Modules
HSM Dinamo has been entirely developed with a modular architecture, with the aim of providing the client with the set of functionality required for their needs and allowing them to expand this set by adding new modules or new versions of existing modules.
Some of the features described below may not be present in your version of HSM, or the module that implements them may not have been purchased. There is no direct relationship between API functions and installed modules, as different characteristics of the same function may be served by different modules. With the exception of the Core modules (Core Crypto and State Manager), all others are optional. If in doubt, contact your supplier for clarification.
The following table lists the available modules.
| Module | Description | Trade Name | License | API |
|---|---|---|---|---|
| Core Crypto | General cryptographic functions. Symmetric, asymmetric, and hash algorithms. Object management (cryptographic keys, certificates, certification chains, CRLs, and binary files). | KMS | - | - |
| State Manager | Monitoring of CPU, memory, active sessions, and hardware events. | State Manager | - | - |
| OATH | Two-factor authentication (password + token code) using the Open Authentication (OATH) standard. | OTP | - | API OATH |
| SPB | Encoding and decoding of standard SPB - Brazilian Payment System messages. | SPB | module-spb |
API SPB |
| XML Sign | XML document signing according to the W3C standard. | XML Signer | module-xml-dsig |
XML Sign API |
| EFT | Functions for Electronic Funds Transfer. | PayCard | module-eft |
API EFT |
| EFT Direct | Functions for Electronic Funds Transfer with direct access. | PayCard Direct | module-eft-direct |
- |
| Pix | Functions for the Central Bank of Brazil's Instant Payment System. | Pix | pix |
API Pix |
| SVault | Functions for data tokenization and format-preserving encryption. | Anonymization | module-svault |
SVault API |
| TSP | Functions for RFC 3161 standard timestamping. | TimeStamp | module-tsp |
- |
| Blockchain | Cryptographic functions compatible with public and private blockchains. | Blockchain | module-blockchain |
Blockchain API |
| Safe Keeping | Management operations for custodial secrets. | Safe Keeping | module-safekeeping |
API Safe Keeping |
In restricted operating modes, only the Core Crypto Engine and State Manager modules are available for loading, in accordance with the restrictions imposed by relevant standards, and only approved function algorithms may be used.