CARDOS API THE STANDARD CRYPTOGRAPHIC INTERFACE FOR CARDOS TOKENS - IDNOMIC EMBEDDED SECURITY - ATOS

Page created by Floyd Newman
 
CONTINUE READING
CARDOS API THE STANDARD CRYPTOGRAPHIC INTERFACE FOR CARDOS TOKENS - IDNOMIC EMBEDDED SECURITY - ATOS
IDnomic Embedded Security

CardOS API
The standard cryptographic
Interface for CardOS Tokens

Trusted partner for your Digital Journey
CARDOS API THE STANDARD CRYPTOGRAPHIC INTERFACE FOR CARDOS TOKENS - IDNOMIC EMBEDDED SECURITY - ATOS
Great convenience by supporting technical standard
A product for sophisticated                           Current Versions                               The option to insert PINs via PinPad reader
                                                                                                     (SPE) protects against eavesdropping of PINs
requirements – CardOS API                             • CardOS API V5.5 for Windows
                                                                                                     on the computer.
enables efficient user-friendly and                   • CardOS API V5.5 for Linux
                                                                                                     Beside RSA algorithm, CardOS API also
simple implementation of smart                        • CardOS API V5.5 for macOS                    supports elliptic curve cryptography, ECDSA
cards for user authentication,                                                                       and ECDH, with CardOS V5.x smart cards.
data encryption and creation of                       Description
digital signatures in a variety of                    CardOS API provides powerful                   Utilities
                                                      implementations of the two standard            Additional utilities extend the scope of
application scenarios, like system                    application interfaces for cryptographic       application.
login, web authentication, or                         services: PKCS#11 (Cryptographic Token
secure email.                                         Interface) and support of Microsoft CAPI       The CardOS API – Viewer provides functions
                                                      through CardOS API Minidriver.                 to initialize smart cards and import or delete
Overview                                                                                             data (such as keys, certificates or other
                                                      Via the CAPI interface under Microsoft         objects). Objects saved on the smart card
The CardOS® API product family offers                 Windows, CardOS API supports key and           and their attributes as well as the properties
powerful integration software for the use of          certificate management for applications        of the smart card used can be displayed.
CardOS smart cards and security tokens in a           which is seamlessly integrated in the
variety of standard applications.                     operating system.                              PIN management (change PIN, reset retry
                                                                                                     counter with PUK) can either be carried out
CardOS API enables efficient user-friendly            The PKCS#11 interface allows applications      using a separate PIN management utility or
and simple implementation of smart cards              under Windows, Linux and macOS to use          via the CardOS API – Viewer.
for user authentication, data encryption and          the CardOS API functionalities.
creation of digital signatures in a variety of
                                                      CardOS API V5.5 for Mac as well contains a     License
application scenarios, like system login, web
                                                      CryptoTokenKit (CTK) to easily access keys     The software license is required in order to
authentication, or secure email.
                                                      and certificates on CardOS smart cards with    install and use the CardOS API software on a
CardOS API is available for all common oper­          native macOS applications.                     client workstation or on a Windows / Citrix
ating systems. CardOS API for Windows with                                                           terminal server.
                                                      Various applications can access the same key
Minidriver supports Microsoft Base Smart
                                                      material via both interfaces simultaneously.   In the case of clients, the number of licenses
Card Crypto Provider (Base CSP) and thus
allows the simple use of the Microsoft smart                                                         corresponds to the total number of systems
                                                      CardOS API provides a standard-based
card architecture. CardOS API is compatible                                                          on which CardOS API software is installed.
                                                      dynamic PKCS#15 file system on the smart
with international standards like PKCS#11             card which can be flexibly customized          In the case of terminal servers, the number
Cryptoki, CryptoTokenKit (CTK) and PKCS#15.           according to customer requirements.            of licenses corresponds to the maximum
Beside Microsoft Windows CardOS API is                                                               number of concurrent users for each
available also for Linux and macOS.                   Thus CardOS API enables simple and
                                                                                                     terminal server.
                                                      efficient use of CardOS smart cards with
CardOS API combined with the secure smart             cryptographic keys and certificates in
card operating system CardOS provides the             numerous applications. Support of various
perfect foundation for ID cards in different          operating systems, use of international
industries, especially in the public sector and       standards and the realization of state-of-
in the healthcare sector. Employee IDs at             the-art cryptographic algorithms ensure
companies and organizations, student cards            sustainability for the future.
and signature cards can be realized simply
and cost-effectively with these products.

The CardOS API product family offers powerful integration software for the use
of CardOS smart cards and security tokens in a variety of standard applications.

                                                                         CardOS API                                 Applications
                                                                                                                 Signature of
                                                                     Windows Smart Card                          documents
                                                                         Minidriver
                                                                                                                          Access to PCs
                                                                                                                      and applicactions
                                                                        PKCS#11 Module                           Secure email
                                                                                                                 Secure data access
                                                                    CryptoTokenKit (CTK)                          Remote Access (RLA)
                                                                                                                     Encryption (VPN)

2         CardOS API - The standard cryptographic Interface for CardOS Tokens
Supported standards                            Supported smart card readers:                       Software pack
• Microsoft smart card Minidriver for          PC/SC compatible smart card readers and             The CardOS API software includes the
  Windows Base CSP V7.07:                      selected PC/SC V2.01 Part 10 compatible PIN         following components:
  Application interface on Windows             pad smart card readers.
  platforms,                                                                                       For Windows:
                                               Supported languages:
• RSA Public Key Cryptographic Standard                                                            •   Minidriver for CardOS
  PKCS #11:                                    •   German                                          •   PKCS#11 crypto module for CardOS
• Cryptographic Token Interface,               •   English                                         •   PIN Management utility
  Standard Cryptoki:                           •   French                                          •   CardOS API - Viewer
  RSA standard application interface on        •   Italian                                         •   Documentation
  Windows, Linux and macOS,                    •   Spanish
• RSA Public Key Cryptographic Standard
                                                                                                   For Linux:
                                               •   Portuguese
  PKCS #15:                                                                                        • PKCS#11 crypto module for CardOS
                                               •   Slovakian
• Cryptographic Token Information Format                                                           • PIN Management utility
                                               •   Bulgarian (only CardOS API for Windows)
  Standard:                                                                                        • Documentation
  Dynamic PKCS#15 file system on the           •   Further languages on inquiry
                                                                                                   For macOS:
  smart card
                                               Supported applications                              •   PKCS#11 crypto module for CardOS
• PC/SC V2.01:
  Interface to smart card readers              CardOS API supports various applications via        •   CryptoTokenKit (CTK) for CardOS
• PC/SC V2.01, Part 10:                        the standard interfaces.                            •   PIN Management utility
  Interface to smart card readers with         Example Applications:                               •   Documentation
  PIN pad
                                               •   Microsoft Windows PKI                           Further information for
Technical data                                 •   Microsoft CA / FIM                              developers
Supported operating systems:                   •   Secure Key Injection for Windows *              For application and software developers who
                                               •   Microsoft Windows Smart Card Logon              intend to integrate CardOS API and CardOS
•   Windows 7 (SP1)
                                               •   Microsoft Internet Explorer                     smart cards in applications and smart
•   Windows 8 / 8.1                                                                                card solutions, Atos can additionally offer
                                               •   Microsoft Outlook
•   Windows 10                                                                                     consulting and support, and as well default
                                               •   Microsoft Word, Excel, Powerpoint
•   Windows Server 2012                                                                            scripts.
                                               •   Microsoft EFS
•   Windows Server 2016
                                               •   Microsoft Windows Terminal Services
•   Windows Server 2019
                                               •   Atos DirX Directory
•   Citrix Terminalserver (Windows Server)
                                               •   Evidian Authentication Manager
•   Linux
                                               •   Sirrix Trusted Disk **
•   macOS
                                               •   ECOS Secure Boot Stick [SX / SE]**
                                               •   Adobe Reader / Acrobat
System requirement for Windows, Linux, macOS   •   Google Chrome
• 40 MB free disk space                        •   Mozilla Thunderbird
                                               •   Mozilla Firefox
Supported smart card Operating Systems:        •   Checkpoint VPN
                                               •   Safari
•   CardOS V5.3
                                               •   Apple Mail
•   CardOS DI V5.3
•   CardOS V5.0
•   CardOS V4.4
•   CardOS V4.3 B
•   CardOS DI V4.2 C
•   CardOS V4.2 C
•   CardOS DI V4.2 B
•   CardOS V4.2 B
•   CardOS M4.01a

* With CardOS V5.3 and CardOS DI V5.3
** VS-NfD compliant

                                                                         CardOS API - The standard cryptographic Interface for CardOS Tokens   3
Factsheet

About Atos
Atos is a global leader in digital transformation
with 110,000 employees in 73 countries and
annual revenue of € 12 billion. European number
one in Cloud, Cybersecurity and High-
Performance Computing, the Group provides
end-to-end Orchestrated Hybrid Cloud, Big Data,
Business Applications and Digital Workplace
solutions. The Group is the Worldwide
Information Technology Partner for the Olympic
& Paralympic Games and operates under the
brands Atos, Atos|Syntel, and Unify. Atos is a SE
(Societas Europaea), listed on the CAC40 Paris
stock index.
The purpose of Atos is to help design the future
of the information space. Its expertise and
services support the development of
knowledge, education and research in a
multicultural approach and contribute to the
development of scientific and technological
excellence. Across the world, the Group enables
its customers and employees, and members of
societies at large to live, work and develop
sustainably, in a safe and secure information
space.

Find out more about us
atos.net/cardos

Let’s start a discussion together

Atos, the Atos logo, Atos|Syntel, and Unify are registered trademarks
of the Atos group. October 2020. 2020 Atos. Confidential information owned by
Atos, to be used by the recipient only. This document, or any part of it, may not
be reproduced, copied, circulated and/or distributed nor quoted without prior
written approval from
Atos.

CT-201023-AS-CardOS-API-Powerful-Integration-FS-en3
You can also read