Tel
: +44 207 340 6300
|
Fax
: +44 207 340 6301 |
Address
: 111 Buckingham Palace Road, London, SW1W 0SR, United Kingdom
Zazoo Limited, Co. No 9265606 | Directors: Dr S C P Belamant (French),
Mr H G Kotze, Mr P M Belamant | Company Secretary: Ms C W van Straaten
www.zazooltd.com
Important Notes
This document only applies to a TSM500i that has Boot Loader v1.5.0.0 or later. Earlier versions of
the boot loader do not have the same dual control requirements as mandated by PCI HSM v3.0.
Refer to document no. PR-D2-0854 “TSM500i and TsmWeb User Guide” for an HSM with BL v1.2.x.x
or BL v1.4.x.x.
Do NOT use the TSM500i without following all of the appropriate security procedures detailed in
Section 2.
The TSM500i HSM is shipped with no passwords for the Crypto Officer roles. The two crypto
appointed officers must authenticate the HSM on initial deployment and set their passwords in
accordance with section 2.8. This step is used to transfer control of the HSM from the Manufacturer
to the Customer.
The TSM500i should always be transported in its original packaging (in an anti-static bag in foam
padded box). Failure to do so could result in damage to the HSM. The original packaging should be
kept in a safe place in case it becomes necessary to transport the HSM to a different location.
Document Structure
This document comprises the following sections:
This section contains information that describes your TSM500i Hardware Security Module (HSM), its interfaces
and its status indicators. It is very important to read this section before proceeding with installation and
operation of your TSM500i HSM.
Section 2 : Installation and Security Procedures
This section outlines the correct handling and installation of a TSM500i. It also describes the setup and security
procedures that must be followed when commissioning an HSM.
Follow all the steps provided in Section 2 to get your new TSM500i operational.
Section 3 : HSM Password Management
This section provides details on how to use and manage your crypto officer passwords on a TSM500i that is
PCI HSM v3 certified.
Section 4 : Ongoing maintenance
This section provides details on how to use and manage your TSM500i after initial deployment. In includes
information on additional settings and services available through TSM-WEB and the NSS LCD Menu.