ICAO Public Key Directory (PKD)

Similar documents
ICAO PUBLIC KEY DIRECTORY (PKD) Christiane DerMarkar ICAO PKD Officer

ICAO PUBLIC KEY DIRECTORY (PKD)

ICAO Public Key Directory (PKD)

ICAO Public Key Directory (PKD) How to join

ICAO Public Key Directory (PKD)

Public Key Directory: What is the PKD and How to Make Best Use of It

Christiane DerMarkar Programme Officer PKD

Christiane DerMarkar Programme Officer - PKD Secretary of the PKD Board

MINISTERIAL CONFERENCE ON AVIATION SECURITY AND FACILITATION IN AFRICA. WINDHOEK, NAMIBIA, 4-8 April 2016

MEMORANDUM OF UNDERSTANDING (MOU)

Implementation of the Public Key Directory

Roman Vanek PKD Board Chairman

epassport PKI Validation & the ICAO PKD

ICAO Public Key Directory ICAO PKD Key Ceremony Procedures

Introduction ICAO PKD Higher Travel Security. ICAO TRIP Seminar 9 to 11th May 2016

ICAO PUBLIC KEY DIRECTORY (ICAO PKD) 2007 ANNUAL REPORT TO PARTICIPANTS

Better Training for Safer Food

Lessons learned from implementing EVM on a large scale IT portfolio at the Department of State

EU Programmes for Animal Welfare in the European region

The Scottish Government SHEEP AND GOAT IDENTIFICATION AND TRACEABILITY GUIDANCE FOR KEEPERS IN SCOTLAND

COMMISSION. (Text with EEA relevance) (2009/712/EC)

international news RECOMMENDATIONS

OIE Regional Commission for Europe Regional Work Plan Framework Version adopted during the 85 th OIE General Session (Paris, May 2017)

OIE STANDARDS ON VETERINARY SERVICES ( ), COMMUNICATION (3.3), & LEGISLATION (3.4)

Texas 4-H/FFA Heifer Validation Program

Resolution adopted by the General Assembly on 5 October [without reference to a Main Committee (A/71/L.2)]

L 39/12 Official Journal of the European Union

International movement of pet animals

Annex III : Programme for the control and eradication of Transmissible Spongiform Encephalopathies submitted for obtaining EU cofinancing

OVER 30 MONTH CATTLE SLAUGHTER RULE (OTM Rule)

Sanitary and Phytosanitary (SPS) issues in exports from the EU to Russia What will Russia s accession to the WTO change?

Official Journal of the European Union L 280/5

DG(SANCO)/ MR

OIE Conference on Veterinary Medicinal Products in the Middle East

Transmitted by Co-Chairs of the Informal Working Party On Periodical Technical Inspections. WP (08-11 March 2016, agenda item 7.

Draft ESVAC Vision and Strategy

REPORT FROM THE COMMISSION TO THE EUROPEAN PARLIAMENT AND THE COUNCIL

GOOD GOVERNANCE OF VETERINARY SERVICES AND THE OIE PVS PATHWAY

Ministry of Health. Transport of animals Pratical Experience Member Country perspective

Official Journal of the European Union L 162/3

This document is meant purely as a documentation tool and the institutions do not assume any liability for its contents

Convention on the Conservation of Migratory Species of Wild Animals

Gemalto N.V. annual information update. for the twelve months up to May 23, 2006

GLOSSARY. Annex Text deleted.

GRAND LODGE MASTER BUILDER AND REVISED LODGE OF THE YEAR AWARD PROGRAM

Checklist. KRAV s Extra Requirements for Sheep and Goat Meat. For verifying KRAV s extra requirements in the KRAV standards chapter 16 (edition 2018).

ICAO WCO Joint Conference on Enhancing Air Cargo Security and Facilitation

Stray Dog Population Control Terrestrial Animal Health Code Chapter 7.7 Dr Tomasz Grudnik OIE International Trade Department

Standard requirements for the submission of programmes of eradication and monitoring of TSE

COMMISSION OF THE EUROPEAN COMMUNITIES. Proposal for a REGULATION OF THE EUROPEAN PARLIAMENT AND OF THE COUNCIL

OIE global strategy for rabies control, including regional vaccine banks

21st Conference of the OIE Regional Commission for Europe. Avila (Spain), 28 September 1 October 2004

The role of private veterinarians and veterinary para-professionals in the provision of animal health services

MIDDLE EAST REGIONAL ANIMAL WELFARE STRATEGY

ANNEX. to the COMMISSION IMPLEMENTING DECISION

A Bill Regular Session, 2017 HOUSE BILL 1717

Advanced Uses of Earned Value Management in Projects, Programmes and Portfolios

OIE standards : procedures, model certificates

LIVESTOCK IDENTIFICATION AND TRACEABILITY PROGRAM

The new EU Regulation on Animal Health (Animal Health Law)

Specific Rules for Animal Product

Analogous application of the GDP Guidelines 2013/C 343/01 for veterinary medicinal products

Overview of the OIE PVS Pathway

Official Journal of the European Union. (Acts whose publication is obligatory)

The general Information of the OIE (Organization, Roles, Mandate, Functions and 5 th Strategic Plan)

OIE standards on the Quality of Veterinary Services

Recognition of Export Controls and Certification Systems for Animals and Animal Products. Guidance for Competent Authorities of Exporting Countries

The PVS Tool. Part 4. Introduction to the concept of Fundamental Components and Critical Competencies

Dr A T Sigobodhla. Regional Workshop for OIE National Focal Points for Veterinary Products (Cycle V): Ezulwini, Swaziland, 6-8 December 2017

Building Competence and Confidence. The OIE PVS Pathway

ANNEX. to the. Commission Implementing Decision

RESPONSIBLE ANTIMICROBIAL USE

Questions and Answers on the Community Animal Health Policy

SENATE, No STATE OF NEW JERSEY. 217th LEGISLATURE INTRODUCED MAY 26, 2016

WFP Support to Samburu County s Emergency Preparedness and Response, 2016

OIE SUB-REGIONAL TRAINING SEMINAR ON VETERINARY LEGISLATION FOR OIE FOCAL POINTS

Conference on Factoring as a Tool for Financing SME s

Library. Order San Francisco Codes. Comprehensive Ordinance List. San Francisco, California

NATIONAL PLAN FOR FISH HEALTH MANAGEMENT Submitted by:

Risk of rabies introduction by noncommercial

Difficulties with reporting individual movements of non EID sheep and goats

of Conferences of OIE Regional Commissions organised since 1 June 2013 endorsed by the Assembly of the OIE on 29 May 2014

COMMISSION DELEGATED REGULATION (EU) /... of XXX

The OIE judgement of equivalence

Results of the questionnaire on Veterinary Medicinal Products in the Middle East Damascus, Syria, 2-4 December 2009

Annex III : Programme for the control and eradication of Transmissible Spongiform Encephalopathies submitted for obtaining EU cofinancing

OIE International standards related to control, inspection and approval procedures

Science Based Standards In A Changing World Canberra, Australia November 12 14, 2014

Legislation, Registration and Control Procedures for Veterinary Medicinal Products in the European Union

Effective Vaccine Management (EVM) Global Data Analysis

Veterinary Statutory Bodies: Their roles and importance in the good governance of Veterinary Services

DECLARATION of the First Conference on Animal Welfare in the Baltic Region RESPONSIBLE OWNERSHIP 5 to 6 May, 2011, Vilnius, Lithuania

Istituto G. Caporale. 17/05/2011 Istituto G. Caporale Teramo 1

Dogs and Cats Online All of our Puppies in One Basket

Standard requirements for the submission of programmes of eradication and monitoring of TSE

Agency Profile. At A Glance

EU animal health system Prevention, Surveillance, Control and Eradication

EUROPEAN COMMISSION DIRECTORATE-GENERAL FOR HEALTH AND FOOD SAFETY

ANNEX Part 1 Model animal health certificate for imports into the Union of dogs, cats and ferrets COUNTRY:

Specifications for the Flyball Open World Cup of the FCI (FOWC)

Transcription:

ICAO Public Key Directory (PKD) Christiane DerMarkar ICAO PKD Programme Officer ICAO TRIP: Making the Air Travel more Secure and Efficient TOWARDS A BETTER TRAVELLER IDENTIFICATION MANAGEMENT FOR ENHANCED BORDER CONTROL INTEGRITY Date 2

ICAO PKD: one of the 3 interrelated pillars of Facilitation Annex 9 ICAO TRIP Strategy ICAO PKD Chapter 3:main SARPs related to the TRIP Doc 9303 Part 12: PKI specs ICAO TRIP: Building Trust in Travel Document Security Mean to enhance security in crossborder movement. Inspection Tool for epassports verification, validation and authentication of the digital signatures and content of the chip 3

MRP Connection between PKD and epassports epassport Machine Readable Passport (MRP) CHIP RFID 14443 IMAGE FACE Logical Data Structure (LDS) 0111001001010 PKI Certificate from the Public Key Directory (PKD) 4

epassport Validation And PKD It allows Border Control authorities to confirm that the epassport: Was issued by the right authority; Has not been altered ; and That no certificate necessary to validate the document has been revoked The authentication of the epassport increases the trust and confidence on the information in the physical document Document Signer (DSC) emrtd CRL + + Validation Trust Chain

What is the PKD and what is its role A central Repository that simplify and facilitates the sharing of PKI certificates required to authenticate epassport. Minimizing the volume of certificate exchange: Document Signer Certificates (DSCs) Certificate Revocation Lists (CRLs) Country Signing Certificate Authority (CSCA) Master List Deviation List Ensuring timely uploads 6

Central Broker Distribution of Certificates and CRLs via bilateral Exchange via ICAO PKD Country A Country B Country A Country B Country H Country C Country H ICAO PKD Country C Country G Country D Country G Country D Country F Country E Country F Country E This example shows 8 States/non-States requiring 56 bilateral exchanges (left ) or 2 exchanges with the PKD (right) to be up to date with DSCs and CRLs. In case of 192 ICAO States 36,672 bilateral exchanges would be necessary while there are still 2 exchanges with the PKD. This example shows 8 states requiring 56 bilateral exchanges (left) or 2 exchanges with the PKD (right) to be up to date with certificates and CRLs. In case of 188 ICAO States 35,156 bilateral exchanges would be necessary while there are still 2 exchanges necessary with the PKD. 7

Why Join the PKD Issuer Perspective: Border authorities around the world can validate the epassports that you issue. epassports that cannot be validated must essentially be considered and treated as a non-electronic travel document. And you are not capitalizing and the investment made to implement epassports The ICAO PKD provides a means of distributing your information to other States that is efficient, reliable, and always accessible. Border Authority Perspective: performing epassport validation (according to Doc 9303 7 th Edition, Part 12) and accessing the information necessary to perform it, provides confidence that the travel document under inspection has been issued by the proper authorities and that the information recorded on the document has not been tampered with. The ICAO PKD provides a means of accessing the necessary information published by other States in a cost efficient way that is always available. Traveler Perspective: Validation through the ICAO PKD, confirms the authenticity and integrity of the data on the chip, and in turn facilitates the fast and secure cross-border movement of citizens by the frontline entities. The ICAO PKD is the most efficient and reliable means of both providing and accessing the information required for epassport validation. 8

New Participants 2016 Romania Finland Benin Botswana Kuwait Georgia Iceland Turkey Oman New Participants 2017 Turkmenistan Peru Barbados Panama European Union 9

ANNEX 9: Recommended Practice 3.9.1, 3.9.2 and 3.35.5 The Standards and Recommended Practice of Annex 9 recommend the following: 3.9.1: Contracting States issuing, or intending to issue emrtds should join the ICAO Public Key Directory (PKD) and upload their information to the PKD. 3.9.2: Contracting States implementing checks on emrtds at border controls should join the ICAO Public Key Directory (PKD) and use the information available from the PKD to validate emrtds at border controls. 3.35.5: Contracting States utilizing ABC systems should, pursuant to 3.9.2 and 3.10.1, use the information available from the PKD to validate emrtds. 10

The steps to join the PKD For a state or non-state entity: 1. Deposit a Notice of Participation with the Secretary General of ICAO. 2. Deposit a Notice of Registration with the Secretary General of ICAO. 3. Effect payment of the Registration Fee and Annual Fee to ICAO. 4. When ready, securely submit to ICAO, the Country Signing CA Certificate (CSCA). 5. Upload/Download to and from the PKD. https://www.icao.int/security/fal/pkd/pages/how-to-participate.aspx 11

https://www.icao.int/security/fal/pkd/pag es/how-to-participate.aspx 1. Select PKD MoU 2. Select Notice of Participation (model) 12

https://www.icao.int/security/fal/pkd/page s/how-to-participate.aspx 1. Select Notice of Registration (model) 13

Participation fee A. ICAO Registration Fee: US $15,900 B. Estimated Annual Fee 2018 based on 55+ Active Participants: US $ 31,755 (Operator Fee US $ 24,500 + ICAO Operator fee US $ 7,255) C. More Participants = reduction in Operators + ICAO Annual Fees *ICAO prepares an annual operation budget every year which is divided over the total number of PKD participants. For 2018 the ICAO Operation Fees have been established at US $7,255.00. Active Participants Operator Fees (US $) ICAO * Fees (US $) 50 Participants 27,000.00 7,255.00 55 Participants 24,500.00 7,255.00 60 Participants 22,500.00 7,255.00 65 Participants 20,900.00 7,255.00 14

Active Participation PKD Integration 1. A PKD Participant should start active Participation (CSCA Import and PKD Upload) at the latest 15 months after paying The Registration Fee and becoming Effective participants. 2. Participant are required to have completed the testing of the PKD interface and successfully imported the CSCA into the HSM in Montreal. 3. The PKI Infrastructure between National and ICAO PKD should be implemented. 15

CSCA KEY CEREMONY the CSCA Certificate plays the main role as the anchor of trust in the validation process of the epassports Each state participating in the ICAO PKD is required to securely submit its CSCA certificate to ICAO. The CSCA certificate, must be hand delivered by a State Representative to ICAO headquarter in Montreal where it is imported securely to the ICAO PKD (High Security Module, HSM) under the observation of the state's representatives and the ICAO security officials After the Key ceremony is complete, the DSCs and CRLs can be uploaded to the ICAO PKD. The authenticity of the DSCs and CRLs can now be verified using the public keys stored inside the CSCA certificates that are stored within the ICAO PKD. 16

It s not complicated : All you have to do is. Review national legislation: Essential before introducing epassport and joining the PKD: A thorough review of the national legislative framework is essential before introducing epassports and participating in the ICAO PKD Find out who is responsible: To ensure the quality of the certificates it s important to define roles and responsibilities of all those involved with the PKD (PKI, NPKD, etc ) Establish a budget line: streamline the annual payment Address Technical Specifications: ensure that the National PKD is technically compatible with the ICAO PKD. Follow ICAO Doc 9303 specs. Integrate the National PKD with the ICAO PKD: This includes National PKDs uploading and downloading certificates (DSCs and MLs) and revocation lists to and from the ICAO PKD 17

Conclusion ICAO urges all ICAO Member States to join and actively use the certificates distributed by the ICAO PKD as a means to validate and authenticate epassports at Border Controls. 18

24 th PKD Board Meeting in Shenzhen, P.R. China

Contact Details Name: Christiane DerMarkar Email:cdermarkar@icao.int Date 20