u.trust General Purpose HSM CSe-Series

u.trust General Purpose HSM
CSe-Series

The multi-tenant Hardware Security Module with tamper-active physical security and PQC-readiness for future-proof protection of critical applications.

  • Overview
  • Key Features
  • Description
  • Specifications
  • Add Ons
  • Models
  • Use Cases
  • Applications
  • Resources

Tamper-active HSM with Multi-Tenancy Design

Tamper-active HSM with Multi-Tenancy Design
Tamper-active HSM with Multi-Tenancy Design

The u.trust General Purpose HSM CSe-Series is the modern Hardware Security Module designed to meet the highest physical security requirements. It supports multi-tenancy and offers upgrade options for Post-Quantum Cryptography, ensuring future-proof protection for critical applications.

  • Key Features

  • Description

  • Specifications

  • Add Ons

The u.trust General Purpose HSM CSe-Series is a tamper-active Hardware Security Module designed with a modern, container-based architecture inspired by cloud technologies.

Its high physical security is based on an advanced sensor mechanism with a sensor protection film that reacts to all types of mechanical, chemical, and physical threats. In the event of an attack, the HSM actively and rapidly erases all sensitive keys and data from its internal memory.

The u.trust General Purpose HSM CSe-Series is upgradeable with support for Post Quantum Cryptography (PQC), blockchain, and 5G algorithms and offers flexibility for custom solutions via the Software Development Kit. This makes it an ideal choice for securing future-proof critical applications.

image
Cryptographic Interfaces (APIs)
  • Cryptographic Interfaces (APIs)

  • Included Cryptographic algorithms

  • Mobile network related functions and algorithms

  • Blockchain-specific algorithms

  • Post Quantum Cryptography algorithms

Cryptographic Interfaces (APIs)

  • PKCS #11
  • Java Cryptography Extension (JCE)
  • Microsoft Crypto API (CAPI), and Cryptography Next Generation (CNG)
  • Extensible Key Management (SQLEKM)
  • OpenSSL
  • Utimaco‘s native Cryptographic eXtended services Interface (CXI)
  • Utimaco’s REST Cryptography API (in progress)
background image
image

Included Cryptographic algorithms

  • RSA, DSA, ECDSA with NIST and Brainpool curves, EdDSA
  • DH, ECDH with NIST, Brainpool and Montgomery curves
  • Edwards curves Ed25519 and Ed448
  • AES, Triple-DES, DES
  • MAC, CMAC, HMAC
  • SHA-1, SHA-2, SHA-3, RIPEMD
  • Hash-based deterministic random number generator (DRG.4 acc. AIS 31)
  • True random number generator (PTG.2 acc. AIS 31)
  • Chinese Algorithms
background-image
image

Mobile network related functions and algorithms

  • Subscriber Identifier De-concealing Function, SIDF Profiles A and B
  • Authentication Vector Generation functions 5G-AKA, 5G-EAP-AKA, 4G-EAP-AKA, EPS-AKA, EAP-AKA, UMTS-AKA, IMS-AKA, GBA-AKA, GSM-AKA
  • Bulk Authentication Vector Generation for 3G and 4G AKA protocols
  • Re-Synchronization function XMAC-S
  • Milenage, TUAK, COMP
  • And more, see full list here
background-image
image

Blockchain-specific algorithms

  • BIP32/44
  • SLIP-010
  • MultiSig & Boneh–Lynn–Shacham (BLS) signing algorithm
  • And more, see full list here
background-image
image

Post Quantum Cryptography algorithms

  • ML-DSA
  • ML-KEM
  • XMSS and XMSS-MT
  • LMS and HSS
  • And more, see full list here
background-image
image
image

Models

The u.trust General Purpose HSM CSe-Series is crypto-agile and in progress for FIPS 140-3 Level 4 validation. All models support external and internal storage and feature a Key Partitioning System with multiple PKCS #11 partitions – regardless of container count. They can be upgraded for PQC, blockchain, or 5G use cases, or fully customized with the Software Development Kit. All models are available as LAN appliance or PCIe card.

Contact Sales
CSe100
CSe100
Up to 101 RSA 2K signatures / second

The HSM model for entry-level use cases with up to 101 RSA 2k signatures per second and 1 container.

The HSM model for entry-level use cases with up to 101 RSA 2k signatures per second and 1 container.

CSe2k
CSe2k
Up to 2,050 RSA 2k signatures / second

The HSM model for entry to mid-level use cases with up to 2,050 RSA 2k signatures per second and 4 containers.

The HSM model for entry to mid-level use cases with up to 2,050 RSA 2k signatures per second and 4 containers.

CSe5k
CSe5k
Up to 5,100 RSA 2k signatures / second

The HSM model for mid-level use cases with up to 5,100 RSA 2k signatures per second and 8, 16, or 31 containers.

The HSM model for mid-level use cases with up to 5,100 RSA 2k signatures per second and 8, 16, or 31 containers.


Use Cases

Certifications and Compliance

All u.trust General Purpose HSM CSe-Series models are certified to:

image

GP HSMs: Also Available as a Service

Learn More

Resources

Ready to Secure Your Digital Future?

Contact Sales

Related Products

How can we help you?

Talk to one of our specialists and find out how Utimaco can support you today.
You have selected two different types of downloads, so you need to submit different forms which you can select via the two tabs.

Your download request(s):

    By submitting below form you will receive links for your selected downloads.

    Your download request(s):

      For this type of documents, your e-mail address needs to be verified. You will receive the links for your selected downloads via e-mail after submitting below form.

      About Utimaco's Downloads

      Visit our Downloads section and select from resources such as brochures, data sheets, white papers and much more. You can view and save almost all of them directly (by clicking the download button).

      For some documents, your e-mail address needs to be verified. The button contains an e-mail icon.

      Download via e-mail

       

      A click on such a button opens an online form which we kindly ask you to fill and submit. You can collect several downloads of this type and receive the links via e-mail by simply submitting one form for all of them. Your current collection is empty.