Cardos API the Standard Cryptographic Interface for Cardos Tokens
Total Page:16
File Type:pdf, Size:1020Kb
Horus Embedded Security CardOS API The standard cryptographic Interface for CardOS Tokens Trusted partner for your Digital Journey Great convenience by supporting technical standard A product for sophisticated Current Versions The option to insert PINs via PinPad reader (SPE) protects against eavesdropping of PINs requirements – CardOS API • CardOS API V5.5 for Windows on the computer. enables efficient user-friendly and • CardOS API V5.5 for Linux Beside RSA algorithm, CardOS API also simple implementation of smart • CardOS API V5.5 for macOS supports elliptic curve cryptography, ECDSA cards for user authentication, and ECDH, with CardOS V5.x smart cards. data encryption and creation of Description digital signatures in a variety of CardOS API provides powerful Utilities application scenarios, like system implementations of the two standard Additional utilities extend the scope of application interfaces for cryptographic application. login, web authentication, or services: PKCS#11 (Cryptographic Token secure email. Interface) and support of Microsoft CAPI The CardOS API – Viewer provides functions through CardOS API Minidriver. to initialize smart cards and import or delete Overview data (such as keys, certificates or other Via the CAPI interface under Microsoft objects). Objects saved on the smart card The CardOS® API product family offers Windows, CardOS API supports key and and their attributes as well as the properties powerful integration software for the use of certificate management for applications of the smart card used can be displayed. CardOS smart cards and security tokens in a which is seamlessly integrated in the variety of standard applications. operating system. PIN management (change PIN, reset retry counter with PUK) can either be carried out CardOS API enables efficient user-friendly The PKCS#11 interface allows applications using a separate PIN management utility or and simple implementation of smart cards under Windows, Linux and macOS to use via the CardOS API – Viewer. for user authentication, data encryption and the CardOS API functionalities. creation of digital signatures in a variety of CardOS API V5.5 for Mac as well contains a License application scenarios, like system login, web CryptoTokenKit (CTK) to easily access keys authentication, or secure email. The software license is required in order to and certificates on CardOS smart cards with install and use the CardOS API software on a CardOS API is available for all common oper- native macOS applications. client workstation or on a Windows / Citrix ating systems. CardOS API for Windows with terminal server. Various applications can access the same key Minidriver supports Microsoft Base Smart material via both interfaces simultaneously. Card Crypto Provider (Base CSP) and thus In the case of clients, the number of licenses corresponds to the total number of systems allows the simple use of the Microsoft smart CardOS API provides a standard-based on which CardOS API software is installed. card architecture. CardOS API is compatible dynamic PKCS#15 file system on the smart with international standards like PKCS#11 card which can be flexibly customized In the case of terminal servers, the number Cryptoki, CryptoTokenKit (CTK) and PKCS#15. according to customer requirements. of licenses corresponds to the maximum Beside Microsoft Windows CardOS API is number of concurrent users for each Thus CardOS API enables simple and available also for Linux and macOS. terminal server. efficient use of CardOS smart cards with CardOS API combined with the secure smart cryptographic keys and certificates in card operating system CardOS provides the numerous applications. Support of various perfect foundation for ID cards in different operating systems, use of international industries, especially in the public sector and standards and the realization of state-of- in the healthcare sector. Employee IDs at the-art cryptographic algorithms ensure companies and organizations, student cards sustainability for the future. and signature cards can be realized simply and cost-effectively with these products. The CardOS API product family offers powerful integration software for the use of CardOS smart cards and security tokens in a variety of standard applications. CardOS API Applications Signature of Windows Smart Card documents Minidriver Access to PCs and applicactions PKCS#11 Module Secure email Secure data access CryptoTokenKit (CTK) Remote Access (RLA) Encryption (VPN) 2 CardOS API - The standard cryptographic Interface for CardOS Tokens Supported standards Supported smart card readers: Software pack • Microsoft smart card Minidriver for PC/SC compatible smart card readers and The CardOS API software includes the Windows Base CSP V7.07: selected PC/SC V2.01 Part 10 compatible PIN following components: Application interface on Windows pad smart card readers. platforms, For Windows: Supported languages: • RSA Public Key Cryptographic Standard • Minidriver for CardOS PKCS #11: • German • PKCS#11 crypto module for CardOS • Cryptographic Token Interface, • English • PIN Management utility Standard Cryptoki: • French • CardOS API - Viewer RSA standard application interface on • Italian • Documentation Windows, Linux and macOS, • Spanish For Linux: • RSA Public Key Cryptographic Standard • Portuguese PKCS #15: • PKCS#11 crypto module for CardOS • Slovakian • Cryptographic Token Information Format • PIN Management utility • Bulgarian (only CardOS API for Windows) Standard: • Documentation • Further languages on inquiry Dynamic PKCS#15 file system on the For macOS: smart card Supported applications • PC/SC V2.01: • PKCS#11 crypto module for CardOS Interface to smart card readers CardOS API supports various applications via • CryptoTokenKit (CTK) for CardOS • PC/SC V2.01, Part 10: the standard interfaces. • PIN Management utility Interface to smart card readers with Example Applications: • Documentation PIN pad • Microsoft Windows PKI Further information for Technical data • Microsoft CA / FIM developers Supported operating systems: • Secure Key Injection for Windows * For application and software developers who • Microsoft Windows Smart Card Logon intend to integrate CardOS API and CardOS • Windows 7 (SP1) • Microsoft Internet Explorer smart cards in applications and smart • Windows 8 / 8.1 • Microsoft Outlook card solutions, Atos can additionally offer • Windows 10 • Microsoft Word, Excel, Powerpoint consulting and support, and as well default • Windows Server 2012 scripts. • Microsoft EFS • Windows Server 2016 • Microsoft Windows Terminal Services • Windows Server 2019 • Atos DirX Directory • Citrix Terminalserver (Windows Server) • Evidian Authentication Manager • Linux • Sirrix Trusted Disk ** • macOS • ECOS Secure Boot Stick [SX / SE]** • Adobe Reader / Acrobat System requirement for Windows, Linux, macOS • Google Chrome • 40 MB free disk space • Mozilla Thunderbird • Mozilla Firefox Supported smart card Operating Systems: • Checkpoint VPN • Safari • CardOS V5.3 • Apple Mail • CardOS DI V5.3 • CardOS V5.0 • CardOS V4.4 • CardOS V4.3 B • CardOS DI V4.2 C • CardOS V4.2 C • CardOS DI V4.2 B • CardOS V4.2 B • CardOS M4.01a * With CardOS V5.3 and CardOS DI V5.3 ** VS-NfD compliant CardOS API - The standard cryptographic Interface for CardOS Tokens 3 Factsheet About Atos Atos is a global leader in digital transformation with 120,000 employees in 73 countries and annual revenue of € 13 billion. European number one in Cloud, Cybersecurity and High- Performance Computing, the Group provides end-to-end Orchestrated Hybrid Cloud, Big Data, Business Applications and Digital Workplace solutions through its Digital Transformation Factory, as well as transactional services through Worldline, the European leader in the payment industry. With its cutting-edge technologies and industry knowledge, Atos supports the digital transformation of its clients across all business sectors. The Group is the Worldwide Information Technology Partner for the Olympic & Paralympic Games and operates under the brands Atos, Atos Syntel, Unify and Worldline. Atos is listed on the CAC40 Paris stock index. Find out more about us atos.net/cardos Let’s start a discussion together © Atos April 2020 — All trademarks are the property of their respective owners. Atos, the Atos logo, Atos Codex, Atos Consulting, Atos Worldgrid, Bull, Canopy, equensWorldline, Unify, Worldline and Zero Email are registered trademarks of the Atos group. Atos reserves the right to modify this document at any time without notice. Some offerings or parts of offerings described in this document may not be available locally. Please contact your local Atos office for information regarding the offerings available in your country. This document does not represent a contractual commitment. CT-200408-RD-CardOS-API-Powerful-Integration-FS-en3.