Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

Transport Certificates

Drawio
lbox
mVer2
zoom1
simple0
zoominComment10
inCommentcustContentId0127697049
pageId127795365
custContentIdlbox1276970491
diagramDisplayNameUntitled Diagram-1720473013056.drawio
1contentVer2
revision2
baseUrlhttps://openfinanceuae.atlassian.net/wiki
diagramNameUntitled Diagram-1720473013056.drawio
pCenter0
width1579.5
links
tbstyle
height596.5

Cert Name

Description

Issuer

Private Key held by

CSR generated by

Certificate Generated by

Actions required by LFI

C1

Identifies the TPP to OFP

OFTF

TPP

TPP

TPP

None

S2

Identifies non mtls OFP endpoints to TPP

Lets Encrypt

Ozone

NA
(uses ACME protocol)

Ozone

None

S1

Identifies mtls OFP endpoints to TPP

OFTF

Ozone

Ozone

LFI

Yes

C4

Identifies OFP to LFI’s Ozone Connect endpoint

OFTF

Ozone

Ozone

LFI

Yes

S4

Identifies LFI’s Ozone Connect endpoint to Ozone

OFTF

LFI

LFI

LFI

Yes

Ozone will provide scripts to the LFI to assist with CSR generation if requested

S3

Identifies cm-pub and hh-pub endpoints to LFI

OFTF

Ozone

Ozone

LFI

Yes

C3

Identifies LFI to the cm-pub and hh-pub endpoints

OFTF

LFI

LFI

LFI

Yes

Ozone will provide scripts to the LFI to assist with CSR generation if requested

The subject of the certificte should be provided to Ozone.

Ozone will limit access to certifictes issued by OFTF AND having that specific subject

Drawio
mVer2
zoom1
simple0
zoominComment10
inCommentcustContentId0127795513
pageId127795365
custContentIdlbox1277955131
diagramDisplayNameUntitled Diagram-1720473409295.drawiolbox1
contentVer3
revision3
baseUrlhttps://openfinanceuae.atlassian.net/wiki
diagramNameUntitled Diagram-1720473409295.drawio
pCenter0
width941
links
tbstyle
height481

...