Hi All,
I'm having troubles with importing key in Thales 8000, everything works correctly in Thales Simulator but on the HSM is not working.
1) First, I create my Key (ZMK ) with 3 randoms clear components
Enter LMK id [0-9]: 0
Enter key length [1,2,3]: 2
Enter key type: 000
Enter key scheme: U
Enter component type [X,H,T,E,S]: X
Enter number of components [1-9]: 3
Enter component 1: ***************************************
Enter component 2: ***************************************
Enter component 3: ****************************************
Encrypted key: U1129 9294 E211 949D FDAA 4078 EB99 6D31
2) I need to import a key from a partner.
Partner key: 9204 BC57 C145 4A9E 3E04 F137 1C20 62DA
Online-AUTH>IK
Enter LMK id [0-9]: 0
Enter key type: 001
Enter key scheme: U
Enter ZMK: U1129 9294 E211 949D FDAA 4078 EB99 6D31
Enter key: U9204 BC57 C145 4A9E 3E04 F137 1C20 62DA
Invalid key scheme
I`m getting error "Invalid Key Scheme" , when I import it on the SIMULATOR, I don`t have problems
Thanks for any help!
Comments: ** Comment from web user: Manshtein **
I'm having troubles with importing key in Thales 8000, everything works correctly in Thales Simulator but on the HSM is not working.
1) First, I create my Key (ZMK ) with 3 randoms clear components
Enter LMK id [0-9]: 0
Enter key length [1,2,3]: 2
Enter key type: 000
Enter key scheme: U
Enter component type [X,H,T,E,S]: X
Enter number of components [1-9]: 3
Enter component 1: ***************************************
Enter component 2: ***************************************
Enter component 3: ****************************************
Encrypted key: U1129 9294 E211 949D FDAA 4078 EB99 6D31
2) I need to import a key from a partner.
Partner key: 9204 BC57 C145 4A9E 3E04 F137 1C20 62DA
Online-AUTH>IK
Enter LMK id [0-9]: 0
Enter key type: 001
Enter key scheme: U
Enter ZMK: U1129 9294 E211 949D FDAA 4078 EB99 6D31
Enter key: U9204 BC57 C145 4A9E 3E04 F137 1C20 62DA
Invalid key scheme
I`m getting error "Invalid Key Scheme" , when I import it on the SIMULATOR, I don`t have problems
Thanks for any help!
Comments: ** Comment from web user: Manshtein **
Hi!
Show please the output of "QS" console command. I assume, you have enabled parameter "Import and Export keys in trusted format only". You must disable it. If this parameter is enabled (by default it is) the HSM awaits keys encrypted under ZMK in Thales KeyBlock scheme.
Regards,
Juris