DSS: tl fr Eurpe-wide esignature interperability Nvember 2015 Miguel Alvarez Rdríguez- ISA Unit
Cntext Services Directive bligatin n MS t make available administrative prcedures nline. Tw streams t facilitate the crss-brder aspects f interperable e-signatures: - legislative via cmitlgy: Decisins n interperable esig frmats and TSL. - practical assistance (asked fr by the MS!) in the frm f OSS (ISA prgramme funded). - eidas regulatin: t adpt interperability and trust elements fr esignature
Actin 1.9: DSS tl This actin (nw under CEF prgramme) supprts develpment f a sftware tl DSS (Digital Signature Sftware) that creates and verifies legally binding, interperable and highly secure electrnic signatures. The tl makes use f the MS Trust Status Lists (TSLs) t check the trustwrthiness f the signing certificates. Open surce. Available t all MS and fr any electrnic prcedure. 3
What is it? SD-DSS Service Directive Digital Signature Services A framewrk fr SW slutins realised in Java Open Surce under LGPL T Create a Signature Validate a Signature A separate mdule fr TL manager
What is it? Interperable Frmats XAdES / PAdES / CAdES ASiC-S Levels BES t LTV Packaging detached, envelped, envelping Main Artefacts TL Manager (LTL/TL) Cre (the framewrk) + WebServices Dem - User Applet - Web applicatin
Current status DSS 4.6 Based n standards: Signature frmats when creating a signature: baseline prfiles Signature frmats when validating a signature: baseline prfiles, and cre specs Signature validatin prcess ETSI TS 102 853 Imprvements in packaging and cre functinalities: CAdES ptimisatin, CAdES multiple Signer Infrmatin. Changes resulting frm a PlugTest will be included in this release. CAdES cuntersignature will nt be supprted. Impacts frm XAdES PlugTest f Octber 2015 Prcessing f large files Further refactring f dem applet (size, validatin plicy editr) SOAP and REST Web Services Standalne dem applicatin
Planning (I) December 2015: CEF esig Prtal and IA Art. 22.5 (TL) The delivery f a first versin f the CEF esig prtal t imprve the visibility f DSS, and facilitate the wrk f implementers. Refinement f the validatin reprt structure, as a ptential cntributin t the future ETSI EN 319 102-2. Implementatin in DSS will be cnsidered after ETSI EN 319 102-2. Extensin f DSS validatin plicy cnfiguratin DSS demnstratins CEF esig prtal This prtal cnslidates multiple surces f inf fr implementers and integratrs, as a single pint f cntact. The actual resurces can be hsted n ther platfrms and pinted t with hyperlinks. In this release, a first versin f the prtal is delivered: Static cntent (dcumentatin, presentatins) Cmmunity tls (JIRA, Wiki, Frum) Centralizatin f existing develper resurces
Planning (II) March 2016: IA Art. 22.5 (TL) The main purpse f this milestne is t align TL Manager with eidas. This prtal will als bring mre prtal functinalities. TL Manager 5.0 Impacts f eidas: Trusted List ETSI TS 119 612 v2.1.1 and Implementing Act Art. 22.5 New features: Integratin f ETSI TL cnfrmance checks TL Brwsing and mnitring CEF esig prtal Mre functinalities are added t the CEF esig prtal: Develpers resurces such as testing materials, dem SCA / SVA, dem certificate testing, dem Web Service A secnd set f demnstratins is hsted n the prtal regarding mbile signing / server signing. Imprvements t the TL ntificatin and mnitring prcesses (e.g. electrnic frms) 8
Planning (y III) DSS 4.7 A XAdES PlugTest is planned in Octber / Nvember 2015. Remaining changes resulting frm this PlugTest and nt included in v4.6 may be included in this release. Other ptential imprvements and features: Extensin f signature validatin plicy supprt CAdES attribute certificates CRL in multiple parts Distributed timestamps methd Supprt f crss-certificatin in path building June 2016: ETSI EN 319 1x2 (new esig EN) DSS 5.0 Impacts f revised Implementing Acts and new ETSI EN: Signature frmats ETSI TS 319 1x2 (Implementing Acts Art. 27 & 37) Trusted List ETSI TS 119 612 v2.1.1 (Implementing Act Art. 22.5) Signature validatin prcess ETSI TS 319 102 9
DSS: Beneficiaries and benefits Public administratins, Gvernance f the MS trusted lists Easier setting up f secure egverment services T implement interperable e-signatures fr natinal & crss brder cmpletin f administrative frmalities Pssibility t validate electrnically signed dcuments cming frm different cmpetent authrities Fully aligned with eidas regulatin Fr business and citizens, Higher levels f trust and cnfidence n electrnic transactins Access t fully-fledged transactinal public services, saving time 10
Get in tuch https://jinup.ec.eurpa.eu/s ftware/sd-dss/release/all
Questins?