Contact Us

SafeNet ProtectServer HSMs: Hardware Security for Server & Web Applications

SafeNet ProtectServer Hardware Security Modules (HSMs) are designed to protect cryptographic keys against compromise while providing encryption, signing and authentication services to secure Java and sensitive web applications.

SafeNet ProtectServer HSMs offer a unique level of flexibility for application developers to create their own firmware and execute it within the secure confines of the HSM. Known as functionality modules, the toolkits provide a comprehensive facility to develop and deploy custom firmware.

Available in Three Versions:

SafeNet ProtectServer HSM Internal-ExpressSafeNet ProtectServer PCIe HSM

PCI Express x4-compliant card available in different performance levels to meet varied system requirements

SafeNet ProtectServer HSM External 2SafeNet ProtectServer Network HSM

Heavy-duty steel appliance with tamper-protected security that safeguards against physical and logical attacks

SafeNet ProtectServer Network HSM PlusSafeNet ProtectServer Network HSM Plus

Security hardened network crypto server designed to protect cryptographic keys against compromise, while providing encryption, signing and authentication services to security sensitive applications, including native Blockchain algorithm support

Request More Info

Safenet ProtectServer at a Glance:

Customizable and Scalable

Available in a broad range of symmetric and asymmetric cryptographic performance levels, SafeNet ProtectServer HSMS can be integrated on either the same or distinct sub-nets and be shared between different networks in order to protect multiple business domains.

Extensive APIs

Users and developers can facilitate seamless integration of cryptography and HSMs into a large array of pre-integrated third-party solutions or custom applications. The Customization Software Development Kit (ProtectProcessing) enables the development, download, and storage of custom-specific functionality modules (FMs) inside the secure boundary of the HSM.

Software Emulator

UA full-featured software emulator rounds out the flexible development tools, enabling developers to test and debug custom firmware from the convenience of a desktop computer.

This emulator also serves as an invaluable tool to test applications without the need to install a SafeNet ProtectServer HSM. When ready, a developer simply installs the HSM and redirects communication to the hardware – no software changes are necessary.

FIPS 140-2 Level 3 Validated

SafeNet ProtectServer HSMs contain a FIPS 140-2 Level 3 validated cryptographic module to perform secure cryptographic processing in a high-assurance fashion. Built for industry standard security applications, the SafeNet ProtectServer HSM functions within a tamper-protected environment, providing secure storage for highly sensitive information, cryptographic keys, PINs, and data.

Native Blockchain Algorithm Support

SafeNet ProtectServer Network HSMs now support the BIP32 algorithm, which is widely used as the standard to encrypt digital wallets. Also, support for the SECP256k1 elliptic curve has been added, which is used for signing entries in Blockchain.

Swappable Dual AC Power Supplies

SafeNet ProtectServer Network HSMs employ dual swappable AC power supplies for high-availability data centers to help protect against power failures, and enable business continuity by providing the ability to connect the appliance to two separate power sources to safeguard against the possible malfunction of one of the sources. This provides the necessary flexibility to perform maintenance on or replace a failed power supply or power feed with the assurance that your device will continue to operate.

Request More Info

SafeNet ProtectServer PCIe HSM Specifications:

Feature

Details

OS Support

Windows, Linux,

Cryptography

  • Asymmetric: RSA (1024-4096), DSA (1024-3072), Diffie-Hellman, KCDSA, Elliptic Curve Cryptography (ECDSA, ECDH, ECIES) with named, user-defined and Brainpool curves

  • Symmetric: AES, RC2, RC4, RC5, CAST, DES, Triple DES, ARIA, SEED

  • Hash/Message Digest/HMAC: SHA-1, SHA-2 (224-512), SSL3-MD5-MAC, SSL3-SHA-1-MAC

  • Random Number Generation: FIPS 140-2 approved DRBG (SP 800-90 CTR mode)

Crytographic APIs

PKCS#11, Java (JCA/JCE), Microsoft CAPI and CNG, OpenSSL, JCProv

Dimensions

4.16” x 6.63”

Power Consumption

+5V@3A max; +12V@0.2A max

Temperature

Operating 0° to 40°C

Certifications

FIPS 140-2 Level 2 and Level 3

Compliance

  • UL, CSA, CE

  • FCC, KC Mark, VCCI, CE

  • RoHS, WEEE

SafeNet ProtectServer Network HSM Specifications:

Feature

Details

OS Support

Windows, Linux,

Cryptography

  • Asymmetric: RSA (1024-4096), DSA (1024-3072), Diffie-Hellman, KCDSA, Elliptic Curve Cryptography (ECDSA, ECDH, ECIES) with named, user-defined and Brainpool curves

  • Symmetric: AES, RC2, RC4, RC5, CAST, DES, Triple DES, ARIA, SEED

  • Hash/Message Digest/HMAC: SHA-1, SHA-2 (224-512), SSL3-MD5-MAC, SSL3-SHA-1-MAC

  • Random Number Generation: FIPS 140-2 approved DRBG (SP 800-90 CTR mode)

Crytographic APIs

PKCS#11, Java (JCA/JCE), Microsoft CAPI and CNG, OpenSSL, JCProv

Rack Mountable

Standard 19" EIA rack mount chassis (1U height)

Dimensions

437 mm(W) x 270 mm (D) x 44 mm (H)

Weight

3.1 kg

Power Consumption

220/110 Volts Switchable

Temperature

Operating 0° to 35°C

Relative Humidity

5% to 95% (38°C) non-condensing

Certifications

FIPS 140-2 Level 2 and Level 3

Compliance

  • UL, CSA, CE

  • FCC, KC Mark, VCCI, CE

  • RoHS, WEEE

SafeNet ProtectServer Network HSM Plus Specifications:

Feature

Details

OS Support

Windows, Linux, AIX, HP_UX, and Solaris

Cryptography

  • Asymmetric: RSA (1024-4096), DSA (1024-3072), Diffie-Hellman, KCDSA, Elliptic Curve Cryptography (ECDSA, ECDH, ECIES) with named, user-defined and Brainpool curves

  • Symmetric: AES, RC2, RC4, RC5, CAST, DES, Triple DES, ARIA, SEED, BIP32 and SECP256k1, Milenage, plus others

  • Hash/Message Digest/HMAC: SHA-1, SHA-2 (224-512), SSL3-MD5-MAC, SSL3-SHA-1-MAC

  • Random Number Generation: FIPS 140-2 approved DRBG (SP 800-90 CTR mode)

Crytographic APIs

PKCS#11, Java (JCA/JCE), Microsoft CAPI and CNG, OpenSSL, JCProv

Rack Mountable

Standard 19" EIA rack mount chassis (1U height)

Dimensions

482.6mm (W) x 533.4mm (D) x 43.815mm (H)

Weight

12.7 kg

Power Consumption

220/110 Volts Swappable

Temperature

Operating 0° to 35° C

Relative Humidity

5% to 95% (38°C) non-condensing

Certifications

FIPS 140-2 Level 2 and Level 3

Compliance

  • UL, CSA, CE

  • FCC, KC Mark, VCCI, CE

  • RoHS, WEEE

SafeNet ProtectServer HSM Internal-ExpressSafeNet ProtectServer PCIe HSM
SafeNet ProtectServer HSM External 2SafeNet ProtectServer Network HSM
 SafeNet ProtectServer Network HSM Plus SafeNet ProtectServer Network HSM Plus
Request More Info

ProtectServer for Server and Web Applications Security

Sample Use Cases:

Hardware Security Modules Icon
  • Encryption
  • User and data authentication
  • Message integrity
  • Secure key storage and key management for eCommerce
  • PKI
  • Document managment
  • Electronic bill presentation and payment
  • Database encryption
  • Financial EFT transactions
  • And more

Features:

  • Dual LAN
  • Up to 600 RSA signings/sec
  • WLD (Work Load Distribution)
  • Multi-threaded APIs
  • GUI HSM admin interface
  • CMD line interface
  • Infield upgrade
  • Remote HSM management
  • Swappable dual AC power supplies (Plus model only)
SafeNet ProtectServer HSM Internal-ExpressSafeNet ProtectServer PCIe HSM
SafeNet ProtectServer HSM External 2SafeNet ProtectServer Network HSM
SafeNet ProtectServer Network HSM PlusSafeNet ProtectServer Network HSM Plus
Request More Info
Back to Top

Contact Us

Thank you for your interest in our products. Please fill out and submit the form to receive more information about Gemalto or to be contacted by a Gemalto specialist.

Your Information

* Email Address:  
* First Name:  
* Last Name:  
* Company Name:  
* Phone:  
* Country:  
* State (US Only):  
* Province (Canada/Australia Only):  
Comments:  
 


By submitting this form I agree to receive information from Gemalto and its affiliates as described in our Privacy statement.