Les traductions sont fournies par des outils de traduction automatique. En cas de conflit entre le contenu d'une traduction et celui de la version originale en anglais, la version anglaise prévaudra.
tables d'attributs de bibliothèque PKCS #11 pour AWS CloudHSM SDK client 5
Les tables de bibliothèque PKCS #11 AWS CloudHSM contiennent une liste d'attributs qui diffèrent selon le type de clé. Il indique si un attribut donné est pris en charge pour un type de clé particulier lors de l'utilisation d'une fonction cryptographique spécifique avec AWS CloudHSM.
Légende :
-
✔ indique que CloudHSM prend en charge l'attribut pour le type de clé spécifique.
-
✖ indique que CloudHSM ne prend pas en charge l'attribut pour le type de clé spécifique.
-
R indique que la valeur de l'attribut est définie en lecture seule pour le type de clé spécifique.
-
S indique que l'attribut ne peut pas être lu par
GetAttributeValuecar sensible. -
Une cellule vide dans la colonne Default Value (Valeur par défaut) indique qu'il n'y a aucune valeur par défaut attribuée à l'attribut.
|
Attribut |
Type de clé |
Valeur par défaut |
|||||
|---|---|---|---|---|---|---|---|
|
|
EC privée |
EC publique |
RSA privée |
RSA publique |
ML-DSA privé |
ML-DSA public |
|
|
|
✔ |
✔ |
✔ |
✔ |
✔ |
✔ |
|
|
|
✔ |
✔ |
✔ |
✔ |
✔ |
✔ |
|
|
|
✔ |
✔ |
✔ |
✔ |
✔ |
✔ |
|
|
|
✔ |
✔ |
✔ |
✔ |
✔ |
✔ |
|
|
|
R |
R |
R |
R |
R |
R |
True |
|
|
✔ |
✔ |
✔ |
✔ |
✔ |
✔ |
False |
|
|
✔1 |
✔1 |
✔1 |
✔1 |
✔1 |
✔1 |
True |
|
|
✖ |
✔3 |
✖ |
✔ |
✖ |
✖ |
False |
|
|
✔3 |
✖ |
✔ |
✖ |
✖ |
✖ |
False |
|
|
✔ |
✔ |
✔ |
✔ |
✖ |
✖ |
False |
|
|
✔ |
✔ |
✔ |
✔ |
✔ |
✔ |
True |
|
|
✔ |
✔ |
✔ |
✔ |
✔ |
✔ |
True |
|
|
✔ |
✖ |
✔ |
✖ |
✔ |
✖ |
False |
|
|
✖ |
✖ |
✖ |
✖ |
✖ |
✖ |
|
|
|
✖ |
✔ |
✖ |
✔ |
✖ |
✔ |
False |
|
|
✖ |
✖ |
✖ |
✖ |
✖ |
✖ |
|
|
|
✖ |
✔3 |
✖ |
✔ |
✖ |
✖ |
False |
|
|
✖ |
✔ |
✖ |
✔ |
✖ |
✖ |
|
|
|
✖ |
✔ |
✖ |
✔ |
✖ |
✔ |
False |
|
|
✔ |
✖ |
✔ |
✖ |
✔ |
✖ |
False |
|
|
✔3 |
✖ |
✔ |
✖ |
✖ |
✖ |
False |
|
|
✔ |
✖ |
✔ |
✖ |
✖ |
✖ |
|
|
|
✔1 |
✖ |
✔1 |
✖ |
✔ |
✖ |
True |
|
|
R |
✖ |
R |
✖ |
✖ |
✖ |
|
|
|
✔ |
✖ |
✔ |
✖ |
✔ |
✖ |
True |
|
|
R |
✖ |
R |
✖ |
✖ |
✖ |
|
|
|
✖ |
✖ |
✖ |
✖ |
✖ |
✖ |
|
|
|
✖ |
✖ |
✖ |
✔2 |
✖ |
✖ |
|
|
|
✖ |
✖ |
✖ |
✖ |
✖ |
✖ |
|
|
|
✖ |
✖ |
✖ |
✖ |
✖ |
✖ |
|
|
|
✖ |
✖ |
✖ |
✖ |
✖ |
✖ |
|
|
|
✖ |
✖ |
✖ |
✖ |
✖ |
✖ |
|
|
|
✖ |
✖ |
✖ |
✖ |
✖ |
✖ |
|
|
|
✖ |
✖ |
✖ |
✖ |
✖ |
✖ |
|
|
|
✖ |
✖ |
✖ |
✔2 |
✖ |
✖ |
|
|
|
✖ |
✔2 |
✖ |
✖ |
✖ |
✖ |
|
|
|
✖ |
✖ |
✖ |
✖ |
✖ |
✖ |
|
|
|
✖ |
✖ |
✖ |
✖ |
✖ |
✖ |
|
|
|
✖ |
✖ |
✖ |
✖ |
✖ |
✖ |
|
|
|
R |
R |
R |
R |
✖ |
✖ |
|
|
|
✖ |
✖ |
✖ |
✖ |
✔ |
✔ |
|
|
Attribut |
Type de clé |
Valeur par défaut |
||
|---|---|---|---|---|
|
|
AES |
DES3 |
Secrète générique |
|
|
|
✔ |
✔ |
✔ |
|
|
|
✔ |
✔ |
✔ |
|
|
|
✔ |
✔ |
✔ |
|
|
|
✔ |
✔ |
✔ |
|
|
|
R |
R |
R |
True |
|
|
✔ |
✔ |
✔ |
False |
|
|
✔1 |
✔1 |
✔1 |
True |
|
|
✔ |
✔ |
✖ |
False |
|
|
✔ |
✔ |
✖ |
False |
|
|
✔ |
✔ |
✔ |
False |
|
|
✔ |
✔ |
✔ |
True |
|
|
✔ |
✔ |
✔ |
True |
|
|
✔ |
✔ |
✔ |
True |
|
|
✖ |
✖ |
✖ |
|
|
|
✔ |
✔ |
✔ |
True |
|
|
✖ |
✖ |
✖ |
|
|
|
✔ |
✔ |
✖ |
False |
|
|
✔ |
✔ |
✖ |
|
|
|
✔ |
✔ |
✖ |
False |
|
|
✔ |
✔ |
✔ |
False |
|
|
✔ |
✔ |
✖ |
False |
|
|
✔ |
✔ |
✖ |
|
|
|
✔ |
✔ |
✔ |
True |
|
|
✖ |
✖ |
✖ |
|
|
|
✔ |
✔ |
✔ |
True |
|
|
R |
R |
R |
|
|
|
✖ |
✖ |
✖ |
|
|
|
✖ |
✖ |
✖ |
|
|
|
✖ |
✖ |
✖ |
|
|
|
✖ |
✖ |
✖ |
|
|
|
✖ |
✖ |
✖ |
|
|
|
✖ |
✖ |
✖ |
|
|
|
✖ |
✖ |
✖ |
|
|
|
✖ |
✖ |
✖ |
|
|
|
✖ |
✖ |
✖ |
|
|
|
✖ |
✖ |
✖ |
|
|
|
✖ |
✖ |
✖ |
|
|
|
✖ |
✖ |
✖ |
|
|
|
✔2 |
✖ |
✔2 |
|
|
|
R |
R |
R |
|
ML-DSA et CreateObject
ML-DSA l'importation de clés via n'C_CreateObjectest pas prise en charge. Pour utiliser des ML-DSA clés, générez-les directement sur le HSM à l'aide C_GenerateKeyPair de.
|
Attribut |
Type de clé |
Valeur par défaut |
||||||
|---|---|---|---|---|---|---|---|---|
|
|
EC privée |
EC publique |
RSA privée |
RSA publique |
AES |
DES3 |
Secrète générique |
|
|
|
✔2 |
✔2 |
✔2 |
✔2 |
✔2 |
✔2 |
✔2 |
|
|
|
✔2 |
✔2 |
✔2 |
✔2 |
✔2 |
✔2 |
✔2 |
|
|
|
✔ |
✔ |
✔ |
✔ |
✔ |
✔ |
✔ |
|
|
|
✔ |
✔ |
✔ |
✔ |
✔ |
✔ |
✔ |
|
|
|
R |
R |
R |
R |
R |
R |
R |
False |
|
|
✔ |
✔ |
✔ |
✔ |
✔ |
✔ |
✔ |
False |
|
|
✔1 |
✔1 |
✔1 |
✔1 |
✔1 |
✔1 |
✔1 |
True |
|
|
✖ |
✖ |
✖ |
✔ |
✔ |
✔ |
✖ |
False |
|
|
✖ |
✖ |
✔ |
✖ |
✔ |
✔ |
✖ |
False |
|
|
✔ |
✔ |
✔ |
✔ |
✔ |
✔ |
✔ |
False |
|
|
✔ |
✔ |
✔ |
✔ |
✔ |
✔ |
✔ |
True |
|
|
✔ |
✔ |
✔ |
✔ |
✔ |
✔ |
✔ |
True |
|
|
✔ |
✖ |
✔ |
✖ |
✔ |
✔ |
✔ |
False |
|
|
✖ |
✖ |
✖ |
✖ |
✖ |
✖ |
✖ |
False |
|
|
✖ |
✔ |
✖ |
✔ |
✔ |
✔ |
✔ |
False |
|
|
✖ |
✖ |
✖ |
✖ |
✖ |
✖ |
✖ |
|
|
|
✖ |
✖ |
✖ |
✔ |
✔ |
✔ |
✖ |
False |
|
|
✖ |
✔ |
✖ |
✔ |
✔ |
✔ |
✖ |
|
|
|
✖ |
✔ |
✖ |
✔ |
✔ |
✔ |
✖ |
False |
|
|
✔ |
✖ |
✔ |
✖ |
✔ |
✔ |
✔ |
False |
|
|
✖ |
✖ |
✔ |
✖ |
✔ |
✔ |
✖ |
False |
|
|
✔ |
✖ |
✔ |
✖ |
✔ |
✔ |
✖ |
|
|
|
✔ |
✖ |
✔ |
✖ |
✔ |
✔ |
✔ |
True |
|
|
R |
✖ |
R |
✖ |
R |
R |
R |
|
|
|
✔ |
✖ |
✔ |
✖ |
✔ |
✔ |
✔ |
True |
|
|
R |
✖ |
R |
✖ |
R |
R |
R |
|
|
|
✖ |
✖ |
✔2 |
✔2 |
✖ |
✖ |
✖ |
|
|
|
✖ |
✖ |
✖ |
✖ |
✖ |
✖ |
✖ |
|
|
|
✖ |
✖ |
✔ |
✖ |
✖ |
✖ |
✖ |
|
|
|
✖ |
✖ |
✔ |
✖ |
✖ |
✖ |
✖ |
|
|
|
✖ |
✖ |
✔ |
✖ |
✖ |
✖ |
✖ |
|
|
|
✖ |
✖ |
✔ |
✖ |
✖ |
✖ |
✖ |
|
|
|
✖ |
✖ |
✔ |
✖ |
✖ |
✖ |
✖ |
|
|
|
✖ |
✖ |
✔2 |
✖ |
✖ |
✖ |
✖ |
|
|
|
✖ |
✖ |
✔2 |
✔2 |
✖ |
✖ |
✖ |
|
|
|
✔2 |
✔2 |
✖ |
✖ |
✖ |
✖ |
✖ |
|
|
|
✖ |
✔2 |
✖ |
✖ |
✖ |
✖ |
✖ |
|
|
|
✔2 |
✖ |
✖ |
✖ |
✔2 |
✔2 |
✔2 |
|
|
|
✖ |
✖ |
✖ |
✖ |
✖ |
✖ |
✖ |
|
|
|
R |
R |
R |
R |
R |
R |
R |
|
|
Attribut |
Type de clé |
Valeur par défaut |
||||
|---|---|---|---|---|---|---|
|
|
EC privée |
RSA privée |
AES |
DES3 |
Secrète générique |
|
|
|
✔2 |
✔2 |
✔2 |
✔2 |
✔2 |
|
|
|
✔2 |
✔2 |
✔2 |
✔2 |
✔2 |
|
|
|
✔ |
✔ |
✔ |
✔ |
✔ |
|
|
|
✔ |
✔ |
✔ |
✔ |
✔ |
|
|
|
R |
R |
R |
R |
R |
False |
|
|
✔ |
✔ |
✔ |
✔ |
✔ |
False |
|
|
✔1 |
✔1 |
✔1 |
✔1 |
✔1 |
True |
|
|
✖ |
✖ |
✔ |
✔ |
✖ |
False |
|
|
✖ |
✔ |
✔ |
✔ |
✖ |
False |
|
|
✔ |
✔ |
✔ |
✔ |
✔ |
False |
|
|
✔ |
✔ |
✔ |
✔ |
✔ |
True |
|
|
✔ |
✔ |
✔ |
✔ |
✔ |
True |
|
|
✔ |
✔ |
✔ |
✔ |
✔ |
False |
|
|
✖ |
✖ |
✖ |
✖ |
✖ |
False |
|
|
✖ |
✖ |
✔ |
✔ |
✔ |
False |
|
|
✖ |
✖ |
✖ |
✖ |
✖ |
|
|
|
✖ |
✖ |
✔ |
✔ |
✖ |
False |
|
|
✖ |
✔ |
✔ |
✔ |
✖ |
False |
|
|
✔ |
✔ |
✔ |
✔ |
✔ |
True |
|
|
✔ |
✔ |
✔ |
✔ |
✔ |
True |
|
|
R |
R |
R |
R |
R |
|
|
|
R |
R |
R |
R |
R |
|
|
|
✖ |
✖ |
✖ |
✖ |
✖ |
|
|
|
✖ |
✖ |
✖ |
✖ |
✖ |
|
|
|
✖ |
✖ |
✖ |
✖ |
✖ |
|
|
|
✖ |
✖ |
✖ |
✖ |
✖ |
|
|
|
✖ |
✖ |
✖ |
✖ |
✖ |
|
|
|
✖ |
✖ |
✖ |
✖ |
✖ |
|
|
|
✖ |
✖ |
✖ |
✖ |
✖ |
|
|
|
✖ |
✖ |
✖ |
✖ |
✖ |
|
|
|
✖ |
✖ |
✖ |
✖ |
✖ |
|
|
|
✖ |
✖ |
✖ |
✖ |
✖ |
|
|
|
✖ |
✖ |
✖ |
✖ |
✖ |
|
|
|
✖ |
✖ |
✖ |
✖ |
✖ |
|
|
|
✖ |
✖ |
✖ |
✖ |
✖ |
|
|
|
R |
R |
R |
R |
R |
|
|
Attribut |
Type de clé |
Valeur par défaut |
||
|---|---|---|---|---|
|
|
AES |
DES3 |
Secrète générique |
|
|
|
✔2 |
✔2 |
✔2 |
|
|
|
✔2 |
✔2 |
✔2 |
|
|
|
✔ |
✔ |
✔ |
|
|
|
✔ |
✔ |
✔ |
|
|
|
R |
R |
R |
True |
|
|
✔ |
✔ |
✔ |
False |
|
|
✔1 |
✔1 |
✔1 |
True |
|
|
✔ |
✔ |
✖ |
False |
|
|
✔ |
✔ |
✖ |
False |
|
|
✔ |
✔ |
✔ |
False |
|
|
✔ |
✔ |
✔ |
True |
|
|
✔ |
✔ |
✔ |
True |
|
|
✔ |
✔ |
✔ |
False |
|
|
✖ |
✖ |
✖ |
|
|
|
✔ |
✔ |
✔ |
False |
|
|
✖ |
✖ |
✖ |
|
|
|
✔ |
✔ |
✖ |
False |
|
|
✔ |
✔ |
✖ |
False |
|
|
R |
R |
R |
True |
|
|
✔ |
✔ |
✔ |
True |
|
|
R |
R |
R |
|
|
|
R |
R |
R |
|
|
|
✖ |
✖ |
✖ |
|
|
|
✖ |
✖ |
✖ |
|
|
|
✖ |
✖ |
✖ |
|
|
|
✖ |
✖ |
✖ |
|
|
|
✖ |
✖ |
✖ |
|
|
|
✖ |
✖ |
✖ |
|
|
|
✖ |
✖ |
✖ |
|
|
|
✖ |
✖ |
✖ |
|
|
|
✖ |
✖ |
✖ |
|
|
|
✖ |
✖ |
✖ |
|
|
|
✖ |
✖ |
✖ |
|
|
|
✖ |
✖ |
✖ |
|
|
|
✔2 |
✖ |
✔2 |
|
|
|
R |
R |
R |
|
|
Attribut |
Type de clé |
||||||||
|---|---|---|---|---|---|---|---|---|---|
|
|
EC privée |
EC publique |
RSA privée |
RSA publique |
ML-DSA privé |
ML-DSA public |
AES |
DES3 |
Secrète générique |
|
|
✔ |
✔ |
✔ |
✔ |
✔ |
✔ |
✔ |
✔ |
✔ |
|
|
✔ |
✔ |
✔ |
✔ |
✔ |
✔ |
✔ |
✔ |
✔ |
|
|
✔ |
✔ |
✔ |
✔ |
✔ |
✔ |
✔ |
✔ |
✔ |
|
|
✔ |
✔ |
✔ |
✔ |
✔ |
✔ |
✔ |
✔ |
✔ |
|
|
✔ |
✔ |
✔ |
✔ |
R |
R |
✔ |
✔ |
✔ |
|
|
✔ |
✔ |
✔ |
✔ |
✔ |
✔ |
✔ |
✔ |
✔ |
|
|
✔1 |
✔1 |
✔1 |
✔1 |
✔ |
✔ |
✔1 |
✔1 |
✔1 |
|
|
✖ |
✖ |
✖ |
✔ |
✖ |
✖ |
✔ |
✔ |
✖ |
|
|
✖ |
✖ |
✔ |
✖ |
✖ |
✖ |
✔ |
✔ |
✖ |
|
|
✔ |
✔ |
✔ |
✔ |
✖ |
✖ |
✔ |
✔ |
✔ |
|
|
✔ |
✔ |
✔ |
✔ |
✔ |
✔ |
✔ |
✔ |
✔ |
|
|
✔ |
✔ |
✔ |
✔ |
✔ |
✔ |
✔ |
✔ |
✔ |
|
|
✔ |
✖ |
✔ |
✖ |
✔ |
✖ |
✔ |
✔ |
✔ |
|
|
✖ |
✖ |
✔ |
✖ |
✖ |
✖ |
✖ |
✖ |
✖ |
|
|
✖ |
✔ |
✖ |
✔ |
✖ |
✔ |
✔ |
✔ |
✔ |
|
|
✖ |
✖ |
✖ |
✔ |
✖ |
✖ |
✖ |
✖ |
✖ |
|
|
✖ |
✖ |
✖ |
✔ |
✖ |
✖ |
✔ |
✔ |
✖ |
|
|
✖ |
✔ |
✖ |
✔ |
✖ |
✖ |
✔ |
✔ |
✖ |
|
|
✖ |
✔ |
✖ |
✔ |
✖ |
✔ |
✔ |
✔ |
✔ |
|
|
✔ |
✖ |
✔ |
✖ |
✔ |
✖ |
✔ |
✔ |
✔ |
|
|
✖ |
✖ |
✔ |
✖ |
✖ |
✖ |
✔ |
✔ |
✖ |
|
|
✔ |
✖ |
✔ |
✖ |
✖ |
✖ |
✔ |
✔ |
✖ |
|
|
✔ |
✖ |
✔ |
✖ |
✔ |
✖ |
✔ |
✔ |
✔ |
|
|
✔ |
✖ |
✔ |
✖ |
✔ |
✖ |
✔ |
✔ |
✔ |
|
|
✔ |
✖ |
✔ |
✖ |
R |
R |
✔ |
✔ |
✔ |
|
|
R |
R |
R |
R |
R |
R |
R |
R |
R |
|
|
✖ |
✖ |
✔ |
✔ |
✖ |
✖ |
✖ |
✖ |
✖ |
|
|
✖ |
✖ |
✖ |
✔ |
✖ |
✖ |
✖ |
✖ |
✖ |
|
|
✖ |
✖ |
S |
✖ |
✖ |
✖ |
✖ |
✖ |
✖ |
|
|
✖ |
✖ |
S |
✖ |
✖ |
✖ |
✖ |
✖ |
✖ |
|
|
✖ |
✖ |
S |
✖ |
✖ |
✖ |
✖ |
✖ |
✖ |
|
|
✖ |
✖ |
S |
✖ |
✖ |
✖ |
✖ |
✖ |
✖ |
|
|
✖ |
✖ |
S |
✖ |
✖ |
✖ |
✖ |
✖ |
✖ |
|
|
✖ |
✖ |
S |
✖ |
✖ |
✖ |
✖ |
✖ |
✖ |
|
|
✖ |
✖ |
✔ |
✔ |
✖ |
✖ |
✖ |
✖ |
✖ |
|
|
✔ |
✔ |
✖ |
✖ |
✖ |
✖ |
✖ |
✖ |
✖ |
|
|
✖ |
✔ |
✖ |
✖ |
✖ |
✖ |
✖ |
✖ |
✖ |
|
|
S |
✖ |
✖ |
✖ |
✖ |
✖ |
✔ |
✔ |
✔ |
|
|
✖ |
✖ |
✖ |
✖ |
✖ |
✖ |
✔ |
✖ |
✔ |
|
|
✔ |
✔ |
✔ |
✔ |
✖ |
✖ |
✔ |
✔ |
✖ |
|
|
✖ |
✖ |
✖ |
✖ |
R |
R |
✖ |
✖ |
✖ |
Annotations d'attributs
-
[1] Cet attribut est partiellement pris en charge par le micrologiciel et doit être explicitement défini sur la valeur par défaut.
-
[2] Attribut obligatoire.
-
[3] Pour les clés Ed25519 (clés EC avec courbe ed25519) : CKA_ENCRYPT, CKA_DECRYPT, CKA_WRAP, CKA_UNWRAP et CKA_DERIVE ne fonctionnent pas. Les clés Ed25519 sont uniquement destinées à la signature et ne prennent pas en charge les opérations de chiffrement, d'encapsulation ou de dérivation de clés.