Chapter 3. nShield PCIe HSMs
module and operating system. It is advised to do this directly after installing the
module in its normal working environment. Monitor the temperature of the module
over its first few days of operation.
3.1.4.3. Cooling recommendations for a desktop installation
For a desktop installation running in operating environmental conditions,
dedicated airflow is required across the module. If the system cannot provide the
necessary airflow, Entrust recommends you add a sufficiently powerful dedicated
fan to directly cool the module. For details regarding the cooling requirements see
[hardware-install:pcie-preinstall:::cooling].
3.1.4.4. Cooling recommendations for a server installation
The desktop cooling recommendations further apply to a server installation. In
addition, power and airflow control software is sometimes available in a server
installation. If this is the case, Entrust recommends you:
• Configure the target air velocity in the software to ensure it does not fall
below the airflow recommendations of the module. For details regarding the
cooling requirements, see [hardware-install:pcie-preinstall:::cooling].
• Ensure that the PCIe slot has been configured to fulfil the module
requirements.
3.1.5. Physical location considerations
Entrust nShield HSMs are certified to NIST FIPS 140 Level 2 and 3. In addition to
the intrinsic protection provided by an nShield HSM, customers must exercise due
diligence to ensure that the environment within which the nShield HSMs are
deployed is configured properly and is regularly examined as part of a
comprehensive risk mitigation program to assess both logical and physical threats.
Applications running in the environment shall be authenticated to ensure their
legitimacy and to thwart possible proliferation of malware that could infiltrate
these as they access the HSMs' cryptographic services. The deployed environment
must adopt 'defense in depth' measures and carefully consider the physical
location to prevent detection of electromagnetic emanations that might otherwise
inadvertently disclose cryptographic material.
3.2. Install a PCIe HSM
nShield v13.6.3 Hardware Install and Setup Guides
power
14/25
Need help?
Do you have a question about the nShield Connect 6000 and is the answer not in the manual?
Questions and answers