Download presentation
Presentation is loading. Please wait.
Published byOsborn Johnson Modified over 8 years ago
1
PKI Policy Determination Process Input from PKI Decision Process PKI Policy Determination Process Application(s) Workflows Players
2
Determine Business Requirements and Constraints Determine Policy and Deployment Models Determine Types of Policies and Agreements Needed List of Potential Policies and Agreements PKI Policy Determination Process Define Business Applications and Requirements
3
Determine Business Requirements and Constraints Map Business Requirements to PKI Services Determine Types of Data Determine Use Determine Jurisdiction Workflows Players
4
Map Business Requirements to PKI Services PKI Services –Authenticity of Identity –Integrity of Data –Digital Signature –Non repudiation –Confidentiality
5
Determine Types of Data Financial Medical Personal Commercial Location Governmental
6
Determine Use Motivation and Purpose Process Role Community
7
Determine Use – Motivation and Purpose Institution and professional accreditation Establishment of secure user accounts Enable transactions –Internally –B2B –B2G –B2C –C2C –C2G –G2G
8
Determine Use - Process Application specific -Financial management -Clinical information systems -Mortgages Communications -Email/Web -VOIP -Mobile/wireless -legacy Storage and retrieval -Physical -Electronic Workflow/process management
9
Determine Use - Role Issuer/CA (need business terms) Holder Relying Party
10
Determine Use - Community Enterprise Trading partner Community of Interest –Closed –Extensible Government
11
Determine Jurisdiction Jurisdictional level – international, national, state, local Laws Regulations Policies Business and intra-industry Government Standards/codes of practice Accredited De-facto Industry-specific best practices
12
Determine Policy and Deployment Types Internal External Trust model
13
Define Business Application(s) and Requirements
14
Determine Types of Policies and Agreements Needed CP CPS Relying Party Agreement Subscriber Agreement RA Agreement LRA Agreement PKI Disclosure Statement (PDS) Privacy Policy Statement Certificate Manufacturing Agreement Security Policy Policy Management Authority Charter (policy document) Service Level Agreement Outsourcing Agreement Internal Memoranda of Agreement Internal Conformance Audit Agreement External Conformance Audit Agreement Dispute Resolution Procedures Certification Authority Agreement (contractual) Warranty
15
List of Potential Policies and Agreements
Similar presentations
© 2024 SlidePlayer.com. Inc.
All rights reserved.