Chapter 10.
223
Enterprise Security Client
The Enterprise Security Client is a cross-platform client for end users to register and manage keys
and certificates on smart cards or tokens. This is the final component in the Certificate System token
management system, with the Token Processing System (TPS) and Token Key Service (TKS).
NOTE
For more information on using the Enterprise Security Client, see the
Certificate System
Enterprise Security Client Guide
.
The Enterprise Security Client provides the user interface of the token management system. The end
user can be issued security tokens containing certificates and keys required for signing, encryption,
and other cryptographic functions. To use the tokens, the TPS must be able to recognize and
communicate with them. Enterprise Security Client is the method for the tokens to be enrolled.
Enterprise Security Client communicates over an SSL HTTP channel to the backend of the TPS. It is
based on an extensible Mozilla XULRunner framework for the user interface, while retaining a legacy
web browser container for a simple HTML-based UI.
After a token is properly enrolled, web browsers can be configured to recognize the token and use it
for security operations. Enterprise Security Client provides the following capabilities:
• Allows the user to enroll security tokens so they are recognized by the TPS.
• Allows the user to maintain the security token. For example, Enterprise Security Client makes it
possible to re-enroll a token with the TPS.
• Provides support for two types of tokens.
UserKey
identifies token keys for an individual. The
simpler
DeviceKey
identifies the key itself, without verifying an individual's identity.
• Provides information about the current status of the tokens being managed.
Summary of Contents for CERTIFICATE SYSTEM 7.3 - ADMINISTRATION
Page 15: ...xv Index 525 ...
Page 16: ...xvi ...
Page 38: ...Chapter 1 Overview 16 Figure 1 4 Certificate System Architecture ...
Page 82: ...Chapter 2 Installation and Configuration 60 rpm ev rhpki manage ...
Page 154: ...132 ...
Page 194: ...172 ...
Page 238: ...216 ...
Page 244: ...222 ...
Page 246: ...224 ...
Page 286: ...264 ...
Page 292: ...270 ...
Page 318: ...Chapter 13 Certificate Profiles 296 Parameter IssuerType_n IssuerName_n ...
Page 321: ...Freshest CRL Extension Default 299 Parameter PointName_n PointIssuerName_n ...
Page 398: ...376 ...
Page 412: ...390 ...
Page 472: ...450 ...
Page 506: ...484 ...
Page 528: ...506 ...
Page 546: ...524 ...