I am new to HSMs. We are looking at AWS CloudHSM OR Thales Luna Cloud HSM as providers. Getting the cert is pretty straightforward, but how to auto-renew? Has someone done this before?
I found these docs, but it looks like there is no tool for automatically requesting SSL cert renewal with AWS, and I would have to write a script for it...? Situation is similar with Thales.
https://aws.amazon.com/blogs/security/using-aws-cloudhsm-backed-certificates-with-microsoft-internet-information-server/ https://docs.aws.amazon.com/cloudhsm/latest/userguide/ssl-offload-enable-traffic-and-verify-certificate-windows.html https://docs.aws.amazon.com/cloudhsm/latest/userguide/key_mgmt_util-reference.html