Terms and Concepts in NemID



Similar documents
Terms and concepts in LSS for NemID

Introduction to NemID and the NemID Service Provider Package

Specification document for the RID-CPR service

You can also find the conditions at

Specification document for the PID-CPR service

NemID JS Developer Support site. Guidelines

Guide. - How to setup secure communication for REST services in Automatisk kortbetaling. Revision 1.3. Nets A/S. Lautrupbjerg 10.

Specifikationsdokument for OCES II

Den Gode Webservice - Security Analysis

Terms and conditions of business for a NemID administrator of commercial NemID

Specification document for LDAP API

Rules for Sydbanks ebanking - private

Rules for Jyske Banks ebanking - private

CPS - Certification Practice Statement

Contents. Nets Denmark A/S - CVR nr , June User guide Key generating

Questions/Answers about NemID, mandatory digital self-service and Digital Post. NemID FAKTAARK HJÆLP TIL KOMMUNIKATIONEN MED BORGEREN

2016 R2. CPR Integration. Configuration Guide

Certificate Policy for OCES Employee Certificates (Public Certificates for Electronic Services) Version 5

PaymentNet Federal Card Solutions Cardholder FAQs

Applicants with a Danish CPR number applying for higher education. User guide Optagelse.dk

Implementation guide for LSS

Enhanced Login Security Frequently Asked Questions

Multi-Factor Authentication (MFA)

Personal and Small Business Login Guide

Welcome to Business Internet Banking

Applicants with a Danish CPR number applying for higher education. User guide Optagelse.dk

eid/authentication/digital signatures in Denmark

Authentication Levels. White Paper April 23, 2014

One-Time Password Contingency Access Process

Nykredit's Online Banking Service for personal customers

Electronic signatures in Denmark: free for all citizens

Entrust Managed Services PKI. Getting started with digital certificates and Entrust Managed Services PKI. Document issue: 1.0

esign Online Digital Signature Service

2 business days from the date of K-Cyber Invest registration.

White Paper. The risks of authenticating with digital certificates exposed

Using the Payment Processing Feature

Guidelines for the LSS for NemID interaction design and user selection

Certificate Policy for OCES Personal Certificates ("Offentlige Certifikater til Elektronisk Service") Version 4

IDRBT Working Paper No. 11 Authentication factors for Internet banking

User Guide. Digital Signature

DK HOSTMASTER S GENERAL CONDITIONS FOR THE ASSIGNMENT, REGISTRATION AND ADMINISTRATION OF.DK DOMAIN NAMES

Frequently Asked Questions Please read this document before using this application.

Applicants without a Danish CPR number applying for admission to higher education. User guide optagelse.dk

Technical requirements for obtaining a license to provide online gambling in Denmark

Conditions for Nordea Pay Effective from 1 January 2015

e-filing Vault Higher Security

Open-Xchange Guard Major Release v Feature Overview V1.4

Portal User Guide. Customers. Version 1.1. May of 5

REGISTRATION AUTHORITY (RA) POLICY. Registration Authority (RA) Fulfillment Characteristics SECURITY DATA SEGURIDAD EN DATOS Y FIRMA DIGITAL, S.A.

General tips for increasing the security of using First Investment Bank's internet banking

Business ebanking - User Sign On & Set Up

Minnesota State Colleges and Universities System Guideline Chapter 5 Administration

Digital Signatures on iqmis User Access Request Form

Safewhere*Identify 3.4. Release Notes

OIOIDWS for Healthcare Token Profile for Authentication Tokens

Research Article. Research of network payment system based on multi-factor authentication

JPMorgan Chase Treasury Workstation. Certification Setup Guide Version 2.0

Login for the online application portal

GENEVA COLLEGE INFORMATION TECHNOLOGY SERVICES. Password POLICY

Token specification for Energinet.dk DataHub

Applicants without a Danish CPR number applying for admission to higher education. User guide Optagelse.dk

Optum ID Migration for Provider Express Users

Common security requirements Basic security tools. Example. Secret-key cryptography Public-key cryptography. Online shopping with Amazon

Controller of Certification Authorities of Mauritius

REMOTE ACCESS - OUTLOOK WEB APP

electronic Declaration of Interests System (edis) User Guide

Arcot Systems, Inc. Securing Digital Identities. FPKI-TWG Mobility Solutions Today s Speaker Tom Wu Principal Software Engineer

iii. You will not be able to access their iocbc account without a valid OTP token from 1 Nov 2012 onward.

Information Security

TIB 2.0 Administration Functions Overview

Citizens 1 st National Bank Mobile Banking FAQ

DIS TDC User Guide. TDC HomeMobil Customer Service: (Monday to Friday 8:00-17:00) or

Remote Access Instructions

Active Directory User Management System (ADUMS)

Cisco Dial Plan. Feature and Session Buttons. Your Phone

Certificate Policy for OCES company certificates (Public Certificates for Electronic Services)

Using Websense Data Endpoint Client Software

Congratulations on starting a business in Denmark

Secure Web Access Solution

PKI Contacts PKI for Fraunhofer Contacts

esign FAQ 1. What is the online esign Electronic Signature Service? 2. Where the esign Online Electronic Signature Service can be used?

Incorporating Digital Signing & Encryption in Transactions in the Payment System of Sri Lanka

Version 2.4 Final. TMDB System User Manual (Registrar)

BRAC Bank Internet Banking FAQ

Strong Authentication: Enabling Efficiency and Maximizing Security in Your Microsoft Environment

Sign-On projektet. HL7-CCOW Context Management: A National Sign-on Profile

Airnet-Student is a new and improved wireless network that is being made available to all Staffordshire University students.

DPH TOKEN SELF SERVICE SITE INSTRUCTIONS:

Multi-Factor Authentication Core User Policy and Procedures

THE PENNSYLVANIA STATE UNIVERSITY OFFICE OF HUMAN RESOURCES PASSWORD USAGE POLICY

Instructions For Opening UHA Encrypted

HVCBank Online Banking FAQ

State of Arkansas Policy Statement on the Use of Electronic Signatures by State Agencies June 2008

Certificate Policy for OCES personal certificates (Public Certificates for Electronic Services)

Transcription:

Nets DanID A/S Lautrupbjerg 10 DK 2750 Ballerup T +45 87 42 45 00 F +45 70 20 66 29 info@danid.dk www.nets-danid.dk CVR no. 30808460 Terms and Concepts in NemID Nets DanID A/S 2 June 2014 Page 1-11

Table of Contents 1. Purpose and target group... 4 2. Summary of terminology... 5 Nets DanID A/S 2 June 2014 Page 2-11

Version history 25 February 2014 Version 1.4 PHJER 11 April 2014 Version 1.5 BMATZ 2 June 2014 Version 1.6 PHJER Nets DanID A/S 2 June 2014 Page 3-11

1. Purpose and Target Group This document is a part of the NemID Service Provider Package. The purpose of the document is to provide guidance in the correct use of terms relating to NemID. The document is aimed at text authors and user interface designers at the service provider. Nets DanID A/S 2 June 2014 Page 4-11

2. Summary of terminology NemID NemID NemID is Denmark s security solution for logging on and signing on the Internet. NemID is written without pronouns or articles, e.g. don t put a or your in front of NemID, except where NemID is used adjectivally, e.g. a NemID client. Tjenesteudbyder Service Provider A service provider is a legal entity (e.g. a bank, a public institution, or a company) that provides a service on the Internet, where end users can log on or sign documents with NemID. NemID-klient NemID Client The tool with which the end user interacts in order to log on or sign using NemID. There exists two different versions of the NemID client named Client with OTP (for centrally stored private keys) and Client without OTP (the locally stored private keys). There also exist a LSS-klient (used for locally stored private keys on a local signature server). Klient med OTP Client with OTP The NemID client used for centrally stored private keys. Klient uden OTP Client without OTP The NemID client used for locally stored private keys. LSS klient LSS client The client used for locally stored private keys on a local signature server. cpr-nummer Abbreviation: cpr-nr. CPR number abbreviation: CPR no. http://retskrivningsordbogen.dk/ro/ro.htm?cpr Display format: 130276-xxxx Nets DanID A/S 2 June 2014 Page 5-11

cvr-nummer abbreviation: cvr-nr. CVR number abbreviation: CVR no. NemID-nummer abbreviation: NemID-nr. NemID number abbreviation: NemID no. bruger-id user ID According to Danish spelling convention, id is written lowercase and with a hyphen when connected to other words. http://retskrivningsordbogen.dk/ro/ro.htm?id-kort The user enters his/her user ID when logging on, and this can be a CPR number, NemID number, or a self-chosen user ID. Selvvalgt bruger-id Self-chosen user ID Bruger User Generic term for a user. adgangskode password nøglekort code card When ordering, the following is used: order extra code card (not order new code card or order code card ) Key card actually means a plastic card that you use to open a door (as in a Nets DanID A/S 2 June 2014 Page 6-11

hotel), which is why the term code card is used. nøglekortnummer nummer på nøglekort code card number number on code card If expressed as such, use number on code card and not number of code card. Code card number is adequate. nøgleviser code token nøglenummer abbreviation: nr. number abbreviation: no. Nr. can be understood, even by non-danish speakers, but it would be better to use a symbol instead, such as #. The # symbol is widely known, as it exists on all telephones. But it is not widely known as a symbol for number. The same symbolic reference is used on the physical code card and in the user interface. nøgle code The Danish word nøgle (=key) is used to create an association with a lock, which indicates security. A key can also be depicted graphically on the physical cards, thus removing any linguistic problems. Codes are also known as a one-time password (Danish: engangskodeord) in order to avoid confusion with private and public keys. Not to be confused with activation password (Danish: midlertidig adgangskode) see below. Privatnøgle Private Key When a user logs on or signs using NemID, what actually happens from a technical perspective is that a private key is used. Private keys are used to encrypt and decrypt information. See also public key. Signing with a private key is done by encrypting a hash value (a digital fingerprint ) of the text to be signed. The encrypted hash value is the signature of the text and can subsequently be verified by another party through calculation of Nets DanID A/S 2 June 2014 Page 7-11

the hash of the sign text, and then comparing it with the decrypted signature. Offentlig nøgle Public Key Each private key has a corresponding public key. Public keys are used to encrypt and decrypt information. A private key and the corresponding public key together form an asymmetric encryption key pair: information that is encrypted with a private key can only be decrypted with the corresponding public key and vice versa. Certifikat Certificate A certificate associates a public key with identity information (e.g. name and PID number) about the holder of the corresponding private key. Midlertidig adgangskode Activation password The code that must be used when activating NemID either for the first time or in connection with possible revokation. nummer på adgangskodebrev number on password letter log på at logge på log on Essentially we use the expression you log on with, but it may be necessary to use the phrase your login. Log af/at logge af Log off Digital signatur digital signature Digital signature is accessed using NemID. Den digitale signatur Underskrift Signature Nets DanID A/S 2 June 2014 Page 8-11

NemID m. OCES NemID with OCES NemID when it has an attached OCES certificate. Underskriv at underskrive sign to sign Netbankaftale Online banking agreement Agreement between the individual bank and the user. Folkeregisteradresse Address as listed in the national register The term CPR address is not used, as this is misleading. Use the term address as listed in the national register instead. Regler Terms Alternativ adresse Temporary address Certifikat Certificate Information on the certificate/certificate information (name, PID no., etc.) Borgerservicecenter Citizen Service Centre Person uden fast bopæl i Danmark Danish expatriate When the term is used in connection with ordering an OCES certificate, Ex-pat Dane is not used. e-mail-adresse e-mail address Nets DanID A/S 2 June 2014 Page 9-11

Mobil-nummer Pas-nummer Kørekort-nummer F.eks. Næste Afbryd cd-rom Bruge (ikke benytte) Adgangskode spærret Forsøg igen Mobile phone number Passport number Driving licence number For example Next Cancel CD-ROM Use Password blocked Try again OCES Offentlige Certifikater til Elektronisk Service (Public Electronic Service Certificates). OCES I The first version of OCES, also known as Digital Signature. OCES II The second version of OCES, included as part of NemID. Nets DanID A/S 2 June 2014 Page 10-11

POCES Personal certificate. As a rule, it is not stated whether the certificate is based on OCES I or OCES II. MOCES Employee certificate. As a rule, it is not stated whether the certificate is based on OCES I or OCES II. VOCES Company certificate. As a rule, it is not stated whether the certificate is based on OCES I or OCES II. FOCES Function certificate. As a rule, it is not stated whether the certificate is based on OCES I or OCES II. Nets DanID A/S 2 June 2014 Page 11-11