CryptoKit SoftHSM is a software-based cryptographic device simulator that implements the GM/T 0018-2023 SDF interface using SDFX and openHiTLS, offering Docker deployment, web management, and Windows SDK for development and testing.

Stars

7

7-day growth

No data

Forks

2

Open issues

0

License

NOASSERTION

Last updated

2026-07-30

AI repository intelligence
FR-AI / ANALYSIS

Why it is worth attention

It provides a free, open-source, and portable alternative to expensive hardware HSMs for testing Chinese national cryptographic algorithms (SM2, SM3, SM4) and SDF API compatibility, with a comprehensive web management interface and role-based access control.

Who it is for

  • Developers integrating Chinese cryptographic standards (GM/T) into applications
  • Testers needing a simulated HSM for SDF API interoperability testing
  • Educators and students learning cryptographic operations and HSM management
  • System administrators evaluating HSM functionality without physical hardware

Use cases

  • Developing and debugging applications that use SM2/SM4/RSA via SDF API
  • Testing SDF API compliance and integration before hardware deployment
  • Teaching cryptographic concepts and HSM administration in a controlled environment
  • Performing automated end-to-end tests with cryptographic operations and key management

Strengths

  • Fully implements the GM/T 0018-2023 SDF API with a clear API matrix, returning SDR_NOTSUPPORT for unsupported functions
  • Includes a Dockerized server with persistent storage and a Windows x64 SDK for cross-platform development
  • Provides a web management interface with four role-based access levels, online self-tests, audit logging, and backup/restore
  • Supports SM2, SM3, SM4, RSA, and symmetric key operations with session-level access control and HMAC-SM3 integrity protection

Considerations

  • Not certified for production use; lacks commercial cryptographic product certification and hardware tamper resistance
  • TCP service and web management operate over plain HTTP without TLS; recommended only for controlled networks
  • Backup files are not encrypted as a whole; requires additional access control or storage encryption
  • Does not implement all GM/T 0018 APIs, notably ECC key agreement, SM4-GCM, and stream cipher operations

README quick start

快速开始

Description

CryptoKit SoftHSM 是一套基于 SDFX 和 openHiTLS 的 GM/T 0018-2023 SDF 接口兼容软件密码设备模拟器。项目提供Docker 服务端、内置 Web 管理端,以及通过 TCP 调用服务端的 Windows x64 SDF C SDK。

Related repositories

Similar projects matched by category, topics, and programming language.

S40911120
Featured
S40911120 GitHub avatar

recensa

Recensa is a self-hosted web viewer that indexes Claude Code session transcripts into a local SQLite database, enabling full-text search, replay, and audit of all past agent conversations without uploading data anywhere.

AI & Machine LearningLarge Language Models
67
QuadraV-Speech
Featured
QuadraV-Speech GitHub avatar

CosyVoice3Pro

CosyVoice3Pro is a production-ready voice cloning service built on NVIDIA Triton Inference Server and TensorRT-LLM, featuring a decoupled speaker registry that lets you register a voice once and then generate speech with just a speaker ID and text.

AI & Machine LearningLarge Language Models
19
deerwork-ai
Featured
deerwork-ai GitHub avatar

deer-workflow

An open-source Dynamic Workflow runtime that combines deterministic TypeScript orchestration with replaceable Agent runtimes.

AI & Machine LearningLarge Language Models
312