ื“ืœื’ ืœืชื•ื›ืŸ ืจืืฉื™
Certyneo

ื”ืฆืคื ืช HSM: ืชืคืงื•ื“ ื•ืžืคืชื—ื•ืช ืคืจื˜ื™ื™ื (2026)

ื”ืฆืคื ืช HSM ื”ื™ื ื”ื‘ืกื™ืก ื”ื‘ืœืชื™ ื ืจืื” ืฉืœ ื›ืœ ื—ืชื™ืžื” ืืœืงื˜ืจื•ื ื™ืช ืžื•ืกืžื›ืช. ื”ื‘ื ืช ืชืคืงื•ื“ื” ืžืฉืžืขื” ืฉืœื™ื˜ื” ื‘ื‘ื™ื˜ื—ื•ืŸ ืงืจื™ืคื˜ื•ื’ืจืคื™ ืฉืœ ื”ื—ื‘ืจื” ืฉืœืš.

ืฆื•ื•ืช Certyneo10 ื“ืงื•ืช ืงืจื™ืื”

ืฆื•ื•ืช Certyneo

ื›ื•ืชื‘ โ€” Certyneo ยท ืื•ื“ื•ืช Certyneo

ื”ื‘ื™ื˜ื—ื•ืŸ ืฉืœ ืขืกืงืื•ืช ื“ื™ื’ื™ื˜ืœื™ื•ืช ืžื‘ื•ืกืก ืขืœ ืจื›ื™ื‘ ืฉืœืขืชื™ื ืงืจื•ื‘ื•ืช ืื™ื ื• ื™ื“ื•ืข ืœืžื ื”ืœื™ IT: Hardware Security Module (HSM). ื”ื”ืชืงืŸ ื”ื—ื•ืžืจื” ื™ื™ืขื•ื“ื™ ื–ื” ื™ื•ืฆืจ, ืžืื—ืกืŸ ื•ื”ื•ื ืžื’ืŸ ืขืœ ื”ืžืคืชื—ื•ืช ืงืจื™ืคื˜ื•ื’ืจืคื™ื™ื ืžื‘ืœื™ ืœื”ื—ืฉื™ืคื ืœืกื‘ื™ื‘ืช ื”ืชื•ื›ื ื” ื”ื—ื™ืฆื•ื ื™ืช. ื‘ืขื•ื“ ืฉื”ืชืงื™ืคื•ืช ืกื™ื™ื‘ืจ ื”ื™ืขื“ื•ืฃ ืชืฉืชื™ื•ืช PKI ื”ื’ื“ื™ืœื• ื‘-43% ื‘ื™ืŸ 2023 ืœ-2025 ืขืœ ืคื™ ื“ื•ื— ENISA Threat Landscape 2025, ื”ื‘ื ืช ืชืคืงื•ื“ ื”ืฆืคื ืช HSM ื”ื•ืคื›ืช ืœื ื•ืฉื ืืกื˜ืจื˜ื’ื™ ืขื‘ื•ืจ ื›ืœ ืืจื’ื•ืŸ ื”ืžื ื”ืœ ื—ืชื™ืžื•ืช ืืœืงื˜ืจื•ื ื™ื•ืช ืžื•ืกืžื›ื•ืช, ืขืกืงืื•ืช ื‘ื ืงืื™ื•ืช ืื• ื”ื—ืœืคืช ื ืชื•ื ื™ื ืจื’ื™ืฉื™ื. ืžืืžืจ ื–ื” ืคื•ืขื ื— ืืช ืืจื›ื™ื˜ืงื˜ื•ืจืช HSM, ืžื—ื–ื•ืจ ื”ื—ื™ื™ื ืฉืœ ื”ืžืคืชื—ื•ืช ื”ืคืจื˜ื™ื™ื, ื”ืคืจื•ื˜ื•ืงื•ืœื™ื ื”ืงืจื™ืคื˜ื•ื’ืจืคื™ื™ื ื”ืžื™ื•ืฉืžื™ื, ื•ืงืจื™ื˜ืจื™ื•ื ื™ื ืœื‘ื—ื™ืจื” ืขื‘ื•ืจ ืืจื’ื•ื ื™ื B2B.

ืืจื›ื™ื˜ืงื˜ื•ืจื” ื—ื•ืžืจื” ืฉืœ HSM: ืงื•ืคื” ืงืจื™ืคื˜ื•ื’ืจืคื™ืช

HSM ื”ื•ื, ื‘ื”ื’ื“ืจืชื•, ื”ืชืงืŸ ืคื™ื–ื™ ื‘ืœืชื™ ื ื™ืชืŸ ืœื”ืชืงืคื” (tamper-resistant). ื‘ื ื™ื’ื•ื“ ืœืคืชืจื•ืŸ ืชื•ื›ื ื”, ื”ื•ื ืžืฉืœื‘ ืžื ื’ื ื•ื ื™ ื’ื™ืœื•ื™ ื”ืชื—ื“ืจื•ืช ื”ืžืคืขื™ืœื™ื ืžื—ื™ืงื” ืื•ื˜ื•ืžื˜ื™ืช ืฉืœ ืžืคืชื—ื•ืช ื‘ืจื’ืข ืฉื ืžืฆืืช ื ื™ืกื™ื•ืŸ ื”ืคืจื” ืคื™ื–ื™ืช (ืžื ื’ื ื•ืŸ ื”ื ืงืจื zeroization).

ืจื›ื™ื‘ื™ื ืคื ื™ืžื™ื™ื ื•ื‘ื™ื“ื•ื“ ืžืื•ื‘ื˜ื—

ื”ืืจื›ื™ื˜ืงื˜ื•ืจื” ื”ืคื ื™ืžื™ืช ืฉืœ HSM ืžื‘ื•ืกืกืช ืขืœ ืžืกืคืจ ืฉื›ื‘ื•ืช ืžืฉืœื™ืžื•ืช:

  • ืžืขื‘ื“ ืงืจื™ืคื˜ื•ื’ืจืคื™ ื™ื™ืขื•ื“ื™: ืžื‘ืฆืข ืคืขื•ืœื•ืช ื”ืฆืคื ื” (RSA, ECDSA, AES, SHA-256) ื‘ืื•ืคืŸ ืžื‘ื•ื“ื“ ืžื”ืžืขืจื›ืช ื”ืžืืจื—ืช.
  • ืžื—ื•ืœืœ ืžืกืคืจื™ื ืืงืจืื™ื™ื ื—ื•ืžืจื” (TRNG): ืžื™ื™ืฆืจ ืื ื˜ืจื•ืคื™ื” ืืžื™ืชื™ืช, ื”ื›ืจื—ื™ืช ืœื—ื•ื–ืง ื”ืžืคืชื—ื•ืช ื”ืžื™ื•ืฆืจื™ื โ€” TRNG ื—ื•ืžืจื” ืขื•ืœื™ื ืขืœ PRNG ืชื•ื›ื ื” ื‘ื”ืจื‘ื” ื‘ืžื•ื ื—ื™ ื—ื•ืกืจ ืฆืคื™ื•ืช.
  • ื–ื™ื›ืจื•ืŸ ืžืื•ื‘ื˜ื— ืœื ื ื“ื™ืฃ: ืžืื—ืกืŸ ืžืคืชื—ื•ืช ืจืืฉื™ื™ื ื‘ืขืจื•ืฅ ืžื•ื’ืŸ ืคื™ื–ื™ืช, ื‘ืœืชื™ ื ื’ื™ืฉ ืžื‘ื—ื•ืฅ ืืคื™ืœื• ื‘ืžืงืจื” ืฉืœ ืคื™ืจื•ืง.
  • ืžืขื˜ืคืช ื‘ืœืชื™ ื ื™ืชืŸ ืœื”ืคืจื” (tamper-evident enclosure): ื›ืœ ื ื™ืกื™ื•ืŸ ืคืชื™ื—ื” ืžืคืขื™ืœ ืื–ืขืงื” ื•ืžื—ื™ืงื” ืฉืœ ืกื•ื“ื•ืช.

HSM ืžื•ืกืžื›ื™ื ืขืœ ืคื™ ื”ื ื•ืจืžื•ืช FIPS 140-2/140-3 (ืจืžื•ืช 2 ืขื“ 4) ืฉืคื•ืจืกืžื• ืขืœ ื™ื“ื™ NIST ื”ืืžืจื™ืงืื™, ื•-Common Criteria EAL 4+ ืขื‘ื•ืจ ื”ืฉื™ืžื•ืฉ ื”ืื™ืจื•ืคืื™ ื”ื“ื•ืจืฉ ื‘ื™ื•ืชืจ. HSM ื‘ืจืžืช FIPS 140-3 ืจืžื” 3, ืœืžืฉืœ, ืžื—ื™ื™ื‘ ืื™ืžื•ืช ืจื‘-ื’ื•ืจืžื™ ืœื›ืœ ื’ื™ืฉื” ืœืžืคืชื—ื•ืช ื•ืขืžื™ื“ ืœื”ืชืงืคื•ืช ืคื™ื–ื™ื•ืช ืคืขื™ืœื•ืช.

ืžืฆื‘ื™ ืคืจื™ืกื”: on-premise, PCIe ื•ื—ื–ืŸ HSM ื‘ืขื ืŸ

ืฉืœื•ืฉ ืฆื•ืจื•ืช ืคื™ื–ื™ื•ืช ืงื™ื™ืžื•ืช ื‘ืฉื•ืง B2B:

  1. HSM ื‘ืจืฉืช (appliance): ืชื™ื‘ื” rack ืžื—ื•ื‘ืจืช ืœืจืฉืช ื”ืžืงื•ืžื™ืช, ืžืฉื•ืชืคืช ืœืžืกืคืจ ืฉืจืชื™ ืืคืœื™ืงืฆื™ื”. ื‘ื“ืจืš ื›ืœืœ ืžืฉืžืฉ ืกืคืงื™ ืฉื™ืจื•ืชื™ ืืžื•ืŸ (PSCo/TSP) ื”ืžื•ืกืžื›ื™ื eIDAS.
  2. ื›ืจื˜ื™ืก HSM PCIe: ืžื•ื“ื•ืœ ืžืฉื•ืœื‘ ื™ืฉื™ืจื•ืช ื‘ืชื•ืš ืฉืจืช, ื”ืžืฆื™ืข ื–ืžืŸ ืชื’ื•ื‘ื” ื˜ื•ื‘ ื™ื•ืชืจ ืขื‘ื•ืจ ื™ื™ืฉื•ืžื™ื ื‘ืขืœื™ ื ืคื— ื—ืชื™ืžื•ืช ื’ื‘ื•ื”.
  3. Cloud HSM: ืฉื™ืจื•ืช ืžื ื•ื”ืœ ื”ืžื•ืฆืข ืขืœ ื™ื“ื™ ืกืคืงื™ ืขื ืŸ (Azure Dedicated HSM, AWS CloudHSM, Google Cloud HSM). ื”ื—ื•ืžืจื” ื ืฉืืจืช ืžื•ืงื“ืฉืช ืคื™ื–ื™ืช ืœืœืงื•ื— ืืš ืžืชืืจื—ืช ื‘ื ืชื•ื ื™ื ืฉืœ ื”ืกืคืง โ€” ืจืœื•ื•ื ื˜ื™ ืขื‘ื•ืจ ื—ื‘ืจื•ืช ื”ืžืขื•ื ื™ื™ื ื•ืช ืœื”ื™ืžื ืข ืžื ื™ื”ื•ืœ ื—ื•ืžืจื” ืชื•ืš ืฉืžื™ืจื” ืขืœ ืฉืœื™ื˜ื” ื‘ืœืขื“ื™ืช ืขืœ ื”ืžืคืชื—ื•ืช ืฉืœื”ื.

ื”ื‘ื—ื™ืจื” ื‘ื™ืŸ ืžืฆื‘ื™ื ืืœื” ืงื•ื‘ืขืช ื™ืฉื™ืจื•ืช ืืช ืจืžืช ื”ืฆื™ื•ืช ื ื™ืชื ืช ืœื”ืฉื’ื” ืขื ืชืงื ื•ืŸ eIDAS 2.0, ื‘ืขื™ืงืจ ืขื‘ื•ืจ ื—ืชื™ืžื•ืช ืžื•ืกืžื›ื•ืช (QES) ื”ืžื“ืจืฉื•ืช ื”ืชืงืŸ ื™ืฆื™ืจืช ื—ืชื™ืžื” ืžื•ืกืžืš (QSCD) โ€” HSM ืžื•ืกืžืš ืžื”ื•ื•ื” ืืช ื”-QSCD ื‘ืขื“ื™ืคื•ืช.

ืžื—ื–ื•ืจ ื—ื™ื™ื ืฉืœ ืžืคืชื—ื•ืช ืคืจื˜ื™ื™ื ื‘-HSM

ื”ืขืจืš ื”ืืžื™ืชื™ ืฉืœ HSM ืชืœื•ื™ ื‘ื™ื›ื•ืœืชื• ืœื ื”ืœ ืืช ื›ืœ ืžื—ื–ื•ืจ ื”ื—ื™ื™ื ืฉืœ ื”ืžืคืชื—ื•ืช ื”ืงืจื™ืคื˜ื•ื’ืจืคื™ื™ื ืžื‘ืœื™ ืฉืžืคืชื— ืคืจื˜ื™ ืื™ ืคืขื "ื™ื•ืฆื" ื‘ื˜ืงืกื˜ ืจื’ื™ืœ ืžื”ื™ืงืฃ ื”ื—ื•ืžืจื” ืฉืœื•.

ื™ืฆื™ืจื” ื•ื”ื–ืจืงืช ืžืคืชื—ื•ืช

ื™ืฆื™ืจืช ืžืคืชื—ื•ืช ื‘ืชื•ืš ื”-HSM ื”ื™ื ื‘ืกื™ืกื™ืช. ื›ืœ ืžืคืชื— ืฉื ื•ืฆืจ ื‘ื—ื•ืฅ ื•ืื– ื™ื•ื‘ื ืžืฆื™ื’ ืกื™ื›ื•ืŸ ืฉื™ื•ืจื™ ื”ืงืฉื•ืจ ืœืฉื“ื•ืจื™ื• ื‘ืกื‘ื™ื‘ื” ื‘ืœืชื™ ืžื ื•ื”ืœืช. ืชืจื’ื•ืœื™ื ื˜ื•ื‘ื™ื ืื ื›ืŸ ืžื˜ื™ืœื™ื:

  • ื™ืฆื™ืจืช ื–ื•ื’ ื”ืžืคืชื—ื•ืช (ืฆื™ื‘ื•ืจื™ื™ื/ืคืจื˜ื™ื™ื) ื™ืฉื™ืจื•ืช ื‘-HSM ื“ืจืš ื”-TRNG ื”ืžืฉื•ืœื‘.
  • ื”ืžืคืชื— ื”ืคืจื˜ื™ ืœืขื•ืœื ืœื ื™ื•ืฆื ืžื”ื™ืงืฃ ื”ื—ื•ืžืจื” ืฉืœ ื”-HSM โ€” ืืคื™ืœื• ืžื ื”ืœื™ ืžืขืจื›ืช ืื™ืŸ ืœื”ื ื’ื™ืฉื” ื‘ื˜ืงืกื˜ ืจื’ื™ืœ.
  • ื”ืžืคืชื— ื”ืฆื™ื‘ื•ืจื™, ืœื‘ื“ื•, ืžื™ื•ืฆื ื›ื“ื™ ืฉื™ื”ื™ื” ืžืฉื•ืœื‘ ื‘ืชืขื•ื“ืช X.509 ืฉื”ื•ืฆืื” ืขืœ ื™ื“ื™ ืจืฉื•ืช ืื™ืฉื•ืจ (CA).

ืคืจื•ื˜ื•ืงื•ืœื™ื ืžืกื•ื™ืžื™ื ื›ืžื• PKCS#11 (ืกื˜ื ื“ืจื˜ OASIS) ืื• JCE (Java Cryptography Extension) ืžืืคืฉืจื™ื ืœื™ื™ืฉื•ืžื™ ืขืกืง ืœื”ื–ืžื™ืŸ ืคืขื•ืœื•ืช ืงืจื™ืคื˜ื•ื’ืจืคื™ื•ืช ืฉืœ HSM ื“ืจืš ืงืจื™ืื•ืช API ืชืงื ื™ื•ืช, ืžื‘ืœื™ ืœืชืžืจืŸ ื™ืฉื™ืจื•ืช ืžืคืชื—ื•ืช.

ืคืขื•ืœื•ืช ืงืจื™ืคื˜ื•ื’ืจืคื™ื•ืช: ื—ืชื™ืžื”, ืคืขื ื•ื—, ื’ื–ื™ืจื”

ื›ืืฉืจ ืžืฉืชืžืฉ ื—ื•ืชื ืขืœ ืžืกืžืš, ื”ื ื” ื”ื–ืจื™ืžื” ื”ื˜ื›ื ื™ืช ื”ืžื“ื•ื™ืงืช:

  1. ื”ื™ื™ืฉื•ื ืžื—ืฉื‘ ืืช ื”ื˜ื‘ื™ืขื” ื”ื“ื™ื’ื™ื˜ืœื™ืช (hash) ืฉืœ ื”ืžืกืžืš ื”ืžืฉืžืฉ ืคื•ื ืงืฆื™ื™ืช ื”ืืฉื™ื ื’ (SHA-256 ืื• SHA-384).
  2. ื”-hash ืžืฉื•ื“ืจ ืœ-HSM ื“ืจืš ื”ืžืžืฉืง PKCS#11 ืื• CNG (Cryptography Next Generation ืชื—ืช Windows).
  3. HSM ื—ื•ืชื ืืช ื”-hash ืคื ื™ืžื™ืช ืขื ื”ืžืคืชื— ื”ืคืจื˜ื™ RSA-2048 ืื• ECDSA P-256, ื‘ื”ืชืื ืœื”ื’ื“ืจื”.
  4. ื”ื—ืชื™ืžื” ื”ื“ื™ื’ื™ื˜ืœื™ืช ืžื•ื—ื–ืจืช ืœื™ื™ืฉื•ื โ€” ืœืขื•ืœื ืœื ื”ืžืคืชื— ืขืฆืžื•.

ืขื™ืงืจื•ืŸ ื–ื” ืฉืœ ืคืขื•ืœื” ื‘ืงื•ืคื” ืฉื—ื•ืจื” ืžื‘ื˜ื™ื— ืฉืืคื™ืœื• ืคืฉืจื•ืŸ ื›ื•ืœืœ ืฉืœ ืฉืจืช ื”ืืคืœื™ืงืฆื™ื” ืœื ืžืืคืฉืจ ืœื”ืชื•ืงืฃ ืœื—ืœืฅ ืืช ื”ืžืคืชื— ื”ืคืจื˜ื™.

ื’ื™ื‘ื•ื™, ืกื™ื‘ื•ื‘ ื•ื”ืฉืžื“ืช ืžืคืชื—ื•ืช

ืžื—ื–ื•ืจ ื”ื—ื™ื™ื ื”ืžืœื ืฉืœ ืžืคืชื— ื›ื•ืœืœ:

  • ื’ื™ื‘ื•ื™ ืžื•ืฆืคืŸ: ืžืคืชื—ื•ืช ืขืฉื•ื™ื™ื ืœื”ื™ื•ืช ืžื™ื•ืฆืื™ื ื‘ืฆื•ืจื” ืžื•ืฆืคื ืช (Wrapped Key) ืชื•ืš ืฉื™ืžื•ืฉ ื‘ืžืคืชื— ื”ืฆืคื ื” (KEK), ืžืื•ื—ืกืŸ ื‘ืขืฆืžื• ื‘-HSM ืจืืฉื™ ืื—ืจ โ€” ืขื™ืงืจื•ืŸ Key Ceremony ืžืชื•ืขื“ ืขืœ ื™ื“ื™ CA.
  • ืกื™ื‘ื•ื‘ ืชืงื•ืคืชื™: ืžื•ืžืœืฅ ื›ืœ 1 ืขื“ 3 ืฉื ื™ื ื‘ื”ืชืื ืœืื•ืจืš ื—ื™ื™ ื”ืชืขื•ื“ื•ืช ื•ืจืžืช ื”ืกื™ื›ื•ืŸ. ืชืงื ื•ืŸ eIDAS 2.0 ื•ืžื“ื™ื ื™ื•ืช ETSI TS 119 431 ืžืกื“ื™ืจื•ืช ืžืฉื›ื™ ื–ืžืŸ ืืœื” ืขื‘ื•ืจ TSP.
  • ื‘ื™ื˜ื•ืœ ื•ื”ืฉืžื“ื”: ื‘ืกื•ืฃ ื”ื—ื™ื™ื, ื”ืžืคืชื— ืžื—ื•ืง ืขืœ ื™ื“ื™ zeroization โ€” ืคืขื•ืœื” ื‘ืœืชื™ ื”ืคื™ื›ื” ื”ืžื‘ื˜ื™ื—ื” ืฉืœื ื ื™ืชืŸ ืœืฉื—ื–ื•ืจ.

ืขื‘ื•ืจ ืืจื’ื•ื ื™ื ื”ืจื•ืฆื™ื ืœื”ื‘ื™ืŸ ื›ื™ืฆื“ ื—ืชื™ืžื” ืืœืงื˜ืจื•ื ื™ืช ืžื•ืกืžื›ืช ืชืœื•ื™ื” ื‘ืžื ื’ื ื•ื ื™ื ืืœื”, ื”-HSM ืžื”ื•ื•ื” ืืช ื”ืœื‘ ื”ื˜ื›ื ื™ ืฉืœ ื”-QSCD ื”ืžื˜ื™ืœ eIDAS.

ืคืจื•ื˜ื•ืงื•ืœื™ื ืงืจื™ืคื˜ื•ื’ืจืคื™ื™ื ื•ืกื˜ื ื“ืจื˜ื™ื ื”ื ืชืžื›ื™ื ืขืœ ื™ื“ื™ HSM

HSM ืžื•ื“ืจื ื™ ืœื—ื‘ืจื•ืช ืชื•ืžืš ื‘ืงื˜ืœื•ื’ ืจื—ื‘ ืฉืœ ืงื“ื•ื ื•ืกื•ื’ื™ื ืคืจื•ื˜ื•ืงื•ืœื™ื ืงืจื™ืคื˜ื•ื’ืจืคื™ื™ื.

ืืœื’ื•ืจื™ืชืžื™ื ืืกื™ืžื˜ืจื™ื™ื ื•ืกื™ืžื˜ืจื™ื™ื

| ืžืฉืคื—ื” | ืืœื’ื•ืจื™ืชืžื™ื ื ืคื•ืฆื™ื | ืฉื™ืžื•ืฉ ื˜ื™ืคื•ืกื™ | |---|---|---| | ืืกื™ืžื˜ืจื™ | RSA-2048/4096, ECDSA P-256/P-384, Ed25519 | ื—ืชื™ืžื” ื“ื™ื’ื™ื˜ืœื™ืช, ื”ื—ืœืคืช ืžืคืชื—ื•ืช | | ืกื™ืžื˜ืจื™ | AES-128/256-GCM, 3DES (legacy) | ื”ืฆืคื ืช ื ืชื•ื ื™ื, ืขื˜ื™ืคืช ืžืคืชื—ื•ืช | | ื”ืืฉื™ื ื’ | SHA-256, SHA-384, SHA-512 | ืฉืœืžื•ืช, ื˜ื‘ื™ืขื” ืฉืœ ืžืกืžืš | | Post-quantum (PQC) | CRYSTALS-Kyber, CRYSTALS-Dilithium (NIST FIPS 203/204) | ืžืขื‘ืจ ืงืจื™ืคื˜ื•ื’ืจืคื™ 2026+ |

ืฉื™ืœื•ื‘ ืืœื’ื•ืจื™ืชืžื™ื post-quantum (PQC) ื”ื•ื ื ื•ืฉื ื—ื: NIST ืกื™ื™ืžื” ื‘-2024 ื‘ื ื•ืจืžื•ืช PQC ื”ืจืืฉื•ื ื•ืช (FIPS 203, 204, 205), ื•ื›ืžื” ื™ืฆืจื ื™ HSM (Thales, nCipher/Entrust, Utimaco) ืžืฆื™ืขื™ื ื›ื‘ืจ ื‘-2026 ืงื•ืฉื—ื” ื”ืชื•ืžื›ืช ื‘ืืœื’ื•ืจื™ืชืžื™ื ืืœื” ื‘ืžืฆื‘ ื”ื™ื‘ืจื™ื“ื™ RSA+Kyber.

ืžืžืฉืงื™ื ื•ืคืจื•ื˜ื•ืงื•ืœื™ ืื™ื ื˜ื’ืจืฆื™ื”

ื”ืืงื•ืกื™ืกื˜ื ืฉืœ ืื™ื ื˜ื’ืจืฆื™ื™ืช HSM ืžื‘ื•ืกืก ืขืœ ืžืกืคืจ ืกื˜ื ื“ืจื˜ื™ื ืคืชื•ื—ื™ื:

  • PKCS#11: ืžืžืฉืง C API ื”ื ืคื•ืฅ ื‘ื™ื•ืชืจ, ื”ืชื•ืžืš OpenSSL, EJBCA, ื•ืจื•ื‘ ืฉืจืชื™ ื™ื™ืฉื•ืžื™ Java.
  • Microsoft CNG/KSP: ืื™ื ื˜ื’ืจืฆื™ื” ืžืงื•ืจื™ืช ื‘ืชื•ืš ืืงื•ืกื™ืกื˜ื Windows Server / Active Directory Certificate Services.
  • KMIP (Key Management Interoperability Protocol): ืกื˜ื ื“ืจื˜ OASIS ืœื ื™ื”ื•ืœ ืจื™ื›ื•ื–ื™ ืฉืœ ืžืคืชื—ื•ืช ื‘ื™ืŸ HSM ื”ื˜ืจื•ื’ื ื™ื™ื โ€” ืฉื™ืžื•ืฉื™ ื‘ืžื™ื•ื—ื“ ื‘ืืจื›ื™ื˜ืงื˜ื•ืจื•ืช ืจื‘-ืขื ืŸ.
  • REST API proprietary: HSM ื‘ืขื ืŸ ืžื•ื“ืจื ื™ื™ื ื—ื•ืฉืคื™ื API REST ืœืื™ื ื˜ื’ืจืฆื™ื” DevOps ื—ืœืงื” (Infrastructure as Code, Terraform providers).

ื”ืฉืœื™ื˜ื” ื‘ืžืžืฉืงื™ื ืืœื” ื”ื™ื ื—ื™ื•ื ื™ืช ืœืฉื™ืœื•ื‘ HSM ื‘ืคืœื˜ืคื•ืจืžืช ื—ืชื™ืžื” ืืœืงื˜ืจื•ื ื™ืช ืœื—ื‘ืจื•ืช ื‘ืขืœื•ืช ื ืคื— ื’ื‘ื•ื”.

ืงืจื™ื˜ืจื™ื•ื ื™ื ืœื‘ื—ื™ืจืช HSM ืขื‘ื•ืจ ื—ื‘ืจื•ืช B2B ื‘-2026

ืžื•ืœ ื”ืฆืขื” ืฉื•ืงื™ืช ืžื’ื•ื•ื ืช, ื›ืžื” ืงืจื™ื˜ืจื™ื•ื ื™ื ืื•ื‘ื™ื™ืงื˜ื™ื‘ื™ื™ื ืฆืจื™ื›ื™ื ืœื”ื ื—ื•ืช ืืช ื”ื›ืจืขืช ืงื ื™ื™ื” ืื• ื”ืจื™ืฉื•ื ืœ-HSM-as-a-Service.

ืจืžืช ื”ืกืžื›ื” ื•ืฆื™ื•ืช ืจื’ื•ืœื˜ื•ืจื™

ืœืฉื™ืžื•ืฉ ื‘ืชื•ืš ืžืกื’ืจืช ื—ืชื™ืžื” ืืœืงื˜ืจื•ื ื™ืช ืžื•ืกืžื›ืช (eIDAS) ืื• ืชื”ืœื™ื›ื™ื ื‘ื ืงืื™ื™ื ื”ื›ืคื•ืคื™ื ืœ-PSD2/DSP2:

  • FIPS 140-3 ืจืžื” 3 ืžื™ื ื™ืžื•ื ืขื‘ื•ืจ ื ืชื•ื ื™ื ืจื’ื™ืฉื™ื ืื™ืฉื™ื™ื ืื• ืคื™ื ื ืกื™ื™ื.
  • ื”ืกืžื›ืช Common Criteria EAL 4+ ืขื ืคืจื•ืคื™ืœ ื”ื’ื ื” EN 419221-5 ืขื‘ื•ืจ QSCD eIDAS โ€” ื–ื” ื”ืกื˜ื ื“ืจื˜ ื”ื™ื™ื—ื•ืกื™ ืฉืœ ืจืฉื™ืžื•ืช ื”ืืžื•ืŸ ื”ืื™ืจื•ืคืื™ื•ืช (Trusted Lists ETSI TS 119 612).
  • ื”ืกืžื›ืช ANSSI ืขื‘ื•ืจ ื™ืฉื•ื™ื•ืช ืฆืจืคืชื™ื•ืช ื”ื›ืคื•ืคื•ืช ืœืชืงื ื•ืช ืกืงื˜ื•ืจื™ืืœื™ื•ืช ืกืคืฆื™ืคื™ื•ืช (ื”ื’ื ื”, ืžืคืขื™ืœื™ ื—ืฉื™ื‘ื•ืช ืขืจื›ื™ืช).

ื‘ื™ืฆื•ืขื™ื, ื–ืžื™ื ื•ืช ื’ื‘ื•ื”ื” ื•-TCO

HSM ื‘ืจืฉืช ื‘ื˜ื•ื•ื— ื’ื‘ื•ื” (Thales Luna Network HSM 7, Entrust nShield Connect XC) ืžืฆื™ื’ื™ื ื‘ื™ืฆื•ืขื™ื ืฉืœ ืืœืคื™ ืคืขื•ืœื•ืช RSA-2048 ืœืฉื ื™ื™ื”, ืขื ืชืฆื•ืจื•ืช active-active ืœื”ืฉื’ืช ื–ืžื™ื ื•ืช ื’ื‘ื•ื”ื”. ื”-TCO ืขืœ 5 ืฉื ื™ื ืฉืœ HSM on-premise ื›ื•ืœืœ: ื—ื•ืžืจื”, ืชื—ื–ื•ืงื”, ื›ื•ื— ืื“ื ืžื™ื•ืžืŸ, ื•ื ื™ื”ื•ืœ Key Ceremonies โ€” ืืœืžื ื˜ื™ื ืฉืžืขืชื™ื ื”ื•ืคื›ื™ื ืืช Cloud HSM ืœืžื•ืฉืš ื™ื•ืชืจ ืขื‘ื•ืจ SME ื•-ETI.

ืขื‘ื•ืจ ืืจื’ื•ื ื™ื ื”ืžืขืจื›ื™ื ืืช ROI ื”ื’ืœื•ื‘ืœื™ ืฉืœ ืชืฉืชื™ืชื ืฉืœ ื—ืชื™ืžื”, ืฉื™ืžื•ืฉ ื‘-ืžื—ืฉื‘ ROI ื™ื™ืขื•ื“ื™ ืœื—ืชื™ืžื” ืืœืงื˜ืจื•ื ื™ืช ืžืืคืฉืจ ืœืžื“ื™ื“ื” ืžื“ื•ื™ืงืช ืืช ื”ืจื•ื•ื—ื™ื ื”ืชืคืขื•ืœื™ื™ื ื”ืงืฉื•ืจื™ื ืœื”ืฉืžืจื” ืขืœ ื™ื“ื™ HSM.

ืฉืœื˜ื•ืŸ ืžืคืชื—ื•ืช ื•ื‘ืงืจืช ื’ื™ืฉื”

HSM ืฉื•ื•ื” ืจืง ื‘ื›ืžื•ืช ื”ื ื™ื”ื•ืœ ืฉืœื•:

  • ืขื™ืงืจื•ืŸ M-of-N: ื›ืœ ืคืขื•ืœื” ืจื’ื™ืฉื” (ื™ืฆื™ืจืช ืžืคืชื— ืจืืฉื™, ืืชื—ื•ืœ) ืžื“ื•ืจืฉืช ื ื•ื›ื—ื•ืช ื‘ื•-ื–ืžื ื™ืช ืฉืœ M ืžื ื”ืœื™ื ืžื‘ื™ืŸ N ืžื•ืขื“ื™ื โ€” ื‘ื“ืจืš ื›ืœืœ 3 ืžืชื•ืš 5.
  • ื™ื•ืžื ื™ ื‘ื™ืงื•ืจืช ื‘ืœืชื™ ื ื™ืชื ื™ื ืœืฉื™ื ื•ื™: ื›ืœ ืคืขื•ืœื” ืงืจื™ืคื˜ื•ื’ืจืคื™ืช ืžืชื•ืขื“ืช ื‘ืชื™ืงื™ื•ืช ื‘ื—ื•ืชื ื–ืžืŸ ื•ื—ืชื•ื, ื“ืจื™ืฉื” ืฉืœ RGPD (art. 5.2, accountability) ื•ืคืจื“ื™ื’ืžื•ืช ETSI.
  • ื”ืคืจื“ืช ืชืคืงื™ื“ื™ื: ืžื ื”ืœ HSM, ืžืคืขื™ืœ ืžืคืชื—ื•ืช, ื•ื‘ื•ื“ืง ื”ื ืชืคืงื™ื“ื™ื ืžื•ื‘ื—ื ื™ื โ€” ื‘ื”ืชืื ืœื“ืจื™ืฉื•ืช ื”ืคื•ืœื™ื˜ื™ืงื” ืฉืœ ื”ืกืžื›ื” ETSI EN 319 401.

ื”ื‘ื ืช ื“ืจื™ืฉื•ืช ืชืงื ื•ืŸ eIDAS 2.0 ื”ื™ื ื—ื™ื•ื ื™ืช ื›ื“ื™ ืœื›ื™ื™ืœ ืืช ื ื™ื”ื•ืœ ื”ืžืคืชื—ื•ืช ื‘ื”ืงืฉืจ ืฉืœ ื—ืชื™ืžื” ืžื•ืกืžื›ืช ืื™ืจื•ืคืื™ืช.

ืžืกื’ืจืช ืžืฉืคื˜ื™ืช ื”ื—ืœื” ืขืœ ื”ืฆืคื ืช HSM ื‘ื—ื‘ืจื”

ื”ืคืจื™ืกื” ืฉืœ HSM ืœื ื™ื”ื•ืœ ืžืคืชื—ื•ืช ืงืจื™ืคื˜ื•ื’ืจืคื™ื™ื ืžืชืจื—ืฉืช ื‘ืชื•ืš ืงื•ืจืคื•ืก ืจื’ื•ืœื˜ื•ืจื™ ืฆืคื•ืฃ, ื‘ืฆื•ืžืช ืฉืœ ื“ื™ื ื™ ื—ืชื™ืžื” ืืœืงื˜ืจื•ื ื™ืช, ื”ื’ื ืช ื ืชื•ื ื™ื ืื™ืฉื™ื™ื ื•ืกื™ื™ื‘ืจ-ื‘ื™ื˜ื—ื•ืŸ.

ืชืงื ื•ืŸ eIDAS ืžืก' 910/2014 ื•ืชื™ืงื•ืŸ eIDAS 2.0

ืชืงื ื•ืŸ eIDAS ืงื•ื‘ืข ืืช ื”ืชื ืื™ื ื”ื˜ื›ื ื™ื™ื ื•ื”ื—ื•ืงื™ื™ื ืฉืœ ื—ืชื™ืžื•ืช ืืœืงื˜ืจื•ื ื™ื•ืช ืžื•ืกืžื›ื•ืช (QES). ืกืขื™ืฃ 29 ืฉืœื• ืžื˜ื™ืœ ื›ื™ ื”ืชืงื ื™ ื™ืฆื™ืจืช ื—ืชื™ืžื” ืžื•ืกืžื›ื™ื (QSCD) ืžื‘ื˜ื™ื—ื™ื ืกื•ื“ื™ื•ืช ืฉืœ ื”ืžืคืชื— ื”ืคืจื˜ื™, ื”ืื—ื“ื•ืช ืฉืœื•, ื•ื—ื•ืกืจ ื”ื™ื›ื•ืœืช ืœื”ืฉืชืžืข ื‘ื•. ื“ืจื™ืฉื•ืช ื˜ื›ื ื™ื•ืช ืืœื” ื ื™ืชืŸ ืœื”ืฉื™ื’ ืจืง ืขืœ ื™ื“ื™ HSM ืžื•ืกืžืš ืขืœ ืคื™ ืคืจื•ืคื™ืœ ื”ื”ื’ื ื” EN 419221-5 ืื• ืฉื•ื•ื” ืขืจืš. ืชื™ืงื•ืŸ eIDAS 2.0 (ืชืงื ื•ืŸ UE 2024/1183, ื‘ืชื•ืงืฃ ืžืื– ืžืื™ 2024) ืžื—ื–ืง ืืช ื—ื•ื‘ื•ืช ืืœื” ืขื ื”ื™ื‘ื•ื ืฉืœ ืืจื ืง ื”ื–ื”ื•ืช ื”ื“ื™ื’ื™ื˜ืœื™ืช ื”ืื™ืจื•ืคื™ืช (EUDIW), ืืฉืจ ื”ื•ื ื’ื ืžืกืชืžืš ืขืœ QSCD ืžืžืœื ื“ืจื™ืฉื•ืช.

ื ื•ืจืžื•ืช ETSI ื™ืฉื™ืžื•ืช

ืžืฉืคื—ืช ื”ื ื•ืจืžื•ืช ETSI ืžื ื—ื” ื‘ื“ื™ื•ืง ืืช ื”ื ื•ื”ื’ื™ื ืฉืœ ืกืคืงื™ ืฉื™ืจื•ืชื™ ืืžื•ืŸ (TSP):

  • ETSI EN 319 401: ื“ืจื™ืฉื•ืช ื‘ื˜ื—ื•ืŸ ื›ืœืœื™ ืขื‘ื•ืจ TSP, ื›ื•ืœืœ ื ื™ื”ื•ืœ HSM ื•ื”ืคืจื“ืช ืชืคืงื™ื“ื™ื.
  • ETSI EN 319 411-1/2: ืคื•ืœื™ื˜ื™ืงื•ืช ื•ืชืจื’ื•ืœื™ื ืฉืœ ื”ืกืžื›ื” ืขื‘ื•ืจ CA ื”ืžื•ืฆื™ืื™ื ืชืขื•ื“ื•ืช ืžื•ืกืžื›ื•ืช.
  • ETSI EN 319 132: ืคืจื•ืคื™ืœ XAdES ืœื—ืชื™ืžื” ืืœืงื˜ืจื•ื ื™ืช ืžืชืงื“ืžืช โ€” ืคืขื•ืœื•ืช ื—ืชื™ืžื” ืžืฉืชืžืฉื•ืช ื‘-HSM.
  • ETSI TS 119 431-1: ื“ืจื™ืฉื•ืช ืกืคืฆื™ืคื™ื•ืช ืœืฉื™ืจื•ืชื™ื ืฉืœ ื—ืชื™ืžื” ืžืจื—ื•ืง (Remote Signing), ื›ืืฉืจ ื”-HSM ืžื•ืคืขืœ ืขืœ ื™ื“ื™ TSP ื‘ืฉื ื”ื—ืชื•ื.

ืงื•ื“ ืื–ืจื—ื™ ืฆืจืคืชื™ (ืกืขื™ืคื™ื 1366-1367)

ืกืขื™ืฃ 1366 ืฉืœ ื”ืงื•ื“ ื”ืื–ืจื—ื™ ืžื›ื™ืจ ื‘ืขืจืš ื”ืžืฉืคื˜ื™ ืฉืœ ื”ื›ืชื™ื‘ื” ืืœืงื˜ืจื•ื ื™ืช ื›ืืฉืจ ื ื™ืชืŸ ืœื–ื”ื•ืช ืืช ื”ืžื—ื‘ืจ ื•ืฉืœืžื•ืช ืฉืœื” ืžื•ื‘ื˜ื—ืช. ืกืขื™ืฃ 1367 ืžืฉื•ื•ื” ื—ืชื™ืžื” ืืœืงื˜ืจื•ื ื™ืช ืžื•ืกืžื›ืช ืœื—ืชื™ืžื” ื™ื“ื ื™ืช. ื”ื’ื ื” ื”ืžืคืชื— ื”ืคืจื˜ื™ ืขืœ ื™ื“ื™ HSM ื”ื™ื ื”ืžื ื’ื ื•ืŸ ื”ื˜ื›ื ื™ ื”ื”ื•ืคืš ื”ื ื—ื” ื–ื• ืฉืœ ascribability ื‘ืœืชื™ ืžืขื•ืจืขืจืช ื‘ืžื™ืฉืคื˜ื™ื.

RGPD ืžืก' 2016/679

ื›ืืฉืจ HSM ืžื˜ืคืœ ื‘ืžืคืชื—ื•ืช ื”ืงืฉื•ืจื™ื ืœื–ื”ื•ืช ืฉืœ ืื ืฉื™ื ืคื™ื–ื™ื™ื (ืชืขื•ื“ื•ืช ืžื•ืกืžื›ื•ืช ืฉืžื™ื•ืช, ื™ื•ืžื ื™ ื‘ื™ืงื•ืจืช ื›ื•ืœืœ ื ืชื•ื ื™ ื–ื™ื”ื•ื™), ื”-RGPD ื—ืœ ื‘ืžืœื•ืื•. ืกืขื™ืฃ 25 (privacy by design) ืžื˜ื™ืœ ืื™ื ื˜ื’ืจืฆื™ื” ืฉืœ ื”ื’ื ืช ื ืชื•ื ื™ื ืžืชื—ื™ืœืช ื”ืชื›ื ื•ืŸ โ€” ื”-HSM ืžืขื ื” ืœื“ืจื™ืฉื” ื–ื• ืขืœ ื™ื“ื™ ื›ืš ืฉื”ื•ืคืš ื‘ืื•ืคืŸ ื˜ื›ื ื™ ื‘ืœืชื™ ืืคืฉืจื™ ื’ื™ืฉื” ืœืžืคืชื—ื•ืช ืคืจื˜ื™ื™ื ืžื—ื•ืฅ ืœืžืกื’ืจืช ื”ืชืคืขื•ืœ ืฉื”ื•ื’ื“ืจื”. ืกืขื™ืฃ 32 ืžื“ื•ืจืฉ ื™ื™ืฉื•ื ืฉืœ ืืžืฆืขื™ื ื˜ื›ื ื™ื™ื ืžืชืื™ืžื™ื: ื”-HSM ืžื”ื•ื•ื” ืืช ื”ืžืฆื‘ ืฉืœ ื”ื˜ื›ื ื” ื‘ื ื•ื’ืข ืœื”ื’ื ื” ืงืจื™ืคื˜ื•ื’ืจืคื™ืช.

ื”ื ื—ื™ื” NIS2 (UE 2022/2555)

ื”ืžื•ื˜ื‘ืขืช ื‘ื—ื•ืง ืฆืจืคืชื™ ืขืœ ื™ื“ื™ ื—ื•ืง 15 ื‘ืืคืจื™ืœ 2025, ื”ื ื—ื™ื” NIS2 ืžื˜ื™ืœื” ืขืœ ืžืคืขื™ืœื™ื ื—ื™ื•ื ื™ื™ื ื•ื—ืฉื•ื‘ื™ื (OES/OEI) ืœื™ื™ืฉื ืืžืฆืขื™ ื ื™ื”ื•ืœ ืกื™ื›ื•ื ื™ื ื”ื›ื•ืœืœื™ื ื‘ืื•ืคืŸ ืžืคื•ืจืฉ ื‘ื™ื˜ื—ื•ืŸ ืฉืœ ืฉืจืฉืจืช ื”ื”ื™ืฆืข ื”ืงืจื™ืคื˜ื•ื’ืจืคื™ืช. ื”ืคื ื™ื™ื” ืœ-HSM ืžื•ืกืžืš ืœื”ื’ื ืช ืžืคืชื—ื•ืช ื—ืชื™ืžื” ื•ื”ืฆืคื ื” ืžืชืจื—ืฉืช ื™ืฉื™ืจื•ืช ื‘ืชื•ืš ืžืกื’ืจืช ื–ื•, ื‘ืžื™ื•ื—ื“ ืขื‘ื•ืจ ืกืงื˜ื•ืจื™ื ืฉืœ ื‘ืจื™ืื•ืช, ืคื™ื ื ืกื™ื, ืื ืจื’ื™ื” ื•ืชืฉืชื™ืช ื“ื™ื’ื™ื˜ืœื™ืช.

ืื—ืจื™ื•ืช ื•ืกื™ื›ื•ื ื™ื ืžืฉืคื˜ื™ื™ื

ืคืฉืจื•ืŸ ืฉืœ ืžืคืชื— ืคืจื˜ื™ ื”ื ื•ื‘ืข ืžื”ืขื“ืจื•ืช HSM ืื• ืชืฆื•ืจื” ื‘ืœืชื™ ืžืกืคืงืช ืขืœื•ืœ ืœืขื•ืจืจ ืื—ืจื™ื•ืช ืื–ืจื—ื™ืช ื•ืคืœื™ืœื™ืช ืฉืœ ื”ื›ืจื˜ื™ืก ื”ืื—ืจืื™, ืœื—ืฉื•ืฃ ืืช ื”ืืจื’ื•ืŸ ืœืกื ืงืฆื™ื•ืช CNIL (ืขื“ 4% ืฉืœ CA ืขื•ืœืžื™), ื•ื‘ื˜ืœ ื‘ื—ื–ืจื” ืืช ื›ืœ ื”ื—ืชื™ืžื•ืช ืฉื”ื•ืฆืื• ืขื ื”ืžืคืชื— ื”ืžืชืคืฉืจ. ื”ื›ื™ืฉืœื•ืŸ ืฉืœ ืจื™ืฉื•ื ืคืขื•ืœื•ืช HSM ืžื”ื•ื•ื” ื›ืŸ ืื™-ืฆื™ื•ืช ืžืื•ืคื™ื™ืŸ ื‘ืคืจื“ื™ื’ืžื•ืช ETSI ื•-RGPD.

ืชืจื—ื™ืฉื™ ืฉื™ืžื•ืฉ: HSM ื‘ืคืขื•ืœื” ื‘ื—ื‘ืจื•ืช B2B

ืชืจื—ื™ืฉ 1 โ€” ืคืœื˜ืคื•ืจืžืช ื—ืชื™ืžื” ืžื•ืกืžื›ืช ืขื‘ื•ืจ ืงื‘ื•ืฆื” ืชืขืฉื™ื™ืชื™ืช ืจื‘-ืืชืจื™ืช

ืงื‘ื•ืฆื” ืชืขืฉื™ื™ืชื™ืช ืื™ืจื•ืคืื™ืช ื‘ืช 15 ืขืœื•ื™ื•ืช ื ื™ื”ื•ืœ ืฉืœ ื›-4,000 ื—ื•ื–ื™ื ืฉืœ ืกืคืงื™ื ื‘ืฉื ื” ืžื—ืœื™ื˜ื” ืœืจื›ื– ืืช ืฉืจืฉืจืช ื”ื—ืชื™ืžื” ื”ืืœืงื˜ืจื•ื ื™ืช ื”ืžื•ืกืžื›ืช ืฉืœื”. ืฆื•ื•ืช ื”ื‘ื™ื˜ื—ื•ืŸ ืคื•ืจืก ืฉื ื™ HSM ื‘ืจืฉืช ื‘ืชืฆื•ืจืช ื–ืžื™ื ื•ืช ื’ื‘ื•ื”ื” active-active ื‘ืฉื ื™ ืžืจื›ื–ื™ ื ืชื•ื ื™ื ื ืคืจื“ื™ื (ืืกื˜ืจื˜ื’ื™ื” ืฉืœ ืขืžื™ื“ื•ืช ื’ื™ืื•ื’ืจืคื™ืช). ืžืคืชื—ื•ืช ื—ืชื™ืžื” ืžื•ืกืžื›ื™ื ืฉืœ ื›ืœ ื™ืฉื•ืช ืžืฉืคื˜ื™ืช ื ื•ืฆืจื™ื ื•ืžืื•ื—ืกื ื™ื ืืš ื•ืจืง ื‘-HSM, ื ื’ื™ืฉ ื“ืจืš ืžืžืฉืง PKCS#11 ื—ืฉื•ืฃ ืœืคืœื˜ืคื•ืจืžืช ื”ื—ืชื™ืžื” SaaS.

ื”ืชื•ืฆืื•ืช ืฉื ืฆืคื• ืœืื—ืจ 12 ื—ื•ื“ืฉื™ื: ืืคืก ืชื—ื–ื•ืงืช ื‘ื™ื˜ื—ื•ืŸ ื”ืงืฉื•ืจื” ืœื ื™ื”ื•ืœ ืžืคืชื—ื•ืช, ืฆื™ื•ืช ืžืœื ื‘ื–ืžืŸ ื‘ื™ืงื•ืจืช eIDAS ืฉืขืจืš ื’ื•ืฃ ื”ืขืจื›ืช ืชืื™ืžื•ืช (CAB) ืžื•ืกืžืš, ื•ื”ืคื—ืชื” ืฉืœ 67% ื‘ื–ืžื ื™ ื—ืชื™ืžื” ื—ื•ื–ื™ืช (ืž-8.3 ื™ืžื™ื ื‘ืžืžื•ืฆืข ืœ-2.8 ื™ืžื™ื). ืขืœื•ืช ืคืจื™ืกื” ื”-HSM ื”ืžืฉื•ืœืžืช ื ืชืงื‘ืœื” ื‘-14 ื—ื•ื“ืฉื™ื ื‘ืขืงื‘ื•ืช ืจื•ื•ื—ื™ ื”ืคืจื•ื“ื•ืงื˜ื™ื‘ื™ื•ืช ื•ื”ืฉืžื“ืช ืชื”ืœื™ื›ื™ื ื ื™ื™ืจ ืฉื ื•ืชืจื•.

ืชืจื—ื™ืฉ 2 โ€” ืžืฉืจื“ื• ืฉืœ ื™ื•ืขืฅ ืžืฉืคื˜ื™ ื•ื ื™ื”ื•ืœ ื—ืชื™ืžื” ืฉืœ ืคืงื•ื“ื•ืช ื”ืœืงื•ื—

ืžืฉืจื“ื• ืฉืœ ืขื•ืจื›ื™ ื“ื™ืŸ ืขืกืงื™ื™ื ืฉืœ 45 ืฉื•ืชืคื™ื, ื”ื˜ื™ืคื•ืœ ื‘ืชื™ืงื™ื•ืช ืฉืœ ืžื™ื–ื•ื’ื™ื ื•ืจื›ื™ืฉื•ืช ื•ืœื™ื˜ื™ื’ืฆื™ื” ืžืกื—ืจื™ืช, ืžื—ืคืฉ ืœื”ืฉืžืจ ืขืœ ื–ืจื™ืžื•ืช ื”ื—ืชื™ืžื” ืฉืœ ืคืงื•ื“ื•ืช, ืžื›ืชื‘ื™ ืžืฉื™ืžื” ื•ืชืขื•ื“ื•ืช ื‘ื”ืœื™ื›ื™ื. ืžื•ืœ ืื™-ื™ื›ื•ืœืช ืฉื™ืžื•ืฉ ื‘-HSM on-premise (ื”ื™ืขื“ืจื•ืช ืฉืœ ืฆื•ื•ืช IT ื™ื™ืขื•ื“ื™), ื”ืžืฉืจื“ื• ืžื ื•ื™ ืœืฉื™ืจื•ืช Cloud HSM ืžืฉื•ืœื‘ ื‘ืคืชืจื•ืŸ ื—ืชื™ืžื” ืืœืงื˜ืจื•ื ื™ืช ืœื—ื“ืจื™ื ืžืฉืคื˜ื™ื™ื.

ื›ืœ ืฉื•ืชืฃ ื™ืฉ ืชืขื•ื“ื” ืžื•ืกืžื›ืช ืžืžื ื” ื”ืžืคืชื— ื”ืคืจื˜ื™ ืžืื•ื—ืกืŸ ื‘-HSM ื™ื™ืขื•ื“ื™ ืฉืœ ื”ืกืคืง, ืžื•ืกืžืš FIPS 140-3 ืจืžื” 3 ื•ืจืฉื•ื ื‘ืจืฉื™ืžืช ื”ืืžื•ืŸ ื”ืื™ืจื•ืคืื™ืช. ื”ืžืฉืจื“ื• ืžื ืฆืœ ืžืขืงื‘ื•ืช ืžืœืื•ืช ืฉืœ ืคืขื•ืœื•ืช (ื™ื•ืžื ื™ horodated, ื ื™ืชื ื™ื ืœื™ื™ืฆื•ื ืœืฆืจื›ื™ื ืฉืœ ื”ื•ื›ื—ื” ื‘ืžืงืจื” ืฉืœ ืœื™ื˜ื™ื’ืฆื™ื”), ืœืœื ื›ืœ ืชืฉืชื™ืช ื—ื•ืžืจื” ืœื ื™ื”ื•ืœ. ื”ืคื—ืชืช ื–ืžืŸ ื ื™ื”ืœื™ ื”ืงืฉื•ืจ ืœื ื™ื”ื•ืœ ืžืกืžื›ื™ื ืžืขื•ืฆื‘ืช ื‘ืฉืœื•ืฉ ืฉืขื•ืช ื•ื—ืฆื™ ืœืขื•ื‘ื“ ื•ืœืฉื‘ื•ืข ืขืœ ืคื™ ืกื™ืžื ื™ ื”ื™ื™ื—ื•ืก ื”ืกืงื˜ื•ืจื™ืืœื™ื™ื ืฉืœ ืžืฉืจื“ื•ืช ื“ื•ืžื•ืช.

ืชืจื—ื™ืฉ 3 โ€” ืžื•ืกื“ ื‘ืจื™ืื•ืช ื•ื”ื’ื ื” ืขืœ ื ืชื•ื ื™ ืžืจืฉื ืืœืงื˜ืจื•ื ื™

ืงื‘ื•ืฆื” ื‘ืขืœืช ืžืฉื™ืžื” ื‘ื”ื™ืงืฃ ืฉืœ ื›-1,200 ืžื™ื˜ื•ืช ืžื˜ื‘ืขืช ืืช ืžืจืฉื ืจืคื•ืื™ ืืœืงื˜ืจื•ื ื™ ืžืื•ื‘ื˜ื— (e-prescription) ื‘ื”ืชืื ืœื“ืจื™ืฉื•ืช ANS (ืกื•ื›ื ื•ืช ื“ื™ื’ื™ื˜ืœื™ืช ื‘ื‘ืจื™ืื•ืช) ื•ืžืกื’ืจืช Mon Espace Santรฉ. ืžืจืฉืžื™ื ื—ื™ื™ื‘ื™ื ืœื”ื™ื•ืช ื—ืชื•ืžื™ื ืขื ืชืขื•ื“ื” ืžืงืฆื•ืขื™ืช ืฉืœ ื‘ืจื™ืื•ืช (CPS) ืžืžื ื” ื”ืžืคืชื— ื”ืคืจื˜ื™ ืœื ื ื™ืชืŸ ื‘ืฉื•ื ืื•ืคืŸ ืœื”ื™ื•ืช ื—ืฉื•ืฃ ื‘ืขืžื“ื•ืช ืขื‘ื•ื“ื” ืฉืœ ืจื•ืคืื™ื.

ื”-DSI ืคื•ืจืกืช HSM ืžื•ืกืžืš Common Criteria EAL 4+ ืžืฉื•ืœื‘ ื‘ืชืฉืชื™ืชื• ืฉืœ ื ื™ื”ื•ืœ ื”ื–ื”ื•ื™ื•ืช (IGC ืคื ื™ืžื™). ืžืคืชื—ื•ืช CPS ืฉืœ ืจื•ืคืื™ื ืžืื•ื—ืกื ื™ื ื‘-HSM; ืจื•ืคืื™ื ืžืื•ืžืชื™ื ื“ืจืš ื›ืจื˜ื™ืก ื—ื›ื + PIN ืœื”ืคืขื™ืœ ืคืขื•ืœืช ื—ืชื™ืžื” ืžื”ื•ื 

ื ืกื• Certyneo ื‘ื—ื™ื ื

ืฉืœื—ื• ืืช ืžืขื˜ืคืช ื”ื—ืชื™ืžื” ื”ืจืืฉื•ื ื” ืฉืœื›ื ื‘ืคื—ื•ืช ืž-5 ื“ืงื•ืช. 5 ืžืขื˜ืคื•ืช ื—ื™ื ื ื‘ื—ื•ื“ืฉ, ืœืœื ื›ืจื˜ื™ืก ืืฉืจืื™.

ื”ืขืžืงืช ื”ื ื•ืฉื

ื”ืžื“ืจื™ื›ื™ื ื”ืžืœืื™ื ืฉืœื ื• ืœืฉืœื™ื˜ื” ื‘ื—ืชื™ืžื” ืืœืงื˜ืจื•ื ื™ืช.

ื”ืขืžื™ืงื• ืืช ื”ื™ื“ืข ืฉืœื›ื ืขื ืžืืžืจื™ื ืืœื” ื”ืงืฉื•ืจื™ื ืœื ื•ืฉื.

ื—ืชื™ืžื” ืืœืงื˜ืจื•ื ื™ืช ื‘ื—ื•ื–ื™ื B2C: ืชื•ืงืฃ ืžืฉืคื˜ื™ ื‘-2026

ื”ื—ืชื™ืžื” ื”ืืœืงื˜ืจื•ื ื™ืช ื‘ื—ื•ื–ื™ื B2C ืžืขืœื” ืฉืืœื•ืช ืžื“ื•ื™ืงื•ืช ื‘ื ื•ื’ืข ืœืชื•ืงืฃ ืžืฉืคื˜ื™ ื•ื”ืกื›ืžืช ื”ืœืงื•ื—. ื”ื ื” ื›ืœ ืžื” ืฉืฆืจื™ืš ืœื“ืขืช ื‘-2026.

9 min

ื—ืชื™ืžื” ืืœืงื˜ืจื•ื ื™ืช ื‘ืžื’ื–ืจ ื”ืฆื™ื‘ื•ืจื™: ืžื“ืจื™ืš 2026

ืžืื– 2020, ื—ืชื™ืžื” ืืœืงื˜ืจื•ื ื™ืช ื—ื•ื‘ื” ื‘ื”ื–ืžื ื•ืช ืฆื™ื‘ื•ืจื™ื•ืช ืžืขืœ ืกื›ื•ืžื™ื ืžืกื•ื™ืžื™ื. ื’ืœื” ืืช ื”ื›ืœืœื™ื, ื”ืจืžื•ืช ื”ื ื“ืจืฉื•ืช ื•ื›ื™ืฆื“ ืœื”ื‘ื™ื ืืช ื”ืžืžืฉืœื” ืฉืœืš ืœืฆื™ื•ืช.

9 min

ื—ืชื™ืžื” ืืœืงื˜ืจื•ื ื™ืช ืœื’ื•ืคื™ื ืžืงื•ืžื™ื™ื ื‘ื™ืฉืจืืœ

ื”ื’ื•ืคื™ื ื”ืžืงื•ืžื™ื™ื ืžืื™ืฆื™ื ืืช ื”ื“ื™ื’ื™ื˜ืœื™ื–ืฆื™ื” ืฉืœื”ื. ื’ืœื• ื›ื™ืฆื“ ื—ืชื™ืžื” ืืœืงื˜ืจื•ื ื™ืช ืžืื‘ื˜ื—ืช ืืช ื”ื—ื•ื–ื™ื ืฉืœื›ื, ืžืงื˜ื™ื ื” ืืช ื”ื”ืฉื”ื™ื•ืช ื•ืคื•ืขืœืช ื‘ื”ืชืื ืœืชืงื ื•ืช ื”ืื™ืจื•ืคื™ื•ืช.

8 min