SECURITY_CONSTRAINT

All the reverse entity references for this entity

All connections to the service require mutual authentication through a client digital certificate issued by EACP or equivalent. Interested organizations must formally request the issuance of this certificate from NAV Portugal prior to being granted access. The exclusive access network for the ARES Service is NEWPENS (New Pan-European Network Service). Connections via any other network are not permitted. Access is managed under the SWIM security and governance framework, ensuring confidentiality, integrity, and traceability of all exchanged information.

Authentication is required - Mutual authentication with X509 certificates is used between the AMQPS broker and its client established within a TLS session. IPsec is used to provide confidentiality, authentication and integrity at network (internet) layer.

The interface of DSNA business services is accessible from outside DSNA premises through Internet using IPV4. An IPSEC link (IKE v1 or IKE v2) is used between DSNA provider and customer terminal network equipment.