B.2.1. KeySafe
To use KeySafe, install the nShield Core Tools (ctls on Linux) and the nShield Java
(javasp on Linux) components.
B.2.2. Microsoft CAPI CSP and Microsoft Cryptography API: Next
Generation (CNG)
If you require the Microsoft CAPI CSP, you must install the nShield CSPs (CAPI, CNG)
component.
If you want to use the module with PKCS #11 applications, including release 4.0 or later of
Netscape Enterprise Server, Sun Java Enterprise System (JES), or Netscape Certificate
Server 4, install the nShield PKCS11 library. For detailed PKCS #11 configuration options,
see:
•
The appropriate User Guide for your module and operating system
•
The appropriate third-party integration guide for your application
We have produced Integration Guides for many supported applications. The Integration
Guides describe how to install and configure an application so that it works with Entrust
hardware security modules and Security Worlds. For more information about the Entrust
range of Integration Guides:
•
Visit https://www.entrust.com/documentation
•
Contact Support: https://nshieldsupport.entrust.com
B.3. nCipherKM JCA/JCE cryptographic service provider
If you want to use the nCipherKM JCA/JCE cryptographic service provider, you must
install:
•
The nShield Java bundle
An additional JCE provider nCipherRSAPrivateEncrypt is supplied that is required for RSA
encryption with a private key. To install and use this provider, ensure that the
nCipherKM.jar is in your CLASSPATH or MODULEPATH. You will also need to add the following
classname to the top of the list of providers in your java.security file
com.ncipher.fixup.provider.nCipherRSAPrivateEncrypt
See the User Guide for your module and operating system for more about configuring
the nCipherKMJCA/JCE cryptographic service provider.
nShield® Connect Installation Guide 70 of 73