IdExchange 1.9.1

Configuring CMS MyDigitalId Portal For Remote Unlock

The CMS MyDigitalId feature is a self-service portal that enables credential holders to unlock their credentials remotely.

Security Requirements:  For security, the following requirements must be met:

  1. An authorized CMS operator sets a PIN unlock request 

  2. The user must authenticate via their LDAP password

  3. The user authenticates with their fingerprint.

 

Workstation Installation procedures

 Step Number

Procedure 

1

Install the ActivClient software

2

Install the CMS BioAdaptor Biometric Software

3

Install the Suprema Biometric hardware

 

CMS Installation procedures

The CMS needs to be configured to prompt the user for the biometric.

 Step Number

Procedure 

Example 

1

Go to the C:\Program Files\ActivIdentity\Card Management System\cms_portal\WEB-INF\conf folder

2

Backup the current the generic_plugin.properties file

3

Edit the the current the generic_plugin.properties (as administrator)

4

Locate the

# MDIDC PIN Unlock:

settings.

Next, make the configuration

 

 

image2016-3-2 16:17:55.png

5

Copy the PIV_MatchBioPlugin_ANSI378.htm and PIV_MatchBioPlugin_ANSI378_BIOreq.htm files into the C:\Program Files\ActivIdentity\Card Management System\cms_portal\data folder

6

Restart the card management system.

7

After CMS has been restarted, go to the CMS operator portal and click configuration

image2016-3-2 16:25:57.png

8

Next, click security settings.

image2016-3-2 16:27:9.png

9

Scroll down to the My Digital ID Card security section and select LDAP password for authentication method when the smart card PIN is locked.

image2016-3-2 16:28:47.png

10

After making the configurations, press the set button.

image2016-3-2 16:29:33.png