How to mark a key as trusted with the CMU - AWS CloudHSM

How to mark a key as trusted with the CMU

The content in this section provides instructions on using the CMU to mark a key as trusted.

  1. Using the loginHSM command, log in as a crypto officer (CO).

  2. Use the setAttribute command with OBJ_ATTR_TRUSTED (value 134) set to true (1).

    setAttribute <Key Handle> 134 1