atom feed38 messages in org.oasis-open.lists.dssRE: [dss] Timestamping
FromSent OnAttachments
Trevor PerrinMar 18, 2003 1:31 pm 
Dimitri AndivahisMar 19, 2003 3:12 pm 
Trevor PerrinMar 19, 2003 8:35 pm 
Dimitri AndivahisMar 20, 2003 4:27 pm 
jmessingMar 20, 2003 4:46 pm 
Trevor PerrinMar 20, 2003 7:41 pm 
jmessingMar 20, 2003 8:42 pm 
Robert ZuccheratoMar 21, 2003 7:09 am 
Robert ZuccheratoMar 21, 2003 7:36 am 
Trevor PerrinMar 21, 2003 3:10 pm 
Dimitri AndivahisMar 21, 2003 3:35 pm 
Dimitri AndivahisMar 21, 2003 4:07 pm 
Trevor PerrinMar 21, 2003 6:24 pm 
Nick PopeMar 22, 2003 6:58 am 
Robert ZuccheratoMar 24, 2003 7:40 am 
Robert ZuccheratoMar 24, 2003 7:44 am 
Robert ZuccheratoMar 24, 2003 7:51 am 
Nick PopeMar 24, 2003 8:28 am 
Trevor PerrinMar 24, 2003 12:03 pm 
Gregor KarlingerMar 25, 2003 7:39 am.bin
Gregor KarlingerMar 25, 2003 8:05 am.bin
kare...@esat.kuleuven.ac.beMar 25, 2003 8:38 am 
Trevor PerrinMar 25, 2003 10:48 am 
Nick PopeMar 25, 2003 11:34 am 
Robert ZuccheratoMar 27, 2003 11:08 am 
Gregor KarlingerMar 31, 2003 12:07 am.bin
Nick PopeMar 31, 2003 4:42 am 
Dimitri AndivahisApr 1, 2003 3:24 pm 
Karel WoutersApr 2, 2003 4:21 am 
Trevor PerrinApr 3, 2003 11:47 am 
Robert ZuccheratoApr 3, 2003 11:49 am 
Robert ZuccheratoApr 3, 2003 12:29 pm 
Trevor PerrinApr 3, 2003 2:06 pm 
Dimitri AndivahisApr 4, 2003 5:57 am 
Dimitri AndivahisApr 4, 2003 3:00 pm 
Dimitri AndivahisApr 4, 2003 3:24 pm 
Trevor PerrinApr 4, 2003 11:39 pm 
Trevor PerrinApr 7, 2003 11:56 am 
Subject:RE: [dss] Timestamping
From:Nick Pope (po@secstan.com)
Date:Mar 25, 2003 11:34:59 am
List:org.oasis-open.lists.dss

Gregor,

I realised that I over simplified the situation. There are three situations:

a] A time-mark is included within the signed data as an indication/affirmation from the signatory of the signing time

b] A time-stamp is included within the signed data, applied against one or all the signed objects, as an affirmation from an independent party of the time at which the signed data existed, which is on or before the signing time.

c] A time-stamp is applied over the signature as an affirmation from an independent party that the signature was created on or after the signing time. If the signing time is also included in the signed data (as in [a]) this can be used to independently support this signing time and protects against later repudiation of the signature.

I think that I have it now matching the options in XAdES.

Nick

-----Original Message----- From: Gregor Karlinger [mailto:greg@cio.gv.at] Sent: 25 March 2003 15:49 To: 'Trevor Perrin' Cc: ds@lists.oasis-open.org Subject: RE: [dss] Timestamping

-----Original Message----- From: Trevor Perrin [mailto:tre@trevp.net] Sent: Tuesday, March 18, 2003 10:38 PM To: ds@lists.oasis-open.org Subject: [dss] Timestamping

[...]

A time-marked signature is just a signature on some content with a signed attribute (created by the signer) containing the signing time.

A time-stamped signature contains, as an unsigned attribute, a timestamp "token", which somehow binds the time and a hash of the time-stamped signature's signatureValue, and is created and signed by a 3rd party TSA (Time Stamp Authority).

My understanding of those two terms is the following:

* A signature is time-marked if the signer claims the signing time and signes this claim together with the actual data.

* A signature is time-stamped if the time is claimed by a trusted third party, and this claim is incorporated into the signature as time stamp token.

Am I right here? Other opinions?