Initialize a User

After a contract is defined, the corresponding bank sets up the partner and user master data in the Subscription Manager database through the import function. The bank does not yet have the user's public certificates and needs them for initialization of the user.

The supported versions for the Electronic Signature (ES), encryption, and identification and authentication signature are components of the bank parameters. The user's bank-technical key must be newly-generated if the user does not have a suitable bank-technical key or does not want to use an existing bank-technical key for the new bank connection. The same applies for the encryption key and the identification and authentication key.

The user transmits the public certificates to the financial institution through two independent communication paths:
  • INI - Sends the public bank-technical key
  • HIA - Sends the public identification and authentication key and the public encryption key

When the user is first assigned to a partner, the status of the user is New. If the user sends only the INI request to the bank, the status is changed to Partly Initialized (INI). If the user sends only the HIA request to the bank, the status is changed to Partly Initialized (HIA). After the user sends both the INI and HIA requests to the bank, the status is changed to Initialized. The user mails the initialization letters of the INI and HIA keys to the bank. When the bank receives the initialization letters of INI and HIA, it verifies the hash values in the certificates against its database. After successful verification, the status of the user is set to Ready, indicating that the user can now transact with the bank. The user then downloads the bank's public certificates by using the HPB system order type.

The subscribers can retrieve information stored by the bank using HKD and HTD order types after the user status is set to 'Ready'.