Products

Carillon provides test certificates and Public Key Infrastructure (PKI) and Identity Management consulting to aerospace and air transport companies.

Recent industry and technology trends, coupled with new standards and regulations, are forcing air transport companies to rethink their current authentication and security processes. With more and more emphasis being placed on collaboration, intellectual property protection and export control compliance, Identity and Access management is becoming a critical concern for the industry.

Our Test Certificates are designed to help you do the following:

  • Replace and augment paper signatures with electronic signatures. Individuals and organizations can now take advantage of more efficient digital processes, allowing recipients of your data to be sure of your identity and authorizations.
  • Assure data integrity. Protect your data so that only intended recipients can read it, and be assured that your data has not been modified in transit.
  • Ensure non-repudiation. Protect your processes so that recipients know the data is coming from a trusted source, that the source is authorized to send it, and that the source cannot claim the data was never sent.

Software

  • Carillon STS - Secure Token Service
    The Carillon STS is a PHP-based Federated Identity Provider (IdP) which is capable of acting as a Secure Token Service compatible with Windows CardSpace and other "infocard" implementations. It has been successfully tested with CardSpace, as well as with Chuck Mortimore's Firefox identity selector plugin.

  • Pathfinder - X.509 Certificate Validation Daemon
    Pathfinder is a Linux daemon that provides centralized X.509 certificate validation. It is fully RFC3280 compliant, and can process complex trust models, such as bridging and multiple bridge traversal.

  • Pathfinder for Apache - Client Certificate Validation
    This patch allows the Apache web server to use Pathfinder for verification of client certificates.

  • Pathfinder for OpenLDAP - Certificate Validation
    These patches contain a port of Boeing's ldap-proxy to a modern version of OpenLDAP, and allow the OpenLDAP server to use Pathfinder both for verification of client certificates (for LDAPS) and for verification of certificates fetched by the ldap-proxy backend.

  • Pathfinder for FreeRADIUS - Client Certificate Validation
    This patch allows the FreeRADIUS server to use Pathfinder for verification of client X.509 certificates during authentication requests.

  • Pathfinder for Stunnel - Certificate Validation
    This patch allows the Stunnel 4.23 Universal SSL Wrapper to use Pathfinder for verification of X.509 certificates presented by a remote client or server. This makes it even easier to add proper certificate validity checking to applications and servers that may not even already be SSL-aware.