Click for homepage
Eracom
  
PS Orange →
← CSA-7000
  
CSA-8000
Hardware Security Module · 2003

CSA-8000 is a non-proprietary tamperproof hardware security module (HSM), developed around 2000 by the Australian multinational company Eracom Technologies Pty. Ltd., with com­ple­men­ting software developed by Concord-Eracom in Amsterdam (Netherlands). It was commonly used as part of ProtectServer Orange. CSA-8000 was later renamed ProtectHost Orange (PHO) module.

The CSA-8000 is implemented as a PCI card that can be fitted inside a regular (hardened) Personal Computer (PC) with a PCI bus. It has two serial RS232 ports and features dual Application Pro­gramming Interfaces (API) — PKCS #11 and EFT — which makes it ideal for financial transactions.

The device is designed to secure digital keys, accelerate encryption operations, and process high-speed financial transactions and public key infrastructures (PKI). It was commonly used as part of the ProtectServer Orange, which was the defacto standard at the time for banking, ATM networks and secure data authentication.
  

Keys are stored in interal CMOS RAM, which is retained by a Lithium battery that lasts se­ve­ral years. When the power from the battery to the module is cut, the keys are instantly purged. This mechanism (in military jargon: ZEROIZING), is also used by the on-board anti-tamper measures.

The CSA-8000 supports a wide range of symmetric and asymmetric encryption alogirithms, in­clu­ding DES, 3DES and RSA. Further algorithms are available when the CSA-8000 is used as part of ProtectServer Orange — a complete PC-based hardware solution with dual network capability.

  1. The names ProtectServer Orange (the actual server) and ProtectHost Orange (the bare HSM) are often used interchangeably, such as in [C].
Eracom CSA-8000 HSM
Eracom CSA-8000 HSM - top side
Eracom CSA-8000 HSM - bottom side
A
×
A
1 / 3
Eracom CSA-8000 HSM
A
2 / 3
Eracom CSA-8000 HSM - top side
A
3 / 3
Eracom CSA-8000 HSM - bottom side
❮ ❯

Connections
RS232 ports
At the rear panel of the card are two 9-pin female DE-9 sockets, each of which provides a full RS232 serial port. Below is the pinout for each of the two ports, when looking into the receptacle.

  1. DCD
    Data Carrier Detect
  2. TXD
    Transmit Data
  3. RXD
    Receive Data
  4. DTR
    Data Terminal Ready
  5. GND
    Ground
  6. DSR
    Data Set Ready
  7. CTS
    Clear To Send
  8. RTS
    Request To Send
  9. RI
    Ring Indicator
    DE-9P male part
Specifications
  • Device
    Hardware Security Module (HSM)
  • Purpose
    Secure communications, processing of sensitive data
  • Model
    CSA-8000
  • Manufacturer
    Eracom
  • Year
    2000 ~
  • Country
    Australia, Netherlands
  • Predecessor
    CSA-7000
  • Successor
    -
  • Bus
    PCI
  • Interface
    Dual RS232
  • Encryption
    DES, 3DES, RSA 2048, DSA, SHA-1 1
  • API
    PKCS #11, EFT
  • Compliance
    FIPS 140-1/140-2 Level 3
  • Battery
    3.6 V Lithium (backup) AA-size
  • Dimensions
    125 × 23 × 183 mm
  • Weight
    146 g
  1. Further algorithms are available upon request. Many more are implemented in ProtectServer Orange.
Features
  • Dual API (PKCS #11, EFT)
  • High-speed processing for symmetric and asymmetric cryptographic algorithms
  • Secure key generation, storage, import, export, PIN verification and card validation
  • Tamper-resistant (FIPS 140-1/140-2 Level 3)
  • Managed via command-line interface (CLI) and graphical interface (GUI)
Nomenclature
  1. This is the name of the actual server in which the CSA-8000 is installed. ➤ More
Documentation
  1. CSA-8000 Cryptographic Adapter
    FIPS 140-1 Non-Proprietary Cryptographic Module Security Policy, Level 3 Validation.
    Eracom Pty Ltd., Concord-Eracom, 2000, Updated July 2001. 15 pages.

  2. ProtectHost Orange HSM (with ORGA FM)
    Eracom Technologies Australia Pty. Ltd., August 2003. Version 1.4.8. 20 pages.

  3. Hunguard approval certificate
    HUNG-T-028/2005. Hunguard, 30 December 2005.
References
  1. Benne de Weger, Eracom CSA-8000 hardware security module - THANKS !
    Crypto Museum, August 2026.
Further information
Any links shown in red are currently unavailable. If you like the information on this website, why not make a donation?
© Crypto Museum. Created: Tuesday 06 October 2026. Last changed: Wednesday, 07 October 2026 - 13:17 CET.
Click for homepage