Apt-Aadhaar Vault

  • Project Name: Apt-Vault (Aadhaar Vault)
  • Category: Banking
  • Start Date: 25-jan-2017
  • Status: Complete
  • Project Ranking: 
5/5

Aadhaar Vault

Aadhaar Data Vault provides a secure and encrypted centralized storage for all the Aadhaar numbers and related data as collected by the AUAs. Following are key features of Aadhaar Data Vault:
  • Compliant with UIDAI Circular for UID/VID and UID token.
  • Unique token based Aadhaar referencing.
  • Service based access to data vault (via RESTful APIs).
  • Audit trail for Aadhaar data vault.
  • Supports integration with leading HSM models to enable
    encryption as per UIDAI mandate.

Key Features

  • Multi-Channel Support - Each business application is recognized as a separate channel by PICAR Vault.
  • Access Control - Aadhaar data vault supports control of various read/write permission to business application at channel configuration level by providing following access control mechani sms –
    o IP White listing
    o Client specific private key for secure and encrypted communication
    o Channel specific read/write control
  • Aadhar Vault Operations - Aadhaar Vault supports following operations with audit trail for every operation –
  •    o Store Aadhar details
       o Retrieve Aadhar details

Functionality and Operations

  • Encryption of Aadhaar Number and any connected Aadhaar Data
  • Data encryption standards and storage policies requirements as mentio
    ned by UIDAI.
  • All encryption keys will be stored in HSM infrastructure as mandated  by UIDAI.
  • Demographic match from the Aadhaar Data Vault will be done using th
    e reference key.
  • The Application has the capabilities for updating / retrieving the Aadhaa
    r Number or related data from Aadhaar Data Vault, during the Key Rotat
    ion of the HSM Keys.
  • The Aadhaar Data Vault solution has the capability to support the   Bulk Insertion of records with Unique Token for each Aadhaar Number.
  • The Aadhar Data Vault platform support the Oracle, MS SQL, MySQL Dat
    abase.
  • The Security between Client Application consuming API / web service  a
    nd Aadhaar Data vault would be permitted only after successful validati
    on of the below mentioned parameters:
  •   o IP Validation
      o User ID and Password

Technical Arcitecture :