CygnaCom's Specialized Products
Fermata
Fermata PKI Artifact Collection and Fermata Evidence Record Maintenance work in tandem to collect and preserve certificates and CRLs, which are available via SCVP as wantBacks enabling applications that must verify digital signatures generated well in the past to do so using cryptographically secure PKI artifacts.
Fermata SCVP is an RFC 5055-compliant Server-Based Certificate Validation Protocol (SCVP) responder that provides support for the digital signature preservation mechanisms defined in RFC 5276.
- See https://demo.pkipreserver.com/index.html for more information or to view the data sheets.
PKIF
The PKIF OCSP Plug-in for Microsoft Windows is a revocation provider for applications that use Microsoft CAPI for certification path processing, such as Outlook, Internet Explorer, etc. The plug-in provides support for full CRLs, partitioned CRLs and delta CRLs, in addition to OCSP.
Public Key Infrastructure Framework (PKIF) toolkit is a multi-platform public key enablement library that provides access to certification path processing, certificate revocation status determination, certificate/CRL storage and retrieval, cryptographic, OCSP, RFC3161 timestamp and Cryptographic Message Syntax (CMS) functionality.
PKIFv1 and PKIFv2 were successfully evaluated at EAL4+ against the DoD Public Key Enablement Protection Profile. PKIF has been evaluated by the US DOD JITC testing laboratory. Research and development performed using the PKIF toolkit contributed to the development of the IETF's Long-Term Archive and Notary Services (LTANS) working group, which is defining standards for preservation of digitally signed data. For more information, visit http://www.pkiframework.com or see the Common Criteria evaluation report and certificate.
Webcullis
Webcullis™ is a web server plug-in that uses PKIF to perform RFC 5280-compliant certification path processing in support of PKI-based access control enforcement. Access control rules utilize distinguished names, certificate policies, key size, key usage and other certificate-based information. Webcullis was successfully evaluated by the JITC PKE and the GSA PD-VAL laboratories. For more information, visit http://www.webcullis.com.