A cluster is a collection of individual HSMs that AWS CloudHSM keeps in synchronization.

For example, if you can think of a cluster as one logical HSM, when you do a task or operation on one HSM in a cluster, the other HSMs in that cluster are automatically kept up to date.

You can:

  • Create a cluster that has from 1 to 28 HSMs. Default limit: 6 HSMs per AWS account per AWS region.
  • Place the HSMs in different Availability Zones in an AWS Region.
  • Add more HSMs to a cluster for higher performance.

Use the OpsRamp AWS public cloud integration to discover and collect metrics against the AWS service.

Setup

To set up the OpsRamp AWS integration and discover the AWS service, go to AWS Integration Discovery Profile and select Cloud HSM Cluster.

Metrics

OpsRamp MetricMetric Display NameUnitAggregation Type
aws_cloudhsm_HsmUnhealthy

The HSM instance is not performing properly. AWS CloudHSM automatically replaces unhealthy instances. The cluster size can be proactively expanded to reduce performance impact while the HSM is being replaced.
HSM UnhealthyNoneAverage
aws_cloudhsm_HsmTemperature

Junction temperature of the hardware processor. The system shuts down if temperature reaches 110 degrees Centigrade.
HSM TemperatureNoneAverage
aws_cloudhsm_HsmKeysSessionOccupied

Number of session keys being used by the HSM instance.
HSM Keys Session OccupiedNoneAverage
aws_cloudhsm_HsmKeysTokenOccupied

Number of token keys being used by the HSM instance and the cluster.
HSM Keys Token OccupiedNoneAverage
aws_cloudhsm_HsmSslCtxsOccupied

Number of end-to-end encrypted channels currently established for the HSM instance.
HSM Ssl Ctxs OccupiedNoneAverage
aws_cloudhsm_HsmSessionCount

Number of open connections to the HSM instance.
HSM Session CountNoneAverage
aws_cloudhsm_HsmUsersAvailable

Number of additional users that can be created.
HSM Users AvailableNoneAverage
aws_cloudhsm_HsmUsersMax

Maximum number of users that can be created on the HSM instance.
HSM Users MaxNoneAverage
aws_cloudhsm_InterfaceEth2ErrorsInput

Interface Eth2 Errors Input.
Interface Eth2 Errors InputNoneAverage
aws_cloudhsm_InterfaceEth2ErrorsOutput

Interface Eth2 Errors Input.
Interface Eth2 Errors OutputNoneAverage
aws_cloudhsm_InterfaceEth2PacketsInput

Interface Eth2 Packets Input.
Interface Eth2 Packets InputNoneAverage
aws_cloudhsm_InterfaceEth2PacketsOutput

Interface Eth2 Packets Output.
Interface Eth2 Packets OutputNoneAverage
aws_cloudhsm_InterfaceEth2DroppedInput

Interface Eth2 Packets Input.
Interface Eth2 Packets InputNoneAverage
aws_cloudhsm_InterfaceEth2DroppedOutput

Interface Eth2 Packets Output.
Interface Eth2 Packets OutputNoneAverage
aws_cloudhsm_InterfaceEth2OctetsInput

Interface Eth2 Octets Input.
Interface Eth2 Octets InputNoneAverage
aws_cloudhsm_InterfaceEth2OctetsOutput

Interface Eth2 Octets Output.
Interface Eth2 Octets OutputNoneAverage

Event support

CloudTrail event support

  • Not Supported

CloudWatch alarm support

  • Not Supported

External reference