[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: PKI International Consortium




Hello everyone,

I appreciate your feedback and most of the replies were referring to
identrus.com . My basic concern is from a customer's point of view. If I
have a digital certificate issued by a single authority that is considered
trusted internationally by all financial as well as other commercial
institutions, then I do not require to have a certificate for Institution
-1 and another for Institution -2. Do we have something in place that takes
of this issue. I would be happy to carry and protect that one certificate
which is trusted by everyone.

Thank you,

Shaheen Nasirudheen
JPMorgan ACCESS, Portal Security
978 805 1815

-----------------------------------
This message may contain legally privileged and/or confidential
information. If you are not the intended recipient(s), or the employee or
agent responsible for delivery of this message to the intended
recipient(s), you are hereby notified that any dissemination, distribution
or copying of this message is strictly prohibited.  If you have received
this message in error, please immediately notify the sender and delete this
e-mail message from your computer.



                                                                                                                      
                    "Anders Rundgren"                                                                                 
                    <anders.rundgren@       To:     "PKIX list" <ietf-pkix@xxxxxxx>, Shaheen                          
                    telia.com>               Nasirudheen/JPMCHASE@JPMCHASE                                            
                                            cc:                                                                       
                    04/02/2004 11:28        Subject:     Re: PKI International Consortium                             
                    AM                                                                                                
                                                                                                                      
                                                                                                                      




Hi Shaheen,
There are several PKIs run by FIs, even on an international level.
However, I have some difficulties with the phrase
"certificates for the members"?

Is a "member" an FI organization, FI employee or an FI customer?

For the premier category I believe VISA does that for the 3D Secure
network.   For FI employees I don't know if there really is any
big need for such as these certificates have little use except internally.
Well, Identrus have indeed sold such services to a few banks.

Regarding the third category, it is interesting to note that banks
seem to take the lead in issuing "citizen-certificates" as a
citizen=bank customer.  These FA CAs are though not really
international due to some basic problems like the lack of
standards for expressing citizen identities in various regimes.
Here the customer is really e-governments although the certificates
can often be used for on-line banking as well.

www.identrus.com
www.bankid.com
www.bankid.no

Anders

----- Original Message -----

From: <Shaheen.Nasirudheen@xxxxxxxxx>
To: "PKIX list" <ietf-pkix@xxxxxxx>
Sent: Thursday, April 01, 2004 16:30
Subject: PKI International Consortium



Hello,

I would like to know if there is any international consortium of financial
institutions that maintain a PKI and issues certificates for the members.
If so, what are the standards followed? Any information would be helpful.

Regards.

Shaheen Nasirudheen
JPMorgan ACCESS, Portal Security

-----------------------------------
This message may contain legally privileged and/or confidential
information. If you are not the intended recipient(s), or the employee or
agent responsible for delivery of this message to the intended
recipient(s), you are hereby notified that any dissemination, distribution
or copying of this message is strictly prohibited.  If you have received
this message in error, please immediately notify the sender and delete this
e-mail message from your computer.