In this model, there are 3 participants and 5 different actions. The following documentation describes the process and different steps taken by the different participants for remote identity proofing.
Participants:
-
Local Registration Authority 1 (LRA1): This is an authorized security officer possessing the requestor and enrollment officer roles. Their duty is to begin the application request process and capture the applicant's required identity documents.
-
Local Registration Authority 2 (LRA2): This is an authorized security officer possessing the approval officer and credential issuance roles. Their duty is to approve the identity enrollment process and assign a credential to the applicant.
-
Applicant/Cardholder: This is the person that will be verified and will receive a credential. Their duty is to provide their required identity documents and to self-encode their credential.
Role DefinitionsReference document
Actions:
-
Request Submission: This action will retrieve the applicant from the organization's directory and create a request record for the individual to start the process.
-
Enrollment: In this action, the security official will capture the biographic information and identity documents of the applicant.
-
Approval: In this action, the security official will review the captured biographic information and identity documents to ensure the applicant is the person that should receive the credential.
-
Credential Assignment: In this action, the security official will link a hardware credential to the user.
-
Credential Encoding: In this action, the hardware credential is encoded and made ready for use.
Participant Action Mapping Table:
|
Officer |
Request Submission |
Enrollment |
Approval |
Credential Assignment |
Credential Encoding |
|
LRA1 |
Creates the request for the applicant. |
Captures the photo and identity documents for the applicant. |
|
|
|
|
LRA2 |
|
|
Reviews the documents that were captured.
Approves the applicant for credential issuance. |
Assigns the credential to the applicant.
Mails the credential to the applicant. |
|
|
Applicant/ Cardholder |
|
|
|
|
Authenticates to the credential issuance system. Encodes credential. |