Hi,
We are building a new PKI, and will use HSMs for the root and issuing CAs.
We are seeing advice (on forums, and from Microsoft support and Thales) that the HSMs need high availability, and so will need at least two, and that we should use at least two for back-up as well.
Q1 - Do we need two HSMs for high availability? If the most frequent use is for issuing certificates, then will we lose the ability to issue and renew certificates for a long time if a solo HSM goes down?
Q2 - Do we have to use a Thales HSM for backup if we have a Thales HSM in live service supporting our CAs, or can we use a USB key for backup?
Options: I would like to know if we need
- 4 HSMs (2 in Azure, two in on-prem backup locations),
- 3 (2 in Azure, one on-prem backup)
- 2 (2 in Azure, USB backup),
- 2 (1 in Azure, 1 backup) or
- 1(in Azure, USB backup)
Any recommendations?
Thanks and regards,
Rob