CloudHSM
As a characteristic of the cloud environment, CloudHSM is a service that is on-demand for users. This means that users can launch their own CloudHSM instances, which are dedicated instances that are fully FIPS 140 compliant, and you have full control of the keys within the HSM instances.
One of the benefits of CloudHSM is that they are launched inside VPC, so we can have full control on which applications can connect with CloudHSM as well as have a millisecond latency for the operations.
However, there is one challenge; since these are dedicated hardware-based instances, there is an upfront cost of $5000 and then, $1.88 per hour. To top this, in order to have a high availability, we generally need to have two CloudHSM instances (in ...
Become an O’Reilly member and get unlimited access to this title plus top books and audiobooks from O’Reilly and nearly 200 top publishers, thousands of courses curated by job role, 150+ live events each month,
and much more.
Read now
Unlock full access