
Glossary
JCE
Java Cryptography Extension
K
Keyset
A keyset is the definition given to an allocated memory space on the HSM. It contains the key information for a spe-
cific user
KWRAP
Key Wrapping Key
M
MAC
Message authentication code. A mechanism that allows a recipient of a message to determine if a message has been
tampered with. Broadly there are two types of MAC algorithms, one is based on symmetric encryption algorithms and
the second is based on Message Digest algorithms. This second class of MAC algorithms are known as HMAC
algorithms. A DES based MAC is defined in FIPS PUB 113, see http://www.itl.nist.gov/div897/pubs/fip113.htm. For
information on HMAC algorithms see RFC-2104 at http://www.ietf.org/rfc/rfc2104.txt
Message Digest
A condensed representation of a data stream. A message digest will convert an arbitrary data stream into a fixed size
output. This output will always be the same for the same input stream however the input cannot be reconstructed
from the digest
MSCAPI
Microsoft Cryptographic API
MSDN
Microsoft Developer Network
P
Padding
A mechanism for extending the input data so that it is of the required size for a block cipher. The PKCS documents
contain details on the most common padding mechanisms of PKCS#1 and PKCS#5
PCI
Peripheral Component Interconnect
SafeNet ProtectToolkit 5.9 Installation and Configuration Guide
007-013682-007 Rev. A 08 January 2020 Copyright 2009-2020 Thales
34