|
Communicating
and collaborating in a network with trading partners (customers,
suppliers, banks, etc.), exchanging data, documents, information
securely and in compliance with currently applicable regulations.
The
growing dependency of firms on information systems and on
business models that open up their organizations to the outside
makes security a factor of top priority.
The complexity of security management has led to the need
for many firms to define an internal policy to govern the
resources and procedures in this sector.
And if in the traditional approach, the problem of security
was tackled from a passive angle in order to defend oneself
from external or internal attacks, today the digital signature
must be seen no longer as an item of expenditure but as an
investment capable of ensuring economic returns.
Registered
on the association of CNIPA certification bodies, INTESA operates
as an Accreditated Certifying Authority in both the public
and private sectors.
Below
the service cards.
| e-Trustcom |
|
Business
requirements
|
All
the companies that need to collaborate openly in their
own area of activity (customers, suppliers, banks, partners)
and wish to exchange data, documents, and information
in a secure and proper way through an integrated management
of logic security in the framework of applications in
the B2B, B2C, B2E areas.
|
|
Description
|
The
services and solutions for logic security and the digital
signature of the E-Trustcom line allow electronic documents
to be digitally signed, secure E-mail messages to be
transmitted and dialogue to be conducted in a secure
and protected way on the Web, guaranteeing security
of the transactions conducted on the network.
The main benefits of the solution for the customer are:
- Reliability:
solid PKI (Public Key Infrastructure); fault tolerance;
online disaster recovery; ITSec safety requirements;
in conformance with European regulations
- Scalability
both of functions and of operating volumes
- Excellence:
prompt updating of CNIPA ordinances; team with proven
experience; PA partner for the National Charter of
Services
- Ease
of integration
|
|
Details
about the solution
|
INTESA,
a CNIPA Accredited Certification agency, provides the
services of:
- Issuing
and management of digital certificates
- Remote
Registration Authority for Companies and Administrations
who would like to autonomously issue certificates;
- Central
Signature/Timestamping, to ensure signature functionality
through centrally stored certificates and the non-repudiation
of a document through the affixing of a time and date
stamp;
- Trusted
Mail, for secure and certified handling of electronic
mail services;
- Web
Secure, to limit access to ones web site to closed
user groups;
- Signing
Library, secure libraries for the integration of digital
signature and optical filing
- Signing
Client, software application for the digital signing
and encryption of electronic documents
- Verify
Light, free software for the verification of digitally
signed documents with certificates issued by any CA
- PKI
Smart Kit, complete solution for signing and encrypting
electronic documents
- Integration
of the signature services into the customer's applications·
Projects for outsourcing of CA production and management
|
|
Prerequisites
|
Varies
depending on the solution. |
top
| PKI
Smart Kit |
|
Business
requirements
|
Firms,
central and local authorities, bodies and organizations
who wish to make electronic document exchange more secure
and non-repudiatable.
|
|
Description
|
PKI
Smart Kit for execution of all the digital signature
operations: generation of the keys, request for a certificate,
signature of a document and checking of the document.
Thanks to this technology it is possible, after creating
a document with the leading software programs for individual
and/or corporate productivity, to give it a legal value
with effect against third parties and exchange it securely
over the Internet or an extranet.
The main benefits of PKI Smart Kit for the customer
are:
-
secure electronic documentation, in conformance with
Italian law;
- countless
fields of application: contracts, invoices payment
reminders, price lists and offers, sales correspondence,
medical prescriptions and reports, accounts records;
- ease
of use of the solution;
- inclusion
in the information system without requiring intervention
on existing applications;
- modularity:
possibility of integrating the solution with the logic
security services of the E-Trustcom line, which guarantee
high security levels;
- low
costs.
|
|
Details
about the solution
|
The
PKI Smart Kit package developed by Intesa offers a complete
solution for use of the digital signature; the following
products and services are included in the kit:
- personal
identification of the user at one of the Intesa locations
of Turin, Milan and Rome;
- encryption
type smart cards;
-
a smart card reader to be connected to the PC;
- a
digital certificate for advanced electronic signature
with annual validity, issued by the C.A. (Certification
Authority) Intesa;
-
a digital certificate for encryption with annual validity,
issued by the C.A. Intesa;
- A
CD-ROM containing:
- the drivers for installation of the smart card reader;
- the "Signing Client" software application for signing
and encrypting electronic documents, in the base configuration;
- the user manuals.
|
|
Requirements
|
Availability
of a workstation running on the Windows platform: from
Windows 98 to XP. |
top
| Trusted
Sap Integration |
|
Business
requirements
|
Allow
SAP system customers to integrate in their software
the logic security functions (digital signature, encryption,
authentication, etc.) that will protect their transactions
and the applications that communicate in the network.
|
|
Description
|
Intesa
offers the SAP world services and solutions for the
Integrated Management and Secure Exchange of electronic
documents.
The main benefits of the Trusted Sap Integration solution
for the Sap customer are:
- guarantee
of data integrity: data and documents in electronic
form are protected against falsification/manipulation;
- data
confidentiality: data and documents in electronic
form are protected against unauthorized "eyes";
- authenticity
of the sender: guaranteeing protection against counterfeiters;
- non-repudiation:
proving contractual validity;
- independent
of the methods/media (Internet, public networks, online
services, magnetic/optical media, etc.) and the transmission
protocols (EDI, FTP, HTTP, e-Mail...) employed;
- availability
of the solution for all the main application modules
(e.g. FI, CO, SD, HR), present in most SAP system
installations number.
The
Trusted Sap Integration solution is part of the Sap
Integration Program, which also includes:
- integration
of the EDI/EAI/B2Bi technologies for managing the
exchange of transactions on an "expanded" firm level;
-
integrated management and archiving according to regulations
of electronic documents.
|
|
Details
about the solution
|
The
Trusted Sap Integration solution provides the software
components and the hardware devices to be integrated
in the Sap platform; Intesa operates as a Certification
Authority for the issue and management of digital certificates
which may be used by users and by SAP application modules.
The Trusted Sap Integration solution comprises:
- Software
Sap Signing Library (Server)
Sap Signing Client (Client)
- Services
Electronic certificates (Server e Client)
- Hardware
devices
Smart Card readers
Smarts Cards
Intesa
also provides qualified professional services for optimally
analysing, designing and implementing (on the basis
of the best security policies and practices) the logic
security functions in the SAP world.
|
|
Requirements
|
Sap
R/3 management system. |
top
| Trusted
Mail |
|
Business
requirements
|
All
company divisions that have a need to communicate with
their partners (suppliers, customers, agents, dealers,
…) and with the Public Administration through a secure
and confidential electronic communication channel that
ensures the integrity of the message and certifies the
successful delivery, using an end to end service that
is able to completely replace the traditional mail service
(i.e.: registered post with return receipt).
|
|
Description
|
The
TRUSTED MAIL Electronic Mail Certificate (PEC) service,
in conformance with the CNIPA regulations, is provided
by Intesa as the Administrator of the service; the "Administrator"
is the public or private subject that provides the EMC
service and manages one or more certified mail domains.
The Administrator must use verification methods that
guarantees the message sent from the sender to the recipient
is completely intact. INTESA has obtained the necessary
certification from the Technical Center of the Presidency
of the Council of Ministers, which has already added
INTESA to the list of the operators enabled to manage
the EMC services.
The
main benefits of the TRUSTED MAIL solution for the Customer
are:
- Delivery
acknowledgment with identification guarantee of the
sender and the recipient.
- The
guarantee of confidentiality, integrity, non-repudiation,
traceability and historical tracking of the message
flows.
-
Interoperability with the other Intesa services, such
as:
- conventional
electronic mail services, already provided by
the INTESA Server Farm (Lotus Domain or Critical
Path platform);
-
the INTESA Certification Authority, for the issuing
the digital certificates assigned to the mail
domains;
- the
INTESA CA Timestamping services, for the secure
attribution of the timed events related to the
service;
- The
BCHub service for interconnection between the
TRUSTED MAIL platform and the customer's application
and management environment.
-
Low costs. .
|
|
Details
about the solution
|
The
TRUSTED MAIL service allows the sending of a
certified mail message between sender and recipient
that is made up of the original message (coinciding
with that created by the sender) having a descriptive
text and certification data.
The main characteristics of the service are:
- The
transmission is done by the sending of a certified
mail message, undersigned by Intesa, as reference
administrator of the sender, with an electronic signature.
- During
the treatment phases of the message, the administrators
must track the operations performed on a special log.
The log data must be kept for at least two years and
must be available and accessible for inspection purposes
by the Technical Center or by specialized personnel
in the case of controversy.
- If
the sender is no longer available to receive the messages
sent, the information in the logs of the administrators
involved in the sending are opposable to third parties
(art. 14, comma 2, DPR 28/12/2000, n. 445).
|
|
Prerequisites
|
None |
top
|