IdExchange 1.9.1

Self Service Remote Enrollment

Overview

This document lists the steps for the officer and applicant to perform remote identity proofing and YubiKey encoding.

Participants

There are two individuals in this process:

  1. Officer: The officer is the security official that reviews the request, approves information, and manages the YubiKey.

  2. Applicant: The applicant is the individual that will perform the remote proofing and YubiKey encoding.

What is Required

  1. Workstation (preferably Windows 10 machine)

  2. Email account (the applicant will need to open an email to retrieve the login credential)

  3. The Credential Type Configuration specifies the certificate authority

Phases

The overall process is composed of 4 different phases.

Participant

Phase Name

Officer

Invite the applicant

Applicant

Prepare workstation, register ID and device

Officer

Review information, approve information


Invite the Applicant

In this phase, the officer will send an invitation to the applicant by requesting their data to be processed. The invitation will include the credential and code for secure registration.

Log in as the operator

 

  1. Press Request

  2. Enter last name of user

  3. Press Search

  4. Press Request Credential

 

image2020-6-11_11-33-12.png  


 

  1. Select the Credential Type

  2. Press Proceed

image2020-6-11_11-37-15.png

Prepare workstation and enroll data

In this phase, the applicant will prepare their workstation. Next, they will enroll their data and register their YubiKey.

Before getting started:

  1. Ensure web cam is operational

  2. Ensure factory set YubiKey is inserted and operational

Copy the temporary PIN into memory

 

Download and double click the registration.pfx file



  image2020-6-11_11-37-36.png

Install the PFX

 

  1. Press Next

  2. Press Next

  3. Enter the Temporary PIN

  4. Press Next

  5. Press Next

  6. Press Next

InstallPFX.PNG




Log into the IDMS with the PFX that was just installed, press I Understand, Continue button


  image2020-6-11_11-37-52.png

 

  1. Click Capture


  image2020-6-11_11-37-55.png

  1. Press Capture Information


  image2020-6-11_11-37-58.png


  1. Press Start Camera


  image2020-6-11_11-38-33.png

  1. Click in the viewfinder to take a photo of the what is currently in the viewfinder

  2. Press the next button

image2020-6-11_11-38-39.png

 

3. Press Next

image2020-6-11_11-39-19.png

4. Press Submit


  image2020-6-11_11-39-21.png



Officer Approval 

In this sequence, the officer will log in and review the documentation. They will then review and verify the credential.

 

  1. Click Manage

  2. Enter User ID (or last name)

  3. Click Manage

image2020-6-11_11-39-26.png


 

  1. Click capture tab

  2. Click Submit for approval

 


image2020-6-11_11-39-49.png  

 

  1. Click Credentials

  2. Locate the YubiKey, select Verify Device

  3. Press Verify Device *Note: the Certificate Authority that will be used is defined in the credential type policy.


image2020-6-11_11-39-54.png

image2020-9-6_10-12-3.png