22.12.2012 Views

Front cover - IBM Redbooks

Front cover - IBM Redbooks

Front cover - IBM Redbooks

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

6.1 The Notes PKI<br />

188 Lotus Security Handbook<br />

We begin our discussion with the native PKI implementation in Lotus Notes and<br />

Domino. There are two reasons for this:<br />

► The PKI implementation is so transparent in Notes that it is easy to use and<br />

understand. This is what has made it the largest PKI implementation in the<br />

world, well ahead of anything else currently in use on the Internet.<br />

► People who administer their Notes and Domino environment are already<br />

familiar with the terms, tools, and technologies that make PKI implementation<br />

happen.<br />

There is a lot of information to <strong>cover</strong>. In Chapter 1, we discussed the key security<br />

services that a secure system should offer. These are: confidentiality,<br />

authentication and identification, integrity, and non-repudiation.<br />

In this chapter we show that the public key infrastructure natively built in Notes<br />

and Domino provides these services. Since confidentiality, integrity and<br />

non-repudiation are dependant on authentication, we’ll primarily focus on this<br />

security service.<br />

The specific enhancements for Notes version 6 are discussed in a later section.<br />

6.1.1 Registration and certification<br />

Before we detail the PKI natively present in Notes and Domino, it is important to<br />

talk about registration and certification, since these are frequently confused<br />

terms.<br />

Registration<br />

Registration is the action by which a user’s details are entered in a directory. The<br />

directory in question is the Domino Directory. The work product of registration in<br />

Notes and Domino is the Notes ID.<br />

Certification<br />

Certification has two meanings that are pertinent to this chapter and to Notes<br />

and Domino. To certify is to confirm formally that something is true, accurate,<br />

genuine and that it meets a standard. To certify is also to issue a license or<br />

certificate to. The work product of certification in Notes and Domino is the<br />

creation of Notes certificates and their inscription in the Notes ID.

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!