User's Manual

A PPENDIX E V-SMART A DMINISTRATOR
S ITEK EY M ANAGEMENT
107
© Copyright 2002, Bioscrypt Inc. All rights reserved.
Appendix E – V-Smart Administrator SiteKey Management
It is essential that the Administrator understand the use of V-Smart SiteKeys and handles
them appropriately. SiteKeys are the mechanism used by the V-Smart and the smart cards
to ensure that only authorized smart cards are used.
In this appendix, the following topics will be covered:
What is a SiteKey?
Why do I Need a SiteKey?
What is the “Default” SiteKey?
Where is the SiteKey Stored?
What is the Difference Between PRIMARY and SECONDARY SiteKeys?
How do I Initially Set a SiteKey for V-Smarts at My Installation?
How do I Set the SiteKey on Individual Smart Cards?
How do I Change the SiteKey if I Already Have a User Base of Previously
Created Smart Cards?
What Happens if I FORGET My SiteKey?
What Happens if Someone Else Learns My Installation’s SiteKey?
What is the 1-Way Hashing Function Option in VeriAdmin for SiteKeys?
What is a SiteKey?
A SiteKey is a “password” used by VeriAdmin, the V-Smart and the smart cards. Each of
the 3 must use the same “password” to communicate and transfer information. If the
SiteKey stored in the V-Smart does not match the SiteKey used by the smart card, that V-
Smart will not be able to read or write to that smart card. By checking the SiteKey each
time, the V-Smart ensures that only authorized smart cards are used at a specific
installation. Similar to a computer logon password, if the smart card’s SiteKey does not
match the V-Smart’s SiteKey, that card will not be allowed to be used by that unit.
The V-Smart uses a maximum of 120-bits (15 characters) for the SiteKey.
Typically, the Administrator will set all V-Smart’s at a single installation to the same SiteKey.
Why do I Need a SiteKey?
Each installation must set their own SiteKey to distinguish their V-Smart smart cards from
every other installation of V-Smarts. If SiteKeys are not used, then any V-Smart would
accept smart cards created by any other V-Smart and a site’s installation could easily be
compromised. By using a unique SiteKey at each installation, you ensure that the only
smart cards that are accepted by V-Smarts are your site, are smart cards personally