<?xml version="1.0" encoding="UTF-8"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en-gb">
<link rel="self" type="application/atom+xml" href="https://forum.yubico.com/feed.php?f=22&amp;t=656" />

<title>Yubico Forum</title>
<subtitle>...visit our web-store at</subtitle>
<link href="https://forum.yubico.com/index.php" />
<updated>2011-04-06T15:23:27+01:00</updated>

<author><name><![CDATA[Yubico Forum]]></name></author>
<id>https://forum.yubico.com/feed.php?f=22&amp;t=656</id>
<entry>
<author><name><![CDATA[Anonymous]]></name></author>
<updated>2011-04-06T15:23:27+01:00</updated>
<published>2011-04-06T15:23:27+01:00</published>
<id>https://forum.yubico.com/viewtopic.php?t=656&amp;p=2636#p2636</id>
<link href="https://forum.yubico.com/viewtopic.php?t=656&amp;p=2636#p2636"/>
<title type="html"><![CDATA[Introduction]]></title>

<content type="html" xml:base="https://forum.yubico.com/viewtopic.php?t=656&amp;p=2636#p2636"><![CDATA[
<strong>Everyone - meet YubiHSM.</strong><br /><br />YubiHSM is the latest innovation from Yubico. It is Yubico's take<br />on what an HSM should be like. Easy to use and affordable.<br /><br /><span style="text-decoration: underline">Want to validate Yubico OTPs?</span><br /><br />  YubiHSM is a one-stop solution for validation of up to 1024<br />  YubiKeys with an internal database.<br /><br />  YubiHSM can decrypt indefinite numbers of YubiKey's OTP's (if you<br />  have access to the token unique AES key that is) with secure<br />  storage of the AES keys on the host computer.  The AES keys are<br />  only readable to the YubiHSM through the use of<br />  Authenticated Encryption with Associated Data (AEAD).<br /><br /><span style="text-decoration: underline">Want to securely validate OATH tokens?</span><br /><br />  The YubiHSM makes for an excellent security device in an OATH<br />  validation service by providing HMAC-SHA1 capabilities with the<br />  secret key secured inside AEADs.<br /><br /><span style="text-decoration: underline">Want to securely validate plain text passwords?</span><br /><br />  The YubiHSM can compare the decrypted contents of a previously<br />  generated AEAD and internally compare it with provided plain text.<br />  This makes it possible to generate an AEAD from a password (or<br />  better, from a PBKDF2 hash of a password) and then later on<br />  securely verify that the same password is presented by a user.<br /><br /><span style="text-decoration: underline">Want random number seed?</span><br /><br />  The YubiHSM includes a random number generator. Technical details<br />  in the YubiHSM manual.<br /><br /><span style="text-decoration: underline">Want generic cryptography primitives?</span><br /><br />  The YubiHSM provides AES ECB encrypt/decrypt/decrypt-compare,<br />  as well as HMAC-SHA1 with key stored in the YubiHSM (64 slots<br />  available for such keys).  Keys can have associated permissions<br />  through an extensive set of flags, so a poor-mans asymmetric<br />  cryptography can be achieved with two or more YubiHSM's sharing<br />  the same key but possibly with different associated permissions<br />  (YubiHSM 1 can only encrypt, YubiHSM 2 can only decrypt).<br /><br /><span style="text-decoration: underline">Want generic cryptography primitives with a twist?</span><br /><br />  The YubiHSM provides AES ECB encrypt/decrypt/decrypt-compare,<br />  as well as HMAC-SHA1 - all leveraged with powerful key<br />  indirection where the secret key is stored in an AEAD and only<br />  ever decrypted inside the YubiHSM.<br /><br />For product information, see <a href="http://www.yubico.com/yubihsm/" class="postlink">http://www.yubico.com/yubihsm/</a>.<br /><br />For technical documentation, see <a href="http://static.yubico.com/var/uploads/YubiHSM%20Manual%202011-04-02.pdf" class="postlink">http://static.yubico.com/var/uploads/YubiHSM%20Manual%202011-04-02.pdf</a>.<br /><br />On behalf of the Yubico Team,<br /><br />Fredrik Thulin - YubiHSM product manager<p>Statistics: Posted by Guest — Wed Apr 06, 2011 3:23 pm</p><hr />
]]></content>
</entry>
</feed>