X-Git-Url: http://pere.pagekite.me/gitweb/homepage.git/blobdiff_plain/ef4aafd541dace97f44d46aa8d7a2a6d1ae1db6d..2303a53e3000b721cc73c3bfe81b6d2911b51a35:/blog/data/2014-03-25-trusted-timestamping.txt diff --git a/blog/data/2014-03-25-trusted-timestamping.txt b/blog/data/2014-03-25-trusted-timestamping.txt index e8e97b7a42..c9ad9d3fe3 100644 --- a/blog/data/2014-03-25-trusted-timestamping.txt +++ b/blog/data/2014-03-25-trusted-timestamping.txt @@ -25,11 +25,13 @@ few years ago as RFC 3161. The mechanism is simple. Create a hash of the file in question, send it to a trusted third party which add a time stamp to the hash and sign the result with its private key, and send back the -signed hash + timestamp. Anyone with the document and the signature -can then verify that the document matches the signature by creating -their own hash and checking the signature using the trusted third -party public key. There are several commercial services around -providing such timestamping. A quick search for +signed hash + timestamp. Both email, FTP and HTTP can be used to +request such signature, depending on what is provided by the service +used. Anyone with the document and the signature can then verify that +the document matches the signature by creating their own hash and +checking the signature using the trusted third party public key. +There are several commercial services around providing such +timestamping. A quick search for "rfc 3161 service" pointed me to at least DigiStamp, @@ -46,16 +48,16 @@ for a while now. But yesterday I found one over at Deutches Forschungsnetz mentioned in a -blog by David Müller. I then found a good recipe on how to use -over at the -University -of Greifswald.

+blog by David Müller. I then found +a +good recipe on how to use the service over at the University of +Greifswald.

-

The OpenSSL library contain both server and tools to use and set up -your own signing service. See the ts(1SSL), tsget(1SSL) manual pages -for more details. The following shell script demonstrate how to -extract a signed timestamp for any file on the disk in a Debian -environment:

+

The OpenSSL library contain +both server and tools to use and set up your own signing service. See +the ts(1SSL), tsget(1SSL) manual pages for more details. The +following shell script demonstrate how to extract a signed timestamp +for any file on the disk in a Debian environment:

 #!/bin/sh