Using Verizon UniCERT UPI Certificate Authority
This section describes how to configure PIV Personal Identity Verification (technical standard of "HSPD-12") policies with the Verizon UniCERT UPI CA certificate templates.
-
In the Action column, next to PIV_AUTHENTICATION, select Add, and then click Configure. The Device Policy - Set Application Information page appears.
-
Friendly Name—Enter a name for the application.
-
Provisioning Method —Select Create Credential.
Note: Selecting the Create Credential option is the equivalent of setting the former Recover Application option (available in previous ActivID CMS versions) to No.
-
Provider—Select Verizon UniCERT UPI Authority.
-
Certificate Authority—Select the Default UPI configuration template.
-
Template—Select default template, which corresponds to the certificate template configured in Verizon UniCERT UPI CA for the PIV_Authentication application.
-
Click Submit. The Configure PIV_AUTHENTICATION Application page appears.
-
Enter appropriate values in all the required fields.
-
Click Set to return to the main Device Policy Configuration page.
-
Optionally, in the Action column, next to CARD_AUTHENTICATION, select Add, and then click Configure.
-
Friendly Name—Enter a friendly name for the application.
-
Provisioning Method —Select Create Credential.
-
Provider—Select Verizon UniCERT UPI Authority.
-
Certificate Authority—Select your Default UPI configuration template.
-
Template—Select default template, which corresponds to the certificate template configured in Verizon UniCERT UPI CA for the CARD_AUTHENTICATION application.
-
Click Submit. The Configure CARD_AUTHENTICATION Application page appears.
-
Enter appropriate values in all the required fields.
-
Click Set to return to the main Device Policy Configuration page.
-
Optionally, in the Action column, next to PIV_DIGITAL_SIGNATURE, select Add, and then click Configure.
-
Friendly Name—Enter a name for the application.
-
Provisioning Method —Select Create Credential.
-
Provider—Select Verizon UniCERT UPI Authority.
-
Certificate Authority—Select your Default UPI configuration template.
-
Template—Select default template, which corresponds to the certificate template configured in UniCERT UPI CA for the PIV_Digital_Signature application.
-
Click Submit. The Configure PIV_DIGITAL_SIGNATURE Application page appears.
-
Enter appropriate values in all the required fields
-
Click Set to return to the main Device Policy Configuration page.
-
Optionally, in the Action column, next to PIV_ENCRYPTION, select Update/ Add, and then click Configure.
-
Friendly Name—Enter a friendly name for the application.
-
Provisioning Method —Select Create Credential.
-
Provider—Select Verizon UniCERT UPI Authority.
-
Certificate Authority— Select your Default UPI configuration template.
-
Template—Select default template, which corresponds to the certificate template configured in UniCERT UPI CA for the PIV_ENCRYPTION application.
-
Click Submit. The Configure PIV_ENCRYPTION Application page appears.
-
Enter appropriate values in all the required fields
-
Click Set to return to the main Device Policy Configuration page.
-
Click Save, and then click Done.