|
How does VirtualSAFE
work?
|
VirtualSAFE
authenticates users at the application, network access, transaction and communication layers. Comprised of a remote multi-tiered Authentication Authority (registration, authentication and authorization) infrastructure,
VirtualSAFE enables extremely powerful security functions when processing electronic data and transactions over conventional and wireless networks.
VirtualSAFE acts as a trusted third party, or Trust Broker, mediating transactions between customers, merchants, payment processors, shippers, and other potential e-commerce partners or government departments.
Enrolment in VirtualSAFE is a non-intrusive process that looks like any existing registration process, but occurs somewhat faster. The user is registered and a Virtual Identity created, then verified by third party credentials. The process enables the user to store his/her information to a secure repository for future release by itself or by the user’s proxy, established by consent-based Power of Attorney. As a result, following initial registration, ANY transaction enabled by
VirtualSAFE is simply Click ‘n Go.
VirtualSAFE’s strong authentication and managed legal consent process
(VirtualSAFE Authentication Authority – VSAA) is created by the communication between three legal entities: an Authentication Authority, an Interoperable PKI Certificate Authority, and a Power of Attorney Consent/Escrow. These three modules, under the triangulation process, have unique architecture and are supported by user-centric encryption to enable user-present, and user-non-present transaction processes.
|
|
..VirtualSAFE as Trust Broker Between Transactional Parties
| |
| | ..VirtualSAFE Authentication Authority (VSAA) |
|
Authentication Authority
The Authentication Authority component of the Triangulation process is a third-party trust sub-module that strongly authenticates users, manages consent, and enables anonymous, accountable transactions. The entire process is fully accountable and compliant with required reporting. It uses a unique
VirtualSAFE electronic signature process that legally binds the user, business, government or any other
VirtualSAFE user or application.
Interoperable PKI Certificate Authority
VirtualSAFE Certificate Authority is fully interoperable with popular PKI products and can use any already issued certificates. The use of outside certificates represents an additional layer of security, improving risk management assessment, and speeding up the strong authentication process in a secure environment.
Third-party certificates are archived as a requirement for providing a higher strength of security demanded by business, government, or
VirtualSAFE applications. The VirtualSAFE PKI application is uniquely easy to use and maintain.
Power of Attorney Consent / Escrow
The Power of Attorney Consent / Escrow Module supports the continuation of a process without User’s online presence. Proxy-driven User non-present status is enabled by User-present proxy, which is authorized by the Power of Attorney sub-module, and which legally binds all transactions, guaranteeing privacy of User’s data while complying with government regulations and reporting requirements. The process is based on known conventional and legislative processes.
|
| ..VirtualSAFE Attribute Authentication Authority (VSAAA) |
|
VirtualSAFE
Attribute Authentication Authority (VSAAA) is an add-on application that gives more flexibility to businesses in enhancing security and providing privacy compliance to their existing or new applications.
The principle of controlled access, independent daemon and reporting can assure depersonalization of data, and accountability of anonymous non-reputable transactions, without significant modification of existing organizational infrastructure.
|
For a more detailed overview of
VirtualSAFE technology, please see VirtualSAFE
Technology section.
|
|
|
|
|
|
|
|
|
|
VirtualSAFE is a US patented
(US 6,941,285) and worldwide (Canada,
Europe, Australia, Japan, Hong Kong)
patent-pending
technology
|
|
|
|