Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

The first step to create a fully functional (active) BankID is to submit an order to the originator's BankID RA. Inputs to the order are the merchants organization name and Common Name for the BankID. The order results in an activation URL and a shared secret, both to be used for activation of the BankID, see next chapter.

PREPROD

SelfA self-service BankID RA in preprod is available at BankID RA PREPROD. Kontaktinfo for å få user/pass?to issue BankID merchant certificates for testing. Note that this tool optionally support immediate activation of the certificate. Activation may also happen as a separate step via the Sky-MAT tool

PROD

Production BankIDs must be ordered from a reseller or from BankID Norge. Link/referanse til hvor det er beskrevet.

Activate

Before the BankID can be used it must be activated. This means acquiring a X.509 certificate with the merchant's CommonName coupled to the merchant's public key, where the corresponding private key is known to the merchant only. This is done by:

...

  • Use two different private/public key pairs for the two CSRs (authentication/signing).
  • Never use the same set of private/public key pairs for CSRs for two different BankIDs.Dette er ikke på plass pr i dag, løses i JiraserverJIRAcolumnskey,summary,type,created,updated,due,assignee,reporter,priority,status,resolutionserverIda68c4d92-7e18-3f70-8744-e8518df42e43keyNFOI-732
  • The Common Name in the CSRs MUST be the same as in the BankID order. 

...

  • Authentication: Digital Signature, Key Agreement
  • Signing: Non Repudiation

PREPROD

SelfA web-service based activation tool for pre-preprod certificates is available at BankID Open B2B Sky-MAT PREPROD.

PROD

SelfA web-service based activation tool for production certificates is available at BankID Open B2B Sky-MAT PROD.

...