Step by Step - How to Become a Service Provider
Article
Here you will learn more about the necessary steps to take to become a provider of electronic administrative services.
The Act to Promote the Electronic Identification Function entered into force on 15 July 2017. The legal situation makes it easier for authorities to get an authorization certificate to use the eID function of the ID card and the electronic residence permit.
These certificates are issued by the Vergabestelle für Berechtigungszertifikate (VfB) at the Federal Office of Administration.
Here you will learn more about the necessary steps to take to become a provider of electronic administrative services. It is also possible for you to get assistance from eID service providers for the entire process of the eID function. These providers help you get the required certificates and, if necessary, provide you with the complete infrastructure.
Steps to take
1. Designing the service
You need to define which data from the new identity card are absolutely necessary for electronic identification, such as first name, last name and date of birth. The list of data stored on the chip can be found in Section 18 (3) of the Act on Identity Cards and Electronic Identification.
2. Applying for an authorization
To become a service provider you need to apply for an authorization certificate from the authority responsible for issuing authorization certificates, the Vergabestelle für Berechtigungszertifikate (VfB). There are two ways of applying:
What do you need?
- Your declaration on data protection and data security
- Proof showing that the data sets are necessary pursuant to Section 18 (3) of the Act on Identity Cards.
As soon as the VfB has issued the certificate, this information will be published in the list of all valid authorization certificates
3. Choosing the provider of authorization certificates
Following the positive response by the VfB, you choose an authorization certificates provider to get the technical authorization certificate and make a contract with this provider. Your eID server or eID service provider needs to support the connection with the chosen authorization certificates provider, since new authorization certificates and revocation lists are regularly updated online.
4. Setting up your own eID server or choosing an eID service provider
You can either operate your own eID server or choose an eID service provider.
5. Connecting your service with the eID server
You can use the eID interface or the SAML connection to link up your service with the eID server. This depends on the relevant eID server. Service providers should ask their eID service provider which technical procedures are used for the eID connection and which software support is provided for which platforms.
6. Operating your service
You have to ensure that authentication with the eID function works with the application “AusweisApp2”. Additional information on mutual authentication procedures between service providers and users can be obtained at “The electronic identification technique”.
Online application for the certificate
Since February 2021, you can also apply for the authorisation certificate issuing by the VfB digitally on the website www.verwaltung.bund.de.
Here you find more information on the online application for the certificate.
Any questions?
If you wish to receive additional information on how to become a service provider please contact the authority responsible for issuing authorization certificates (VfB).