
Payment HSM: nShield HSMi
Leverage a certified payment hardware security module (HSM) to deliver scalable cryptographic services for payment applications, including card production, payment credential issuance, and EMV chip card personalization.

集成式发卡的必备功能
The nShield Hardware Security Module (HSMi) is FIPS 140-2 Level 3-certified hardware that delivers cryptographic services for Entrust’s secure issuance software. This tamper-resistant HSMi performs vital functions for financial and identification issuance, including EMV data preparation, key generation, and data protection.
nShield HSMi Benefits
无缝集成
Our Security World architecture integrates our HSMi with issuance software, ensuring seamless failover and maximum availability.
高交易速率
对高交易速率的支持使其成为即时发卡和集中发卡的不二之选。
远程管理
远程管理套件支持远程智能卡出示,方便您升级固件以及进行其他操作。
技术规格
支持的加密算法
非对称算法: RSA、Diffie-Hellman、ECMQV、DSA、El-Gamal、KCDSA、ECDSA(包括 NIST、Brainpool 和 secp256k1 曲线)、ECDH、Edwards(Ed25519,Ed25519ph)
对称算法: AES、Arcfour、ARIA、Camellia、CAST、DES、MD5 HMAC、RIPEMD160 HMAC、SEED、SHA-1 HMAC、SHA-224 HMAC、SHA-256 HMAC、SHA384 HMAC、SHA-512 HMAC、Tiger HMAC、Triple DES
哈希/消息摘要: MD5、SHA-1、SHA-2(224、256、384、512 位)、HAS-160、RIPEMD160
所支持发行机构的 EMV 证书
- 美国运通 (American Express)
- Discover
- Elo
- Interac
- 日本国际信用卡 (JCB)
- Jetco
- 万事达卡 (MasterCard)
- NSICCS Indonesia
- Visa
- VCCS Vietnam
安全合规性
- FIPS 140-2 2 级和 3 级认证
主机连接
- 双千兆以太网端口(两个网段)
安全和环境标准合规性
- UL、CE、FCC、C-TICK、加拿大 ICES RoHS2、WEEE
高可用性
- 可进行现场维修的风扇托架组件
- 双热插拔电源
- 使用 Adaptive Issuance 密钥管理器的 HSM 负载平衡/故障转移
远程管理
- nShield 远程管理,包括 nShield 可信验证
- 设备和远程管理智能卡
物理特征
- 标准 1U 19 英寸。机架安装尺寸: 43.4 x 430 x 705mm (1.7 x 16.9 x 27.8in)
- 重量: 11.5kg (25.4lb)
- 输入电压: 100-240V 交流自动切换 50-60Hz
- 功耗: 在 110V 交流电压,60Hz 下最高为 2.0A | 在 220V 交流电压,50Hz 下最高为 1.0A
- 散热: 327.6 至 362.0 btu/hr.(满载)
常见问题解答
What Is a Payment HSM?
A payment HSM is a specialized, high-assurance cryptographic device used to secure and manage sensitive payment-related data and processes. These devices are integral to the payment industry, where they protect data associated with financial transactions, such as PCI PIN codes, cardholder data, and cryptographic keys used in payment processing.
How Do I Use a Payment HSM?
Common use cases include:
- Card issuance: Encrypting data during the personalization of EMV chip cards
- Transaction security: Securing point-of-sale (POS) transactions through PIN encryption and verification
- Tokenization: Replacing sensitive data like credit card numbers with non-sensitive equivalents for storage and processing
- Payment security: Securing online payment gateway processes, including 3D Secure implementations
- ATM operations: Managing cryptographic processes for secure ATM withdrawals and PIN management
- Key management: Creating, storing, and distributing cryptographic keys used for securing payments across financial services
What’s the Difference Between a General Purpose HSM and a Payment HSM?
While both general-purpose HSMs and payment HSMs are designed to secure cryptographic keys and perform cryptographic operations, their use cases and compliance requirements differ significantly.
General-purpose HSMs are used in various industries beyond payments, such as healthcare, government, and cloud environments. They perform encryption, decryption, signing, and authentication for general data security applications.
Payment HSMs are tailored for the financial services industry. They protect financial transactions and manage sensitive data using payment cryptography, helping organizations comply with relevant standards like PCI DSS and PCI PIN. As specialized devices, they’re specifically designed to support card production, tokenization, and transaction security.
How Does a Payment HSM Work?
Consider a payment HSM as the secure foundation for your overall payment system, protecting sensitive data, enforcing cryptographic protocols, and ensuring compliance with industry regulations. With the right device, you can leverage several essential capabilities, such as:
- Secure key storage: Payment HSMs store cryptographic keys in tamper-resistant hardware, ensuring that sensitive assets are never exposed in plaintext.
- Transaction processing: They encrypt and decrypt data during credit and debit card payment transactions, such as customer PINs or account details.
- Compliance enforcement: HSMs enforce payment cryptography and other security measures required by standards like PCI DSS.
- Integration: They work seamlessly with banking systems, payment applications, and ATMs to secure payment operations from top to bottom.
Why Are Payment HSMs Important?
The Payment Card Industry Data Security Standard (PCI DSS) is a globally recognized framework for protecting cardholder data and ensuring secure payment processing. It applies to organizations that store, process, or transmit credit card information. In turn, covered entities must meet several requirements:
- Secure network infrastructure: Implement firewalls and encrypt sensitive data
- Access control: Limit access to cardholder data to authorized personnel
- 加密:Use robust encryption methods for data transmission and storage
- Regular testing: Continuously monitor and test payment systems to identify vulnerabilities
- Policy implementation: Maintain a security policy that addresses information security
Payment HSMs play a crucial role in meeting PCI DSS requirements by:
- Securing cryptographic keys
- Encrypting payment data during transmission and storage
- Providing secure authentication methods for payment processes
相关产品

资源中心
Fill out the form below, and an Entrust nShield HSMi specialist will be in touch soon.