FIPS 201 PIV Profiles (Service Bureau)

Note:  
  • For Gemalto PIV profile (that is, card with Gemalto PIV applet v1.20), it is necessary to obtain a Gemalto PIV card with configuration “USG 010”.

  • For Oberthur PIV profile, ActivID CMS 4.0 SP2 expects Cosmo card with BAP# 81758.

  • For Oberthur PIV profiles with Oberthur PIV applet 2.3.2, use BAP #087282.

  • For Oberthur PIV profiles with Oberthur PIV applet 2.3.5, use BAP #087420 / #087424 / #087465.

  • For Oberthur PIV profiles with Oberthur PIV applet 2.4.0, use BAP #087434.

  • For IDEMIA PIV profiles with IDEMIA PIV applet 2.4.1, use BAP #087484

  • For PIV FIPS201 SB Activation Java Card - IDEMIA ID-One PIV 2.4.1 - 2048 profile, PIN is numeric only.

These profiles activate the PIV cards personalized by the card manufacturer service bureau. The card activation process consists of:

  • Injecting and generating the PKI credentials (PKI 1024 or 2048),

  • Swapping the Card Manager keys,

  • Swapping the PIV Card Administrator key (9B), and

  • Setting up the PIV Local PIN for the user and setting up the PUK.

PIV FIPS201 SB Activation Java Card – OT 2.3.2 – 2048

PIV2 Activation Profile with OT End-Point applets v2.3.2 (SP 800-73-3). Card with Oberthur PIV applet v2.3.2.

Supported Devices

Supported Pre-Issuance IDs

Oberthur ID-One PIV 2.3.2 on Cosmo v7

PIV FIPS201 SB Activation Java Card – OT 2.3.5 / 2.4.0 – 2048

PIV2 Activation Profile with OT End-Point applets v2.3.5 / 2.4.0 (SP 800-73-4). Card with Oberthur PIV applet v2.3.5 or v2.4.0.

Supported Devices

Supported Pre-Issuance IDs

Oberthur ID-One PIV 2.3.5 on Cosmo v8

Oberthur ID-One PIV 2.4.0 on Cosmo v8

PIV FIPS201 SB Activation Java Card - IDEMIA ID-One PIV 2.4.1 - 2048

PIV2 Activation Profile with IDEMIA End-Point applets v2.4.1 (SP800-73-4). Card with IDEMIA PIV applet v2.4.1.

Supported Devices

Supported Pre-Issuance IDs

IDEMIA ID-One PIV 2.4.1 on Cosmo v8.1 (BAP 087484)