The Nitrokey HSM 2 is an open-source hardware security module designed for professional key and certificate management. It securely stores cryptographic keys to protect server certificates, Public Key Infrastructures (PKI), Certificate Authorities (CA), and cryptocurrency assets. The device supports cryptographic algorithms including RSA and ECC.
The HSM 2 features n-of-m access protection to enforce multi-user authorization for critical operations. It operates via a USB-A interface and can process approximately 100 transactions per second, with performance scaling linearly when multiple devices are deployed. The device does not feature active support for SSH authentication using the FIDO2 protocol.