Remote Import Certificate
Protect Data & Identities that Matter
Remote Import Certificate (RIC) offers the flexibility to import renewal e-certificates, overcoming geographic and time constraints. Additionally, the system securely protects the P12 file and passcode, ensuring that only the authorized administrator can perform the import function.
Highlighted Features of
Remote Import Certificate
Separation of Duties
Operators are permitted to create Key Import Requests, while only the administrator can manage master keys and configurations. Authorized users are responsible for importing e-certificates.
Support for Multiple Database Sets
Application databases can be independently replicated and operated on multiple servers, fully supporting high availability and disaster recovery.
Detailed Process Logging
All processes are recorded in the RIC Log database, including all failure and success cases, frequency of import executions, and token key IDs. This ensures users can verify that e-certificates have been imported.
Configurable Key Import Request Expiration​
The configuration database allows you to set key import request expiration. RIC will automatically capture this setting when creating a new key import request.
Automatic Removal of Expired Key Import Requests
Once a key import request expires, the RIC system will automatically remove it. This helps prevent confusion for administrators regarding certificate management.
Integration with CSKeyFile & ETM
Administrators can complete the importation to all three systems in a single step using the auto-submission function. This saves time and effort while reducing the exposure of passwords and important data.
Import First Certificate
Add new functions for “Import First Certificate” that allow the inclusion or exclusion of the P12 password in
the Import Request.
More About RIC
It allows administrators to remotely transfer new certificates to users at distant workstations when they need to renew the e-certificates for their token authenticators.
It also supports operators with 2048-bit RSA key length e-certificates.
Mechanism of RIC
-
The administrator uploads the user's new certificate via the Remote Import Certificate (RIC) Database.
-
The RIC Database sends the user's new certificate and passcode to the Certificate Manager Database via encrypted email.
-
Backend jobs send out notification emails to the user every 30 minutes.
-
The user plugs in the token, opens the email, and clicks the button to start the import.
-
Module files are downloaded to the workstation. The request is decrypted, and necessary files and the passcode are downloaded to the workstation.
-
The new certificate is imported to the token.
-
The workstation sends a certificate storage request to the Enigmator Configuration Database.
-
The administrator accepts the request and stores the user's new certificate in the directory.
Effective & Efficient & Secure
-
Save time and cost to manage large amount of e-certs​
-
Reduce work load of administrators
-
Break the geographic limitation by remote controlling
-
Increase work efficiency by immediate import certificates
More information about
Stand-alone RIC
-
Runs on a standalone application server.
-
Includes an administration portal.
-
Eliminates dependence on mail clients such as Outlook, webmail, Notes, etc., all of which are supported.
-
Allows submission of requests even if the re-certification has expired.