2
The customer The Public Authority for Civil Information - Kuwait (PACI) is the government agency responsible for maintaining all information on population and civil event registration (e.g. births, deaths and immigration) for Kuwaiti citizens and residents. The information collected is held in a central national database and is used as a basis to provide a number of applications known collectively as the Civil Information System (CIS). The challenge PACI already issued paper-based identification documents and wished to migrate to a highly secure smart card based solution. Key project requirements included: Issuance of multi-application JavaCards Issuance of multiple VeriSign certificates per card Writing of biometric (fingerprint) data to cards Driving a central printer farm of 40 printers in a secure facility Use of cards as ICAO compliant electronic travel documents Storage of multiple government agencies’ data on the card with discrete key protection Citizen collection of cards from ‘ATM style’ self-service kiosks Post-issuance updates of certificates and application data The MyID solution MyID ® from Intercede® was implemented to act as a single management system for all ‘back office’ and ‘front office’ national identity card operations. Instructions to personalize cards are passed to MyID via the MyID Lifecycle Management API from the central PACI system. MyID then automatically electronically and graphically personalizes the cards by driving a farm of 40+ printers in a secure PACI facility. In the citizen-facing environment MyID allows for cards to be securely unlocked at the point of collection and for post-issuance activities such as adding certificates or updating data to be carried out at a number of card update stations. MyID was implemented across multiple servers for high availability and performance. Implementation of the Kuwait national identity card Lifecycle management API Key management (GlobalPlatform and card vendor proprietary) VeriSign PKI integration and certificate lifecycle management GlobalPlatform JavaCard card management Applet management Electronic personalization Card layout designer (ICAO compliant) MyID Toolkit Project Designer tool (attribute definition and data modeling) Printer connector HSM connector Multi server load balanced deployment Features used

Implementation of the Kuwait national identity card...MyID allows for cards to be securely unlocked at the point of collection and for post-issuance activities such as adding certificates

  • Upload
    others

  • View
    2

  • Download
    0

Embed Size (px)

Citation preview

  • The customer The Public Authority for Civil Information - Kuwait (PACI) is the government agency responsible for maintaining all information on population and civil event registration (e.g. births, deaths and immigration) for Kuwaiti citizens and residents.

    The information collected is held in a central national database and is used as a basis to provide a number of applications known collectively as the Civil Information System (CIS).

    The challenge PACI already issued paper-based identification documents and wished to migrate to a highly secure smart card based solution. Key project requirements included:

    Issuance of multi-application JavaCards

    Issuance of multiple VeriSign certificates per card

    Writing of biometric (fingerprint) data to cards

    Driving a central printer farm of 40 printers in a secure facility

    Use of cards as ICAO compliant electronic travel documents

    Storage of multiple government agencies’ data on the card with discrete key protection

    Citizen collection of cards from ‘ATM style’ self-service kiosks

    Post-issuance updates of certificates and application data

    The MyID solution MyID® from Intercede® was implemented to act as a single management system for all ‘back office’ and ‘front office’ national identity card operations. Instructions to personalize cards are passed to MyID via the MyID Lifecycle Management API from the central PACI system. MyID then automatically electronically and graphically personalizes the cards by driving a farm of 40+ printers in a secure PACI facility. In the citizen-facing environment MyID allows for cards to be securely unlocked at the point of collection and for post-issuance activities such as adding certificates or updating data to be carried out at a number of card update stations. MyID was implemented across multiple servers for high availability and performance.

    Implementation of the

    Kuwait national identity card

    Lifecycle management API

    Key management (GlobalPlatform and card vendor proprietary)

    VeriSign PKI integration and certificate lifecycle management

    GlobalPlatform JavaCard card management

    Applet management

    Electronic personalization

    Card layout designer (ICAO compliant)

    MyID Toolkit Project Designer tool (attribute definition and data modeling)

    Printer connector

    HSM connector

    Multi server load balanced deployment

    Features used

  • Solution benefits

    [email protected] www.intercede.com intercedemyid Suite 920, 1875 Explorer Street, Reston, VA 20190, USA +1 888 646 6943@

    CS/FAA/A4/USEN/XXXXXXX

    Single product managing all back office and citizen facing card management operations

    Combined electronic and graphical personalization in a single process

    Full ICAO compliance for use as an inter-country electronic travel document

    Secure deployment using strong authentication and encryption techniques

    Multi-server deployment for high availability

    Load balanced deployment for high volume throughput

    Simple web-based workflows require minimal operator training

    How MyID can help eID projects Single integrated platform for end-to-end identity registration

    and credential issuance

    Full registration capabilities including application form scanning, ICAO/FIPS 201 compliant photo capture, physical signature capture and biographic data capture

    Project Designer tool lets you define the attributes to capture and screen layouts for each process

    Full adjudication/ID verification support including integration with external AFIS, local AFIS and background checking services

    Card personalization bureau integration, including two-pass and four-pass models, batch to individual request drill down enquiries and multiple status updates

    Direct issuance from MyID including batch, attended and self collection

    Batch pre-encoding support for faster card activation

    Support for multiple concurrent credentials from a single system (e.g. passport, driving license, eID card)

    Support for multiple concurrent issuance models allowing for emergency cards and temporary replacements

    Highly configurable platform to adapt to changing project needs without extensive recoding

    Scales up and out to very high volumes

    Mr. Musaed Al-Asousi, Director General of PACI, commented:

    “Intercede® has helped Kuwait build one of the most advanced and sophisticated national identity card systems in the Gulf region. The selection of the Intercede MyID management system enabled PACI to deliver a national identity card within time and budget to the citizens of Kuwait.” “I thank Intercede’s staff for their professionalism and recommend MyID for other national identity card projects. I look forward to working with Intercede and its partners to further expand the size and capability of the Kuwait system”.