Specification document for the RID-CPR service



Similar documents
Specification document for the PID-CPR service

Introduction to NemID and the NemID Service Provider Package

Specification document for LDAP API

NemID JS Developer Support site. Guidelines

Specifikationsdokument for OCES II

Terms and Concepts in NemID

Terms and concepts in LSS for NemID

Guide. - How to setup secure communication for REST services in Automatisk kortbetaling. Revision 1.3. Nets A/S. Lautrupbjerg 10.

Terms and conditions of business for a NemID administrator of commercial NemID

You can also find the conditions at

Guidelines on the use of LSS for NemID test tools

CPS - Certification Practice Statement

Contents. Nets Denmark A/S - CVR nr , June User guide Key generating

Implementation guide for LSS

Questions/Answers about NemID, mandatory digital self-service and Digital Post. NemID FAKTAARK HJÆLP TIL KOMMUNIKATIONEN MED BORGEREN

Guidelines for the LSS for NemID interaction design and user selection

Rules for Sydbanks ebanking - private

Rules for Jyske Banks ebanking - private

CTM Release Notes 7.4.4

Guide REST based web services in Automatisk kortbetaling via Betalingsservice

ADFS Integration Guidelines

Token specification for Energinet.dk DataHub

WebLogic Server 6.1: How to configure SSL for PeopleSoft Application

Verify LDAP over SSL/TLS (LDAPS) and CA Certificate Using Ldp.exe

Safewhere*Identify 3.4. Release Notes

Login for the online application portal

Installation valid SSL certificate

Webmail Using the Hush Encryption Engine

eid/authentication/digital signatures in Denmark

Test Module10.7. Electronic Signatures Test Cases

Secure FTP. Client user guide. Author: Steria A/S Version: 2.2 Date: 20 January 2010 Document SecureFtpClientUserguideV2_2.doc

User Guide NN-DynCRM Navne & Numre Web Services for MS Dynamics CRM, ver. 4.0

Business Gateway vendor test guide

UBS KeyLink Quick reference WEB Installation Guide

Nykredit's Online Banking Service for personal customers

Registering the Digital Signature Certificate for Bank Officials

Congratulations on starting a business in Denmark

Quote to Cloud Connecting QuoteWerks and Xero

Whitepaper on identity solutions for mobile devices

Quest Soft Token for Windows Phone User Guide

Citrix Netscaler Advanced guide for SMS PASSCODE SMS PASSCODE 2014

Using etoken for Securing s Using Outlook and Outlook Express

Installation Steps on Desktop Clients

Step-by-Step guide for SSO from MS Sharepoint 2010 to SAP EP 7.0x

Certificate Policy for OCES Employee Certificates (Public Certificates for Electronic Services) Version 5

Getting Started Guide

EMR Link Server Interface Installation

INTEGRATE SALESFORCE.COM SINGLE SIGN-ON WITH THIRD-PARTY SINGLE SIGN-ON USING SENTRY A GUIDE TO SUCCESSFUL USE CASE

Client configuration and migration Guide Setting up Thunderbird 3.1

Purchase and Import a Signed SSL Certificate

Certificate Policy for OCES company certificates (Public Certificates for Electronic Services)

Quick Guide. Using ReSound Smart hearing aids with your iphone, ipad and ipod touch

Reading an sent with Voltage Secur . Using the Voltage Secur Zero Download Messenger (ZDM)

USING SSL/TLS WITH TERMINAL EMULATION

Angel Dichev RIG, SAP Labs

Set up Outlook for your new student e mail with IMAP/POP3 settings

Server based signature service. Overview

Betalingsservice, Automatic card payment and payment slips Guidelines for Data Suppliers

Hosted Microsoft Exchange Client Setup & Guide Book

Non-recourse factoring

Microsoft Administering the Web Server (IIS) Role of Windows Server

Secure transaction guidelines for external users with Commission personnel.

mailtunnel Quick Guide ENCRYPTED TUNNEL COMENDO DATA CENTER SECURITY CENTER SPAM+VIRUS LOGS

4. SSL-VPN Connection

Collax Mail Server. Howto. This howto describes the setup of a Collax server as mail server.

Agenda. How to configure

Global Iris Integration Guide ecommerce Remote Integration

London & Zurich Merchant Management System User Guide.

Quick Guide for Using Beltone MFi Hearing Aids with your iphone

E-Signing Integration guide

DG Forwarding Algorithm

GMC Connect User Guide v1.1

1 Mac Mail and IMAP/SMTP Configuration

WEB & MOBILE DEVELOPMENT. How To: Setup your address in Microsoft Entourage for Mac OS X

Crown Field Support Engineering

SmarterMeasure Inbound Single Sign On (SSO) Version 1.3 Copyright 2010 SmarterServices, LLC / SmarterServices.com PO Box , Deatsville, AL 36022

Using Voltage Secur

Den Gode Webservice - Security Analysis

Configuring ADFS 3.0 to Communicate with WhosOnLocation SAML

Using different Security Policies on Group Level for AD within one Portal. SSL-VPN Security on Group Level. Introduction

How To Export Data From Exchange To A Mailbox On A Pc Or Macintosh (For Free) With A Gpl Or Ipa (For A Free) Or Ipo (For Cheap) With An Outlook 2003 Or Outlook 2007 (For An Ub

Digital Signatures. Digital Signatures - How to enable validation of Siemens PKI signatures in Adobe Reader? Issued by: Date 01/2016

SOLGARI CLOUD BUSINESS COMMUNICATION SERVICES CLOUD CONTACT CENTRE MICROSOFT DYNAMICS INTEGRATION

Managing CA-Signed Certificates

Frost & Sullivan. Publisher Sample

General Conditions for the Assignment, Registration and Administration of Domain Names under the.dk Top Level Domain

THE BCS PROFESSIONAL EXAMINATIONS BCS Level 6 Professional Graduate Diploma in IT. April 2009 EXAMINERS' REPORT. Network Information Systems

AR1_en_ Application for residence and work permit on the grounds of salaried work

3. On the Accounts wizard window, select Add a new account, and then click Next.

IBM Security Access Manager for Enterprise Single Sign-On V8.2 Implementation Exam.

PCI PA - DSS. Point XSA Implementation Guide. Atos Worldline Banksys XENTA SA. Version 1.00

Securing Web Services From Encryption to a Web Service Security Infrastructure

CONTRACT MODEL IPONZ DESIGN SERVICE VERSION 2. Author: Foster Moore Date: 20 September 2011 Document Version: 1.7

Transcription:

Nets DanID A/S Lautrupbjerg 10 DK 2750 Ballerup T +45 87 42 45 00 F +45 70 20 66 29 info@danid.dk www.nets-danid.dk CVR no. 30808460 Specification document for the RID-CPR service Nets DanID A/S January 2015 Page 1-7

Table of Contents 1. Purpose and target group... 4 2. Introduction to the RID-to-CPR service... 5 3. Preconditions for being able to test... 6 4. Interfaces for the RID-to-CPR service... 7 4.1 Technical specifications... 7 Nets DanID A/S January 2015 Page 2-7

Version history 20 January 2011 Version 1.0 MTV 4 June 2014 Version 1.1 PHJER 3 February 2015 Version 1.2 KMAIB Nets DanID A/S January 2015 Page 3-7

1. Purpose and target group This document is a part of the NemID Service Provider Package. The document will provide you with the best opportunities of testing the RID-CPR service. The document describes how the service provider can implement an application that performs lookups in Nets DanID s test systems. The document is aimed at the people at the service provider who are responsible for the implementation of NemID. Nets DanID A/S January 2015 Page 4-7

2. Introduction to the RID-to-CPR service All OCES employee certificates issued by Nets DanID contain a Resource ID (RID). A RID number is unique in regards to the CVR number, and is a kind of customer number that refers to a specific employee. The RID/CPR service can look up the CVR number for a RID. This way you avoid to write the user s CPR number directly in the certificate. This means that when contacting Nets DanID, your application can get a CPR number on the basis of a RID. The application that is requesting a RID must be set up in advance at Nets DanID, and your organisation must have concluded an agreement for using the service. Look up of a CPR number presupposes that the employee signature is created with a CPR number by the company s NemID administrator. NB: Only public organisations are allowed to conclude agreements to obtain CPR numbers. Private organisations can acquire an agreement in regards to CPR match, where they can be informed whether a given CPR number is associated with a RID. It is the Danish National IT and Telecom Agency who owns the RID-CPR service, but it is Nets DanID who administers the service for the Danish National IT and Telecom Agency. As a service provider you can get access to the RID-CPR service in the test environment without having concluded an agreement for using the service. To get access to the service in production, it is however necessary to conclude an agreement with the Danish National IT and Telecom Agency. Contact Nets DanID Sales at salg@danid.dk or consult http://www.nets.eu/dk-da/produkter/sikkerhed/nemidtjenesteudbyder/pages/default.aspx#tab3 to download the agreement. Nets DanID A/S January 2015 Page 5-7

3. Preconditions for being able to test In order to be able to make test calls to the RID-to-CPR service, you must have a test company certificate (test-voces) from Nets DanID. The certificate is hereafter to be registered as RID access in Nets Rights Management. As a service provider you can get access to the test system without having concluded an agreement for using the service. Please see section Test environment in the document Introduction to NemID and the NemID Service Provider Package. Nets DanID A/S January 2015 Page 6-7

4. Interfaces for the RID-to-CPR service There are one interface for RID-to-CPR: a SOAP-based web service. All three interfaces generate the same data and support both lookup and verification. 4.1 Technical specifications The OOAPI does unfortunately not include complete.net- and Java clients, but standard tools can be used to generate such clients. Note that the interface is RPC encoded. This means that certain newer tools for the Java platform cannot be used since newer versions of JAX-WS does not specify support for RPC encoding. Two-way SSL is used for authentication towards the service. Please consult the document Configuration and setup. Nets DanID A/S January 2015 Page 7-7