10.07.2015 Views

BoostAero XML and CSV Implementation Guideline ... - SupplyOn

BoostAero XML and CSV Implementation Guideline ... - SupplyOn

BoostAero XML and CSV Implementation Guideline ... - SupplyOn

SHOW MORE
SHOW LESS
  • No tags were found...

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

SecurityTransport LayerAS2 Settings Requirements ExplanationFor certificate based authentication trusted certificates arerequired. Self created/self signed certificates are NOT allowed.Only trusted certificates from the Trusted/Certificate Authorities(CA) are allowed, e.g.- Symantec/ VeriSignhttp://www.verisign.comIncluding its subordinate br<strong>and</strong>s GeoTrust, Equifax <strong>and</strong> Thawte- Commodohttp://www.comodo.com- TC TrustCenterhttp://www.trustcenter.deCommunicationCertificateTrustedTrusted: A Certificate Authority (CA) assigns, administrates<strong>and</strong> controls certificates. <strong>SupplyOn</strong> requires Class 2certificates.The validity is dependent on the certificate type. As the CA rootcertificates are trusted by <strong>SupplyOn</strong> the supplier needs toensure that he uses a valid (<strong>and</strong> not expired) certificate.Otherwise the AS2 connection to <strong>SupplyOn</strong> would be denied.24 months is the st<strong>and</strong>ard certificate validity.Certificate RequirementAS2 <strong>and</strong> SSL Certificate(key usage: digital signature <strong>and</strong> encryption)<strong>BoostAero</strong>Space members (BASM) may use X.509 certificatesissued by a BASM internally operated Certificate Authority(BASM PKI) which is compliant with the requirements definedin [BASBCP].- The accepted usage of certificates issued by a compliantBASM PKI is limited to technical M2M connectionsbetween BASM in their role as "M2M Supplier" <strong>and</strong><strong>SupplyOn</strong> unless agreed otherwise.- Test or basic validation certificates (e.g. based on E-Mailaddress or domain verification) issued by the issuingcertificate authority are not accepted for use in productionenvironments. BASBCP Boost Aerospace - BridgeCertificate Policyhttp://www.boostaerospace.com/SMA/<strong>BoostAero</strong>spaceBridgeCP.pdfDigital Signature _ Digital signature is required.Encryption_No additional encryption of the data is necessary, since thecommunication is already SSL encrypted (HTTPS)!Internetconnection- PermanentInternetconnection- Fixed <strong>and</strong>public URL or IPaddressm<strong>and</strong>atoryA permanent Internet connection has to be granted.Public 15/59

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!