2016-03-09 | SGDB N° 011/2016

Added · Updated

SGDB N° 011/2016: New Version of the Integrated Payment Settlement System – Digital Signature

The Central Bank of Bolivia implements a new version of the Integrated Payment Settlement System (LIP) effective March 16, 2016, replacing the current authorization method with digital signatures using Java Web Start technology. Participants must adjust their IT configurations to support this change and utilize the provided user manual for the digital signing process. The update requires users to install the client application, enter certification credentials, and save a backup of the signed message for each transaction.

Banco Central de Bolivia logo

Bolivia

Banco Central de Bolivia

Click to view thumbnail

[Logo: Banco Central de Bolivia]

BOB-DGD-VUC

BANCO CENTRAL DE BOLIVIA PLURINATIONAL STATE OF BOLIVIA

EXTERNAL CIRCULAR

La Paz, March 8, 2016 SGDB No. 011/2016

FROM: GENERAL MANAGEMENT FINANCIAL ENTITIES MANAGEMENT TO: FINANCIAL ENTITIES PARTICIPATING IN THE INTEGRATED PAYMENT SETTLEMENT SYSTEM (LIP), ACCL, EDV, ATC, LINKSER, AND BROKERAGE AGENCIES. SUBJECT: NEW VERSION OF THE INTEGRATED PAYMENT SETTLEMENT SYSTEM – DIGITAL SIGNATURE

Ladies and Gentlemen:

The Central Bank of Bolivia (BCB) notifies participants in the Integrated Payment Settlement System (LIP) of the launch, effective March 16, 2016, of a new version of this system. This update will facilitate the authorization of operations through digital signatures using Java Web Start technology, replacing the current method. The environment for testing is enabled as of this date; for this purpose, the "User Manual for Digital Signature of Operations in the LIP System" is attached.

Participants are requested to take this information into account to adjust the configuration of their own IT developments as appropriate.

For any inquiries, please contact the LIP Help Desk at phone numbers 2661623, 2661645, 2407262, 2147077 and/or via email at pruebaslip@bcb.gob.bo.

Sincerely,

[Signatures]


[Logo: Banco Central de Bolivia]

USER MANUAL

FOR DIGITAL SIGNATURE OF

OPERATIONS IN THE

INTEGRATED PAYMENT SETTLEMENT

SYSTEM (LIP)

Page 1 of 10


[Logo: Banco Central de Bolivia]

1. INTRODUCTION

This document serves as a guide for the user to perform the digital signature of certificates using Java Web Start technology for the Integrated Payment Settlement System (LIP).

2. INSTRUCTIONS

The following describes step-by-step the process of digital certificate signing in the LIP.

STEP 1: Log in to the LIP website and enter user data and password as usual.

[Figure 1: LIP login screen]

Page 2 of 10


[Logo: Banco Central de Bolivia]

STEP 2: In the menu, select the desired authorization option (e.g., Authorize Transfer).

[Figure 2: Authorize Transfer Interface]

STEP 3: Select an operation from the list and click the Authorize button.

[Figure 3: Authorize Transfer Interface – Authorize button]

Page 3 of 10


[Logo: Banco Central de Bolivia]

STEP 4: Upon clicking Authorize, the download process for the application client .jar file (only the first time the signing application is used) and a .jnlp (Java Network Launching Protocol) file containing authorization information will begin.

Depending on the browser, there are different ways to open the signing application.

STEP 4.A – FIREFOX: In the Mozilla Firefox browser, a window will appear to open the .jnlp file. You must select the Open with option and click OK.

[Figure 4: Launching Java Web Start application in Mozilla Firefox]

STEP 4.B – GOOGLE CHROME: In the Google Chrome browser, because the client application is an executable, you must first confirm the download of the .jnlp file in the bottom left section of the screen.

Page 4 of 10


[Logo: Banco Central de Bolivia]

[Figure 5: Security confirmation for Java Web Start application in Google Chrome]

STEP 4.C – GOOGLE CHROME: The file will then download automatically. To open it, you must click on the .jnlp file in the bottom left section of the screen.

[Figure 6: Launching Java Web Start application in Google Chrome]

STEP 5: The digital signing application will open on the user's computer. The information to be digitally signed will be displayed in the upper box. Below are 3 fields for

Page 5 of 10


[Logo: Banco Central de Bolivia]

entering certification credentials (Alias, Keyname, and Password). The user must fill in these 3 fields and click the Sign and Authorize button.

[Figure 7: Main screen of the client application for digital signing]

STEP 6: The private certificate for the signature located on the user's computer must now be selected.

[Figure 8: Selection of private certificate for signing]

Page 6 of 10


[Logo: Banco Central de Bolivia]

STEP 7: If the credentials are correct, a dialog will appear to save a backup of the signed message. To do this, click the OK button, choose a location and file name for the message, and click Save. (It is mandatory to save a backup of the signed certificate, and an existing file cannot be overwritten).

[Figure 9: Confirmation that the message was signed correctly]

Page 7 of 10


[Logo: Banco Central de Bolivia]

[Figure 10: Saving the message backup]

STEP 8: Once the backup is saved, the application will attempt to send the signed message via web-service to the LIP web application. If the message service is received and processed correctly, a success message will be displayed, and the application will close in 5 seconds. If any error occurs, a descriptive message of the error will be displayed.

Page 8 of 10


[Logo: Banco Central de Bolivia]

[Figure 11: Success message for message processing]

STEP 10: Back in the browser, click the OK button to update the list.

[Figure 12: Waiting dialog in the browser]

Page 9 of 10


[Logo: Banco Central de Bolivia]

[Figure 13: Updated authorizations interface]

Page 10 of 10