Naseer Swift
Naseer Swift
Naseer Swift
Corp_present_20060927_v27.ppt
Slide 1
Agenda
1 Overview of SWIFT 2 Access to the SWIFT interface
Corp_present_20060927_v27.ppt
Slide 2
Introducing SWIFT
Platform
Corp_present_20060927_v27.ppt
Slide 3
SWIFT governance
Oversight
National Bank of Belgium and G-10 Central Banks
Governance Board Board Committees National Member Groups User Groups SWIFT members
SWIFT community
Corp_present_20060927_v27.ppt Slide 5
exhibition, networking
Corp_present_20060927_v27.ppt
Slide 6
products
Network
Corp_present_20060927_v27.ppt
Slide 7
Corp_present_20060927_v27.ppt
Slide 8
Securities
605 million mgs
6% 2% 37% 55%
Payments
895 million mgs
Corp_present_20060927_v27.ppt
Slide 9
50 45 40 35 30 25 20 15 10 5
Corp_present_20060927_v27.ppt
Slide 10
Corporates Securities
Banking and Payments
Corp_present_20060927_v27.ppt
Slide 11
Spain (NSLBE - SLBE) Sri Lanka (LankaSettle) Sweden (RIX) Switzerland (Remote Gate) Tanzania (TISS) Thailand (BAHTNET/2) Trinidad & Tobago (SAFE-TT) Uganda (UNIS) United Kingdom (CHAPS- CHAPS- / Enquiry Link) United States (CHIPS) Venezuela (PIBC) Zambia (RTGS) Zimbabwe (ZETTS) West African States (BCEAO)
Implementation
Bahrain (RTGS) Botswana (RTGS) Central African States (BEAC) Eurosystem (TARGET2) Israel (RTGS) Lesotho (RTGS) Morocco (RTGS) Pakistan (RTGS) Singapore (MEPS+) Tunisia (RTGS)
Planning/Discussion
Fiji (RTGS) Georgia (RTGS) Lebanon (RTGS) Palestine (RTGS) Peru (RTGS) Russian Federation (RTGS)
High-Value Payments
Corp_present_20060927_v27.ppt
Slide 12
Understanding
Neutrality
Technology
Corp_present_20060927_v27.ppt
SWIFT
Business
and Technical Messaging Communications across the lifecycle of a financial transaction does NOT provide clearing or settlement services does not hold accounts or assets are responsible for their data
SWIFT SWIFT
Participants
SWIFT
Corp_present_20060927_v27.ppt
Introducing SWIFT
Platform
Corp_present_20060927_v27.ppt
Slide 15
Message categories
0 System messages
Message structure
Corp_present_20060927_v27.ppt
Slide 17
Standards
SWIFTNet
Market practice
Applications Integration
SWIFT
Corp_present_20060927_v27.ppt
Partners
Slide 18
Cash Management
Cash Management
MT 101
MT 9xx
MT 9xx
Slide 19
Corp_present_20060927_v27.ppt
Introducing SWIFT
Platform
Corp_present_20060927_v27.ppt
Slide 20
ABC Bank
SWIFTNet interface
Payments
Investigation
One platform Full STP Highest level of security and resiliency Standards
Other Bank
Corp_present_20060927_v27.ppt
Any Bank
Slide 21
SWIFTSolutions
Rules
Messaging Services Directories and Information Services Interfaces Secure IP Network (SIPN)
Corp_present_20060927_v27.ppt
Reliability
Slide 22
Access
Access
Integrity/confidentiality Integrity
Corp_present_20060927_v27.ppt
Slide 23
SWIFT interfaces
Open and close connection to
STN/SIPN
Send messages to SWIFT Receive messages from SWIFT
office application
Send messages to a back office
application
Send messages to a printer
Corp_present_20060927_v27.ppt
Slide 24
SWIFT interfaces
SWIFTAlliance Access SWIFTAlliance Entry MERVA/ESA TURBO SWIFT
STELINK
MINT FASTWIRE
BESS
NOVA SWIFT ...
Corp_present_20060927_v27.ppt Slide 25
Connecting to SWIFTNet
Many ways of implementing
Business Layer Messaging Layer Communication Layer
SWIFTNet Services
Middleware
Communication Interfaces
VPN box
SWIFTNet
Middleware
Your counterparty
Corp_present_20060927_v27.ppt
Slide 26
SWIFTAlliance interface
Application Layer Middleware Layer Messaging Layer Communication Layer SWIFTNet Services
VPN box
SWIFTNet
Corp_present_20060927_v27.ppt
Slide 27
Corp_present_20060927_v27.ppt
Slide 28
Passwords
Initialisation Master
password
password
Corp_present_20060927_v27.ppt
Slide 29
Corp_present_20060927_v27.ppt
Slide 30
Enabling an operator
Automatic
Corp_present_20060927_v27.ppt
Slide 31
Disabling an operator
Automatic
after too many wrong passwords by LSO, RSO or anybody with disabling permission
Manually
Corp_present_20060927_v27.ppt
Slide 32
Security parameters
List
of configuration parameters
Corp_present_20060927_v27.ppt
Slide 33
Creation
Verification
Authorisation
Approval
Modification
Corp_present_20060927_v27.ppt
Slide 34
Profiles
Each a
profile defines the applications, functions and permissions for one or more operators profile can be given to several operators permissions change, then the operators are disabled. LSO and RSO must re-approve these operators
one if
Corp_present_20060927_v27.ppt
Slide 35
Profile details
A
applications
functions
permissions
Corp_present_20060927_v27.ppt
Slide 36
Permission details
Prohibited Allowed
nothing = no restrictions are all MTs starting with 1, 2 and 9 FIN system MTs not allowed
SWIFT
Corp_present_20060927_v27.ppt
Slide 37
Approval
File
Definition
Corp_present_20060927_v27.ppt
Slide 38
Access
Access
Integrity/confidentiality Integrity
Corp_present_20060927_v27.ppt
Slide 39
Network Partner 1
POP
Network Partner 2
IPsec tunnels provide end-to-end protection through the untrusted vendor IP networks
Integrated
Bank A
Bank B
Corp_present_20060927_v27.ppt
Slide 41
Configuring
PIN
SCR
Corp_present_20060927_v27.ppt
embedded works
protected unique
Corp_present_20060927_v27.ppt
Slide 43
FIN
Corp_present_20060927_v27.ppt
Slide 44
Corp_present_20060927_v27.ppt
Slide 45
operator intervention
USER or
ICC must be in card reader on Login and Select Session Keys must have been downloaded in advance
Corp_present_20060927_v27.ppt
Slide 46
FIN
APC
QUIT
LTC LOGOUT
Corp_present_20060927_v27.ppt
Slide 47
SWIFTNet
PKI
HSM
PKI
FIN
PKI PKI PKI
HSM
Corp_present_20060927_v27.ppt
Slide 48
Access
Access
Integrity/confidentiality Integrity
Corp_present_20060927_v27.ppt
Slide 49
Authentication
applied assures integrity
of message text
for most message types
mandatory
Corp_present_20060927_v27.ppt
Slide 50
regularly changed ?
correspondent relationship ?
Keys
securely stored ?
for unsuccessful BKE ?
Procedure Procedure
Corp_present_20060927_v27.ppt
Slide 51
Local Authentication
authentication
Corp_present_20060927_v27.ppt
Slide 52
FIN
1281
APC
Select
1265
LTC
Login
Corp_present_20060927_v27.ppt
Slide 53
Sequence numbers
472136
Input Sequence Number
327185
Output Sequence Number
Corp_present_20060927_v27.ppt
Slide 54
031020ABNKBEBBAXXX0142123456
input date senders address
Corp_present_20060927_v27.ppt
Slide 55
031020ABNKBEBBAXXX0142654321
output date
Corp_present_20060927_v27.ppt
Slide 56
printer 1
printer 2
application
Corp_present_20060927_v27.ppt
Slide 57
Are
Is
there any specific routing for received messages with PDE or PDM trailer ?
Corp_present_20060927_v27.ppt
Slide 58
Corp_present_20060927_v27.ppt
Slide 59
Message File
keeps status
Corp_present_20060927_v27.ppt
Slide 60
IBNPAFRPPXXX202TR7823689
input/output message
MT
senders reference
correspondent
Corp_present_20060927_v27.ppt
Slide 61
Event Journal
events actions
users
Corp_present_20060927_v27.ppt
Slide 62
on
Corp_present_20060927_v27.ppt
Slide 63
number of messages sent and received for all APC or FIN sessions closed since previous MT 081 daily at approximately midnight local time, provided APC and FIN are closed
FIN
081
APC
081
generated
LTC
Corp_present_20060927_v27.ppt
Slide 64
all undelivered messages at generation time : messages sent by your institution but not yet received by your correspondent
082
Corp_present_20060927_v27.ppt
Slide 65
BK Management
Event Journal
Message File Security Definition
Corp_present_20060927_v27.ppt
Search Slide 66
Corp_present_20060927_v27.ppt
Slide 67