Authentication is required - Mutual authentication with X509 certificates is used between the AMQPS broker and its client established within a TLS session. IPsec is used to provide confidentiality, authentication and integrity at network (internet) layer.
SECURITY_CONSTRAINT
The interface of DSNA business services is accessible from outside DSNA premises through Internet using IPV4. An IPSEC link (IKE v1 or IKE v2) is used between DSNA provider and customer terminal network equipment.
Confidentiality and integrity is ensured by use of TLS 1.2 or above
Provider is authenticated through an X.509 certificate
Service consumers must be authenticated (See technical constraints)
The requested information may contain a digital signature using SHA-256 or stronger.
Communication is encrypted per the SWIM TI Yellow Profile.
Access is limited by policy to users within the Aviation domain. Authentication is managed using SASL PLAIN for AMQP, and HTTP Basic for the EDR API. In the future, authentication and authorization via an EACP-issued Aviation Domain Certificate may be required to use the services.
Consumers must register their account into the ENAV Identity Manager (IAM) system and the system used to provide the service. OAuth2 client_credentials is used to obtain an access token. Transport security is provided using TLS 1.2.
Consumers have to register their account into the ENAV Identity Manager (IAM) system and the system used to provide the service. OAuth2 client_credentials is used to obtain an access token. Transport security is provided using TLS 1.2.
Pagination
- Previous page
- Page 5
- Next page