Wednesday, February 25, 2015 12:24:47 PM
DoD piloting over-the-air mobile derived certificates
http://www.fiercemobilegovernment.com/story/dod-piloting-over-air-mobile-derived-certificates/2015-02-18
February 18, 2015 | By Molly Bernhart Walker
SHARE
TOOLS
Comment
Print
Contact Author
Reprint
The Defense Department is running a small-scale mobile device security pilot that could enable the department to move away from common access card readers for mobile devices by July.
The pilot of 14 iOS devices uses soft certificates, which place a digital certificate on a device via a registry or file system, in the native keystore, said Greg Youst, chief mobility engineer at the Defense Information Systems Agency.
"We had a PKI implementation memorandum come out from DoD CIO that basically said we are going to put all our focus on doing derived certificates into the keystore," said Youst, who spoke Feb. 18 at the Federal Mobile Computing Summit in Washington, D.C.
Sign up for our FREE newsletter for more news like this sent to your inbox!
Youst said the DoD has more public key infrastructure, or PKI, reliant applications than any other department.
"We've got to break this nut," said Youst.
"Doing what we're doing now won't work. CAC readers are expensive. We've got to keep them charged up, they've got to be connect to the device and the cost," said Youst.
DISA received authorization from the DoD Chief Information Officer in August 2014 to run the pilot and was instructed to halt other mobile projects, such as DISA's work on near field communication, or NFC,-enabled identity management, he said.
In addition to the mobile soft cert pilot, DISA is developing an over-the-air PKI provisioning process. Youst said DISA plans to demonstrate the use of over-the-air certificates to iOS devices by mid-March.
"According to the PKI implementation memorandum from DoD CIO, we're supposed to be operational with this system by the end of July. I'm not going to comment on whether we're going to make it or not, but we are pushing toward operational," he said.
Youst said DISA is working with iOS first because the platform is better prepared for doing soft certs on to the device, but he also indicated DISA had a lengthy meeting with Samsung to start putting certificates into the trusted execution environment or an extended secure element on their phones.
"The OSes vary so much, we're probably going to have a core system but the interface to the devices will be based on the OS," he said.
"So, if you're going to do a certificate for iOS, well that's going to have a different process. For Windows, it will have a different process. For BlackBerry, it will have a different process, but they're all going to talk to a core and that's what's going to be important. And this is going to be over the air," said Youst.
http://www.fiercemobilegovernment.com/story/dod-piloting-over-air-mobile-derived-certificates/2015-02-18
February 18, 2015 | By Molly Bernhart Walker
SHARE
TOOLS
Comment
Contact Author
Reprint
The Defense Department is running a small-scale mobile device security pilot that could enable the department to move away from common access card readers for mobile devices by July.
The pilot of 14 iOS devices uses soft certificates, which place a digital certificate on a device via a registry or file system, in the native keystore, said Greg Youst, chief mobility engineer at the Defense Information Systems Agency.
"We had a PKI implementation memorandum come out from DoD CIO that basically said we are going to put all our focus on doing derived certificates into the keystore," said Youst, who spoke Feb. 18 at the Federal Mobile Computing Summit in Washington, D.C.
Sign up for our FREE newsletter for more news like this sent to your inbox!
Youst said the DoD has more public key infrastructure, or PKI, reliant applications than any other department.
"We've got to break this nut," said Youst.
"Doing what we're doing now won't work. CAC readers are expensive. We've got to keep them charged up, they've got to be connect to the device and the cost," said Youst.
DISA received authorization from the DoD Chief Information Officer in August 2014 to run the pilot and was instructed to halt other mobile projects, such as DISA's work on near field communication, or NFC,-enabled identity management, he said.
In addition to the mobile soft cert pilot, DISA is developing an over-the-air PKI provisioning process. Youst said DISA plans to demonstrate the use of over-the-air certificates to iOS devices by mid-March.
"According to the PKI implementation memorandum from DoD CIO, we're supposed to be operational with this system by the end of July. I'm not going to comment on whether we're going to make it or not, but we are pushing toward operational," he said.
Youst said DISA is working with iOS first because the platform is better prepared for doing soft certs on to the device, but he also indicated DISA had a lengthy meeting with Samsung to start putting certificates into the trusted execution environment or an extended secure element on their phones.
"The OSes vary so much, we're probably going to have a core system but the interface to the devices will be based on the OS," he said.
"So, if you're going to do a certificate for iOS, well that's going to have a different process. For Windows, it will have a different process. For BlackBerry, it will have a different process, but they're all going to talk to a core and that's what's going to be important. And this is going to be over the air," said Youst.
Recent WYY News
- WidePoint to Present at the LD Micro Invitational XVI on Monday, May 18, 2026 at 10:30 a.m. PDT • GlobeNewswire Inc. • 05/05/2026 01:00:00 PM
- Form DEF 14A - Other definitive proxy statements • Edgar (US Regulatory) • 05/01/2026 01:29:05 PM
- WidePoint Sets First Quarter 2026 Conference Call for Thursday, May 14, 2026, at 4:30 p.m. ET • GlobeNewswire Inc. • 04/30/2026 01:00:00 PM
- Form 4 - Statement of changes in beneficial ownership of securities • Edgar (US Regulatory) • 04/21/2026 09:48:18 PM
- Form 4 - Statement of changes in beneficial ownership of securities • Edgar (US Regulatory) • 04/21/2026 09:44:14 PM
- Form 4 - Statement of changes in beneficial ownership of securities • Edgar (US Regulatory) • 04/21/2026 09:41:46 PM
- Form 4 - Statement of changes in beneficial ownership of securities • Edgar (US Regulatory) • 04/21/2026 09:38:30 PM
- Form 4 - Statement of changes in beneficial ownership of securities • Edgar (US Regulatory) • 04/21/2026 09:34:35 PM
- WidePoint’s IT Managed Services Awarded $1.5 Million in Total Contract Value in Q1 2026 • GlobeNewswire Inc. • 04/14/2026 01:00:00 PM
- Form 8-K - Current report • Edgar (US Regulatory) • 04/10/2026 08:15:22 PM
- Form 10-K - Annual report [Section 13 and 15(d), not S-K Item 405] • Edgar (US Regulatory) • 03/25/2026 08:05:55 PM
- WidePoint Reports Fourth Quarter and Full Year 2025 Financial Results • GlobeNewswire Inc. • 03/25/2026 08:05:00 PM
- WidePoint Sets Fourth Quarter and Full Year 2025 Conference Call for Wednesday, March 25, 2026, at 4:30 p.m. ET • GlobeNewswire Inc. • 03/11/2026 01:00:00 PM
- WidePoint Corporation Announces $1.3 Million Managed Services Win with Leading Beverage Bottler • GlobeNewswire Inc. • 02/18/2026 02:00:00 PM
- Form SCHEDULE 13G/A - Statement of Beneficial Ownership by Certain Investors: [Amend] • Edgar (US Regulatory) • 02/13/2026 08:52:55 PM
- Form 4 - Statement of changes in beneficial ownership of securities • Edgar (US Regulatory) • 01/09/2026 12:55:29 AM
- Form 4 - Statement of changes in beneficial ownership of securities • Edgar (US Regulatory) • 01/09/2026 12:50:40 AM
- Form 4 - Statement of changes in beneficial ownership of securities • Edgar (US Regulatory) • 01/09/2026 12:48:07 AM
- Form 4 - Statement of changes in beneficial ownership of securities • Edgar (US Regulatory) • 01/05/2026 10:26:04 PM
- Form 4 - Statement of changes in beneficial ownership of securities • Edgar (US Regulatory) • 01/05/2026 10:23:59 PM
- Form 4 - Statement of changes in beneficial ownership of securities • Edgar (US Regulatory) • 12/30/2025 09:32:17 PM
- WidePoint Awarded Task Order Under the Navy Spiral 4 Contract Vehicle for the U.S. Army Valued at More than $1.25 Million • PR Newswire (US) • 11/10/2025 02:00:00 PM
- WidePoint Secures an Estimated $40 Million to $45 Million SaaS Contract to Deliver FedRAMP-Authorized ITMS™ Command Center Platform for Leading Global Telecom Carrier • GlobeNewswire Inc. • 11/04/2025 02:00:00 PM
- Form 8-K/A - Current report: [Amend] • Edgar (US Regulatory) • 10/08/2025 12:16:00 PM

