Presentacin de PowerPoint

1 / 19
About This Presentation
Title:

Presentacin de PowerPoint

Description:

Common Call Center for all CAs. Economies of Scale. Lower shared costs. More user friendly ... CertiVeR Services - Outsourcing Certificate Status Database ... – PowerPoint PPT presentation

Number of Views:35
Avg rating:3.0/5.0
Slides: 20
Provided by: ter2
Learn more at: http://www.terena.org

less

Transcript and Presenter's Notes

Title: Presentacin de PowerPoint


1
Guaranteeing Electronic Trust at all times
2
Today's Agenda
  • Who is CertiVeR
  • Solutions from CertiVeR
  • CertiVeR TACAR proposal
  • Questions

3
CertiVeR Mission
Create and maintain an environment of consistent
and constant trust in the use of digital
signatures to promote wider acceptance and
adoption of e-signatures at a lower cost.
4
Real TimeCertificate Status Checking
  • Uses OCSP
  • Checks certificate validity in real time
  • No need for CRLs
  • Reduces costs
  • Management overheads
  • Communications costs
  • Minimises likelihood of invalid certificates
    being accepted
  • Reduces fraud

5
CertiVeR ServicesValidation
  • OCSP Validation via CRL or OCSP database
    connection in real time.
  • Provision of enhanced OCSP responder
  • High Availability
  • Back up
  • Load Sharing
  • Automated Revocation

6
CertiVeR ServicesEnhanced Validation information
  • Certificate Status
  • Active, Revoked or Suspended
  • Multiple CA integration
  • Purpose of Certificate
  • Use of OCSP response extensions to disclose
    attributes of the user certificate or the
    Certification Authority policy.
  • Used for authorisation by applications to carry
    out specific functions or transactions

7
CertiVeR Services Load Sharing, Backup High
Availability
  • Backup of your certificates database
  • Backup in case of failure with security guarantee
  • Lower cost than if you were to do it yourself
  • High Availability
  • Hot standby backup in case of failure
  • Load sharing or balancing
  • Ensure high availability and reliability
  • Guarantee performance levels

8
CertiVeR ServicesAutomated Revocation
  • Automated certificate revocation module or
    application via voice and speaker recognition.
  • High Security, Liability and Reliability
  • Biometrics user registration
  • Speaker and Voice recognition integrated with
    revocation
  • High Availability, 24x7
  • Outsourcing of service to CertiVeR

9
CertiVeR ServicesOptional Manual Revocation
  • Common Call Center for all CAs
  • Economies of Scale
  • Lower shared costs
  • More user friendly
  • High Availability, 24x7
  • Automated system may transfer problematic calls
  • Security provided through Secret questions
  • A similar security level could also be provided
    via Web

10
CertiVeR Services - Outsourcing Certificate
Status Database Management
  • Offload management
  • Reduce costs
  • Improve service
  • Enhance reliability
  • Increase accuracy
  • Raise level of trust and confidence

11
CertiVeR ServicesCA Certification
  • Creation of or assistance with CPS
  • Audit of CA in accordance with international and
    national norms
  • Legal requirements
  • Required by customers
  • Facilitates trust chains
  • CertiVeR Proof of Trustworthiness

12
CertiVeR ServicesCommon Trust with Credibility
  • Certificate Authority Audit.
  • Establishment of Cross Trust with other CAs.

13
CertiVeR Services Trust Chaining
  • Establish trust chains between CAs based on
    CertiVeR certification
  • Eliminates islands of PKIs.
  • Facilitates universal acceptance of digital
    certificates
  • Encourages wider use of certificates
  • Generates more revenues for CAs

14
CertiVeR Cross-TrustHow do you trust other CAs?
  • Chaining Trust
  • Cross-certification
  • Cross-validation
  • No more PKI Islands
  • Degree of Trust
  • Validity Time of Trust
  • Validity Period of Trust

15
CertiVeR Services Ready applications for digital
signature
  • Provide tools and services to make applications
    PKI ready
  • Already integrating GTK 3.9.4
  • Single validation access point for several CA,s
  • Provision of access APIs
  • Quality Control and post development support
  • Facilitate the rise of applications using digital
    signatures
  • Needing more than one certificate
  • Needing more than just certificate validation

16
CertiVeR TACAR 1st Proposal Revocation
Administration done by CA
CRL for User Certs
CAs
Revoke Root Certs
Revoke User Certs
synch
OCSP Validation Request for TACARs Repository
and hierarchies
CA Users, Grid Users, etc.
17
CertiVeR TACAR 2nd Proposal Revocation
Administration done by CertiVeR
synch
18
OCSP Signature Validation
  • We offer two options
  • Sign OCSP responses with a certificate trusted by
    all parties.
  • Sign OCSP responses with a certificate issued by
    the same CA hierarchy as the certificates whose
    status is being asked for.

19
The Business case for CertiVeRAnnual cost
assumptions included
Cost cover up to 10.000 users
20
The Business case for CertiVeRAnnual cost
assumptions included depending on degree of
Administration
Cost cover up to 10.000 users (1) Status Checking
Trust chain integration Discount Univ. 50
50,000
Savings of 60,000 or 120 each site!!!
21
The Basic services by CertiVeR
  • The most cost-effective services offered

TOTAL saving 43.000 /year/site 123 over
CertiVeR cost 55 over University cost
22
The Business case for CertiVeRRevenue
opportunities
  • Chargeable services to your customers.
  • You get CertiVeR services for nothing!

Revenues covered by 5.000 users
23
Try now our demo at http//www.certiver.com
24
Any Questions ?
Write a Comment
User Comments (0)