PrimeCardHSM is a Hardware Security Module used to perform signature operations in EJBCA or SignServer. Where policy requirements allow the use of smart cards for private key generation and storage, PrimeCardHSM is the most cost effective HSM solution available.
By storing the private signature keys - in an EAL5 certified smart card - you can rest assured that the private key can never be compromised. Combined with the appropriate physical security measures you get a top-class secure PKI.
Security features when using PrimeCardHSM:
The signature performance requirement for a Certification Authority, rarely exceeds one signature per second. Nor does PrimeCardHSM, which admittedly makes it unsuitable for high transaction environments - but perfectly appropriate for high security environments.
PrimeCardHSM is unproblematic and easy to use, and as such it is the most cost-effective HSM product on the market.