This feature is available for aws iot greengrass core v1 7 and later.
Hardware security module aws.
With cloudhsm you can manage your own encryption keys using fips 140 2 level 3 validated hsms.
This prevents keys from being exposed or duplicated in software.
The aws cloudhsm service helps you meet corporate contractual and regulatory compliance requirements for data security by using dedicated hardware security module hsm instances within the aws cloud.
A hardware security module hsm is a physical device that provides extra security for sensitive data.
For years hardware security modules have been used to securely manage encryption keys within an organization s own data centers these hardware appliances which are designed and certified to be tamper evident and intrusion resistant provide the highest level of physical security.
For example businesses may use an hsm to secure trade secrets that have significant value by ensuring.
This non proprietary cryptographic module security policy for the aws key management service kms hardware security module hsm from amazon web services aws provides an overview of the hsm and a high level description of how it meets the security requirements of fips 140 2.
Aws cloudhsm is a cloud based hardware security module hsm that enables you to easily generate and use your own encryption keys on the aws cloud.