Digi-Sign, The Certificate Corporation
Published on Digi-Sign, The Certificate Corporation (http://www2.digi-sign.com)

Home > Enrolment Policy

By Digi-Sign
Created Jun 3 2010 - 08:11

Enrolment Policy

Descriptions of the Digi-ID™ invitations options

The Enrolment Policy for Digi-ID™ controls the entire certificate issuing process. Enrolment Policy is set by the Certificate Policy [CP] for the Digi-CA™. This is a specialist subject and requires experienced knowledge of Certificate Authority [CA] systems and Public Key Infrastructure [PKI]. Keeping this complex topic simple, there are three basic options for Enrolment Policy:

  • Manual

    • Inviting and approving requires manual inputs from the Administrator





  • Automated

    • Inviting and approving are completely automated. If the Enrolment Policy is to completely automate the approval process, it will be based on rules. Enrolment Policy Rules are also too complex a topic to explain here, however, here are some simple examples where certificates requests are approved based on:


                • a specific domain being used in the enrolment form

                • a specific phone number being used in the enrolment form

                • a specific PIN number being used in the enrolment form


  • Combination

    • Inviting and approving may require some manual input from the Administrator. Again in this instance, part of the process (and most likely the approval) will be automated and will be based on rules similar to those above.


    Once the application is approved, the end activates their Digi-ID™ certificate using the End Entity Digital Certificate Collection form. View customised activation [1] forms or browse the other pages below.

  • IIS Implementation Guide

Source URL: http://www2.digi-sign.com/digi-id/distribute/policy

Links:
[1] http://www2.digi-sign.com/digi-id/distribute/activate