OASIS Open Mailing List Archives  ·  All Lists  ·  dss-x  ·  2008-03

dss-x — archive

[Date Prev]  |  [Thread Prev]  |  [Thread Next]  |  [Date Next]   —  [Date Index]  |  [Thread Index]  |  [Month Index]  |  [List Home]

Some more thoughts concerning the legal aspects


Hello Pim, I don't think there is any EU country that presented any standard for server based digital signatures solution. The only referred standard today is CWA-14169 and only smartcards passed this certification. It is hard to inspect when such standartization will take place. It is very much dependant on the offered technology and the acceptance of such technology. In practice, I can tell you that the following methods are used for enhancing the user authentication: A - OTP devices - the user is presenting a fixed password as well as One Time Password. B - Biometric device - C - Authentication smartcard - the user use a smartcard with a client authentication certificate. The user's smartcard signs a challenge which is verified by the server. Ezer

[Date Prev]  |  [Thread Prev]  |  [Thread Next]  |  [Date Next]   —  [Date Index]  |  [Thread Index]  |  [Month Index]  |  [List Home]