The Federal Bridge A Brief Overview 1
4BF Industry Forum April Fed PKI: View from 20,000 km FBCA C4 Common Policy CA (HSPD-12) CertiPath SSPs Industry PKIs CertiPath “ SSP” (PIV-I) SAFE Industry PKIs Serving all other Agencies HEBCA SAFE “SSP” SSP Clones (PIV-I)
4BF Industry Forum April Why PKI? E-Gov: government’s need for assured identity in electronic transactions with citizens, businesses, governments, itself; Security: need for high level of identity assurance for secure access to online systems and services.
4BF Industry Forum April Why A Bridge? Allow trust among members at known levels of assurance of identity Members continue to control their own domains and relationships (non- hierarchical) Expand trust span easily and minimize administrative burden and cost of cross- domain interoperability
Federal Bridge Business Case Source of interoperability for ALL Federal Agency HSPD-12 credentials (6.2 million and counting as of 3/2009) Source of interoperability with non-federal high assurance credential providers Primary author of master policies and methodologies (first among equals) 54BF Industry Forum April 2009
Early Use Cases Enable Agencies to validate each other’s PIV cards for physical access Validate desktop and network logins Enable Agencies to validate PIV-I credentials from external parties Support high assurance authentication to Agency Level 3 – 4 applications from government and private sector credentials 4BF Industry Forum April 20096