Using Verizon UniCERT UPI Certificate Authority

This section describes how to configure PIV Personal Identity Verification (technical standard of "HSPD-12") policies with the Verizon UniCERT UPI CA certificate templates.

  1. In the Action column, next to PIV_AUTHENTICATION, select Add, and then click Configure. The Device Policy - Set Application Information page appears.

  • Friendly Name—Enter a name for the application.

  • Provisioning Method —Select Create Credential.

    Note: Selecting the Create Credential option is the equivalent of setting the former Recover Application option (available in previous ActivID CMS versions) to No.
  • Provider—Select Verizon UniCERT UPI Authority.

  • Certificate Authority—Select the Default UPI configuration template.

  • Template—Select default template, which corresponds to the certificate template configured in Verizon UniCERT UPI CA for the PIV_Authentication application.

  1. Click Submit. The Configure PIV_AUTHENTICATION Application page appears.

  1. Enter appropriate values in all the required fields.

  2. Click Set to return to the main Device Policy Configuration page.

  3. Optionally, in the Action column, next to CARD_AUTHENTICATION, select Add, and then click Configure.

  • Friendly Name—Enter a friendly name for the application.

  • Provisioning Method —Select Create Credential.

  • Provider—Select Verizon UniCERT UPI Authority.

  • Certificate Authority—Select your Default UPI configuration template.

  • Template—Select default template, which corresponds to the certificate template configured in Verizon UniCERT UPI CA for the CARD_AUTHENTICATION application.

  1. Click Submit. The Configure CARD_AUTHENTICATION Application page appears.

  1. Enter appropriate values in all the required fields.

  2. Click Set to return to the main Device Policy Configuration page.

  3. Optionally, in the Action column, next to PIV_DIGITAL_SIGNATURE, select Add, and then click Configure.

  • Friendly Name—Enter a name for the application.

  • Provisioning Method —Select Create Credential.

  • Provider—Select Verizon UniCERT UPI Authority.

  • Certificate Authority—Select your Default UPI configuration template.

  • Template—Select default template, which corresponds to the certificate template configured in UniCERT UPI CA for the PIV_Digital_Signature application.

  1. Click Submit. The Configure PIV_DIGITAL_SIGNATURE Application page appears.

  1. Enter appropriate values in all the required fields

  2. Click Set to return to the main Device Policy Configuration page.

  3. Optionally, in the Action column, next to PIV_ENCRYPTION, select Update/ Add, and then click Configure.

  • Friendly Name—Enter a friendly name for the application.

  • Provisioning Method —Select Create Credential.

  • Provider—Select Verizon UniCERT UPI Authority.

  • Certificate Authority— Select your Default UPI configuration template.

  • Template—Select default template, which corresponds to the certificate template configured in UniCERT UPI CA for the PIV_ENCRYPTION application.

  1. Click Submit. The Configure PIV_ENCRYPTION Application page appears.

  1. Enter appropriate values in all the required fields

  2. Click Set to return to the main Device Policy Configuration page.

  3. Click Save, and then click Done.