PKI系统

对于电子身份文件,需要公钥基础设施(PKI),以便使用持有人的信息对芯片进行个性化设置,并对这些数据进行数字签名。数字签名有多种用途:

  • 保护芯片数据不被篡改和欺骗
  • 确保数据真实性和完整性
  • 允许当局验证

MB TRUST ICAO PKI满足有关机读旅行证件(MRTD)的公钥和结构的国际标准芯片数据的签署符合国际民航组织(ICAO)文件 9303和ISO/IEC 18013,使得芯片数据能够获得符合ICAO标准的被动认证。

基于公钥基础设施(PKI), 纽豹提供不同电子护照生成标准的解决方案:

  • 基本访问控制(BAC)
  • 扩展访问控制(EAC)
  • 补充访问控制(SAC) 或
    密码验证连接建立(PACE)

纽豹为BAC和SAC提供一个基于PKI的国家签署解决方案和一个国家验证解决方案,这是带EAC的MRTD所必需的。

MB TRUST eGOVERNMENT PKI 是电子公民身份的重要技术。这些电子身份证件不仅是一个身份证明,同时也为行政机构沟通节省了大量时间。它是这样一个证件:

  • 以全新的方式与公民互动
  • 提供经济有效的战略
  • 为公民提供在线服务访问(电子服务eServices)
  • 用于安全签名创建设备(SSCD)

For electronic identity documents, a Public Key Infrastructure (PKI) is required in order to personalize the chip with the holder’s information and to digitally sign this data. The digital signature serves various purposes:

  • Protecting chip data against alteration and fraud
  • Ensuring data authenticity and data integrity
  • Enabling verification by the authorities

MB TRUST ICAO PKI fulfills international criteria regarding keys and structures for digitally signing machine-readable travel documents (MRTD’s). Chip data is signed in compliance with ICAO Doc 9303 and ISO/IEC 18013, enabling ICAO-compliant passive authentication of the chip data.

Based on a Public Key Infrastructure (PKI), Mühlbauer provides solutions for the different ePassport generation standards:

  • Basic Access Control (BAC)
  • Extended Access Control (EAC)
  • Supplemental Access Control (SAC)
  • Password Authenticated Connection Establishment (PACE)

Mühlbauer provides a PKI-based Country-Signing Solution for BAC and SAC and a Country-Verifying Solution, which is necessary for MRTD’s with EAC.

MB TRUST eGOVERNMENT PKI is the key technology for an electronic citizen identity. The eID document is more than a simple identity proof or a time-saver for contacting administration authorities. It is a document that helps

  • To interact with citizens in a new way
  • Providing a cost-effective strategy
  • grant citizens’ access to online services (eServices)
  • with the use of Secure Signature Creation Device (SSCD)