Step 1:<\/mark><\/strong> <strong>Access the console of your Oracle Key Vault management platform with an administrative user account<\/strong>.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong><strong><mark style=\"background-color:rgba(0, 0, 0, 0);color:#00b373\" class=\"has-inline-color\">Step 2:<\/mark><\/strong><\/strong> Go to \u201c<strong>System<\/strong>\u201d and choose \u201c<strong>Settings<\/strong>\u201d<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong><mark style=\"background-color:rgba(0, 0, 0, 0);color:#00b373\" class=\"has-inline-color\">Step 3:<\/mark><\/strong> Click on the \u201c<strong>System Configuration<\/strong>\u201d and choose \u201c<strong>Backup and Restore<\/strong>\u201d<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong><strong><mark style=\"background-color:rgba(0, 0, 0, 0);color:#00b373\" class=\"has-inline-color\">Step 4:<\/mark><\/strong><\/strong> Click on \u201c<strong>Manage Backup Destination<\/strong>\u201d to view the <strong>backup destination list<\/strong>.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong><strong><mark style=\"background-color:rgba(0, 0, 0, 0);color:#00b373\" class=\"has-inline-color\">Step 5:<\/mark><\/strong><\/strong> Click on the &#8220;<strong>Create<\/strong>&#8221; option.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong><mark style=\"background-color:rgba(0, 0, 0, 0);color:#00b373\" class=\"has-inline-color\">Step 6:<\/mark><\/strong> Input the information listed in the following table and click on \u201cSave.\u201d<\/p>\n\n\n\n<figure class=\"wp-block-table\"><table><tbody><tr><td><strong>Information Required<\/strong><\/td><td><strong>What To Fill?<\/strong><\/td><\/tr><tr><td><strong>Destination Name<\/strong><\/td><td>Input a destination of your choice<\/td><\/tr><tr><td><strong>Transfer Method<\/strong><\/td><td>The default value is set to SCP for secure file transfer<\/td><\/tr><tr><td><strong>Hostname<\/strong><\/td><td>Input the destination&#8217;s IP address. If DNS is configured, provide the hostname.<\/td><\/tr><tr><td><strong>Port<\/strong><\/td><td>Enter the default SCP port number, i.e., 22.<\/td><\/tr><tr><td><strong>Destination Path<\/strong><\/td><td>Provide the path to reach the destination.<\/td><\/tr><tr><td><strong>Username<\/strong><\/td><td>Input the username of the account with read and write permission at the destination.<\/td><\/tr><tr><td><strong>Authentication Method<\/strong><\/td><td>Choose the method of your choice: key-based or password-based. For key-based, provide a public key, and for password-based, configure a passphrase.<\/td><\/tr><\/tbody><\/table><\/figure>\n\n\n\n<p class=\"wp-block-paragraph\"><strong><strong><mark style=\"background-color:rgba(0, 0, 0, 0);color:#00b373\" class=\"has-inline-color\">Step 7:<\/mark><\/strong><\/strong> Click on \u201c<strong>System Backup<\/strong>\u201d and choose \u201c<strong>Backup<\/strong>\u201d Here, you need to input the &#8220;<strong>Name<\/strong>&#8220;, &#8220;<strong>Start Time<\/strong>&#8221; &#8220;<strong>Destination<\/strong>&#8221; and the &#8220;<strong>Type<\/strong>&#8221; All these details will help you configure the initiation and recurrence of the backup. &nbsp;<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong><strong><mark style=\"background-color:rgba(0, 0, 0, 0);color:#00b373\" class=\"has-inline-color\">Step 8:<\/mark><\/strong><\/strong> Lastly, click on \u201c<strong>Schedule<\/strong>\u201d As a result, the backup will be initiated as configured, and you can also check the status. In progress, the status will be &#8220;<strong>ONGOING<\/strong>&#8221; and after completion, it will be &#8220;<strong>DONE<\/strong>&#8220;.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">Furthermore, to Restore from the Backup, you should undergo the following process:<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\"><strong><strong><mark style=\"background-color:rgba(0, 0, 0, 0);color:#00b373\" class=\"has-inline-color\">Step 1:<\/mark><\/strong><\/strong> <strong>Open your console with an account<\/strong> with administrative privileges.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong><mark style=\"background-color:rgba(0, 0, 0, 0);color:#00b373\" class=\"has-inline-color\">Step 2:<\/mark><\/strong> Go to \u201c<strong>System<\/strong>\u201d and choose \u201c<strong>Settings<\/strong>\u201d<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong><mark style=\"background-color:rgba(0, 0, 0, 0);color:#00b373\" class=\"has-inline-color\">Step 3:<\/mark><\/strong> Click on \u201c<strong>Network Services<\/strong>\u201d and choose \u201c<strong>HSM<\/strong>\u201d<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong><strong><mark style=\"background-color:rgba(0, 0, 0, 0);color:#00b373\" class=\"has-inline-color\">Step 4:<\/mark><\/strong> <\/strong>Click on \u201c<strong>Set Credentials<\/strong>\u201d to open the \u201c<strong>Prepare for HSM Restore<\/strong>\u201d dialog window.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong><mark style=\"background-color:rgba(0, 0, 0, 0);color:#00b373\" class=\"has-inline-color\">Step 5:<\/mark><\/strong> Click on the \u201c<strong>Vendor<\/strong>\u201d menu and choose \u201c<strong>Thales Luna<\/strong>\u201d<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong><strong><mark style=\"background-color:rgba(0, 0, 0, 0);color:#00b373\" class=\"has-inline-color\">Step 6:<\/mark><\/strong><\/strong> Input the &#8220;<strong>HSM Credential<\/strong>&#8220;, choose &#8220;<strong>Use Token Label<\/strong>&#8220;, and input the &#8220;<strong>Token Label<\/strong>&#8220;<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong><mark style=\"background-color:rgba(0, 0, 0, 0);color:#00b373\" class=\"has-inline-color\">Step 7:<\/mark><\/strong> Click on &#8220;<strong>Set Credentials<\/strong>&#8221; and then go to &#8220;<strong>System<\/strong>&#8221; again and choose &#8220;<strong>Settings<\/strong>.&#8221;<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong><strong><mark style=\"background-color:rgba(0, 0, 0, 0);color:#00b373\" class=\"has-inline-color\">Step 8:<\/mark><\/strong><\/strong> Click on \u201c<strong>System Configuration<\/strong>\u201d and choose \u201c<strong>Backup and Restore<\/strong>\u201d<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong><strong><mark style=\"background-color:rgba(0, 0, 0, 0);color:#00b373\" class=\"has-inline-color\">Step 9:<\/mark><\/strong><\/strong> Click on \u201c<strong>Restore<\/strong>\u201d and choose the source where your backup is stored. It will ask you to input the recovery password. Once you input the correct password, again click on \u201c<strong>Restore<\/strong>\u201d to let the process begin. Simultaneously, you can check the live status.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">How do you Enable Oracle Key Vault Multi-Master Cluster?<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">&nbsp;In a multi-master cluster, any HSM can be used in any key vault node. However, each is secured with different RoT keys, HSM credentials, and TDE wallet passcodes. Primarily, you can configure a multi-master cluster in two ways: single node and multiple nodes.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Let&#8217;s look at both configurations.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">Single Node Multi-Master Cluster Configuration<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">For the single-node configuration, you are required to complete the four main parts as follows:<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>Part 1:<\/strong> Single OKV (Oracle Key Vault) conversion to cluster\u2019s first node<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>Part 2: <\/strong>Making the first node HSM-enable<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>Part 3:<\/strong> Making the candidate node HSM-enable before cluster addition<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>Part 4:<\/strong> Adding of HSM-enabled candidate node into the HSM-enabled controller node cluster<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">The above-listed Parts 2 and 3 can be completed by following the process in the section &#8220;<strong>Complete Process To Configure Oracle Key Vault To Use Luna HSM<\/strong>\u201d<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">For the completion of Part 1 and Part 4, you should follow the procedures below.<\/p>\n\n\n\n<h4 class=\"wp-block-heading\">Part 1: Single OKV (Oracle Key Vault) conversion to cluster\u2019s first node<\/h4>\n\n\n\n<p class=\"wp-block-paragraph\">The steps to convert are as follows:<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong><mark style=\"background-color:rgba(0, 0, 0, 0);color:#00b373\" class=\"has-inline-color\">Step 1:<\/mark><\/strong> Use an account with administrative privileges and <strong>access the console<\/strong>.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong><strong><mark style=\"background-color:rgba(0, 0, 0, 0);color:#00b373\" class=\"has-inline-color\">Step 2:<\/mark><\/strong><\/strong> Choose the \u201c<strong>Cluster<\/strong>\u201d tab and then \u201c<strong>Configure as Candidate Node.<\/strong>\u201d You will see the logical (IP) address of the server in the field with the name &#8220;<strong>Current Server IP<\/strong>&#8220;<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong><strong><mark style=\"background-color:rgba(0, 0, 0, 0);color:#00b373\" class=\"has-inline-color\">Step 3:<\/mark><\/strong> <\/strong>Stay on the \u201c<strong>Configure as Candidate Node<\/strong>\u201d page and input the details as listed in the following table.<\/p>\n\n\n\n<figure class=\"wp-block-table\"><table><tbody><tr><td><strong>Parameter<\/strong><\/td><td><strong>What To Fill?<\/strong><\/td><\/tr><tr><td><strong>First Node of Cluster<\/strong><\/td><td>Choose the &#8220;Yes&#8221; option<\/td><\/tr><tr><td><strong>Node Name<\/strong><\/td><td>Type a node name of your choice<\/td><\/tr><tr><td><strong>Cluster Name<\/strong><\/td><td>Input a cluster name of your choice. Remember that it can&#8217;t be changed afterward.<\/td><\/tr><tr><td><strong>Cluster Subgroup<\/strong><\/td><td>Input a name for the subgroup, and it cannot be changed either.<\/td><\/tr><\/tbody><\/table><\/figure>\n\n\n\n<h4 class=\"wp-block-heading\">Part 4: Adding of HSM-enabled Candidate Node into the HSM-enabled Controller Node Cluster<\/h4>\n\n\n\n<p class=\"wp-block-paragraph\">Before you start this process, ensure that you have a good network with higher bandwidth and speed. In addition, if any firewall or access control list is configured, it must permit the Oracle Key Vault packets. Also, the OKV ports should be open.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>Once the network requirements are completed, start with the below process.<\/strong><\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong><strong><mark style=\"background-color:rgba(0, 0, 0, 0);color:#00b373\" class=\"has-inline-color\">Step 1:<\/mark><\/strong><\/strong> Use the administrator\u2019s account and <strong>access the controller OKV node<\/strong>.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong><strong><mark style=\"background-color:rgba(0, 0, 0, 0);color:#00b373\" class=\"has-inline-color\">Step 2:<\/mark><\/strong><\/strong> Go to the &#8220;<strong>Cluster<\/strong>&#8221; tab and click on &#8220;<strong>Add<\/strong>.&#8221;<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong><strong><mark style=\"background-color:rgba(0, 0, 0, 0);color:#00b373\" class=\"has-inline-color\">Step 3:<\/mark><\/strong><\/strong> In the \u201c<strong>Recovery Passphrase of the Cluster<\/strong>\u201d field, input the recovery password, as it will be utilized to pair the candidate node.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong><strong><mark style=\"background-color:rgba(0, 0, 0, 0);color:#00b373\" class=\"has-inline-color\">Step 4:<\/mark><\/strong><\/strong> Choose the &#8220;<strong>Yes<\/strong>&#8221; value for the &#8220;<strong>Add Node as Read-Write Peer<\/strong>&#8220;.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong><strong><mark style=\"background-color:rgba(0, 0, 0, 0);color:#00b373\" class=\"has-inline-color\">Step 5:<\/mark><\/strong><\/strong> Under &#8220;<strong>Add Candidate Node Detail<\/strong>s&#8221;, enter the details as listed.<\/p>\n\n\n\n<figure class=\"wp-block-table\"><table><tbody><tr><td><strong>Parameter<\/strong><\/td><td><strong>What To Fill?<\/strong><\/td><\/tr><tr><td><strong>Node ID<\/strong><\/td><td>Input any unique ID for your node, and remember that it cannot be modified.<\/td><\/tr><tr><td><strong>Node Name<\/strong><\/td><td>Set a name of your choice, and it cannot be modified afterward.<\/td><\/tr><tr><td><strong>Cluster Subgroup<\/strong><\/td><td>Input the name of a cluster subgroup. If a new name is entered, a new subgroup will be generated.<\/td><\/tr><tr><td><strong>IP Address<\/strong><\/td><td>Input the candidate node\u2019s logical address.<\/td><\/tr><\/tbody><\/table><\/figure>\n\n\n\n<p class=\"wp-block-paragraph\"><strong><strong><mark style=\"background-color:rgba(0, 0, 0, 0);color:#00b373\" class=\"has-inline-color\">Step 6:<\/mark><\/strong> <\/strong>With the help of a browser, <strong>access the candidate node\u2019s OKV management console using a user account with an admin role<\/strong>.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong><strong><mark style=\"background-color:rgba(0, 0, 0, 0);color:#00b373\" class=\"has-inline-color\">Step 7:<\/mark><\/strong> <\/strong>Go to the &#8220;<strong>Cluster<\/strong>&#8221; tab to open the &#8220;<strong>Configure as Cluster Candidate<\/strong>\u201d page.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong><strong><mark style=\"background-color:rgba(0, 0, 0, 0);color:#00b373\" class=\"has-inline-color\">Step 8:<\/mark><\/strong> <\/strong>Choose \u201c<strong>No<\/strong>\u201d for the \u201c<strong>First Node of Cluster<\/strong>\u201d<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong><mark style=\"background-color:rgba(0, 0, 0, 0);color:#00b373\" class=\"has-inline-color\">Step 9:<\/mark><\/strong> Input the controller nod recovery password for the &#8220;<strong>Recovery Passphrase of the Cluster<\/strong>&#8220;<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong><strong><mark style=\"background-color:rgba(0, 0, 0, 0);color:#00b373\" class=\"has-inline-color\">Step 10:<\/mark><\/strong><\/strong> Input the \u201c<strong>IP address<\/strong>\u201d in its respective field.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong><strong><mark style=\"background-color:rgba(0, 0, 0, 0);color:#00b373\" class=\"has-inline-color\">Step 11:<\/mark><\/strong> <\/strong>Go to the <strong>browser tab with the controller node <\/strong>and scroll to its bottom, and <strong>copy the complete node certification<\/strong>.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong><strong><mark style=\"background-color:rgba(0, 0, 0, 0);color:#00b373\" class=\"has-inline-color\">Step 12:<\/mark><\/strong><\/strong> Paste the copied controller node certification in the candidate node tab, where an input field is available with the title &#8220;<strong>Certificate of the Controller Node<\/strong>.&#8221;<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong><strong><mark style=\"background-color:rgba(0, 0, 0, 0);color:#00b373\" class=\"has-inline-color\">Step 13:<\/mark><\/strong> <\/strong>Click on the &#8220;<strong>Convert to Candidate Node<\/strong>&#8221; and wait until the process completes and the &#8220;<strong>Adding Candidate Node to Cluster<\/strong>&#8221; page is showcased.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong><strong><mark style=\"background-color:rgba(0, 0, 0, 0);color:#00b373\" class=\"has-inline-color\">Step 14:<\/mark><\/strong><\/strong> Now, copy the complete \u201c<strong>Candidate Node Certification<\/strong>&#8221; and <strong>navigate to the controller node browser tab<\/strong>.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong><strong><mark style=\"background-color:rgba(0, 0, 0, 0);color:#00b373\" class=\"has-inline-color\">Step 15:<\/mark><\/strong> <\/strong>Paste the copied candidate node certificate at \u201c<strong>Certificate of Candidate Node<\/strong>.\u201d<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong><strong><mark style=\"background-color:rgba(0, 0, 0, 0);color:#00b373\" class=\"has-inline-color\">Step 16:<\/mark><\/strong><\/strong> Click on \u201c<strong>Add Node<\/strong>\u201d and then on \u201c<strong>OK<\/strong>\u201d for final confirmation.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Now, the process will run for approx. an hour, less, or more according to your network capabilities. Also, the nodes can restart during the process, and you will see the status as &#8220;<strong>PAIRING<\/strong>&#8221; and &#8220;<strong>ACTIVE<\/strong>&#8221; as it progresses.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">Multiple Node Multi-Master Cluster Configuration<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">For multiple nodes, three main parts are required to be completed, which are as follows:<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>Part 1:<\/strong> Making the first node HSM-enable<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>Part 2: <\/strong>Copying of the bundle<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>Part 3:<\/strong> Remaining nodes configuration<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>To complete Part 1, you can follow the procedure in the section &#8220;Complete Process To Configure Oracle Key Vault To Use Luna HSM.\u201d<\/strong><\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>Now, complete Parts 2 and 3 by following the procedures below.<\/strong><\/p>\n\n\n\n<h4 class=\"wp-block-heading\">Part 2: Copying of the Bundle<\/h4>\n\n\n\n<p class=\"wp-block-paragraph\"><strong><mark style=\"background-color:rgba(0, 0, 0, 0);color:#00b373\" class=\"has-inline-color\">Step 1:<\/mark><\/strong> <strong>Login to the console of OKV management<\/strong> with the <strong>admin privileges account.<\/strong><\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong><strong><mark style=\"background-color:rgba(0, 0, 0, 0);color:#00b373\" class=\"has-inline-color\">Step 2:<\/mark><\/strong><\/strong> Go to the &#8220;<strong>System<\/strong>&#8221; tab, and under it, choose &#8220;<strong>Hardware Security Module.&#8221;<\/strong><\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong><strong><mark style=\"background-color:rgba(0, 0, 0, 0);color:#00b373\" class=\"has-inline-color\">Step 3:<\/mark><\/strong><\/strong> Click on the &#8220;<strong>Create Bundle<\/strong>&#8221; option on the node with HSM enabled.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong><strong><mark style=\"background-color:rgba(0, 0, 0, 0);color:#00b373\" class=\"has-inline-color\">Step 4:<\/mark><\/strong><\/strong> Input the required details, such as recovery password and HSM credentials, and click on &#8220;<strong>Create Bundle<\/strong>.&#8221;<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong><strong><mark style=\"background-color:rgba(0, 0, 0, 0);color:#00b373\" class=\"has-inline-color\">Step 5:<\/mark><\/strong><\/strong> Use SSH to log to the HSM-enabled node with the command: \u201c<strong>ssh support@hsm_enabled_node<\/strong>\u201d<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong><strong><mark style=\"background-color:rgba(0, 0, 0, 0);color:#00b373\" class=\"has-inline-color\">Step 6:<\/mark><\/strong><\/strong> Change the user to root with the command: \u201c<strong>su root<\/strong>\u201d<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong><strong><mark style=\"background-color:rgba(0, 0, 0, 0);color:#00b373\" class=\"has-inline-color\">Step 7:<\/mark><\/strong><\/strong> Run the command to copy the bundle to the <strong>\/usr\/local\/okv\/hsm location: \u201cscp \/usr\/local\/okv\/hsm\/hsmbundle support@ip_address:\/tmp\u201d<\/strong><\/p>\n\n\n\n<h4 class=\"wp-block-heading\">Part 3: Remaining Nodes Configuration<\/h4>\n\n\n\n<p class=\"wp-block-paragraph\"><strong><strong><mark style=\"background-color:rgba(0, 0, 0, 0);color:#00b373\" class=\"has-inline-color\">Step 1:<\/mark><\/strong><\/strong> Use the <strong>SSH to log in and access the remaining nodes in the cluster.<\/strong> Command: <strong>ssh support@ip_address<\/strong><\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong><strong><mark style=\"background-color:rgba(0, 0, 0, 0);color:#00b373\" class=\"has-inline-color\">Step 2:<\/mark><\/strong><\/strong> On every <strong>node<\/strong>, take <strong>root user access<\/strong>. Command: <strong>su root<\/strong><\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong><strong><mark style=\"background-color:rgba(0, 0, 0, 0);color:#00b373\" class=\"has-inline-color\">Step 3:<\/mark><\/strong> Copy the bundle<\/strong> using the command: <strong>cp \/tmp\/hsmbundle \/usr\/local\/okv\/hsm\/<\/strong><\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong><strong><mark style=\"background-color:rgba(0, 0, 0, 0);color:#00b373\" class=\"has-inline-color\">Step 4:<\/mark><\/strong><\/strong> <strong>Modify the bundle ownership to Oracle<\/strong> and group oinstall. Command: <strong>chown oracle:oinstall \/usr\/local\/okv\/hsm\/hsmbundle<\/strong><\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong><mark style=\"background-color:rgba(0, 0, 0, 0);color:#00b373\" class=\"has-inline-color\">Step 5:<\/mark><\/strong> Excluding the HSM-enabled node, click on \u201c<strong>Apply Bundle<\/strong>\u201d on the remaining nodes. Also, input the recovery password when required.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong><mark style=\"background-color:rgba(0, 0, 0, 0);color:#00b373\" class=\"has-inline-color\">Step 6:<\/mark><\/strong> Follow the steps in the section &#8220;<strong>Complete Process To Configure Oracle Key Vault To Use Luna HSM<\/strong>\u201d for the remaining nodes.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong><mark style=\"background-color:rgba(0, 0, 0, 0);color:#00b373\" class=\"has-inline-color\">Step 7:<\/mark><\/strong> <strong>Check and confirm that every node now has HSM enabled<\/strong>.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong><strong><mark style=\"background-color:rgba(0, 0, 0, 0);color:#00b373\" class=\"has-inline-color\">Step 8:<\/mark><\/strong><\/strong> Once the <strong>nodes are HSM-enabled<\/strong>, <strong>delete the hsmbundle file from the nodes<\/strong>.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">Concluding Up<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">To use the Oracle Key Vault with Luna HSM, you will require an OKV account and the Luna HSM provision. Once the requirements are completed, access the management console and start executing the process as mentioned above.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Furthermore, it&#8217;s recommended always to configure the backup, as it helps during unexpected crashes and data loss. You can also use the single and multiple node configuration process according to your needs. But, always verify the results, once the processing completes.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>The Oracle Key Vault is a phenomenal solution used by enterprises to store and manage the keys. Security firms highly recommend it due to its effortless configuration, advanced features, and compliance with industry standards. In addition, it works seamlessly with every HSM. But, in this blog, we are going to understand the procedure for using&hellip; <a class=\"more-link\" href=\"https:\/\/signmycode.com\/resources\/how-to-configure-oracle-key-vault-to-use-luna-hsm\">Read More <span class=\"screen-reader-text\">How to Configure Oracle Key Vault to use Luna HSM?<\/span><\/a><\/p>\n","protected":false},"author":1,"featured_media":3400,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[463,2],"tags":[478,477,479],"class_list":["post-3398","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-cloud-code-signing","category-code-signing-tutorials","tag-configuring-an-hsm-for-oracle-key-vault","tag-oracle-key-vault-integration","tag-oracle-key-vault-with-thales-luna-hsm","entry"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.9 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>How to Configure\/Integrate Oracle Key Vault to use Thales Luna HSM?<\/title>\n<meta name=\"description\" content=\"Follow the steps to configure or integrate Oracle Key Vault to use a specific token to create and use objects in the Thales Luna HSM.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/signmycode.com\/resources\/how-to-configure-oracle-key-vault-to-use-luna-hsm\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"How to Configure\/Integrate Oracle Key Vault to use Thales Luna HSM?\" \/>\n<meta property=\"og:description\" content=\"Follow the steps to configure or integrate Oracle Key Vault to use a specific token to create and use objects in the Thales Luna HSM.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/signmycode.com\/resources\/how-to-configure-oracle-key-vault-to-use-luna-hsm\" \/>\n<meta property=\"og:site_name\" content=\"SignMyCode - Resources\" \/>\n<meta property=\"article:published_time\" content=\"2023-12-19T06:31:01+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2024-09-17T07:44:52+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/signmycode.com\/resources\/wp-content\/uploads\/2023\/12\/how-to-configure-oracle-key-vault-to-use-luna-hsm-jpg.webp\" \/>\n\t<meta property=\"og:image:width\" content=\"912\" \/>\n\t<meta property=\"og:image:height\" content=\"440\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"Janki Mehta\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:image\" content=\"https:\/\/signmycode.com\/resources\/wp-content\/uploads\/2023\/12\/how-to-configure-oracle-key-vault-to-use-luna-hsm-jpg.webp\" \/>\n<meta name=\"twitter:creator\" content=\"@Sign_My_Code\" \/>\n<meta name=\"twitter:site\" content=\"@Sign_My_Code\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Janki Mehta\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"9 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/signmycode.com\\\/resources\\\/how-to-configure-oracle-key-vault-to-use-luna-hsm#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/signmycode.com\\\/resources\\\/how-to-configure-oracle-key-vault-to-use-luna-hsm\"},\"author\":{\"name\":\"Janki Mehta\",\"@id\":\"https:\\\/\\\/signmycode.com\\\/resources\\\/#\\\/schema\\\/person\\\/2e80276fd34fd5439c04cd3cb96a389f\"},\"headline\":\"How to Configure Oracle Key Vault to use Luna HSM?\",\"datePublished\":\"2023-12-19T06:31:01+00:00\",\"dateModified\":\"2024-09-17T07:44:52+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/signmycode.com\\\/resources\\\/how-to-configure-oracle-key-vault-to-use-luna-hsm\"},\"wordCount\":1922,\"publisher\":{\"@id\":\"https:\\\/\\\/signmycode.com\\\/resources\\\/#organization\"},\"image\":{\"@id\":\"https:\\\/\\\/signmycode.com\\\/resources\\\/how-to-configure-oracle-key-vault-to-use-luna-hsm#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/signmycode.com\\\/resources\\\/wp-content\\\/uploads\\\/2023\\\/12\\\/how-to-configure-oracle-key-vault-to-use-luna-hsm-jpg.webp\",\"keywords\":[\"Configuring an HSM for Oracle Key Vault\",\"Oracle Key Vault Integration\",\"Oracle Key Vault with Thales Luna HSM\"],\"articleSection\":[\"Cloud Code Signing\",\"Code Signing Tutorials\"],\"inLanguage\":\"en-US\"},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/signmycode.com\\\/resources\\\/how-to-configure-oracle-key-vault-to-use-luna-hsm\",\"url\":\"https:\\\/\\\/signmycode.com\\\/resources\\\/how-to-configure-oracle-key-vault-to-use-luna-hsm\",\"name\":\"How to Configure\\\/Integrate Oracle Key Vault to use Thales Luna HSM?\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/signmycode.com\\\/resources\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/signmycode.com\\\/resources\\\/how-to-configure-oracle-key-vault-to-use-luna-hsm#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/signmycode.com\\\/resources\\\/how-to-configure-oracle-key-vault-to-use-luna-hsm#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/signmycode.com\\\/resources\\\/wp-content\\\/uploads\\\/2023\\\/12\\\/how-to-configure-oracle-key-vault-to-use-luna-hsm-jpg.webp\",\"datePublished\":\"2023-12-19T06:31:01+00:00\",\"dateModified\":\"2024-09-17T07:44:52+00:00\",\"description\":\"Follow the steps to configure or integrate Oracle Key Vault to use a specific token to create and use objects in the Thales Luna HSM.\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/signmycode.com\\\/resources\\\/how-to-configure-oracle-key-vault-to-use-luna-hsm#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/signmycode.com\\\/resources\\\/how-to-configure-oracle-key-vault-to-use-luna-hsm\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/signmycode.com\\\/resources\\\/how-to-configure-oracle-key-vault-to-use-luna-hsm#primaryimage\",\"url\":\"https:\\\/\\\/signmycode.com\\\/resources\\\/wp-content\\\/uploads\\\/2023\\\/12\\\/how-to-configure-oracle-key-vault-to-use-luna-hsm-jpg.webp\",\"contentUrl\":\"https:\\\/\\\/signmycode.com\\\/resources\\\/wp-content\\\/uploads\\\/2023\\\/12\\\/how-to-configure-oracle-key-vault-to-use-luna-hsm-jpg.webp\",\"width\":912,\"height\":440,\"caption\":\"Oracle Key Vault Integration with Luna HSM\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/signmycode.com\\\/resources\\\/how-to-configure-oracle-key-vault-to-use-luna-hsm#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/signmycode.com\\\/resources\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"How to Configure Oracle Key Vault to use Luna HSM?\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/signmycode.com\\\/resources\\\/#website\",\"url\":\"https:\\\/\\\/signmycode.com\\\/resources\\\/\",\"name\":\"SignMyCode - Resources\",\"description\":\"\",\"publisher\":{\"@id\":\"https:\\\/\\\/signmycode.com\\\/resources\\\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/signmycode.com\\\/resources\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/signmycode.com\\\/resources\\\/#organization\",\"name\":\"SignMyCode\",\"url\":\"https:\\\/\\\/signmycode.com\\\/resources\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/signmycode.com\\\/resources\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/signmycode.com\\\/resources\\\/wp-content\\\/uploads\\\/2021\\\/11\\\/logo1.png\",\"contentUrl\":\"https:\\\/\\\/signmycode.com\\\/resources\\\/wp-content\\\/uploads\\\/2021\\\/11\\\/logo1.png\",\"width\":135,\"height\":86,\"caption\":\"SignMyCode\"},\"image\":{\"@id\":\"https:\\\/\\\/signmycode.com\\\/resources\\\/#\\\/schema\\\/logo\\\/image\\\/\"},\"sameAs\":[\"https:\\\/\\\/x.com\\\/Sign_My_Code\"]},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/signmycode.com\\\/resources\\\/#\\\/schema\\\/person\\\/2e80276fd34fd5439c04cd3cb96a389f\",\"name\":\"Janki Mehta\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/74a1328bbec77f3a65123c2396050e61b60fe3831478ceb96b55e5a0fe44e370?s=96&d=blank&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/74a1328bbec77f3a65123c2396050e61b60fe3831478ceb96b55e5a0fe44e370?s=96&d=blank&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/74a1328bbec77f3a65123c2396050e61b60fe3831478ceb96b55e5a0fe44e370?s=96&d=blank&r=g\",\"caption\":\"Janki Mehta\"},\"description\":\"Janki Mehta is a Cyber-Security Enthusiast who constantly updates herself with new advancements in the Web\\\/Cyber Security niche. Along with theoretical knowledge, she also implements her practical expertise in day-to-day tasks and helps others to protect themselves from threats.\",\"sameAs\":[\"http:\\\/\\\/smcresources.ssltoolsonline.com\"]}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"How to Configure\/Integrate Oracle Key Vault to use Thales Luna HSM?","description":"Follow the steps to configure or integrate Oracle Key Vault to use a specific token to create and use objects in the Thales Luna HSM.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/signmycode.com\/resources\/how-to-configure-oracle-key-vault-to-use-luna-hsm","og_locale":"en_US","og_type":"article","og_title":"How to Configure\/Integrate Oracle Key Vault to use Thales Luna HSM?","og_description":"Follow the steps to configure or integrate Oracle Key Vault to use a specific token to create and use objects in the Thales Luna HSM.","og_url":"https:\/\/signmycode.com\/resources\/how-to-configure-oracle-key-vault-to-use-luna-hsm","og_site_name":"SignMyCode - Resources","article_published_time":"2023-12-19T06:31:01+00:00","article_modified_time":"2024-09-17T07:44:52+00:00","og_image":[{"width":912,"height":440,"url":"https:\/\/signmycode.com\/resources\/wp-content\/uploads\/2023\/12\/how-to-configure-oracle-key-vault-to-use-luna-hsm-jpg.webp","type":"image\/jpeg"}],"author":"Janki Mehta","twitter_card":"summary_large_image","twitter_image":"https:\/\/signmycode.com\/resources\/wp-content\/uploads\/2023\/12\/how-to-configure-oracle-key-vault-to-use-luna-hsm-jpg.webp","twitter_creator":"@Sign_My_Code","twitter_site":"@Sign_My_Code","twitter_misc":{"Written by":"Janki Mehta","Est. reading time":"9 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/signmycode.com\/resources\/how-to-configure-oracle-key-vault-to-use-luna-hsm#article","isPartOf":{"@id":"https:\/\/signmycode.com\/resources\/how-to-configure-oracle-key-vault-to-use-luna-hsm"},"author":{"name":"Janki Mehta","@id":"https:\/\/signmycode.com\/resources\/#\/schema\/person\/2e80276fd34fd5439c04cd3cb96a389f"},"headline":"How to Configure Oracle Key Vault to use Luna HSM?","datePublished":"2023-12-19T06:31:01+00:00","dateModified":"2024-09-17T07:44:52+00:00","mainEntityOfPage":{"@id":"https:\/\/signmycode.com\/resources\/how-to-configure-oracle-key-vault-to-use-luna-hsm"},"wordCount":1922,"publisher":{"@id":"https:\/\/signmycode.com\/resources\/#organization"},"image":{"@id":"https:\/\/signmycode.com\/resources\/how-to-configure-oracle-key-vault-to-use-luna-hsm#primaryimage"},"thumbnailUrl":"https:\/\/signmycode.com\/resources\/wp-content\/uploads\/2023\/12\/how-to-configure-oracle-key-vault-to-use-luna-hsm-jpg.webp","keywords":["Configuring an HSM for Oracle Key Vault","Oracle Key Vault Integration","Oracle Key Vault with Thales Luna HSM"],"articleSection":["Cloud Code Signing","Code Signing Tutorials"],"inLanguage":"en-US"},{"@type":"WebPage","@id":"https:\/\/signmycode.com\/resources\/how-to-configure-oracle-key-vault-to-use-luna-hsm","url":"https:\/\/signmycode.com\/resources\/how-to-configure-oracle-key-vault-to-use-luna-hsm","name":"How to Configure\/Integrate Oracle Key Vault to use Thales Luna HSM?","isPartOf":{"@id":"https:\/\/signmycode.com\/resources\/#website"},"primaryImageOfPage":{"@id":"https:\/\/signmycode.com\/resources\/how-to-configure-oracle-key-vault-to-use-luna-hsm#primaryimage"},"image":{"@id":"https:\/\/signmycode.com\/resources\/how-to-configure-oracle-key-vault-to-use-luna-hsm#primaryimage"},"thumbnailUrl":"https:\/\/signmycode.com\/resources\/wp-content\/uploads\/2023\/12\/how-to-configure-oracle-key-vault-to-use-luna-hsm-jpg.webp","datePublished":"2023-12-19T06:31:01+00:00","dateModified":"2024-09-17T07:44:52+00:00","description":"Follow the steps to configure or integrate Oracle Key Vault to use a specific token to create and use objects in the Thales Luna HSM.","breadcrumb":{"@id":"https:\/\/signmycode.com\/resources\/how-to-configure-oracle-key-vault-to-use-luna-hsm#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/signmycode.com\/resources\/how-to-configure-oracle-key-vault-to-use-luna-hsm"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/signmycode.com\/resources\/how-to-configure-oracle-key-vault-to-use-luna-hsm#primaryimage","url":"https:\/\/signmycode.com\/resources\/wp-content\/uploads\/2023\/12\/how-to-configure-oracle-key-vault-to-use-luna-hsm-jpg.webp","contentUrl":"https:\/\/signmycode.com\/resources\/wp-content\/uploads\/2023\/12\/how-to-configure-oracle-key-vault-to-use-luna-hsm-jpg.webp","width":912,"height":440,"caption":"Oracle Key Vault Integration with Luna HSM"},{"@type":"BreadcrumbList","@id":"https:\/\/signmycode.com\/resources\/how-to-configure-oracle-key-vault-to-use-luna-hsm#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/signmycode.com\/resources\/"},{"@type":"ListItem","position":2,"name":"How to Configure Oracle Key Vault to use Luna HSM?"}]},{"@type":"WebSite","@id":"https:\/\/signmycode.com\/resources\/#website","url":"https:\/\/signmycode.com\/resources\/","name":"SignMyCode - Resources","description":"","publisher":{"@id":"https:\/\/signmycode.com\/resources\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/signmycode.com\/resources\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/signmycode.com\/resources\/#organization","name":"SignMyCode","url":"https:\/\/signmycode.com\/resources\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/signmycode.com\/resources\/#\/schema\/logo\/image\/","url":"https:\/\/signmycode.com\/resources\/wp-content\/uploads\/2021\/11\/logo1.png","contentUrl":"https:\/\/signmycode.com\/resources\/wp-content\/uploads\/2021\/11\/logo1.png","width":135,"height":86,"caption":"SignMyCode"},"image":{"@id":"https:\/\/signmycode.com\/resources\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/x.com\/Sign_My_Code"]},{"@type":"Person","@id":"https:\/\/signmycode.com\/resources\/#\/schema\/person\/2e80276fd34fd5439c04cd3cb96a389f","name":"Janki Mehta","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/secure.gravatar.com\/avatar\/74a1328bbec77f3a65123c2396050e61b60fe3831478ceb96b55e5a0fe44e370?s=96&d=blank&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/74a1328bbec77f3a65123c2396050e61b60fe3831478ceb96b55e5a0fe44e370?s=96&d=blank&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/74a1328bbec77f3a65123c2396050e61b60fe3831478ceb96b55e5a0fe44e370?s=96&d=blank&r=g","caption":"Janki Mehta"},"description":"Janki Mehta is a Cyber-Security Enthusiast who constantly updates herself with new advancements in the Web\/Cyber Security niche. Along with theoretical knowledge, she also implements her practical expertise in day-to-day tasks and helps others to protect themselves from threats.","sameAs":["http:\/\/smcresources.ssltoolsonline.com"]}]}},"_links":{"self":[{"href":"https:\/\/signmycode.com\/resources\/wp-json\/wp\/v2\/posts\/3398","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/signmycode.com\/resources\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/signmycode.com\/resources\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/signmycode.com\/resources\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/signmycode.com\/resources\/wp-json\/wp\/v2\/comments?post=3398"}],"version-history":[{"count":6,"href":"https:\/\/signmycode.com\/resources\/wp-json\/wp\/v2\/posts\/3398\/revisions"}],"predecessor-version":[{"id":4095,"href":"https:\/\/signmycode.com\/resources\/wp-json\/wp\/v2\/posts\/3398\/revisions\/4095"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/signmycode.com\/resources\/wp-json\/wp\/v2\/media\/3400"}],"wp:attachment":[{"href":"https:\/\/signmycode.com\/resources\/wp-json\/wp\/v2\/media?parent=3398"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/signmycode.com\/resources\/wp-json\/wp\/v2\/categories?post=3398"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/signmycode.com\/resources\/wp-json\/wp\/v2\/tags?post=3398"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}