Index
FAQ
Who are the CA Relying Roles?
They are: Administrator, Officer, Auditor, Operator and Controller. Each Relying Role will carry out personnel control to avert possible internal attack.
How are jobs assigned to the different CA Relying Roles?
The Relying Roles of Administrator, Officer and Auditor must not play two different roles at the same time but they can play concurrently as Operator. No Relying Role can audit itself.
What is the job of Administrator in Relying Role?
- Installation, Setting and Maintenance of the CA System.
- Establish and Maintain the CA public accounts.
- Set Audit Parameters.
- Create and backup CA key pairs.
What is the job of Officer in the Relying Role?
- Activate or deactivate certificate issuance.
- Activate or deactivate certificate revocation.
What is the job of Auditor in Relying Role?
- To inspect, maintain and backup audit logs.
- To enforce and oversee that internal audits of the CA operation are carried out in accordance with the CPS.
What is the job of the Operator in Relying Role?
- Daily operation and maintenance of the system.
- System backup and recovery.
- Update of Storage Media.
- Hardware/Software Renewal apart from CA management system.
- Internet and website maintenance: Set up system security, anti-virus and internet security detection and notification.
Are the integrity and professionalism of CA personnel reliable?
The CA personnel are strictly screened and selected. All individuals have been reviewed regarding their (1) personality (2) experience (3) professional ability and (4) identity background. No bad records are permitted in finance and law. Also, they must sign documents on responsibilities. Periodical qualifications audit will also be conducted each year. Those who fail the audit will be transferred to other jobs. The vacant post is to be replaced by more suitable persons.
What would the CA do with personnel who act improperly without authorization?
All CA personnel acting in violation of the Certificate Policy and operating rules will be duly disciplined and punished. Legal actions might be taken against those who caused damages.
How would the CA carry out system backup?
The CA backup both data and system programs. Backup of all data shall be carried out once a week while backup of changed data shall be carried out on same day.