  • ○ Registering and Issuing Digital Certificates to Citizens, Corporates and Servers

  • After identification of the subject, CA issue a digital certificate which contains a key pair, the identity of its owner and the digital signature of the CA.
  • ○ Digital Certification Management

  • The digital certificate is managed by the owner by changing the password, copy the digital certificate from one device to another, checking Certificate password, deleting the password, checking certificate identity etc..
  • ○ Publishing Certificate Revocation List (CRLs)

  • CA must broadcast an updated list of revoked certificates to all distribution point.
  • ○ Real Time certificate verification through Online Certificate Status Protocol (OCSP)

  • GovCA is in charge of providing real time validation of the digital certificate.
  • ○ Time Stamp Service

  • GovCA verifies when e-transactions has been performed.