Kyrio has partnered with The Wireless Broadband Alliance (WBA) to ensure that the new WBA OpenRoaming™ service will be granted enterprise-level security. The WBA OpenRoaming Service, which removes the barriers to connectivity typically associated with public Wi-Fi, such as the need to constantly re-register or re-enter log-in credentials, will now greatly increase the level of security.
Kyrio joins Google and Cisco as an Issuing Intermediate Certificate Authority (ICA), providing innovative agent and registration authority services to the broader WBA family, including networks, operators, hubs and identity providers. We will also enable management and attribution of the WBA Unique Organization Identifiers that are critical for their partner identification on the OpenRoaming system. This information is centralized on a WBA global database to guarantee system harmony and enhanced security.
In order to get WBA WRIX End-Entity certificates, you must have a WBA Unique Organization Identifier (WBAID). To obtain a WBAID please contact WBA at firstname.lastname@example.org
Get WBA WRIX PKI Certificates
After obtaining a WBAID, the next step is to request WBA WRIX End-Entity Certificates.
- To begin, you or someone in your organization will need to complete the Digital Certificate Subscriber Agreement (DCSA).
This document provides us with information about:
- Contacts in your company
- Information that will go into the digital certificate(s) requested
- The DCSA needs to be signed by someone with signing authority for the organization (typically VP or above)
- Once this document is completed and signed, please send the entire document to our Kyrio PKI Operations department at email@example.com. DCSA documents with missing pages cannot be accepted.
- Kyrio PKI Operations will start the Registration Authority (RA) process of validating the information and contacts on the DCSA. This usually takes 3-5 business days.
Important Note: This process may be delayed if the organization contacts on the DCSA not responding to our validation email and/or phone calls in a timely manner. To help expedite this process, please let those organizational contacts know that their information is on the DCSA and we will be in contact with them.
- While waiting for the RA process to complete, a Certificate Signing Request (CSR) will need to be created and sent to Kyrio PKI Operations at firstname.lastname@example.org.
- There are instructions on how to create a CSR at the end of the WBA Operator’s End-Entity Deployment guidelines under Annex A. The information placed in the CSR must match the information in the DCSA certificate naming exhibit sent to the PKI Operations department.
NOTE: Please only send the CSR file and not the PKI private key created during the CSR generation process.
- Once the Kyrio PKI Operations department has:
- Received and validated the DCSA
- Processed the payment
- Received and validated the CSR
The requested certificate(s) will be issued, which can take 1-2 business days. Kyrio PKI Operations will email information to the Primary and Secondary Administrative contacts on the DCSA how to securely retrieve the newly issued certificate(s).
If you have any questions about the attached documentation or the process described above, please let us know at email@example.com. and we will get you a response as soon as possible.
We look forward to working with you and thank you for your business.