Cryptolog Unicity Local
A global server - a centralized DIMS
Why a "Local" version?
Cryptolog Unicity Local is a digital certificate and key storage system that stores all your private keys and digital certificates on a distant secure server. It is compatible with the ExaCard technology, a highly secure, patented system for the retrieval and use of these keys, or with any standards-compliant authentication device or system (including biometrics).
Cryptolog Unicity Local offers an innovative alternative, providing a system that allows users to retrieve a virtual smart card containing cryptographic material (keys and certificates) from any Internet-connected device -- a software-only flexible solution that reduces costs while still providing a high level of security.
With Cryptolog Unicity Local you can deploy a centralized Digital Identity Management System where each user retains exclusive control over his/her private keys and therefore is able to access advanced cryptographic services, which he/she can use from any PC or device with an IP connexion.
Global architecture

When a user first registers with the PKI, his or her private key is encrypted by the registration applet and stored on the Unicity Local Server. Whenever the user needs this key (for authentication, for instance, or to sign a document), it is downloaded via the appropriate software Cryptolog Unicity plug-in, Cryptolog WebPass or CUTE and decrypted on the user's desktop for use by the relevant applications.
After each session, no trace of the private key remains on the desktop; all information is safely stored on the server until the next time it is needed. This system provides an extra layer of security -- even the server administrator doesn't have access to the keys in unencrypted form.
Technical specifications
Integrating Cryptolog Unicity Local into your existing infrastructure requires:
- A PKI: Cryptolog Unicity Local is compatible with Cryptolog Identity or any other standards-compliant PKI.
- The Cryptolog Unicity Local software: You have the choice between installing Cryptolog Unicity Local in-house or making use of Cryptolog's outsourced hosting solutions.
- An authentication system: Users can authenticate through Cryptolog Unicity plug-in, Cryptolog WebPass or CUTE (thanks to ExaCard, Cryptolog's highly secure, patented technology for the retrieval and use of private keys and digital certificates) or through an alternative authentication system such as biometrics or any standards-compliant authentication device.
Supported systems and standards
Cryptolog Unicity Local supports the following systems and standards.
| Server OS Platforms | Windows 2000 Server or later, Linux, *BSD, Sun Solaris, all UNIX/POSIX platforms |
| Certificates | X509v3, CRLv2 (X509v1 compatible; RFC 3279 and RFC 3280 compatible; manages all standard extensions, plus proprietary extensions) |
