Riccardo Genghini - Ws E-Sign Chairman – IETF PKIX San Francisco March 20 2003 Electronic Signature infrastructure for Europe Riccardo Genghini Cen/Isss.

Slides:



Advertisements
Similar presentations
The EESSI deliverables from a global perspective MODERATOR Riccardo Genghini, Notaio in Milano Chairman di Cen/Isss Ws E-Sign Presidente della Commissione.
Advertisements

Bundesamt für Sicherheit in der Informationstechnik EESSI - WS May , 2000, Paris, Folie 1/18Klaus J. Keus, BSI Electronic Signatures in Germany,
Practical Digital Signature Issues. Paving the way and new opportunities. Juan Carlos Cruellas – DSS-X co-chair Stefan Drees - DSS-X.
Telia Research AB György Endersz European Electronic Signature Standardisation Initiative EESSI Workshop Barcelona, György Endersz,
Telia Research AB György Endersz European Electronic Signature Standardisation Initiative EESSI Budapest Seminar at the Hungarian Communication.
Policy interoperability in electronic signatures Andreas Mitrakas EESSI International event, Rome, 7 April 2003.
An overview of legal aspects in electronic signatures Andreas Mitrakas EESSI International event, Rome, 7 April 2003.
Mountain View 25, 26 Sept 2007 The importance of incorporating XAdES extensions into ongoing XML-Sig work W3C Workshop on Next Steps for XML Signature.
Summary of ETSI/ESI activities Andrea Caccia ETSI/ESI TB member Note: This document expresses only the views of its author.
Jaroslav Pinkava May 2001 Certification Authority in Praxis. Security Aspects. Conference Security and Protection of Information Ing. Jaroslav Pinkava,
© ETSI 2012 All rights reserved EUROPEAN UNION MANDATE/460 Kloster Banz Presented by Arno Fiedler, Member of European Telecommunications Standards.
Implementation of Electronic Signature Law Kęstutis Andrijauskas Information Society Development Committee under the Government of the Republic.
TechSec WG: Related activities overview Information and discussion TechSec WG, RIPE-45 May 14, 2003 Yuri Demchenko.
Developments in cooperation between research and standardization related to security and secure communications Presentation at eMayor clustering event,
1 ESTIO 21/05/2015 Electronic Signature Testsuit for Inter-Operability A project supported by the EU ISIS programme.
21 mai 2015 Bridges between Certification Authorities.
Host of the 13 th ECRF Annual Conference - Budapest 2010.
PAPERLESS BUSINESS in GEORGIAN FINANCIAL SECTOR NANA ENUKIDZE - Advisor to the Governor.
EESSI European Electronic Signature Standardisation Initiative
STF421 ITS G5 TESTING – AN OVERVIEW – CEN DSRC – ITS G5 Coexistence Workshop - Presented by Friedbert Berens, in Ispra, Italy STF421 – An Overview -
Information security An introduction to Technology and law with focus on e-signature, encryption and third party service Yue Liu Feb.2008.
EESSI Overview - 1August 2002 EESSI European Electronic Signature Standardisation Initiative Implementing Electronic Signature.
DIGITAL SIGNATURE AND ELECTRONIC DOCUMENTS IN ITALY Prof. Pierluigi Ridolfi AIPA Authority for Information Technology in the Public Administration V. Solferino,
European Electronic Signature Standardization
European Signatures versus Global SignaturesRome, 7 April, 2003 EESSI open specifications and interoperability The state of the art in Italy Giovanni Manca.
István Rényi Communication Authority, Hungary Panel 2: „ Development and market uptake of standards of the EESSI programme” Republic.
E-Government Security and necessary Infrastructures Dimitrios Lekkas Dept. of Systems and Products Design Engineering University of the Aegean
European Union Agency for Network and Information Security Follow ENISA: ENISA and standards Sławomir Górniak European Union Agency.
OneM2M Draft proposal for slide set. This is not intended to be a oneM2M presentation. It is a collection of source material slides which can be used.
CMS Advanced Electronic Signatures (CAdES) Target Category: Informational Intended to update and replace : RFC 3126 IETF Meeting Paris - August 2005 Denis.
World Class Standards Standards Mandate M 376 – Phase 2 European public procurement of accessible ICT Mandate M European Accessibility requirements.
OASIS OASIS Digital Signature Services Juan Carlos Cruellas Juan Carlos Cruellas Andreas Kuehne Stefan Drees Ernst Jan van Nigtevecht.
IT Security Policy in Japan 23 September 2002 Office of IT Security Policy Ministry of Economy, Trade and Industry JAPAN.
8 Nob 06 / CEN/ISSS ETSI STF 305: Procedures for Handling Advanced Electronic Signatures on Digital Accounting CEN/ISSS Workshop.
E-Signatures The Community framework on e-signatures (Directive 1999/93/EC) Dr Ioannis Iglezakis Visiting Lecturer University of Thessaloniki, Greece.
Update on WS eAuthentication status Jan van Arkel Co-Chairman eEurope Smart Card Charter Ambassador CEN/ISSS WS eAuthentication.
Harmonisation of electronic Identities for the European Citizen Jan van Arkel, co- chair Porvoo group, May 11, 2006 Ljubljana.
World Class Standards CCIF New York - April Grids, Clouds and Service Infrastructures ETSI Strategy & New Initiatives.
Information Systems for Production and Operations Management CEN/ISSS Workshop Learning Technologies: Quality Standards for E-Learning Helsinki,
Massella Ducci Teri Italian approach to long-term digital preservation Policies for Digital Preservation ERPANET Training Seminar.
1 IRIS Europe II – Implementation of River Information Services in Europe This project is co-funded by the European Commission / DG-TREN / TEN-T A project.
EESSI June 2000Slide 1 European Electronic Signature Standardization Hans Nilsson, iD2 Technologies, Sweden.
5 October, 2012 CEN/WS XBRL Comité Européen de Normalisation, WorkShop on XBRL Eurofiling Confcall 1.
MINISTRY OF ECONOMY AND TRADE ROMANIA International Seminar on Good Regulatory Practices and Regional Experience Geneva, November 2003.
Update on ETSI Security work Charles Brookson OCG Security Chairman DOCUMENT #:GSC13-PLEN-57 FOR:Information SOURCE:Charles Brookson AGENDA ITEM:6.3
E-SIGNED DocFlow SYSTEM in GEORGIAN FINANCIAL SECTOR NANA ENUKIDZE – E-Business Development Consultant.
ETSI TC ITS Status on Standardization Martin ARNDT ETSI ESP © ETSI All rights reserved M2M Market and Technology Opportunities
ETSI TC ESI PRESENTATION TO CAB FORUM Iñigo Barreira /Arno FiedlerFebruary 2016 meeting, Scottsdale, AZ © ETSI All rights reserved.
M O N T E N E G R O Negotiating Team for the Accession of Montenegro to the European Union Working Group for Chapter 10 – Information society and media.
Harmonised use of accreditation for assessing the competence of various Conformity Assessment Bodies Dr Andreas Steinhorst, EA ERA workshop 13 April 2016,
OASIS Juan Carlos Cruellas – UPC Stefan Drees - DSS-X co-chair Nick Pope – Thales eSecurity OASIS Digital Signature Services and ETSI standards Juan Carlos.
INTERNATIONAL ELECTROTECHNICAL COMMISSION «Harmonization of the national accreditation system of Eurasian countries» 23 December 2013 Moscow World Trade.
M O N T E N E G R O Negotiating Team for the Accession of Montenegro to the European Union Working Group for Chapter 10 – Information society and media.
ANSI – ESOs meeting Washington February 2017
OASIS Digital Signature Services and ETSI standards Juan Carlos Cruellas – UPC Stefan Drees - DSS-X co-chair Nick Pope – Thales.
ETSI STF333: “European accessibility requirements for public procurement of products and services in the ICT domain, Phase 1” (EC Standardisation Mandate.
66 items – 70% of circulated products
Keith Dickerson Chairman, ICTSB
Formats for long term signatures
WENRA Current activities of WENRA 4th GNSSN Steering Committee Meeting
Dan Tofan | Expert in NIS 21st Art. 13a WG| LISBON |
ETSI STF333: European accessibility requirements for public procurement of products and services in the ICT domain (Phase 1, EC Standardisation Mandate.
PKI Services for the Public Sector of the EU Member States
Intelligent Transport Systems
The role of the ECCP (1) The involvement of all relevant stakeholders – public authorities, economic and social partners and civil society bodies – at.
The contribution of European Standardization to e-Accessibility
OMA Perspective ETSI SOS Interop II Meeting
The ETSI Standardisation Process
The ATM Standardisation Coordination Group
Presentation transcript:

Riccardo Genghini - Ws E-Sign Chairman – IETF PKIX San Francisco March Electronic Signature infrastructure for Europe Riccardo Genghini Cen/Isss Ws E-Sign Chairman

Riccardo Genghini - Ws E-Sign Chairman – IETF PKIX San Francisco March Dr. Riccardo Genghini - SNG Notary Public in Milan – Italy Uninfo STP Chair 2002 Cen – ISSS E Sign Chair 2001 Liberty Alliance Member ETSI Member IT Law research since Notary Public in Milan – Italy Uninfo STP Chair 2002 Cen – ISSS E Sign Chair 2001 Liberty Alliance Member ETSI Member IT Law research since

Riccardo Genghini - Ws E-Sign Chairman – IETF PKIX San Francisco March Definition of 5.1 (QES) Qualified Electronic Signatures have a functional definition in the 1999/93/EC directive:  They have to “satisfy the legal requirements of a signature in relation to data in electronic form in the same manner as a handwritten signature satisfies those requirements in relation to paper-based data” (art. 5.1). So they are what ever it is a human signature for the given legal system (i.e. possibly not binding) Qualified Electronic Signatures have a functional definition in the 1999/93/EC directive:  They have to “satisfy the legal requirements of a signature in relation to data in electronic form in the same manner as a handwritten signature satisfies those requirements in relation to paper-based data” (art. 5.1). So they are what ever it is a human signature for the given legal system (i.e. possibly not binding)

Riccardo Genghini - Ws E-Sign Chairman – IETF PKIX San Francisco March Definition of 5.2 (ES) Non qualified electronic signatures are “data in electronic form which are attached to or logically associated with other electronic data and which serve as a method of authentication” (art. 2.1) This definition includes many different kind of signatures: access control, data origin authentication, data validation, time-stamping, and any other way of “marking data” not necessarily related to the human act of signing Non qualified electronic signatures are “data in electronic form which are attached to or logically associated with other electronic data and which serve as a method of authentication” (art. 2.1) This definition includes many different kind of signatures: access control, data origin authentication, data validation, time-stamping, and any other way of “marking data” not necessarily related to the human act of signing

Riccardo Genghini - Ws E-Sign Chairman – IETF PKIX San Francisco March EESSI SG European Telecommunications Standards Institute Industry and business, assisted by European standard bodies EESSI European Electronic Signature Standardization Initiative Comitèe Europèen de Normation Information Society Standardisation System

Riccardo Genghini - Ws E-Sign Chairman – IETF PKIX San Francisco March CEN WORKSHOP AGREEMENTS AREA D1-D2  CWA “Security Requirements for Trustworthy Systems Managing Certificates for Electronic Signatures”  CWA “Security of cryptographic modules”  CWA “ Cryptographic Module for CSP Key Generation Services – Protection Profile CMCKG-PP

Riccardo Genghini - Ws E-Sign Chairman – IETF PKIX San Francisco March AREA F  CWA “Security Requirements for Secure Signature Creation Devices” EAL4  CWA ““Security Requirements for Secure Signature Creation Devices” EAL4+” AREA G1-G2  CWA “Security Requirements for Secure Signature Creation Systems”  CWA “Procedures for Electronic Signature Verification” CEN WORKSHOP AGREEMENTS

Riccardo Genghini - Ws E-Sign Chairman – IETF PKIX San Francisco March AREA V  CWA “Conformity Assessment Guidance - Part. 1 – General”  CWA “Conformity Assessment Guidance – Part 2 – Certification Authority services and processes”  CWA – “Conformity Assessment Guidance – Part 3 – Trustworthy systems managing certificates for electronic signatures”  CWA – “Conformity Assessment Guidance – Part 4 – Signature creation applications and procedures for electronic signature verification”  CWA – “Conformity Assessment Guidance – Part 5 – Secure Signature Creation Devices” CEN WORKSHOP AGREEMENTS

Riccardo Genghini - Ws E-Sign Chairman – IETF PKIX San Francisco March AREA AA1-AA2  CWA “Guidelines for the implementation of Secure Signature Creation Devices”  CWA “General Requirements for Electronic Signatures” CEN WORKSHOP AGREEMENTS

Riccardo Genghini - Ws E-Sign Chairman – IETF PKIX San Francisco March CEN WORKSHOP AGREEMENTS Area AB (work in progress): Team 1  Technical Report on advanced and non advanced electronic signatures and their informative value (relevance as legal evidence)

Riccardo Genghini - Ws E-Sign Chairman – IETF PKIX San Francisco March CEN WORKSHOP AGREEMENTS Area K (work in progress): Team 2  CWA XXXXX “Application Interface for Smartcards used as Secure Signature Creation Device”

Riccardo Genghini - Ws E-Sign Chairman – IETF PKIX San Francisco March CEN WORKSHOP AGREEMENTS Area L (work in progress): Team 3  “Harmonised provision of Trusted Service Provider status information”

Riccardo Genghini - Ws E-Sign Chairman – IETF PKIX San Francisco March CEN WORKSHOP AGREEMENTS AREA V (ongoing work): Team 5  Guidance on conformity assessment of Signature Creation Devices supporting non-qualified electronic signatures (5.2 signatures) against the Protection Profile specified in the CWA of Area AA2 (CWA Part 6).  Guidance on conformity assessment of Cryptographic Modules for CSP Signing Operations against the Protection Profile specified in CWA of Area D2 (MCSO-PP) (CWA Part 7).  Guidance on conformity assessment of CSPs issuing public key certificates against the Policy Requirements specified by ETSI STF 178 Task 2 (CWA Part 8).  Guidance on conformity assessment of Time-Stamping Authorities against the Policy Requirements specified by ETSI STF 178 Task 1 (CWA Part 9).

Riccardo Genghini - Ws E-Sign Chairman – IETF PKIX San Francisco March CEN WORKSHOP AGREEMENTS Maintenance of approved EESSI deliverables: Team 4  Deadline 2Q – 3Q 2003 Opportunity in Vienna to network and discuss technical issues between the IETF and EESSI experts

Riccardo Genghini - Ws E-Sign Chairman – IETF PKIX San Francisco March ETSI ESI TS - TR Phase 3 Publications (1/2) Policy requirements for time-stamping authorities TR (January 2003) Identification of requirements for attribute certification - TR (December 2002) Electronic Signature formats version TS v (September 2002) XML format for signature policies - TR (April 2002) Policy requirements for time-stamping authorities - TS (April 2002) Policy requirements for certification authorities issuing public key certificates - TS (April 2002) Policy requirements for certification authorities issuing qualified certificates - TS v (April 2002)TR TR TS v 1.4.0TR TS TS TS v 1.2.1

Riccardo Genghini - Ws E-Sign Chairman – IETF PKIX San Francisco March ETSI ESI TS - TR Phase 3 Publications (2/2) Provision of harmonized Trust Service Provider status information - TR (April 2002) FAQ (March 2002) International Harmonization of Policy Requirements for CAs issuing Certificates - TR (March 2002) Time stamping profile - TS v1.2.1 (March 2002) Signature Policies Report - TR (February 2002) XML Advanced Electronic Signatures (XAdES) - TS (February 2002) Electronic Signature Formats - TS v (February 2002) TR FAQTR TS v1.2.1TR TS TS v 1.3.1

Riccardo Genghini - Ws E-Sign Chairman – IETF PKIX San Francisco March ETSI ESI TS - TR Phase 1 and 2 Publications Time Stamping Profile - TS v (September 2001) Qualified Certificate Profile - TS v (June 2001) Policy requirement for certification authorities issuing qualified certificates TS v (December 2000) Qualified Certificate Profile - TS v (December 2000) Electronic Signature Formats - TS v (December 2000) Electronic Signature Formats - ETSI ES v (May 2000) TS v 1.1.1TS v 1.2.1TS v 1.1.1TS v 1.1.1TS v ETSI ES v 1.1.3

Riccardo Genghini - Ws E-Sign Chairman – IETF PKIX San Francisco March ETSI ESI TS - TR Being processed for publication  Signature policy for extended business model - TR TR  Pre study on Certificate Profiles TR TR  Maintenance of ETSI standards from EESSI phase 2 and 3 TR TR Opportunity in Vienna to network and discuss technical issues between the IETF and EESSI experts

Riccardo Genghini - Ws E-Sign Chairman – IETF PKIX San Francisco March ETSI ESI TS - TR Approved Following a request from the EESSI Steering Committee, it was agreed to create a Work Item to publish the EESSI "Algo Paper" as a special report of TC ESI. Under Approval There are currently no deliverables in this phase Draft for public comment There are currently no deliverables in this phase Notice !!! XML interoperability event in Sophia Antipolis (France) 4Q 2003

Riccardo Genghini - Ws E-Sign Chairman – IETF PKIX San Francisco March Cen-ISSS E-Sign - ETSI ESI EESSI: CEN: ETSI: Sign up for the two mailing lists on the respective Web Pages