To support the use of smart cards and similar hardware tokens that store certificates and
related data, CS includes a Token Management System. This consists of the three
components introduced in this chapter, which are integrated with the rest of CS:
•
•
•
This chapter briefly introduces these three components. For more details, see the HTML
document "Setting Up a Token Key Infrastructure," available on the CS CD.
Token Processing Service
The Token Processing Service (TPS) is a CS component that acts as a Registration
Authority for authenticating and processing enrollment requests, PIN reset requests, and
formatting requests from the Enterprise Secure Client (ESC).
TPS is designed to communicate with tokens that conform to Global Platform's Open
Platform Specification.
TPS communicates over SSL with various CS backend components (including Certificate
Manager, Token Key Service, and Data Recovery Manager) to fulfill user's requests.
TPS also interacts with the token database, an LDAP server that stores information about
individual tokens.
Token Processing Service (TPS) acts as a Registration Authority for requests from the
Enterprise Secure Client.
Token Key Service (TKS) manages the master key(s) required set up a secure
communication channel between the TPS and the client.
Enterprise Security Client (ESC) is a plug-in for client software such as browsers and
email applications. It supports the use of tokens with user's computers.
Token Management System
Chapter 7
231
Need help?
Do you have a question about the CERTIFICATE SYSTEM 7.1 - ADMINISTRATOR and is the answer not in the manual?