This document contains technical descriptions od the X.509 and UN/EDIFACT
certificates, a list of the DEDICA gateway users's functional requirements
that will condition the certificates profiling process, and profiles for
both X.509 and UN/EDIFACT certificates.
This document contains the requirements concerning to names that
the conversion srtategy designes has to fulfit. The names mapping strategy
for both cases, from X.509 to UN/EDIFACT (i.e. from DN to EDI names) and
from UN/EDIFACT to X.509 (i.e. from EDI names to DNs), is shown and commented.
It also contains in annexes relevant information on registration processes
in EDI world, as well as on how to closely relate EDI names with DNs, and
a short description of the technique used to specify the mapping rules.
This document specifies the mapping rules that the DEDICA gateway
will follow to convert initial certificates of one type in derived certificates
of the other type.
* Enumeration of the operations to be performed by the MangMap.
* Analysis of the three different public key infrastructures relevant
to DEDICA: UN/EDIFACT, PKIX, and PEM.
Concerning to this last point, the messages and structures relevant
to certificate management in all of them are analysed and described. The
identification of those messages or structures that will be used in DEDICA
finishes the document.
This document includes the formal specification of the operations
to be performed by the MangMap. Conversion between incoming requesting
messages of one of the both public key infrastructures, UN/EDIFACT (KEYMAN
and Packages) and X.509 (PKIX and PEM), in a sequenceof steps that include
a set of requests in the other one, are formally specified by using OMT's
State Diagrams and Formal Activities Specification. These specifications
have been developed for the four basic functions that DEDICA gateway will
have to provide. Additionally, a detailed description of the information
folow among the different blocks in MangMap and among MangMap itself and
the rest of modules and elements in DEDICA, is shown for these four operations.
This document describes a security policy template for the operation
of the DEDICA gateway. Therefore, it provides a framework to state the following security
issues:
the physical and logical protection measures that have to be applied
to the gateway itself, and
the organisational aspects related to the operation of the gateway