Configuring Dedicated Interfaces for HSM and ASM Communication on Cisco CSP
Background
A Hardware security module (HSM) is a physical computing device that safeguards and manages digital keys for strong authentication and provides cryptoprocessing. Avi Vantage supports configuration of dedicated interfaces on Avi Controller and Service Engines for hardware security module (HSM) and sideband (ASM) communication on Cisco Cloud Services Platform (CSP). HSM and ASM communication are supported for both an existing setup and a new Avi Vantage setup. This support has been added to various versions of Avi Vantage software which are as follows:
The support for HSM and ASM communication on Avi Vantage is as follows:
- Avi Vantage 16.3.2 and later releases support dedicated interfaces for HSM communication on new Avi Service Engines
- Avi Vantage 16.3.4 and later releases support dedicated interfaces for HSM communication on existing Avi Service Engines
- Avi Vantage 16.3.9 and later releases support dedicated interfaces for ASM (sideband) communication on new and existing Avi Service Engines
- Avi Vantage 16.4.1 and later releases support dedicated interfaces for HSM communication on new and existing Avi Controllers
For detailed information on installing Avi Vantage for Cisco CSP 2100 Platform, refer Installing Avi Vantage for Cisco CSP-2100.
Instructions
This article explains different types of supported configuration for HSM and ASM communication. The details are as follows:
- How to configure dedicated interfaces for HSM communication on a new Avi Service Engine.
- How to configure dedicated interfaces for HSM communication on an existing Avi Service Engine.
- How to configure dedicated interfaces for ASM (sideband) communication on a new Avi Service Engine.
- How to configure dedicated interfaces for ASM (sideband) communication on an existing Avi Service Engine.
- How to configure dedicated interfaces for both HSM and ASM (sideband) communication on a new Avi Service Engine.
- How to configure dedicated interfaces for both HSM and ASM (sideband) communication on an existing Avi Service Engine.
- How to configure dedicated interfaces for HSM communication on a new Avi Controller.
- How to configure dedicated interfaces for HSM communication on an existing Avi Controller.