SRK Menu Functions

NOTE   These functions are not applicable to Luna HSMs with Luna HSM Firmware 7.0.1 or newer.

The SRK menu provides the following functions:

# Function Description
(200) SRK Get State

Shows the current state of the Master Tamper Key.

(201) SRK Restore

Gets the external split (SRK) of the Secure Recovery Vector from a connected Luna PED, combines it with the internally-stored split, to regenerate the SRV, and re-validates the MTK

(202) SRK Resplit

Performs a new split of the Secure Recovery Vector and places the external portion of the split onto a purple PED key (called the Secure Recovery Key or SRK).

(203) SRK Zeroize

Zeroize the SRK. This action simulates a hardware tamper.

(204) SRK Enable/ Disable

Enable splitting of the Secure Recovery Vector into an internal (to the HSM) portion and an external portion (stored on a purple PED key). Or, disables that function by bringing the external split back into the HSM (requires Luna PED and the purple PED key with the correct SRV split on it - that purple key then becomes invalid).