The Managed PKI for SSL Certificates System


Managed PKI for SSL certificates is designed to be easily installed and administered. The following features provide the backbone of your network security system: the managed PKI for SSL certificates administrator and instant enrollment for SSL certificates.

The Managed PKI for SSL Certificates Administrator

When you use managed PKI for SSL certificates to manage your secure network, an administrator within your organization oversees a local control center to issue SSL certificates. This managed PKI administrator, using a standard PC with the Netscape Navigator browser, purchases managed PKI for SSL certificates, and receives an administrator’s kit. Before issuing the administrator’s kit, the vendor should conduct the necessary background checks to ensure that your organization is legitimate and has the right to use the domain names being secured.

The administrator’s kit should include all of the software necessary to establish a managed PKI control center on the administrator’s PC. It also includes an optional smart card reader and a managed PKI administrator ID stored on a smart card. After the administrator’s kit is installed and the control center is up and running, you are ready to start issuing SSL certificates.

Instant Enrollment for SSL Certificates

The local control center allows users within your network to receive SSL certificates without any manual intervention. Because a vendor has already verified your company and domain names, the only approval necessary is from the managed PKI administrator at your organization. The enrollment process goes as follows:

  1. A user within your network generates a Certificate Signing Request (CSR) on the server being secured.

  2. The user submits the CSR, along with the necessary enrollment forms, to the digital ID center.

  3. The vendor instantly and automatically sends a pending request to the managed PKI control center at your organization.

  4. The managed PKI administrator within your organization validates the user’s enrollment request.

  5. The vendor then generates an SSL certificate and sends it to the user’s e-mail address.

  6. The user downloads the SSL certificate and installs it on the server[1].

Finally, all communications occur in protected SSL sessions and are, thus, safe for your company.




Electronic Commerce (Networking Serie 2003)
Electronic Commerce (Charles River Media Networking/Security)
ISBN: 1584500646
EAN: 2147483647
Year: 2004
Pages: 260
Authors: Pete Loshin

flylib.com © 2008-2017.
If you may any questions please contact us: flylib@qtcs.net