Digi-Sign, The Certificate Corporation
Published on Digi-Sign, The Certificate Corporation (http://www2.digi-sign.com)

Home > 2X Digi-Sign ARP Network

By Digi-Sign
Created May 17 2010 - 18:57

2X Digi-Sign ARP Network

Welcome to the 2X Digi-Sign ARP Network

PDF [1] 2X [2] is now an official member of the Digi-Sign Affiliates, Resellers & Partners [ARP] Network. The agreement [3] means that all 2X Distributors and Resellers are automatically members of our ARP Network. Your membership means you an issue and manage SSL certifiates with ease and also provide a new, simple 2X security 'add-on' that will benefit all 2X partners and customers. Learn more below:

Digi-SSL™ Advantages   & Digi-Sign  
    • Simple & Fast SSL Ordering [4]

    • Your own SSL management system [5]

    • Annual recurring revenue [6]

 
    • 2X Partners pre-authorised [7]

    • Simple online registration [8]

    • Review the complete 2X Program [9]

 
           
Digi-Access™ Advantages   Digi-Access™ Instructions  
    • Two factor authentication [10]

    • Online demonstration tool [11]

    • Easy to implement on all 2X servers [12]

    • Annual recurring revenue [6]

 
    • Easy 2X customer implementation [13]

    • Digi-Access™ certificate distribution [14]

    • How to get prices & place orders [15]

    • Using the ARP Accounts system [16]

 
           
Sales Tools & Support      
    • Full support from 2X & Digi-Sign [17]

 
 
           

Read the instructions for the 2X Digi-Access™ online demonstration. Then....

...take the 2X Digi-Access™ demo'>> [11]

How to Get 2X Digi-SSL™ Certificates

How to get 2X Digi-SSL™ certificates

There are three very simple steps to getting your 2X Digi-SSL™ certificates and these are as follows:


1.Generate the Certificate Signing Request [CSR [18]] on the 2X IIS Server.



2. Login in to your 2X Digi-SSL™ Service system and paste the CSR into the field on this form, then select 'Microsoft IIS5.x and later' and choose either 1, 2 or 3 year(s) before using the 'Process the Request' button.




3. After a few minutes, the new Digi-SSL™ certificate will be emailed to you, ready for installation [19] on the 2X IIS server

Activate your dedicated 2X Digi-SSL™ Service [5] certificate management system now

How 2X Digi-Access™ Improves User Security

Understanding what a 2X Digi-Access™ certificate is used for

The 2X Digi-Access™ certificate offers what is called 'two factor authentication'. In the standard version of the 2X Application Server, you login with a username and password. The username and password is 'something you know' and this is single factor authentication.

In the Digi-Access™ version of the 2X Application Server, in addition to a username and password, to login you must also have a Digi-Access™ certificate. The Digi-Access™ certificate is 'something you have' and this adds a second layer of security known as two factor authentication.

Getting a 2X Digi-Access™ certificate takes three simple steps [20]. The most important of these is the very first step.

The Importance of the Enrolment Form

In the first step, users are directed to the 2X Digi-Access™ enrolment page where they must complete a simple online web form [21].





This web form has a help button opposite every field that offers assistance and advice so that users correctly complete each field on the form.

Important:- Users must complete this form accurately with their correct personal information. Failure to complete this form correctly, may mean that the Digi-Access™ certificate is not correctly configured and the user may also have to repeat the process.

2X Digi-Access™ Help & Support

2X Digi-Access™ Certificate Support

This is the main 2X Digi-Access™ Help page and provides all the support pages you require to own and use your 2X Digi-Access™ two factor authentication certificates.


You can return to the 2X Digi-Access™ [22] home page or continue browsing by using the links below. And remember, to get the most extensive help file access and or to contribute, Login [23] or Register [24]


Taking the 2X Digi-Access™ Demonstration

Read these three steps to understand how the demonstration works

The 2X Digi-Access™ demonstration starts with the 2X Portal Login. Click on the Apply Now [25] button to start the demo:


1.You will be directed to the 2X Digi-Access™ enrolment page where you must complete a simple online web form [26]. This web form has a help button opposite every field to ensure that you correctly complete each field on the form, so use them as required:


In this form you must provide the following details:

        • Registered Company Name - the legal name of your organisation
        • Department - what department you work in
        • Address - the address for the organisation
        • Postal Code or area code for the organisation
        • City - the city the organisation is located in
        • Full Name - you first and last name
        • Work Title - your job title or job description
        • Email - your email address
        • Telephone number - your direct dial phone number
        • Fax number - a fax number (if you have one)
        • Country - The country you are located in (e.g. KSA)



In addition you will also be asked to select a Secret Question and to provide your Secret Answer:

        • Secret Question - make a selection
        • Secret Answer - answer the question using something you'll easily remember



2. Once the above form is completed and submitted, your 2X Digi-Access™ certificate request will be confirmed





3. After some time you will receive an email approving your application and asking you to complete the application process by clicking on the unique URL provided in the email.

Important Note:- You must use the same browser and the same computer for ALL steps in the process.

Follow the on screen instructions to complete the process




Now that you have your 2X Digi-Access™ certificate you can go to the 2X Portal Login [25] page.

Installing the Digi-Access™ Error 403 Pages

Installing the Digi-Access™ error pages

Allow
10 Minutes
 
     

The 2X Application Server [27] runs on a Microsoft® IIS server where there are specific default error pages designed to work with Digi-Access™ certificates. To enhance the user experience you should replace these default error pages with the customised Digi-Access™ error 403 pages [28].

The error handlers within IIS display default error pages depending on the specific issue that occurs on the server. The error message on each of these pages and their purpose are explained below.

Most error pages on IIS can be customised [29]. The default 403 error pages that relate to the use of Digi-Access™ are stored in the C:\WINDOWS\help\iisHelp\common\ folder. The 2X Application Server Administrator should download the Digi-Access™ error 403 pages [28] and place them in a new folder: (e.g. C:\WINDOWS\help\iisHelp\digi-access\ ). The server should be configured to display these new error pages before being restarted to complete the setup procedure.

  Error   Description
       
  403.7 [30]   Access denied. SSL Client Certificate is Required
       
      The system is using Digi-Access™ two factor authentication and users must have a Digi-Access™ certificate to gain access
       
  403.12 [31]   Access denied due to certificate mapping configuration
       
      Digi-Access™ only uses mapping in highly integrated situations. In most instances, this error page will not display
       
  403.13 [32]   Access denied. The SSL Client Certificate was revoked or revocation status can not be established
       
      The specific Digi-Access™ certificate being used is invalid/out-of-date. The user must get a new Digi-Access™ certificate is required
       
  403.16 [33]   Access denied. The SSL Client Certificate is incorrect or is not trusted by the server
       
      The user has incorrectly selected a different type of digital certificate (i.e. not the required Digi-Access™ certificate)
       
  403.17 [34]   Access denied. The SSL Client Certificate has expired or is not yet valid
       
      The user's Digi-Access™ certificate has expired and they must request a new one from the Digi-Access™ system
       
       

Configuring the 2X Server

Read these instructions to configure Digi-Access™ [12] on the 2X Application Server

Configuring the 2X Application Server to Use Digi-Access™

Step-by-step instructions on how to enable Digi-Access™

Allow
30 Minutes
 
     

Enabling Digi-Access™ client certificates for two factor authentication will take 30 minutes (or less). Configure the 2X Application Server by following these simple steps (for full detailed instructions and screenshots, read the IIS Support [35] pages):

IIS [35]

1. Download and save these two certificates:

   Digi-Sign Root CA [36]

   Digi-Sign CA Digi-Access™ Xs [37]

2. On the server, click the Start button, select Run and type MMC, before clicking the 'OK' button

3. You should now be in the Microsoft Management Console and should follow these steps:

  • Click File and select Add/Remove Snap-in

  • Select Add, select Certificates from the Add Standalone Snap-in box and click Add

  • Select Computer Account, then Local Computer and click Finish

  • Close the Add Standalone Snap-in box and click OK in the Add/Remove Snap-in

  • Return to the Microsoft Management Console

4. Now all you need to do is import the Digi-Access™ Root certificate, following these steps:

  • Right click the Trusted Root Certification Authorities, select All Tasks, and then select Import

  • After clicking Next > you should browse to the Digi-Sign Root CA [36]

  • Ensure that the Digi-Sign Root CA certificate appears under Trusted Root Certification Authorities

  • Then click Next > and then Finish

5. Then import the Digi-Access™ intermediate CA certificate, as follows:

  • Right click the Intermediate Certification Authorities, select All Tasks, and then select Import

  • After clicking Next > you should browse to the Digi-Sign CA Digi-Access Xs [37]

  • Ensure that the Digi-Sign CA Digi-Access Xs appears under Intermediate Certification Authorities

  • Then click Next > and then Finish

  • Restart the IISAdmin service, or reboot the computer to complete the installation

6. Go to Windows Administrative Tools and open the properties window for the website that you have enabled SSL on. Open the Directory Security by right clicking on the Directory Security tab and then follow these steps:

  • Click Edit in the Anonymous access and authentication control section. The Authentication Methods window will appear

  • Make sure that all options (check boxes) in this section are disabled, including the Anonymous Access, Basic Authentication, Digest Authentication and Integrated Windows Authentication

  • Click OK to apply changes

  • Click Edit in Secure communications section and the Secure Communications window will appear

  • Ensure that both the 'Require secure channel (SSL)' option and the 'Require 128-bit encryption' option are enabled

  • Then ensure that the 'Enable client certificate mapping' option is enabled and that the 'Ensure that Enable certificate trust list' option is enabled

  • Move to the 'Under Current CTL' and click New, followed by Next > and a Certificate Trust List Wizard window will appear

  • Browse for the Digi-Sign_Root_CA.cer Certificate file and click Open, followed by Next>

  • In the Friendly Name field enter: Digi-Access

  • In the Description field enter: Digi-Access Two Factor Client Authentication

  • Click Next > and then Finish

  • You should now see your Certificate Trust List [CTL] List on the Secure Communications window

  • Click OK and then OK again

7. Start Internet Services Manager, or open the MMC that contains the IIS snap-in.

  • Right-click the Web site for which you want to configure authentication (for example, Default Web Site), and then click Properties

  • Click the Directory Security tab, and then under Secure communications, click Edit

  • Click to select the Enable client certificate mapping check box, and then click Edit

  • Click the Many-to-1 tab, and then click Add

  • In the General dialog box, type 'Digi-Access' as the name for the rule, and then Next

  • In the Rules dialog box, click New

  • In the Edit Rule Element dialog box that appears, configure the settings that you want for the rule

    There are two fields from client certificates that can be used as criteria for many-to-one rules:

    * Issuer - This field specifies information about the Certification Authority [CA] that issued the Digi-Access™ certificate

    * Subject - This field specifies information about the entity to whom the Digi-Access™ certificate was issued

    Each of these fields can contain common LDAP sub fields for example:

           * CN = commonName (for example, "Bob Smith")
           * OU = organizationalUnitName (for example, "Sales")
           * OU = organizationalUnitName [38] (for example, "2xacme")
           * OU = organizationalUnitName [38] (for example, "2x10003")
           * O = organizationName (for example, "Acme, Inc.")
           * L = localityName (for example, "Dublin")
           * S = stateOrProvinceName (for example, "Dublin")
           * C = countryName (for example, "IE")


    To create a mapping, you create a rule based on a field/subfield pair for a specific value. For example, you could create a rule that matched the Subject's O subfield with 'Acme' to allow access to all clients with certificates that were issued for the Acme organization. This effectively eliminates client connections from any clients that are not part of the Acme organization.

    When finished creating the rule settings, click OK, and then click Next






    IMPORTANT NOTE:- In addition to the above parameters you enter, two additional rule sets will be generated by the Registration Authority [RA] that will be used to distribute [14] the end users' Digi-Access™ certificates. These two rule sets are based on Organizational Unit Name [OU] fields and will be 'silently' pre-appended to each Digi-Access™ Certificate issued by the Digi-Access™ CA.

    These OU field values distinguish end users as belonging to your specific user domain. You must obtain these values from Digi-Access™ RA Certificate Management Console where these two rule sets can be found in the Certificate Manager's 'Distinguished Name' policy configuration.

  • In the Mapping dialog box, click Accept this certificate for Logon Authentication, and then in the Account box, type, or click Browse to browse to the Windows user account that you want to map. Type the password of the user account in the Password box.

  • Click OK three times, and then quit Internet Services Manager, or close the IIS snap-in



How to get the 2X Digi-Access™ OU Codes

Read these instructions to find the OU Codes [38] for your customer.

How to get the 2X Digi-Access™ DN Codes

Instructions on how to get the unique Digi-Access™ DN Codes

Allow
5 Minutes
 
     

For every 2X Digi-Access™ customer, a unique Digi-Access™ RA is activated so that the customer can manage the end users Digi-Access™ certificates. Once the order [15] for your customer has been approved, the Digi-Access™ RA is activated and you are notified automatically.

To complete the 2X Application Server configuration you require the two unique organizationalUnitName [OU [39]] codes. These are provided automatically in the Digi-Access™ tab of the Digi-CA™ Control Centre (Digi-Access™):





Depending on the level of service you are providing to your customer either you:

1. will have access to the Digi-Access™ RA because you are managing and issuing certificates to the end users; or

2. your customer's Administrator is managing the certificates and therefore you do not have access to the Digi-Access™ RA

In the case where you do not have access the to Digi-Access™ RA, ask your customer's Administrator to provide the organizationalUnitName 1 and organizationalUnitName 2 cosdes as shown on the Digi-Access™ tab of the Digi-CA™ Control Centre (Digi-Access™)

How to Get 2X Digi-Access™ Certificates to End Users

How to get your 2X Digi-Access™ certificate

There are three very simple steps to getting your 2X Digi-Access™ certificate and these are as follows:


1.You will be directed to the 2X Digi-Access™ enrolment page where you must complete a simple online web form [21]. This web form has a help button opposite every field to ensure that you correctly complete each field on the form, so use them as required:


In this form you must provide the following details:

        • Registered Company Name - the legal name of your organisation
        • Department - what department you work in
        • Address - the address for the organisation
        • Postal Code or area code for the organisation
        • City - the city the organisation is located in
        • Full Name - you first and last name
        • Work Title - your job title or job description
        • Email - your email address
        • Telephone number - your direct dial phone number
        • Fax number - a fax number (if you have one)
        • Country - The country you are located in (e.g. KSA)



In addition you will also be asked to select a Secret Question and to provide your Secret Answer:

        • Secret Question - make a selection
        • Secret Answer - answer the question using something you'll easily remember



2. Once the above form is completed and submitted, your 2X Digi-Access™ certificate request will be confirmed





3. After some time you will receive an email approving your application and asking you to complete the application process by clicking on the unique URL provided in the email.

Important Note:- You must use the same browser and the same computer for ALL steps in the process.

Follow the on screen instructions to complete the process




Now that you have your 2X Digi-Access™ certificate you can go to the 2X Portal Login [40] page.

2X Digi-Access™ Enrolment Help for Microsoft® Internet Explorer®

2X Digi-Access™ Enrolment Messages & Explanations

The Digi-CA™ [41] Certificate Authority [CA] system that issues the Digi-Access™ end user certificates is compatible with most commonly used browsers. These support pages are provided for users that want to understand more about Microsoft® Internet Explorer® screen warnings and/or other browser events.

All Users

The most commonly reported error message is an 'Internal Server Error' or 'Error 404 Page Not Found'. The reason for this error message is that the URL is not correctly entered into the web browser's address bar.

To avoid this issue, copy the entire URL, without any breaks, and paste it into the browser's address bar.

Enrollment Warning Messages

If your browser does not have ActiveX [42] controls enabled, you will see the following warning messages. Ensure you read and follow these instructions carefully:


You need to authorize the "Microsoft Certificate Enrollment Control" to create a certificate request for you:

• Click here to reload this webpage, then...

• When you see a Security Warning popup, click Yes to install the "Microsoft Certificate Enrollment Control".




   To get past the security warning shown above, you need to authorize this webpage to create a certificate request for you:

• On the Tools menu, select Internet Options.

• Click the Security tab, select the Trusted sites zone and click Sites.

• Ensure that https://www.digi-sign.com is in the "Add this website to the zone:" box.

• Click Add, then Close, then OK.

• Finally, click here to continue...



Other Enrollment Pop Up Dialog Messages

When collecting your Digi-Access™ certificate, depending on what version of Microsoft® web browser you are using and how it is configured, you may see the following two dialogs:


1. This warning highlights potential concerns relating to Trusted certificates. It is both confusing and unclear. The Digi-Access™ certificate used for two factor authentication is of a specific configuration that Microsoft® is not 'familiar with'. You can ignore this message and should select and click Yes.





2. This message, may concern you as it uses strong language about 'security' and 'risk' but it is really about marketing Microsoft® (and Microsoft® approved) certificates. The last paragraph is the important one where it states: "Click Yes if you trust this Web site". You do trust the website, so select and click Yes.







In certain versions of Windows 7, or Internet Explorer®, you may still encounter certificate installation issues. If this occurs, email support@digi-sign.com [43] and your certificate can be delivered by alternative methods.


There are other warning messages in Mozilla Firefox [44], that you may wish to review also.

2X Digi-Access™ Enrolment Help for Mozilla Firefox

2X Digi-Access™ Enrolment Messages & Explanations

The Digi-CA™ [41] Certificate Authority [CA] system that issues the Digi-Access™ end user certificates is compatible with most commonly used browsers. These support pages are provided for users that want to understand more about Mozilla screen warnings and/or other browser events.

All Users

The most commonly reported error message is an 'Internal Server Error' or 'Error 404 Page Not Found'. The reason for this error message is that the URL is not correctly entered into the web browser's address bar.

To avoid this issue, copy the entire URL, without any breaks, and paste it into the browser's address bar.

Other Enrollment Pop Up Dialog Messages

When collecting your Digi-Access™ certificate, depending on what version of Mozilla browser you are using and how it is configured, you may see the following two dialogs:


1. This warning is simply a reminder to you to backup your certificate. Although this is good practice, the specific Digi-Access™ certificate used for two factor authentication does not permit backing up. This prevents users from sharing or copying certificates and protects the integrity of the security being offered. If you should ever loose your Digi-Access™ certificate, for any reason, you can request a new one. You can ignore this message and simply click OK.





2. This message, in addition to being unclear, is not relevant. As above, the Digi-Access™ certificate used for two factor authentication is of a specific configuration that Mozilla is not 'familiar with'. It interprets the Digi-Access™ certificate installation incorrectly and presents this dialog. Again, you can ignore this message and simply click OK.







There are other warning messages in Microsoft® Internet Explorer® [45] browsers because they use ActiveX controls.

Viewing Your 2X Digi-Access™ Certificate

How to view your Digi-Access™ Certificate

Depending on your operating system and browser version, you can view your Digi-Access™ two factor authentication certificate using the instructions below:

Microsoft® Internet Explorer®

 

Mozilla Firefox

1. To view your Digi-Access™ certificate in Microsoft® Internet Explorer®, use the Tools menu (you may have to press the 'Alt' button on your keyboard to view this menu) and then select Internet Options




2. In the Internet Options dialog box, select the Content tab and then click the Certificates button




3. In the Certificates dialog box, select the certificate you wish to examine and then click the View button




4. The chosen certificate will be displayed where you will be able to see:
  • The name of the person the certificate was Issued To

  • The fact that it is a Digi-Access™ certificate issued by Digi-Sign

  • When the certificate was issued (Valid from) and when it will expire (Valid to)



Here is an en example of a Digi-Access™ certificate as seen in the Microsoft® Internet Explorer® dialog:




  1. To view your Digi-Access™ certificate in Mozilla Firefox, use the Tools menu and then select Options




2. In the Options dialog box, select the Encryption tab and then click the View Certificates button




3. In the Certificate Manager dialog box, select the certificate you wish to examine and then click the View button




4. The chosen certificate will be displayed where you will be able to see:
  • The name of the person the certificate was Issued To

  • The fact that it is a Digi-Access™ certificate issued by Digi-Sign

  • The date the certificate was Issued on and the date it Expires on



Here is an en example of such a Digi-Access™ certificate as seen in the Mozille Firefox dialog:





Deleting an Unwanted 2X Digi-Access™ Certificate

Instructions on how to delete an unwanted certificate

Depending on your operating system and browser version, you can delete your Digi-Access™ two factor authentication certificate using the instructions below:

Microsoft® Internet Explorer®

 

Mozilla Firefox

1. To view your Digi-Access™ certificate in Microsoft® Internet Explorer®, use the Tools menu (you may have to press the 'Alt' button on your keyboard to view this menu) and then select Internet Options




2. In the Internet Options dialog box, select the Content tab and then click the Certificates button




3. In the Certificates dialog box, select the certificate you wish to examine and then click the View button




4. The chosen certificate will be displayed where you will be able to see:
  • The name of the person the certificate was Issued To

  • The fact that it is a Digi-Access™ certificate issued by Digi-Sign

  • When the certificate was issued (Valid from) and when it will expire (Valid to)



Here is an example of a Digi-Access™ certificate as seen in the Microsoft® Internet Explorer® dialog:





5. Once you have viewed and confirmed this is the Digi-Access™ certificate you wish to remove, return to the Certificates dialog box, select the certificate and click the Remove button

  1. To view your Digi-Access™ certificate in Mozilla Firefox, use the Tools menu and then select Options




2. In the Options dialog box, select the Encryption tab and then click the View Certificates button




3. In the Certificate Manager dialog box, select the certificate you wish to examine and then click the View button




4. The chosen certificate will be displayed where you will be able to see:
  • The name of the person the certificate was Issued To

  • The fact that it is a Digi-Access™ certificate issued by Digi-Sign

  • The date the certificate was Issued on and the date it Expires on



Here is an example of such a Digi-Access™ certificate as seen in the Mozilla Firefox dialog:





5. Once you have viewed and confirmed this is the Digi-Access™ certificate you wish to delete, return to the Certificate Manager dialog box, select the certificate and click the Delete button



The Complete 2X Programme

Overview of the complete 2X Digi-Sign Programme

PDF [1] 2X [46] is now an official member of the Digi-Sign Affiliates, Resellers & Partners [ARP] Network. The agreement [3] means that all 2X Distributors and Resellers are automatically members of our ARP Network.

2X & Digi-Sign recognise the considerable benefits that this agreement will bring to both organisations and most importantly, the benefits that it will bring to you. Learn more about the ARP Network below:

                • What is the Digi-Sign ARP Network

                • The Benefits of ARP Membership

                • How to Join the ARP Network

                • Why You Should Sell Digi-Access™ to your 2X customers

                • Selling Guidelines & Selling Options

                • Using the Online Demonstrations

                • Ordering Instructions

                • How Digi-Sign Systems are Provisioned

                • Customer Setup Instructions

                • Terms & Conditions of Supply

                • Invoicing & Payments

                • How to Get Support

     
1. What is the Digi-Sign ARP Network
       
1.1 Primary sales channel & excellent products   Digi-Sign’s primary sales channel is through the Affiliate, Reseller & Partner [ARP] Network and our systems and solutions are at the cutting edge of the Public Key Infrastructure [PKI] and Certificate Authority [CA] market.  As a 2X partner you can now leverage this technology into your sales cycle
       
1.2 Integrated and/or resold   Our security and identity technology is widely adopted and is an integral component of many different software and infrastructure solutions. For enhanced security, Digi-Access™ [47] offers two factor authentication that integrates seamlessly with the 2X Application Server
     
2. The Benefits of ARP Membership
       
2.1 You are valued & your opinions respected   ARP Network membership has many unique benefits. Principally, your organisation is treated as a valued and respected member of our extended organisation
       
2.2 2X discounts apply   As a 2X partner selling Digi-Access™ certificates to your customers, your 2X partner discount rate will apply
     
3. How to Join the ARP Network
       
3.1 Membership approved   As a 2X partner, you are automatically an official member of the ARP Network. However, you will need to complete the following Digi-Access™ Certificate Request [8] form to gain access to the ARP Extranet
       
3.2 Begin selling immediately   The ARP Extranet is a secure area where you can get quotations and place orders. Once you have access to the ARP Extranet [48], you can effectively begin selling immediately
     
4. Why You Should Sell Digi-Sign Systems & Solutions
       
4.1 Easy sale & considerable
benefits
  Digi-Access™ is a simple and highly effective security addition to the 2X Application Server. It is easy to sell and brings considerable security benefits to your customers Read more [10]
       
4.2 Easy to implement  

Ordering, activating [12], customer setup [13] and even support, are all simple to do

       
4.3 Recurring
annual
revenue
  The revenue you get from each sale is recurring annual revenue for as long as the customer continues to use it. Digi-Access™ customers rarely change to alternative technologies and remain loyal to you for many years
     
5. Selling Guidelines & Selling Options
       
5.1 SSL Number
=
Order Value
  The revenue generated is based on the number of Digi-SSL™ certificates your customer purchases. The more servers in your customer’s organisation, the higher the revenue you earn
       
5.2 User Number
=
Order Value
  The revenue generated is based on the number of Digi-Access™ certificates your customer purchases. The more users in your customer’s organisation, the higher the revenue you earn
       
5.3 Total outsource value ‘Add-on’   Above 1,000 users, you can sell the additional Total Trust Management™ [TTM™ [49]] service where Digi-Sign will manage the entire environment for your customers
     
6. Using the Online Demonstrations
       
6.1 Excellent sales tool   A live and interactive demonstration [50] of Digi-Access™ available to you and your customers. This is an excellent tool that will assist you in the sales process
       
6.2 When used properly   All demonstration screens and supporting documentation are designed to ensure you use them properly [51]. So always refer to the online help and/or supporting documents before using them
       
6.3 Tidy up afterwards   Every time you use this demonstration, you will generate a demo’ certificate that should be removed [52] from your computer afterwards. It is good practice to do this every time you complete the demonstration
     
7. Ordering Instructions
       
7.1 Simple
Digi-SSL™ ordering
  As an ARP member, you will be provided with a Digi-SSL™ Service [53] certificate management system that can be used to order and receive all your Digi-SSL™ certificates in a matter of minutes
       
7.2 Simple
Digi-Access™ ordering
  Once you have completed the Digi-Access™ Certificate Request [8] form, you will be supplied with your unique Digi-Access™ certificate that must be used to access the 2X Digi-Access™ ordering system
       
7.3 Complete orders with due care   When placing any order for your customer, every field on the order form has a help button to ensure you complete the order correctly [15]. Ensure you follow these instructions carefully
       
7.4 Order delays   For security reasons, before any Digi-Sign system can be delivered, the customer’s details must be validated and verified. Incorrectly entered details will result in orders being delayed, postponed indefinitely, or even cancelled
     
8. How a typical Digi-Sign System is Provisioned
       
8.1 Configured by us   After a successfully completed order [15] is validated and verified, Digi-Sign Production will issue, configure and deploy the system
       
8.2 You are notified   Using your predefined reseller email address, the Administrator of the system and the reseller email address will receive an email notification of the system’s activation
       
8.3 Checked by you   It is your responsibility to check that the system Administrator is satisfied that the system is active, that they can access it and that they understand how to operate the system [14]
     
9. Customer Setup Instructions
       
9.1 Read customer user guides too   In addition to ARP Network guidelines, instructions and help files [17], there are also User Guides [54] for your customers. To help complete your knowledge, you should review these too
       
9.2 Customer configuration   The customer will need to configure [12] the 2X Application Server and must also install the Digi-Access™ Error 403 [13] pages. You must clearly instruct them what they must do and/or assist them
     
10. Terms & Conditions of Supply
       
10.1 Apply to all sales   The standard 2X terms and conditions of supply apply to all Digi-Access™ sales, however provided, to all customers and end users
     
11. Invoicing & Payments
       
11.1 Electronic invoices & reminders   Digi-Sign does not operate a manual debtors reminder service. Invoices are issued electronically by email. Reminder emails are sent periodically to advise you of outstanding accounts
       
11.2 Paid on time   Payment of all outstanding amounts on, or before, their due date, as clearly marked on every invoice, is required
       
11.3 Or service disconnected   Failure to pay outstanding amounts owing on invoices, on or before their due date may result in service to your customers being disconnected and/or discontinued without warning
     
12. How to Get Support
       
12.1 Website   Your first source for support, help and assistance should always be the official Digi-Sign website: www.digi-sign.com/support [17]
       
12.2 Distributor   If you purchase Digi-Access™ from a distributor and cannot find a solution to your issue, then contact your distributor
       
12.3 Digi-Sign   Digi-Sign's secondary support channel, after the website, is the ARP Network and support will be supplied through this channel only


Using the 2X Digi-Access™ ARP Extranet

Accessing & Using 2X Digi-Access™ Extranet

As a 2X partner, you are automatically an official member of the ARP Network. However, you will need to complete the following Digi-Access™ Certificate Request [8] form to gain access to the ARP Extranet.

The ARP Extranet is a secure area where you can get confidential documents and other sales collateral from the ARP Extranet Download area and also get quotations, place orders and view your account statements.

Once you have received your ARP Extranet Digi-Access™ Certificate, use the following links to:

                • Download the 2X documentation [55]

                • Get a quotation or place an order [55]

                • View the ARP Accounts system [55]



Source URL: http://www2.digi-sign.com/arp/2x

Links:
[1] https://www.digi-sign.com/downloads/download.php?id=2x-arp
[2] http://www.2x.com/whitepapers/
[3] http://www2.digi-sign.com/blog/2x
[4] http://www2.digi-sign.com/arp/2x/digi-ssl
[5] https://www.digi-sign.com/order/arp/digi-ssl
[6] http://www2.digi-sign.com/arp/2x/complete+program#selling
[7] http://www2.digi-sign.com/arp/2x/complete+program#join
[8] https://on-site.digi-sign.com/IdApply/v32/raid?eID=U2FsdGVkX1/QM0F5qGNPz3t445kT0x2tCFfbZiDQlmwL5qnlgvAQMkpphQiUnrDC9zmB%2BrQiK8E=
[9] http://www2.digi-sign.com/arp/2x/complete+program
[10] http://www2.digi-sign.com/arp/2x/help/guide
[11] http://www2.digi-sign.com/arp/2x/help/demo
[12] http://www2.digi-sign.com/arp/2x/help/configure
[13] http://www2.digi-sign.com/arp/2x/help/setup
[14] http://www2.digi-sign.com/digi-access/distribute
[15] http://www2.digi-sign.com/arp/ordering
[16] http://www2.digi-sign.com/arp/accounts
[17] http://www2.digi-sign.com/arp/2x/help
[18] http://www2.digi-sign.com/support/digi-ssl/Microsoft+iis+5+iis+6
[19] http://www2.digi-sign.com/support/digi-ssl/install-certificate/microsoft-iis56
[20] http://www2.digi-sign.com/arp/2x/help/enrol
[21] https://www.digi-sign.com/demoexec/2x/enrol.php
[22] http://www2.digi-sign.com/arp/2x
[23] http://www2.digi-sign.com/user/login
[24] http://www2.digi-sign.com/user/register
[25] https://www.digi-sign.com/demonstration/2x/
[26] https://www.digi-sign.com/demonstration/2x/enrol.php
[27] http://www.2x.com/applicationserver/
[28] https://www.digi-sign.com/downloads/download.php?id=digi-access-403
[29] http://technet.microsoft.com/nl-nl/library/cc753103(WS.10).aspx
[30] http://www2.digi-sign.com/403-7.htm
[31] http://www2.digi-sign.com/403-12.htm
[32] http://www2.digi-sign.com/403-13.htm
[33] http://www2.digi-sign.com/403-16.htm
[34] http://www2.digi-sign.com/403-17.htm
[35] http://www2.digi-sign.com/support/digi-access/iis
[36] http://www.digi-sign.com/downloads/certificates/dsroot/Digi-Sign_Root_CA.cer
[37] http://www.digi-sign.com/downloads/certificates/digi-access/Digi-Sign_CA_Digi-Access_Xs.cer
[38] http://www2.digi-sign.com/arp/2x/help/ou
[39] http://www2.digi-sign.com/arp/2x/help/configure#ou
[40] https://www.digi-sign.com/demoexec/2x/
[41] http://www2.digi-sign.com/certificate+authority
[42] http://msdn.microsoft.com/en-gb/ie/default.aspx
[43] mailto:support@digi-sign.com
[44] http://www2.digi-sign.com/arp/2x/help/mozilla+enrol
[45] http://www2.digi-sign.com/arp/2x/help/ms+enrol
[46] http://www.2x.com
[47] http://www2.digi-sign.com/digi-access
[48] http://www2.digi-sign.com/arp/2x/extranet
[49] http://www2.digi-sign.com/digi-ca/total+trust+management
[50] https://www.digi-sign.com/demoexec/2x/index.php
[51] http://www2.digi-sign.com/demos/instructions/digi-access
[52] http://www2.digi-sign.com/arp/2x/help/delete
[53] https://www.digi-sign.com/arp/order/digi-ssl-service/index.php
[54] https://www.digi-sign.com/downloads/download.php?id=digi-access-user-pdf
[55] https://arp.digi-sign.com/2x/index.php