A Crypto User (CU) is able to perform cryptographic functions within AWS CloudHSM, including the following:
- Performing encryption and decryption
- The ability to create, delete, wrap, unwrap, and modify attributes of keys
- Signing and verifying
- Generating digests and HMACs
Also, much like the CO, CUs are also able to zeroize data and basic cluster information such as the IP address and serial number.Â