18.02.2017 Views

HACKABLE SECURITY MODULES

RECON-BRX-2017-reversinghsms2

RECON-BRX-2017-reversinghsms2

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

DNSSEC<br />

Root Zone operators store keys inside HSMs. From<br />

the DNSSEC Practice Statement for the Root Zone<br />

KSK Operator:<br />

For RZ KSK generation and RZ KSK private component<br />

operations and storage, ICANN uses hardware security<br />

modules that are validated at FIPS 140-2 level 4<br />

overall.

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!