The simplicity of the design of the complete Digi-CA™ system means that the same system can be purchased initially as a service [1]. Later, if needed, the software [2] version can be deployed and later scaled for enterprise, large scale and even national PKI use, with minimum or no disruption. This is made possible by the modular architecture used in the development of the Digi-CA™ system.
The modular architecture of Digi-CA™ provides its components in Service Modules [1]. Here is the list of modules currently available (for further details, refer to the Digi-CA™ Deployment Guide).
Module Name | Code | Services Provided |
Cryptographic Service Provider | CSP | Certificate & CRL Generation Services |
Time-Stamping Gateway | TSG | Digital Time-Stamping Service |
OCSP Gateway | OCSPG | Real time Revocation Status Service |
CA Application Service | CAAS | TSG and OCSPG gateway services connector |
CA Management Console | CAMC | Web based Certification Authority management |
RA Management Console | RAMC | Web based Registration Authority management |
Entity Registration Service | ERS | Web based End Entity Registration management |
Content Dissemination Service | CDS | Certificate and CRL dissemination management |
The above diagram shows each module of Digi-CA™ [1] distributed across multiple servers for use in a large scale enterprise/government PKI.
Links:
[1] http://www.digi-sign.com/products
[2] http://www.digi-sign.com/digi-ca/server