Skip to content

v1.1.0.02755

Choose a tag to compare

@Okarim2 Okarim2 released this 23 Jul 16:40
e6e4acb

Azure Managed HSM offers a TLS Offload library which is compliant with PKCS#11 version 2.40. We do not support all possible functions listed in the PKCS#11 specification. Our TLS Offload library supports a limited set of functions and mechanisms for SSL/TLS Offload with F5 (BigIP) and Nginx only!

Supported Operating Systems
TLS Offload Library supports Ubuntu 20.04, Ubuntu 22.04 and CBL Mariner 2 only!

  • Ubuntu 20.04 and 22.04 (mhsm-pkcs11_1.1.0.02432_amd64.deb)
  • CBL Mariner 2 (mhsm-pkcs11-1.1.0.02432-1.cm2.x86_64.rpm)

Supported Key Types & Mechanisms
You can find a list of all supported key types and mechanisms here:
https://github.com/microsoft/AzureManagedHsmTLSOffload#supported-key-types--mechanisms

Not Supported

  • AES Keys Not Supported.
  • Encryption / Decryption Not Supported.
  • Key Wrap Not Supported
  • Triple Des (3DES) Not Supported
  • Key Derivation Not Supported
  • TLS Offload Library has also removed support for C_GenerateKey, C_GetOperationState, C_SetOperationState, C_EncryptInit, C_Encrypt, C_DecryptInit, C_Decrypt

Release Notes: What Changed

  • Added Feature: Allow Curl logging to be used by non-debug packages (Using verbose logging is not recommended for production).