首页> 外文会议>International conference on availability, reliability and security >Qualified Electronic Signature via SIM Card Using JavaCard 3 Connected Edition Platform
【24h】

Qualified Electronic Signature via SIM Card Using JavaCard 3 Connected Edition Platform

机译:通过SIM卡使用JavaCard 3连接的版本平台的合格电子签名

获取原文

摘要

Digital signature is one of the most common ways of determining the origin of a document in a digital way. To ensure authenticity, integrity and non-repudiation when such signatures are used, many countries have their standards and regulations. In EU, a signature that complies with those regulations is called 'Qualified Electronic Signature' (QES). There are many QES solutions using dedicated smart cards or security tokens and few of them that use SIM cards as a signature creation device. These SIM-based solutions usually use a third party to perform a signature, such as mobile service operator and operate as a hybrid solutions. Hence, a cooperative connection between a mobile device and a SIM card is needed. In this paper we propose a solution based on the Java Card 3.0 Connected Edition platform that operate fulfills following conditions: it is a mobile service operator-independent and mobile phone operating system-independent. The first condition is achieved by performing all the operations directly on a SIM card and the second condition is satisfied by avoiding the application running on a mobile phone operating system. Instead, we propose a web based application to perform the necessary verification methods on the SIM card. So this proposed application can be accessed via mobile phone web browser. Of course, our solution satisfies the Common Criteria standard requirements for the EAL 4 level.
机译:数字签名是以数字方式确定文档的起源的最常用方式之一。为了确保使用此类签名时确保真实性,完整性和不拒绝,许多国家都有其标准和规定。在欧盟,符合这些条例的签名称为“合格的电子签名”(QES)。使用专用智能卡或安全令牌以及少量使用SIM卡作为签名创建设备的QES解决方案。这些基于SIM的解决方案通常使用第三方执行签名,例如移动服务运营商,并作为混合解决方案操作。因此,需要移动设备和SIM卡之间的协同连接。在本文中,我们提出了一种基于Java Card 3.0连接的版本平台的解决方案,该平台运行符合以下条件:它是一个移动服务运营商无关和移动电话操作系统无关。通过直接在SIM卡上执行所有操作来实现第一条件,并且通过避免在移动电话操作系统上运行的应用程序来满足第二条件。相反,我们提出了基于Web的应用程序来在SIM卡上执行必要的验证方法。因此,可以通过手机Web浏览器访问此建议的应用程序。当然,我们的解决方案满足了EAL 4级的常见标准标准要求。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号