Local Authentication Platform
It is one of the platforms that enables certification by My Number Card using the Japanese Public Key Infrastructure (JPKI) (JPKI) in public service. We will introduce the supported functions and procedures for introducing the service.
Table of
1. What is a Local Authentication Platform?
1. 1. Overview
The local authentication platform is a platform that allows local government, which is participating in the Convenience Issue (Benefits of Introduction of Convenience Issue and Participation Requirements (for Municipalities) ), to use the Japanese Public Key Infrastructure (JPKI) (JPKI) in the LGWAN connection system and the administrative system using personal identification numbers. It provides various application form counter Issue services (counter application tools) and authentication functions for the municipalities' own development systems. Currently, only the OCSP responder method, which queries the J-LIS on a per-case basis, is supported, but due to economic measures, it has been modified to add a revocation confirmation function by the CRL provision method. By utilizing the authentication function of the local authentication platform, the "①My Number Card utilization plan" of My Number Card is promoted, which is expected to contribute to convenience of residents, cost reduction of administration, and improvement of service security. The local authentication platform is used in about 200 local government, including Kyoto and Hamamatsu.
1.2. Specifications
The form of use and supported functions of the local authentication platform are as follows.
1. 2.1. Expected Forms of Use
- Face-to-face
1.2. 2. Types of E-Certificate for which validation is possible
E-Certificate for signature
For verifying that electronic documents created and sent by users are "authentic documents created by users and sent by users"E-Certificate for user identification
It is used to verify the identity of users online.
*For more information, please see E-Certificate Types .
1.2.3. Method of E-Certificate validation
OCSP responder method (* 1)
In online environments, this method inquires about the validity of each E-Certificate and performs authentication. It is possible to check the revocation status in real time.CRL Provision Method (Scheduled to be available at the end of January 2024)
This is a method of confirming the validity of a E-Certificate from an expiration list that is periodically issued once a day. It is possible to quickly and collectively process the revocation list. For example, in an offline environment such as shelter, it is possible to obtain only the issuance number of the E-Certificate and to collectively confirm the validity in an online environment.
* 1 If you use private business (JPKI) using the OCSP provision method with Japanese Public Key Infrastructure (JPKI) as the signatory validation holder, in principle, you will be charged a fee for providing E-Certificate Revocation Information (free of charge for the three years from January 1, 2023). On the other hand, if you use a local certification platform, public authorities, etc. will be the signatory validation holder, and the fee will be free of charge.
*For more information on the E-Certificate validation method, see E-Certificate Validation Method .
1.2.4. E-Certificate Mounted Service for Smartphones
This is a built-in function of the My Number Card for smartphone, which has the same functions as the E-Certificate (E-Certificate for signatures and E-Certificate for user authentication). The local authentication platform is scheduled to be compatible at the end of October 2023.
*For more information, please see E-Certificate Installed Service .
1.3. Introduction Procedure
The introduction procedure is as follows.
- Participate in the convenience store local government service as a Issue (* 2)
- Obtain documentation of local certification platform specifications from a dedicated page for convenience store Issue service participating organizations.
- Confirm the content of the information received with the system development vendor responsible for the existing system
- Modification of the existing system to support the local certification platform or development of a new system that supports the local certification platform on the local government side
- Apply for use of the local certification platform from the dedicated page for groups participating in the convenience store Issue service.
2. Inquiries
For inquiries related to the Local Authentication Platform, please contact:
Local governments Information Systems Institute (J-LIS) Regional Certification Platform Officer
Email address: icss01 _ atmark _ j-lis. go. jp
Subject: Enter "Inquiries about local certification platforms (local government name)"
Main text: Enter the name of the local government, the name of the department, the name of the person in charge, and the contact information.
*To prevent unwanted e-mail, "@" is displayed as " _ atmark _
". When sending e-mail, please change " _ atmark _
" to "@" (one byte).