Download presentation
Presentation is loading. Please wait.
Published byKelley Sullivan Modified over 9 years ago
1
PKI interoperability and policy in the wireless world
2
Agenda Wireless Trust Services Wireless PKI Technologies Wireless Security Deployments Today Interoperability testing experience Certificate issuance policies Use of certificates by other parties
3
Trust in The Wireless World Authentication Payment Validation Who are you? Can you pay? Can you prove it?
4
Wireless PKI Technologies Device independent solutions SIM Toolkit application (GSM) WAP –WTLS class 2 today –WTLS class 3 2001 I Mode Solutions –SSL from fall 2000 –Client Certificates in 2001? Future wireless standards –WAP Next Generation –3G Wireless
5
SIM Toolkit Application SIM Manager SMS Gateway Phone Application Server CA Processing Center Private key Available today
6
Device Independent Solution SMS Gateway Phone Signing Portal Application Server Roaming Key Server #2 Roaming Key Server #1 Available today
7
WAP Gateway Architecture WTLS HTTP/SSL Wireless Gateway Application Servers
8
WAP Gateway/Server Certificates WAP WAP Server/ Gateway WTLS certificate service CA Processing Center CA Processing Center Private key Root public key Available today
9
WAP Client Certificates WTLS Wireless Gateway Application Server Mobile Client VeriSign OnSite X.509 client certificates Private key CA Processing Center WML Script API: End-to-end digital signatures & client authentication WTLS client authentication
10
OnLine-Issued WAP Client Certificates Wireless Gateway Application Server Phone/ WIM Private key CA Processing Center X.509 client certs Certificate Issuance (Carrier cert) PKI Portal SIM Personalization Center SIM Personalization Center Certificate Issuance (Device Certificate) Wireless Client Certificate Issuing Capability in Trial 4Q00 Wireless Client Certificate Issuing Capability in Trial 4Q00
11
Interoperability testing experience Testing of WAP server certificates successful Problems encountered: –User interface issues –Certificate memory allocation issues
12
Certificate Issuance Policy Need a published policy Value of certificate depends on level of authentication Certificate status needs to be publicly available
13
Use of Certificates by other parties Revenue opportunity for wireless carriers –Provide on line status of certificates –Use carrier issued certificate for mCommerce authentication Requires a high level of trust in certificate issuer
14
Summary Interoperability essential Successful testing of WAP server certs Revenue opportunity for wireless carriers with wireless client certificates Interoperability essential for widespread adoption
15
“Enabling Trust on the Wireless Internet”
Similar presentations
© 2025 SlidePlayer.com. Inc.
All rights reserved.