QuintessenceLabs Trusted Security Foundation

APIyesOSS—FREE—DOCS4/5
QT6.9#9 of 16
outWeb—Windows—MacoutLinux—Android—iOS

Ranked in Key Management Software ·No free plan on record

About

QuintessenceLabs Trusted Security Foundation (TSF) is a centralized manager for cryptographic keys and policies across their lifecycle. It is designed to be vendor-neutral and is offered as a virtual machine or hardware appliance; TSF 100 virtual appliances can run locally or on AWS, Azure, and GCP. Product materials describe object and user policy management and replication across up to 16 nodes. The TSF range supports OASIS KMIP and has been tested with products from IBM, HP, Oracle, and NetApp. Its listed cryptographic functions include one-time pad, symmetric and asymmetric ciphers, key derivation, random objects, certificates, and selected cryptographic operations. Administrators can use web HTTPS or command-line SSH interfaces. The product sheet states support for thousands of end-client systems, tens of millions of keys, and 8,000 key requests per minute per node. The maker says TSF 400 contains an Entrust nShield XC FIPS 140-3 Level 3 validated HSM as a root of trust. The key management application is stated to be compliant with NIST SP 800-57 where applicable; TSF is under evaluation for Common Criteria NDcPP compliance. Pricing is available on request.

Who it is for

TSF suits organizations managing cryptographic keys and policies across varied systems, including teams seeking virtual or appliance deployments. It may also fit VMware vSphere VM Encryption environments, for which the maker describes TSF as a certified Key Management Server.

What is good

  • Supports OASIS KMIP interoperability.
  • Built-in replication supports up to 16 nodes.
  • Web HTTPS and command-line SSH management interfaces.
  • TSF 400 includes an HSM described as a root of trust.

What to know first

  • Pricing is available only on request.
  • Common Criteria NDcPP compliance is under evaluation.
  • TSF 400 hardware appliance claims apply to that model.

Verdict

TSF combines centralized lifecycle management, policy controls, and multiple deployment forms. Confirm the configuration and pricing with QuintessenceLabs, and distinguish the stated TSF 400 HSM details from the broader TSF range.

Compared on key management software

Deployment model
hybridquintessencelabs.com
Key audit logs
Yesquintessencelabs.com

Facts

Purpose
TSF is a centralized, vendor-neutral key and policy manager that manages cryptographic keys over their lifecycle.quintessencelabs.com · 3 Oct 2026
Deployment
TSF is offered as a virtual machine or hardware appliance; TSF 100 virtual appliances can run locally or on AWS, Azure, and GCP.quintessencelabs.com · 3 Oct 2026
Policies and availability
The product sheet says TSF supports object and user policy management and built-in replication of up to 16 nodes.quintessencelabs.com · 3 Oct 2026
Interoperability
The TSF product range supports OASIS KMIP and has been tested with products from IBM, HP, Oracle, and NetApp.quintessencelabs.com · 3 Oct 2026
Scale
The product sheet states TSF supports thousands of end-client systems, tens of millions of keys, and 8,000 key requests per minute per node.quintessencelabs.com · 3 Oct 2026
Management interfaces
The TSF specification lists web HTTPS and command-line SSH management interfaces.quintessencelabs.com · 3 Oct 2026
Cryptography
TSF supports one-time pad, symmetric and asymmetric key ciphers, key derivation, random objects, certificates, and some cryptographic operations.quintessencelabs.com · 3 Oct 2026
Hardware security
The maker says TSF 400 contains an Entrust nShield XC FIPS 140-3 Level 3 validated HSM that acts as a root of trust.quintessencelabs.com · 3 Oct 2026
Certification status
The maker's compliance page says TSF is under evaluation for Common Criteria NDcPP compliance.quintessencelabs.com · 3 Oct 2026
Standards
The maker says the TSF key management application is 100% compliant with NIST SP 800-57 where applicable.quintessencelabs.com · 3 Oct 2026
Classified use
The maker says TSF 400 has been reviewed by NSA for conformity with CSfC KGS Approval Criteria and the Symmetric Key Management Requirements Annex.quintessencelabs.com · 3 Oct 2026
VMware integration
The maker describes TSF as a VMware by Broadcom Certified Key Management Server for vSphere VM Encryption.quintessencelabs.com · 3 Oct 2026
Pricing
The opened product pages and product sheet provide no listed price and direct readers to contact QuintessenceLabs for information.quintessencelabs.com · 3 Oct 2026

Company

Founded
2008quintessencelabs.com · 28 Sept 2026
Headquarters
Canberra, Australiaquintessencelabs.com · 28 Sept 2026

Best QuintessenceLabs Trusted Security Foundation alternatives

See all 15