Managing FIPS 140-2 Level 3 Key Generation Mode
Enabling FIPS 140-2 Level 3 Key Generation Mode
Enabling 'FIPS 140-2 Level 3 Key Generation Mode' causes key to be generated using the 'CKM_RSA_X9_31_KEY_PAIR_GEN' mechanism within the HSM. Do not enable this mode unless:
|
Step 1: Access the OCSPd Web Management Console;
Step 2: In the 'Configuration' left menu, select 'Hardware Security Modules':
Step 3: Hit the button of the Slot for which you are willing to enable FIPS 140-2 Level 3 Key Generation Mode:

Step 4: FIPS 140-2 Level 3 is now enabled. New keypair will be generated using the 'CKM_RSA_X9_31_KEY_PAIR_GEN' mechanism:


Disabling FIPS 140-2 Level 3 Key Generation Mode
Step 1: Access the OCSPd Web Management Console;
Step 2: In the 'Configuration' left menu, select 'Hardware Security Modules':
Step 3: Hit the button of the Slot for which you are willing to disable FIPS 140-2 Level 3 Key Generation Mode:

Step 4: FIPS 140-2 Level 3 is now disabled. New keypair will be generated using the 'CKM_RSA_PKCS_KEY_PAIR_GEN' mechanism:

