
Authentication Services Hardware/Software Requirements
4 BT38-MPKI6-HW-V1.0
indicates the two features compared work together and that a single Digital ID can
be used for both the features to work. A No indicates incompatibility or these
features are not designed to work together. A Req’d indicates the product requires
Automated Administration and Local Hosting.
Note
The following numbered notes corresponds to the numeric codes in the
table.
1 Managed PKI for SSL and Managed PKI for SSL Premium Edition can only be issued under Public
2 TestDrive only issued under Public CA
3 IPSec issued under Private or shared (co-branded) CAs
4 Key Management Service incorporates Automated Administration functionality. So a separate Auto-
mated Administration server is not needed
5 TestDrive does not work with anything that requires Managed PKI CD or other downloads
6 Works with client certificates only
7 Passcode, Manual Authentication, and Automated Authentication, including KMS, are mutually
exclusive
8 There is no site kit for IPSec or Managed PKI for SSL
9 Passcode can be made to work with Automated Administration using customization
10 CVM works with OCSP (CVM and OCSP are orthogonal).
11 Go Secure! for Check Point does not work with Key Management Service dual key certificates
12 Requires Automated Administration, which requires Local Hosting. For Go Secure! for Microsoft
Exchange, Automated Administration and Local Hosting are required only if you are using Windows
authentication, but optional otherwise
13 Roaming requires PTA in VeriSign crypto mode (does not work with TPM functionality)
14 PTA supports smart cards with the CAPI certificate store only
15 Code not used
16 File Encryption Feature requires PTA 2.x
17 XKMS does not work with manual authentication
18 Real-time XKMS validation requires OCSP Premium account. OCSP can validate certificates reg-
istered through XKMS
19 CPM and CVM work with native SSL client authentication. PTA 6.0 has added support for native
SSL client authentication. PTS does not have support for native SSL client authentication
20 Key Management Service and Automated Administration require Local Hosting. Automated Admin-
istration and Local Hosting do not require Key Management Service
21 PTA and PTS profiles are interoperable in roaming mode
22 PTS requires Roaming
23 Microsoft does not currently support EFS certificates on smart cards. To use EFS, the certificate
must be on the local hard drive. You can use the same certificates for Win2k logon (on a smart card)
and for EFS (copy stored locally)
24 Smart card CSP required for Win2k logon. Microsoft Base CSP required for EFS. PTA works in CAPI
mode only (PTA cannot use Verisign Certificate Store)
25 Java PTA currently only supports Roaming 1.x. It does not support Roaming 6.0. ActiveX PTA with
TPM functionality does not support Roaming
26 Not supported by Java PTA. Supported by ActiveX PTA without TPM functionality
27 Not supported by Java PTA. Supported by ActiveX PTA, with or without TPM functionality
Komentarze do niniejszej Instrukcji