Digital signature & certificate

Post on 12-Nov-2014

1.222 views 3 download

Tags:

description

The presentation is about Digital signature, Digital certificates to be used for Signing documents.

Transcript of Digital signature & certificate

WHAT IS DIGITAL SIGNATURE

BY: Rishikesh Somshetti

CRYPTOGRAPHY

ALICE

ENCRYPTION PROCESS

PZMSY

DECRYPTION PROCESS

ALICE

SYMMETRIC KEY CRYPTOGRAPHY

ENCRYPT

(LOCK)

Message

Ciphertext

“Secret”Key

DECRYPT

(UNLOCK)

Ciphertext

Message

(Sender) (Receiver)

ASYMMETRIC KEY CRYPTOGRAPHY

ENCRYPT

(LOCK)

Cleartext

Ciphertext

PublicKey

DECRYPT

(UNLOCK)

Ciphertext

PrivateKey

Cleartext

(Sender) (Receiver)

DIGITAL SIGNATURE

• Digital Identity that establishes your credentials when doing business or other transactions on the Web

• Issued by a Certifying Authority (CA)

• Contains your name, serial number, expiration dates, public key, signature of CA

DIGITAL CERTIFICATE

Trusted Third Party An organization which issues public key

certificates Assures the identity of the parties to

whom it issues certificates Maintains online access to the public key

certificates issued

CERTIFYING AUTHORITY

PUBLIC KEY CERTIFICATION

Signed by using

CA’sprivate

key

UserName &

other credentials

UserName &

other credentials

User’s Publickey

User’s Publickey

User Certificate

Certificate Database

PublishCertificateRequest

User Name

User’s Public Key

CA’s Name

Validity

Digital Signature of CA

Certificate Class

User’s EmailAddress

Serial No.

Key pair Generation

Private

Public

Web site of CA

User 1 certificate

User 2 certificate.

Public

License issued by CCA

Uses secure hash algorithm Condenses message to 160 bit Key size 512-1024 bits Proposed by NIST in 1991 Adopted

DIGITAL SIGNATURE STANDARDS

PRIVATE KEY PROTECTION

Soft TokenHardware tokens

Smart card

WHY DIGITAL SIGNATURE

NON-REPUDIA

TION

AUTHENTICATION

INTEGRITY

DIGITAL SIGNATURE

Paper signatures v/s Digital SignaturesParameter Paper Electronic

Authenticity May be forged Can not be copied

Integrity Signature independent of the document

Signature depends on the contents of the document

Non-repudiation

a. Handwriting expert needed

b. Error prone

a. Any computer user

b. Error free

V/s

THANKYOUNetGains Technologies Pvt. Ltd.

708/709, Corporate Avenue, Sonawala Lane,Goregaon East, Mumbai – 400 063.Ph: +91-22-6139 7100www.netgainstechnologies.com