...
- The group must contain the users
- The method type must be "SPI Mobile PKI" (selected in Mobile PKI method creation)
Compatibility flags
The following compatibility flags are supported for Mobile PKI method.
| 9.5.0 | Specific method | Enables additional audit logging for the Mobile PKI method. |
Additional audit logging
When compatibility flag ExtendedMPKIAuditLogging
is set for the Mobile PKI method, an additional JSON object containing the following data is included for "assertion received" event.
mid_eventid | The event identifier of the MPKI transaction. |
mid_issuer | The issuer of the subject certificate used for signing the challenge of MPKI transaction. |
x509 | Text representation of the subject certificate. |
ftn_spname | (Optional) The application name used for the MPKI transaction. Set only when compatibility flag FinnishTrustNetwork is set for the MPKI method. |
Finnish Trust Network specific configuration
By setting Compatibility FlagĀ FinnishTrustNetwork
for the MPKI method, the application friendly name can be displayed on Mobile device while authenticating with ETSI MSS. The parameter is passed as an additional service to the Mobile Signature Service Provider (MSSP) within MSS Signature Request:
...