Configuring the NPKD Service
To use the NPKD Service in ADSS Server, the ICAO PKD server connection must be configured. The ICAO Public Key Directory (PKD) is an LDAP-based repository that stores Master Lists (containing CSCA certificates), Document Signer (DS) certificates, and Certificate Revocation Lists (CRLs) published by participating member states and countries.
The NPKD Service communicates directly with the ICAO PKD to retrieve foreign Master Lists, DS certificates, and CRLs. This information is stored locally and can subsequently be provided to Inspection Systems (IS) upon request.
The following configuration tasks are required to set up ICAO PKD integration. The order of these tasks is flexible, and you can return to any configuration area later to make changes if required.
|
Steps |
Description |
|
Configure the ICAO PKD Upload Settings to enable the publication of DS certificates, Master Lists (containing CSCA certificates), and CRLs to the ICAO PKD. This makes the data available to other ICAO PKD member states and countries. |
|
|
Configure the ICAO PKD Download Settings to retrieve DS certificates, Master Lists (containing foreign CSCA certificates), and CRLs from the ICAO PKD. The downloaded data is stored locally and can be provided to Inspection Systems when requested. |
|
|
Register one or more client applications in Client Manager. These clients must be authorized to access the NPKD Service and retrieve Master Lists and CRLs. |
|
|
Use Service Manager to start, stop, or restart the NPKD Service as required. |
See also
Configuring the NPKD Service
Manual Download
Manage Certificates