Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

Comment: This article is new for Smart ID Identity Manager 24.R1.

Remember to update the release version number before publishing externally.

David Banz there are some remaining questions in this article.

Info

This article includes updates for Smart ID Identity Manager 24.R1.

...

Generate dummy certificate for transient key-pairs generated on a target device when provisioning Smart ID Mobile/Desktop App profiles (the certificates themselves are merely used as transport container for the key-usage parameter)

Required

TODO: David Banz what should we add here? This info is missing.usage parameter)

Configured in the following application

...

Authentication of Smart ID Self-Service users to the Identity Manager backend

Required

TODO: David Banz what should we add here? This info is missing.

ba

Configured in the following applications

...

Signing content for Visual ID provisioning to Smart ID Mobile App

Required

TODO: David Banz what should we add here? This info is missing.

Configured in the following applications

...

  • Verify Certification Signing Requests (CSR) from Smart ID Mobile / Smart ID Desktop App.

  • Optionally limit profile provisioning with Smart ID Mobile/Smart ID Desktop App to certain devices, for example company devices. This can be done by using Mobile/Desktop apps with custom private keys and configuring the corresponding public keys into IDM (by default IDM includes certificates for the built-in keys of any Mobile and Desktop App installation)

Required

...

  • )

Configured in the following applications

...

Initial handshake with Idopte client-side middleware, see Encoding using Idopte middleware in Identity Manager

...

TODO: David Banz what should we add here? This info is missing.

Configured in the following application

...

Authenticate to the IN Groupe Inside Server, which performs certain cryptographic operations on behalf of IDM when using the Idopte middleware (see Encoding using Idopte middleware in Identity Manager)

Required

TODO: David Banz what should we add here? This info is missing.

Configured in the following applications

...

Decrypting pin-blobs from pre-personalized cards to e.g. print pin letters for them (see Encodings using Personal Desktop Client middleware in Identity Manager (section "Read encrypted PINs")

Required

TODO: David Banz what should we add here? This info is missing.

Configured in the following applications

...