[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"doc-detail-160231-en":3,"doc-seo-160231-105":30,"detail-sidebar-cat-0-en-105":91},{"code":4,"msg":5,"data":6},0,"success",{"doc_id":7,"user_id":8,"nickname":9,"user_avatar":10,"doc_module":4,"category_id":11,"category_name":12,"doc_title":13,"doc_description":14,"doc_content":15,"file_id":16,"file_url":17,"file_type":18,"file_size":19,"view_count":4,"is_deleted":4,"is_public":20,"is_downloadable":20,"audit_status":20,"page_count":21,"language":22,"language_code":23,"site_id":24,"html_lang":23,"table_of_contents":25,"faqs":26,"seo_title":27,"seo_description":14,"update_tm":28,"read_time":29},160231,687207017582,"Ethan Miller","https://ap-avatar.wpscdn.com/davatar_994ba38a5ba835b3df7d355c54d3ed8d",6,"Technology","Certification Practice Statement der DFN-PKI - Security Level “Global” - CPS 14 - Policy and Technical Security Measures","Certification Practice Statement for DFN-PKI’s Global Security Level, describing how the DFN-PKI Policy Certification Authority (DFN-PCA) and all subordinate certification authorities issue certificates. The statement defines specifications, processes, and technical security measures across the full certificate life cycle, including identification and authentication, operational requirements, facility and management controls, technical security controls, and certificate/CRL/OCSP profiles. It also covers compliance audits, other business and legal matters, references, glossary, and change history, with version and identification details.","Certification Practice Statement of the DFN-PKI  \n– Security Level “Global” –  \nDFN-Verein  \nCPS of DFN-PKIV14 22 August 2024  \nThis document is available in German and English. In case of differences, the English version is authoritative.  \nThis document and all parts of it are copyright protected. It is made available under the terms of the Attribution-NoDerivatives 4.0 International (CC BY-ND 4.0) licence, [https://creativecommons.org/licenses/by-nd/4.0/](https://creativecommons.org/licenses/by-nd/4.0/) .  \nContact: [pki@dfn.de](pki@dfn.de)[ ](pki@dfn.de)© DFN Verein  \nCPS of DFN-PKI page 2/11 V14  \nContents  \n1 Introduction...............................................................................................................4  \n1.1 Overview .............................................................................................................. 4  \n1.2 Document Name and Identification...................................................................... 4  \n1.3 PKI Participants.....................................................................................................4  \n1.4 Certificate Usage.................................................................................................. 4  \n1.5 Policy Administration............................................................................................ 4  \n1.6 Definitions and Acronyms ....................................................................................4  \n2 Publication and Repository Responsibilities.............................................................. 4  \n3 Identification and Authentication ............................................................................. 4  \n4 Certificate Life-Cycle Operational Requirements ...................................................... 4  \n5 Facility, Management and Operational Controls ....................................................... 5  \n5.1 Physical Controls ................................................................................................. 5  \n5.2 Procedural Controls .............................................................................................. 5  \n5.3 Personnel Controls................................................................................................5  \n5.4 Audit Logging Procedures ....................................................................................6  \n5.5 Records Archival................................................................................................... 8  \n5.6 Key Changeover .................................................................................................. 8  \n5.7 Compromise and Disaster Recovery ....................................................................8  \n5.8 CA or RA Termination ........................................................................................... 9  \n6 Technical Security Controls.......................................................................................9  \n6.1 Key Pair Generation and Installation .................................................................... 9  \n6.2 Private Key Protection and Cryptographic Module Engineering Controls .............9  \n6.3 Other Aspects of Key Pair Management ............................................................... 9  \n6.4 Activation Data..................................................................................................... 9  \n6.5 Computer Security Controls..................................................................................9  \n6.6 Life Cycle Security Controls.................................................................................. 9  \n6.7 Network Security Controls .................................................................................. 10  \n6.8 Time-Stamping .................................................................................................. 10  \n7 Certificate, CRL and OCSP Profiles ............................................","cbCaikItAvAQS3KX","https://ap.wps.com/l/cbCaikItAvAQS3KX","pdf",303016,1,11,"English","en",105,"# 1 Introduction\n## 1.1 Overview\n## 1.2 Document Name and Identification\n## 1.3 PKI Participants\n## 1.4 Certificate Usage\n## 1.5 Policy Administration\n## 1.6 Definitions and Acronyms\n# 2 Publication and Repository Responsibilities\n# 3 Identification and Authentication\n# 4 Certificate Life-Cycle Operational Requirements\n# 5 Facility, Management and Operational Controls\n## 5.1 Physical Controls\n## 5.2 Procedural Controls\n## 5.3 Personnel Controls\n## 5.4 Audit Logging Procedures\n## 5.5 Records Archival\n## 5.6 Key Changeover\n## 5.7 Compromise and Disaster Recovery\n## 5.8 CA or RA Termination\n# 6 Technical Security Controls\n## 6.1 Key Pair Generation and Installation\n## 6.2 Private Key Protection and Cryptographic Module Engineering Controls\n## 6.3 Other Aspects of Key Pair Management\n## 6.4 Activation Data\n## 6.5 Computer Security Controls\n## 6.6 Life Cycle Security Controls\n## 6.7 Network Security Controls\n## 6.8 Time-Stamping\n# 7 Certificate, CRL and OCSP Profiles\n# 8 Compliance Audit and Other Assessments\n# 9 Other Business and Legal Matters\n# 10 References\n# 11 Glossary\n# 12 Change history","[{\"question\":\"What document does the DFN-PKI CPS describe for the Global Security Level?\",\"answer\":\"It describes the Certification Practice Statement for the DFN-PCA and all Sub-CAs, including specifications, processes, and technical security measures used to issue certificates at the Global Security Level.\"},{\"question\":\"Which areas of the certificate life cycle are covered?\",\"answer\":\"The CPS covers identification and authentication, certificate life-cycle operational requirements, facility/management/operational controls, and technical security controls, including key management and security measures.\"},{\"question\":\"What subjects are addressed regarding certificates and revocation information?\",\"answer\":\"It defines certificate, CRL, and OCSP profiles, covering how these elements are structured and handled in the DFN-PKI context.\"}]","Certification Practice Statement der DFN-PKI - Security Level “Global” - CPS 14 - Policy and Technical Security Measures | PDF",1788052594,28,{"code":4,"msg":31,"data":32},"ok",{"site_id":24,"language":23,"slug":33,"title":13,"keywords":34,"description":14,"schema_data":35,"social_meta":86,"head_meta":88,"extra_data":90,"updated_unix":28},"certification-practice-statement-der-dfn-pki-security-level-global-cps-14-policy-and-technical-security-measures","",{"@graph":36,"@context":85},[37,54,68],{"@type":38,"itemListElement":39},"BreadcrumbList",[40,44,48,51],{"item":41,"name":42,"@type":43,"position":20},"https://docshare.wps.com","Home","ListItem",{"item":45,"name":46,"@type":43,"position":47},"https://docshare.wps.com/document/","Document",2,{"item":49,"name":12,"@type":43,"position":50},"https://docshare.wps.com/document/technology/",3,{"item":52,"name":13,"@type":43,"position":53},"https://docshare.wps.com/document/certification-practice-statement-der-dfn-pki-security-level-global-cps-14-policy-and-technical-security-measures/160231/",4,{"url":52,"name":13,"@type":55,"author":56,"headline":13,"publisher":58,"fileFormat":61,"inLanguage":23,"description":14,"dateModified":62,"datePublished":62,"encodingFormat":61,"isAccessibleForFree":63,"interactionStatistic":64},"DigitalDocument",{"name":9,"@type":57},"Person",{"url":41,"name":59,"@type":60},"DocShare","Organization","application/pdf","2026-08-30",true,{"@type":65,"interactionType":66,"userInteractionCount":4},"InteractionCounter",{"@type":67},"ViewAction",{"@type":69,"mainEntity":70},"FAQPage",[71,77,81],{"name":72,"@type":73,"acceptedAnswer":74},"What document does the DFN-PKI CPS describe for the Global Security Level?","Question",{"text":75,"@type":76},"It describes the Certification Practice Statement for the DFN-PCA and all Sub-CAs, including specifications, processes, and technical security measures used to issue certificates at the Global Security Level.","Answer",{"name":78,"@type":73,"acceptedAnswer":79},"Which areas of the certificate life cycle are covered?",{"text":80,"@type":76},"The CPS covers identification and authentication, certificate life-cycle operational requirements, facility/management/operational controls, and technical security controls, including key management and security measures.",{"name":82,"@type":73,"acceptedAnswer":83},"What subjects are addressed regarding certificates and revocation information?",{"text":84,"@type":76},"It defines certificate, CRL, and OCSP profiles, covering how these elements are structured and handled in the DFN-PKI context.","https://schema.org",{"og:url":52,"og:type":87,"og:title":13,"og:site_name":59,"og:description":14},"article",{"robots":89,"canonical":52},"index,follow",{"doc_id":7,"site_id":24},{"code":4,"msg":5,"data":92},[93,97,101,105,110,113,118,123,128,131,135],{"id":20,"doc_module":4,"doc_module_name":46,"category_name":94,"show_sort_weight":95,"slug":96},"Story & Novel",90,"story-novel",{"id":47,"doc_module":4,"doc_module_name":46,"category_name":98,"show_sort_weight":99,"slug":100},"Literature",80,"literature",{"id":53,"doc_module":4,"doc_module_name":46,"category_name":102,"show_sort_weight":103,"slug":104},"Exam",70,"exam",{"id":106,"doc_module":4,"doc_module_name":46,"category_name":107,"show_sort_weight":108,"slug":109},5,"Comic",60,"comic",{"id":11,"doc_module":4,"doc_module_name":46,"category_name":12,"show_sort_weight":111,"slug":112},50,"technology",{"id":114,"doc_module":4,"doc_module_name":46,"category_name":115,"show_sort_weight":116,"slug":117},7,"Healthcare",40,"healthcare",{"id":119,"doc_module":4,"doc_module_name":46,"category_name":120,"show_sort_weight":121,"slug":122},8,"Research & Report",30,"research-report",{"id":124,"doc_module":4,"doc_module_name":46,"category_name":125,"show_sort_weight":126,"slug":127},9,"Religion & Spirituality",20,"religion-spirituality",{"id":126,"doc_module":4,"doc_module_name":46,"category_name":129,"show_sort_weight":126,"slug":130},"World Cup","world-cup",{"id":132,"doc_module":4,"doc_module_name":46,"category_name":133,"show_sort_weight":132,"slug":134},10,"Lifestyle","lifestyle",{"id":136,"doc_module":4,"doc_module_name":46,"category_name":137,"show_sort_weight":106,"slug":138},19,"General","general"]