All G20 countries have enacted digital signature legislation. This legislation recognises electronic signatures as the equivalent to handwritten signatures.
In most circumstances, organisations would need to produce the electronic signature in a specific way to comply with local legislation. For example, producing an eSignature according to the EU’s Directive on Electronic Signatures 1999/93/EC of European Parliament and Council.
However, organisations can use any digital signature to identify the confirming user, system or entity. Mid-trust, high-trust, internal Certificate Authorities and Certificate Service Providers can issue digital certificates.
Ascertia has designed its products to be compliant with various digital signature legislation and regulatory frameworks, including:
- EU Directive for Electronic Signatures
- EU Directive for E-invoicing
- IdenTrust
- US Electronic Signatures in Global and National Commerce Act (E-Sign)
- The Health Insurance Portability and Accountability Act (HIPAA)
- 21 CFR Part 11 – A regulation governing the use of electronic or digital signatures within the pharmaceutical industry
- Sarbanes-Oxley Act
In addition, Ascertia’s products comply with the following industry standards:
- OASIS DSS and DSS/X – Signing, verification and encryption
- RFC 3161 – Timestamping
- IETF LTANS – Archiving
- RFC 6960 – Online Certificate Status Protocol (OCSP) validation
- RFC 5055 – Server-based Certificate Validation Protocol (SCVP) validation
- W3C XKMS – Validation
These are not exhaustive lists. Ascertia remains diligent in its pursuit of industry-leading digital trust solutions. We are at the forefront of electronic and digital signature compliance, giving the banking and finance industry peace of mind.
Please contact our team for further information about compliance.
Ascertia’s products offer the most extensive support for digital signature formats and standards, as well as the greatest implementation flexibility. Our products support the following document types:
- PDF
- XML
- PKCS#11
- CMS
- S/MIME
- PKCS#1
Ascertia provides strong identity assurance and the ability to gran access to systems and applications over a mutually authenticated SSL connection. This process usually works in tandem with IAM systems.
Ascertia is a clear industry leader in long-term digital signatures. Long-term archival and validation enables organisations to undeniably prove who signed a document and when it was signed. This technology is underpinned by PKI-based encryption and document details embedded directly into the document.
We support the following profiles:
- ETSI XAdES
- CAdES
- PAdES (PDF format)
Different applications have various requirements for digital signature creation. Some require server-side batch signing-in features, while others require organisations to create digital signatures locally. Local digital signatures demand users to sign using eID smartcards or secure USB tokens.
Alternatively, other signature applications need key and certificate roaming solutions that offer “virtual” smartcards. Ascertia’s ADSS Server and Go>Sign Applet provide all these options – and more.
Organisations have no control over the platforms, systems and browsers used by their end-users when signing and submitting documents. It is essential for digital signatures and encryption solutions work on any platform, system or browser, while also supporting multiple languages.
Ascertia’s Go>Sign Applet supports all Windows platforms, as well as many Linux versions. Please speak with our team for a full list.