International Journal of Scientific Research in Computer

Total Page:16

File Type:pdf, Size:1020Kb

International Journal of Scientific Research in Computer International Journal of Scientific Research in Computer Science, Engineering and Information Technology ISSN : 2456-3307 (www.ijsrcseit.com) doi : https://doi.org/10.32628/CSEIT217233 Revelation of Cryptography Soham Mehta, Deep Nandu Department of Computer Engineering, SAKEC, Mumbai, Maharastra, India ABSTRACT As the means of communications matured and developed so did the need of Article Info secret message keeping, as we discover new and more sophisticated Volume 7, Issue 2 cryptographic techniques are being developed to aid in securing the Page Number : 108-117 communications between sender and receiver. Some of cryptographers started to come up with new techniques to hide the data using new encryption methods Publication Issue : while others came up with new techniques to break the said encryption methods March-April-2021 and this led to many great evolutions in the communication sector, as the communications became digital from analog secret message keeping became far Article History more important and led to the introduction of various protocols and frameworks Accepted : 25 March 2021 to support their need of secret message keeping. Published : 31 March 2021 Keywords: Cipher text, Encryption, Secret Message, Cryptographic Techniques, Secret Message, Cryptanalysis, Modern Encryption I. INTRODUCTION Plain text: Refers to text that can be read by a normal person. Cryptography is the science of writing codes and Cipher text: Refers to encrypted text that might be ciphers for secure communication, which is one of gibberish for a normal person. the most important elements that goes into making Key: Refers to a number or a word that can be used to modern communication, networks, cryptocurrencies, encrypt or decrypt the plain text and blockchains possible. The cryptographic Shifts: Refers to replacing each letter in the message techniques used today, however, are the result of a by a letter that is some fixed number of positions long history of development. Since ancient era, further along in the alphabet list. people have used cryptography to transmit Encryption: The conversion of plain text to cipher information in a secure manner. The modern text. Cryptography is a result of seesaw battle between Decryption: The conversion of cipher text to plain code makers and code breakers that has pushed the text very boundaries of science. Following is the Cryptanalysis: The study of cipher text and fascinating history of cryptography that has led up to cryptosystems the advanced and sophisticated methods used for Cryptanalyst: The agent (human/computer) that modern digital encryption. But before that lets performs cryptanalysis. understand few of the terms related to cryptography: The art of secret writing aka cryptography was developed along with the art of writing. As the Copyright: © the author(s), publisher and licensee Technoscience Academy. This is an open-access article distributed under the 108 terms of the Creative Commons Attribution Non-Commercial License, which permits unrestricted non-commercial use, distribution, and reproduction in any medium, provided the original work is properly cited Soham Mehta et al Int. J. Sci. Res. Comput. Sci. Eng. Inf. Technol, March-April-2021, 7 (2) : 108-117 humans evolved and became civilized so did the need found is that Egyptian scribes wanted to give formal of secure means of communication, humans got appearance to their writings. Hieroglyph was also a organized in tribes or groups, and later kingdoms code that was only known to the scribes could use which brought idea or problems such as power, and who could send the message on behalf of the battles, supremacy, and politics. These ideas further king they used it as an opportunity to use their fuelled the natural need of people to communicate formal language skills to impress the king. secretly with selective recipient which in turn ensured the continuous evolution of cryptography as well. In the current generation of information age encryption plays a major role in data transmission, from metadata to information everything transmitter over a network is highly encrypted to maintain the data integrity and to avoid the data from being leaked Figure 1: Egyptian Symbols used 4000 years ago or getting misused. II. ROOTS OF CRYPTOGRAPHY Cryptography is as ancient as the art of writing, early civilizations seemed to have used cryptography to some degree where symbol replacement appears in both ancient Egyptian and Mesopotamian writings. Since prehistoric age encryption is used by civilization to protect the data or messages that needs Figure 2: Symbols on tomb of Khnumhotep II to be kept away from the prying eyes, one of the oldest examples of encryption techniques hieroglyph By later era of relics and artifacts, cryptography was being 4000 years old used by the ancient Egyptian to largely used to protect classified and or important keeps records or to pass message that were known military information, a purpose that it serves till this only by the ‘Scribes’. The very first technique of day. A good example for the early forms of cryptography that can be traced is through the cryptography would be from the Greek city – State of history is Hieroglyph. It is the oldest cryptographic Sparta around 500 BCE, the Spartans who were technique and was used by the Egyptians around trying to send secure message to their military 4000 years ago. The Hieroglyph was found on the campaigns they used a tool called scytale. Scytale tomb of an Egyptian noble named Khnumhotep II, consisted of a cylinder with a piece of parchment who lived approximately 3,900 years ago. The scribe around it on which the message was written. The who drew the symbols on his master’s tomb was parchment is wrapped around cylinder and the drawing his master’s life on the tomb, but instead of message is written on it. This tool performed the using standard numbers and symbols he used unusual transposition cipher on the message. The receiver signs and symbols to obscure the meaning of the uses the rod of the same diameter on which the inscriptions. The only explanation that could be parchment is wrapped to read the message. 109 Volume 7, Issue 2, March-April-2021 | http://ijsrcseit.com Soham Mehta et al Int. J. Sci. Res. Comput. Sci. Eng. Inf. Technol, March-April-2021, 7 (2) : 108-117 code breaking that involved mathematical or frequency analysis and were the first to suggest the most frequent coded letter represents the most frequent plain text. III. Middle Ages and Renaissance Figure 3: S Scytale Example With the Renaissance cryptology has a rebirth in Europe in 1466 an Italian architect developed a Possibly the most advance cryptographic system in greatest Cryptologic invention in a thousand year at the ancient civilization was established by the the urging of the Vatican, it was a system of rotating Romans, one of the most famous and prominent cipher disks with two rings of letters and several examples would be Caesar Cipher, around 5th numbers by scrambling so many letters randomly, century AD Julius Caesar a Roman general one is the alphabet in which the original message is commander in the Roman Army developed a cipher written, while the second is an entirely different or encryption technique that is one of the widely alphabet in which the message appears after being known encryption techniques which is called Caesar encoded. In polyalphabetic cipher two same letter in cipher. Caesar is also known as the shift cipher it is the plain text might get encrypted into two different like the substitution where the letters in the plain letters, even the length of the plain text and cipher text are replaced by the letters that are some fixed text might be changed in the polyalphabetic cipher if positions down the alphabet. The Caesar cipher the plain text consists of 5 letters the cipher text provided reasonably secure means of communication; might have 10 letters. Combined with the traditional apart from the encryption of the message, the reason ciphers. Polyalphabetic ciphers increased the security is that the enemies of the Roman Empire could not of the message greatly. It became the first to have understood since to them it would have been a challenge the Arab code breaking method of foreign language. frequency analysis which was later called Polyalphabetic Substitution earlier known as Alberti system and it became the base to many modern cipher systems. A French Diplomat improved the Alberti system in 1586 by creating a cipher style that later came to be known as Vigenere cipher. Vigenere cipher uses the Figure 4: Substitution Cipher grid of letter that gives the method of substitution the grid is known as Vigenere cipher or Vigenere table Around 900AD another civilization rising in the east, made up of 26 letters offset from each other by one Arab society was one the most literate cultures in the letter. The key exception of Vigenere cipher from world and the study of code flourished, the Arabs the Caesar cipher is that the key of the Vigenere were the first to record the method of transposition changes throughout the process and in the Caesar the scrambling of letters as well as substitution the cipher the key remains the same for entire process. replacement of letters with numbers and symbols they were the first to outline specific techniques of 110 Volume 7, Issue 2, March-April-2021 | http://ijsrcseit.com Soham Mehta et al Int. J. Sci. Res. Comput. Sci. Eng. Inf. Technol, March-April-2021, 7 (2) : 108-117 Telegram. The British were able to decipher the telegram which changed the tides of war and became one of the important events in WW1. During the start of WW1, the United States had decided to remain neutral. The telegram was sent in response of the conflict British naval blockade, Germany broke the pledge to curb the submarine warfare by firing missiles at a civilian ship.
Recommended publications
  • Cryptomathic EMV CA
    Cryptomathic EMV CA EMV AND PKI A Regional EMV Solution The EMV standard is designed to provide an interoperability frame- work for payment cards. This covers many transaction types including credit, debit, contactless and mobile. Payment cards have been around for many years in various forms. The latest cards have become more sophisticated and now contain a microchip, which can store a wealth of information, including security information used for authentication and encryption. EMV card authentication is based on PKI (Public Key Infrastructure) but unlike traditional PKI, which is based on a standard called X.509, EMV EMV CA is a standard of its own. Even though EMV is a proprietary standard it The Cryptomathic EMV CA professionally manages all the Issuer's and is widely used across the globe, with billions of EMV smart cards issued Certification Authority’s tasks including: since its initial roll-out. • Lifecycle management of EMV Issuer CA (scheme issuers’) certificates • Issue certificates EMV Certification Authorities are central to the payment card framework, • Export certificates under which issuers and acquirers are certified by the payment schemes, • Revoke certificates acting as a trusted third party. A payment scheme can be a major • Certification authority CRL (Certificate Revocation List) international player such as MasterCard and Visa or it can be regional • Issuer CRL (Certificate Revocation List) or country wide, such as national debit schemes, which are found in many countries all over the world. Each payment scheme requires an Benefits EMV Certification Authority and the Cryptomathic EMV CA provides that Cryptomathic EMV CA offers all the features expected from professional exact functionality.
    [Show full text]
  • Cryptographic Algorithm Analysis and Implementation
    EasyChair Preprint № 3210 Cryptographic Algorithm Analysis and Implementation Nandkumar Niture EasyChair preprints are intended for rapid dissemination of research results and are integrated with the rest of EasyChair. April 20, 2020 Cryptographic Algorithm Analysis and Implementation By: - Nandkumar A Niture 1 Abstract The impact and necessity of information security has increased exponentially over the last f ew decades as the denial-of-service attacks are increasing, information is being stolen, hackers are using more sophisticated and smart methods with help of agile tools for stealing sensitive information. Do small/mid-size/large corporate organizations need the security of their system? Yes. They have sensitive user data, employee data, trading data, customer data and other sensitive confidential information stored in office systems. Do common people need the security of their systems at home? Yes. They may have their taxes files, social security card information, bank account details, private pictures, marketing strategy for their small business and many more private things. Computer cryptography was the exclusive domain for long period of time since World War II but now is practiced outside of military agencies. Cryptography is both science and art, it uses known obscurity and mathematical formulae. Cryptographic systems should have ability to assure the authenticity of source from where message gets originated and proof of complete message delivery. It is sometimes insufficient to protect ourselves from the rules and laws, but we need to protect ourselves with applying sufficient mathematical equations. So, it is individuals and legal organizations responsibility to protect their own data. By combining the digital signature with public-key cryptography, we can develop a protocol that combines the security of encryption with the authenticity of digital signatures.
    [Show full text]
  • Cryptomathic Signer V 1.0
    Signer Case Study – LuxTrust CENTRAL SIGNING SERVICE Residents in Luxembourg are now able to securely access a variety of web applications such as eBanking and public services, as well as digitally sign legally binding transactions and official documents from an online PC or mobile device, anywhere in the world. With just one LuxTrust certificate, users can remotely access and sign multiple online forms from any organisation connected to the service, whether they are registering their new home or applying for a loan. This highly innovative and flexible authentication and digital signature service has been imple- mented by LuxTrust, using Cryptomathic’s solutions. LUXTRUST LuxTrust approached Cryptomathic to solve the challenging issue of establishing legal value by way of high security (using PKI and 2FA) As Luxembourg’s primary provider of digital identity and electronic without costs escalating and destroying the business case. Today, most data security services, LuxTrust provides various IT services, aimed at Luxembourg based institutions, including eGovernment and eBanking, delivering and enforcing digital trust between parties, including certifi- utilise the benefits delivered by LuxTrust’s SSC – a mutual security infra- cate issuance, strong authentication, digital signatures, time stamping, structure service. The SSC combines this high level of security in the and long term storage to enable secure electronic commerce and most convenient and portable service, allowing users to authenticate to meet the future security requirements
    [Show full text]
  • Cryptomathic Signer SAM V. 5.0 Security Target for Utimaco Cryptoserver CP5
    Cryptomathic Signer SAM v. 5.0 Security Target for Utimaco Cryptoserver CP5 Document Version: 5.0 Document ID: ASE_ST_UTIMACO Date: September 19, 2019 Cryptomathic Signer Security Target for Utimaco Cryptoserver CP5 ASE_ST_UTIMACO 5.0 September 19, 2019Error! Unknown document property name. Document Identification Document Title: Cryptomathic Signer Security Target for Utimaco Cryptoserver CP5 Document ID: ASE_ST_UTIMACO Document Version: 5.0 Date of version: September 19, 2019 Origin: Cryptomathic Author: Lone Asferg Laursen, Thomas Brochmann Pedersen TOE Reference: Cryptomathic Signer SAM v 5.0 for Utimaco Cryptoserver CP5 Product Type: QSCD 2 Cryptomathic Signer Security Target for Utimaco Cryptoserver CP5 ASE_ST_UTIMACO 5.0 September 19, 2019Error! Unknown document property name. Terms Term Meaning CA Certification Authority. CM Cryptographic Module. Recides within the HSM. Cryptographic Module Cryptographic Module certified according to [EN 419 221-5]. Utimaco CryptoServer Se-Series Gen2 CP5, version 5.1.0.0. DTBS/R Data To Be Signed Representation. A hash value of the document to be signed. HSM Hardware Security Module. IdP Identity Provider. Privileged User The users who administrate the TOE and the signer users. This is the Common Criteria term for administrator users. Administrator The Signer SAM term for a privileged user. QSCD Qualified Electronic Signature (or Electronic Seal) Creation Device as defined in [eIDAS]. RA Registration Authority. SAD Signature Activation Data SAM Signature Activation Module SAP Signature Activation Protocol. Protocol use to perform the signature operation. SCA Signature Creation Application. Application responsible for creating the document to be signed. SIC Signer Interaction Component. Signer User End user who can sign documents. Signing key A cryptographic key used for signing under the sole control of a signer.
    [Show full text]
  • University of Cape Town
    UNIVERSITY OF CAPE TOWN DEPARTMENT OF ELECTRICAL ENGINEERING DATA STORAGE SECURITY FOR CLOUD COMPUTING USING ELLIPTIC CURVE CRYPTOGRAPHY. GEORGE ONYANGO BUOP Supervisor: DR. ALEXANDRU MURGU A thesis Presented for the Degree of UniversityMaster of Engineering of in Telecommunication Cape Town The copyright of this thesis vests in the author. No quotation from it or information derived fromTown it is to be published without full acknowledgement of the source. The thesis is to be used for private study or non- commercial research purposes only.Cape Published by the University of Cape Town (UCT) in terms of the non-exclusive licenseof granted to UCT by the author. University Declaration I declare that all the work in the document, save for that which is properly acknowledged, is my own. I hereby declare that I have not submitted this material, either in whole or in part, for a degree at this or any other institution. Signature ……………………………………… Cape Town Acknowledgement First and foremost, my appreciation goes to the Almighty God who sustained me throughout the period of this program. I also want to acknowledge the contributions of my supervisor, Dr Alexandru Murgu, for the comments, corrections, suggestions and all other forms of support I have received towards the completion of this research work. My sincere appreciation is extended to colleagues who have been of great encouragement through their technical skills and suggestions while going through this path. I also would like to appreciate the friends who made the foreign land a home away from home, through their company, their support and continuous encouragement. Finally, my special appreciation goes to my parents and my family for being an inspiration, for the sacrifices they made to ensure I was able to go through this program to completion and for being there for me throughout this period.
    [Show full text]
  • A Computational Package for Working with Elliptic Curve Groups by Sulman Liaquat a Thesis Submitted in Partial Fulfillment for the Degree of Master of Philosphy
    CAPITAL UNIVERSITY OF SCIENCE AND TECHNOLOGY, ISLAMABAD A Computational Package for Working with Elliptic Curve Groups by Sulman Liaquat A thesis submitted in partial fulfillment for the degree of Master of Philosphy in the Faculty of Computing Department of Mathematics 2020 i Copyright c 2020 by Sulman Liaquat All rights reserved. No part of this thesis may be reproduced, distributed, or transmitted in any form or by any means, including photocopying, recording, or other electronic or mechanical methods, by any information storage and retrieval system without the prior written permission of the author. ii To my Mother, late Father, Brothers, Sisters and Someone very special for their support and love. CERTIFICATE OF APPROVAL A Computational Package for Working with Elliptic Curve Groups by Sulman Liaquat (MMT161012) THESIS EXAMINING COMMITTEE S. No. Examiner Name Organization (a) External Examiner Dr. Waqas Mehmood QAU, Islamabad (b) Internal Examiner Dr. Qamar MEhmood CUST, Islamabad (c) Supervisor Dr. Rashid Ali CUST, Islamabad Dr. Rashid Ali Thesis Supervisor June, 2020 Dr. Muhammad Sagheer Dr. Muhammad Abdul Qadir Head Dean Dept. of Mathematics Faculty of Computing June, 2020 June, 2020 iv Author's Declaration I, Sulman Liaquat hereby state that my M. Phil thesis titled \A Computa- tional Package for Working with Elliptic Curve Groups" is my own work and has not been submitted previously by me for taking any degree from Capital University of Science and Technology, Islamabad or anywhere else in the coun- try/abroad. At any time if my statement is found to be incorrect even after my graduation, the University has the right to withdraw my M.
    [Show full text]
  • A Personal Perspective Peter Landrock, Founder of Cryptomathic
    Isaac Newton Institute for Mathematical Sciences The Isaac Newton Institute: A Personal Perspective Peter Landrock, Founder of Cryptomathic Peter Landrock grew up in Denmark and obtained his PhD in mathematics in 1974 from the University of Chicago. He began working on data security in 1984 whilst at Aarhus University, and built up one of the leading data security research teams within Europe. He founded Cryptomathic in 1986, one of the first companies to commercialise cryptographic algorithms, but it was his participation in the 1996 Isaac Newton Institute programme on Cryptology and Coding Theory that inspired him to leave academia and focus on the company. Always emphasising the importance of the underpinning mathematics, During the first 6 months of 1996 I was invited Cryptomathic went from strength to strength to be one of the organisers of the Isaac Newton and is now one of the world’s leading providers Institute programme on Computer Security, of security solutions to businesses across a wide Cryptology and Coding Theory . My co-organisers range of industry sectors, including banking, “were Roger Needham, then Departmental government, technology, cloud and mobile. Chairman of Cambridge University’s Computer In 2003, Cryptomathic was recognized by the Laboratory and subsequently Director of World Economic Forum as a Technology Pioneer Microsoft’s Cambridge Research Laboratory, and, in 2004, it received the VISA Smart Star and Ross Anderson, now a Professor in Cambridge Award for its work on Chip and PIN. University’s Computer Laboratory. In 2010, Peter Landrock was named by the European Patent Office as a Finalist for European Attending the Newton Institute Inventor in the “Lifetime Achievement” category.
    [Show full text]
  • Digital Signatures for Dummies®, Cryptomathic Special Edition
    These materials are © 2017 John Wiley & Sons, Ltd. Any dissemination, distribution, or unauthorized use is strictly prohibited. Digital Signatures Cryptomathic Special Edition by Chris Allen and Steve Marshall These materials are © 2017 John Wiley & Sons, Ltd. Any dissemination, distribution, or unauthorized use is strictly prohibited. Digital Signatures For Dummies®, Cryptomathic Special Edition Published by: John Wiley & Sons, Ltd., The Atrium, Southern Gate Chichester, West Sussex, www.wiley.com © 2017 by John Wiley & Sons, Ltd., Chichester, West Sussex Registered Office John Wiley & Sons, Ltd., The Atrium, Southern Gate, Chichester, West Sussex, PO19 8SQ, United Kingdom All rights reserved. No part of this publication may be reproduced, stored in a retrieval system or transmitted in any form or by any means, electronic, mechanical, photocopying, recording, scanning or otherwise, except as permitted by the UK Copyright, Designs and Patents Act 1988, without the prior written permission of the Publisher. For information about how to apply for permission to use the copyright material in this book, please see our website at http://www. wiley.com/go/permissions. Trademarks: Wiley, For Dummies, the Dummies Man logo, Dummies.com, and related trade dress are trademarks or registered trademarks of John Wiley & Sons, Inc. and/or its affiliates in the United States and other countries, and may not be used without written permission. All other trademarks are the property of their respective owners. John Wiley & Sons, Ltd., is not associated with any product or vendor mentioned in this book. LIMIT OF LIABILITY/DISCLAIMER OF WARRANTY: WHILE THE PUBLISHER AND AUTHOR HAVE USED THEIR BEST EFFORTS IN PREPARING THIS BOOK, THEY MAKE NO REPRESENTATIONS OR WARRANTIES WITH RESPECT TO THE ACCURACY OR COMPLETENESS OF THE CONTENTS OF THIS BOOK AND SPECIFICALLY DISCLAIM ANY IMPLIED WARRANTIES OF MERCHANTABILITY OR FITNESS FOR A PARTICULAR PURPOSE.
    [Show full text]
  • Cryptomathic Signer
    White Paper Cryptomathic Signer Enabling a Unique Digital Signing Experience 1 Introduction This paper presents the business case for centralised digital signatures and explores how a business can: Being able to provide trust and convenience is critical for any organisation or business offering its services online. This applies • Offer a unique signing experience for all digital channels incl. web portals, desktop applications and mobile in particular to the crucial step of the customer journey, where the customer commits to a transaction or a document. Electronic • Issue advanced or qualified electronic signatures in compliance transactions, such as online shopping or personal e-banking, are with European ETSI and CEN technical standards and the commonplace. Nevertheless, many other transactions or agreements, eIDAS regulation such as high value transactions or sensitive documents need higher security assurances and must be legally binding. In the • Make PKI transparent for the end-user and implement policies for different assurance standards. physical world, such transactions can typically be settled by shaking hands and applying your handwritten signature to a document/ • Leverage existing 2-Factor Authentication deployment contract. In the digital world, a digital signature can carry the same non-repudiable weight. • Achieve non-repudiation • Reduce operational costs Digital signatures can enable: • The end-to-end digital customer journey 2 Signing in the cloud - the drivers • Non-repudiation • Enhanced security and legal value What is driving successful Electronic Commerce and e-Government • End-user convenience and mobility solutions? The answer is simple: Useful applications with superior user • Cost efficiency for all stakeholders experience that provide operational cost savings and enhanced security • What You See Is What You Sign functionality (WYSIWYS) and control.
    [Show full text]
  • KMS Case Study – Mastercard
    KMS Case Study – MasterCard CENTRALIZED KEY MANAGEMENT Today MasterCard Europe benefits from a fully automated and central- ized key management system developed by Cryptomathic. Every mem- ber bank has a number of hardware security modules that are now fully managed and handled centrally from Brussels. KEY MANAGEMENT CENTRE TO MASTERCARD EUROPE unique administrative role and credentials. From here the operators can update and configure the cryptographic keys on each individual Network Security Platform (NSP) as well as enter new, shared network keys into all boxes with just a click on a button. Updating the Keys When using cryptographic keys for high volumes of sensitive data, it is important to change the encryption keys at regular intervals. These network keys are used by all NSPs to communicate within their own virtual network. When the keys are updated, it is of utmost importance that they are updated on as many NSPs as possible and in as short time as possible. At the same time, it is important that all events are logged securely and that the Key Management Centre (KMC) allows the admin- istrators to communicate with each NSP individually to ensure that all communication to and from the NSPs and the KMC is non-repudiable. MasterCard Europe Jean Paul Boly MasterCard Europe is a European banking organization which owns and MasterCard Europe manages many of the most commonly used payment systems, includ- With the Key Management Centre we are able to reduce costs ing Maestro, EC (EuroCheque), Cirrus, CLIP and Eurocard. MasterCard while increasing both network security and performance. We chose to Europe is a subsidiary of Mastercard Corp.
    [Show full text]
  • Cryptomathic Signer SAM V. 5.1 Security Target for Utimaco Cryptoserver CP5
    Cryptomathic Signer SAM v. 5.1 Security Target for Utimaco Cryptoserver CP5 Document Version: 5.5 Document ID: ASE_ST_UTIMACO Date: March 12, 2020 Cryptomathic Signer Security Target for Utimaco Cryptoserver CP5 ASE_ST_UTIMACO 5.5 March 12, 2020 Document Identification Document Title: Cryptomathic Signer Security Target for Utimaco Cryptoserver CP5 Document ID: ASE_ST_UTIMACO Document Version: 5.5 Date of version: March 12, 2020 Origin: Cryptomathic Author: Lone Asferg Laursen, Thomas Brochmann Pedersen TOE Reference: Cryptomathic Signer SAM v 5.1 for Utimaco Cryptoserver CP5 Product Type: QSCD 2 Cryptomathic Signer Security Target for Utimaco Cryptoserver CP5 ASE_ST_UTIMACO 5.5 March 12, 2020 Terms Term Meaning CA Certification Authority. CM Cryptographic Module. Recides within the HSM. Cryptographic Module Cryptographic Module certified according to [EN 419 221-5]. Utimaco CryptoServer Se-Series Gen2 CP5, version 5.1.0.0. DTBS/R Data To Be Signed Representation. A hash value of the document to be signed. HSM Hardware Security Module. IdP Identity Provider. Privileged User The users who administrate the TOE and the signer users. This is the Common Criteria term for administrator users. Administrator The Signer SAM term for a privileged user. QSCD Qualified Electronic Signature (or Electronic Seal) Creation Device as defined in [eIDAS]. RA Registration Authority. SAD Signature Activation Data SAM Signature Activation Module SAP Signature Activation Protocol. Protocol use to perform the signature operation. SCA Signature Creation Application. Application responsible for creating the document to be signed. SIC Signer Interaction Component. Signer User End user who can sign documents. Signing key A cryptographic key used for signing under the sole control of a signer.
    [Show full text]
  • Download Datasheet
    CON SU LT I CTS N U G D O R P S E R V S I C E www.EncryptionConsulting.com Encryption Consulting is a customer-focused cybersecurity firm that provides a multitude of services in all aspects of Encryption for our clients. Our expertise ranges from Public Key Infrastructure, Enterprise Key Management, Tokenization, Transparent Data Encryption, Cloud Key Management, Code Signing, Hardware Security Modules, and Element Level Format Preserving Encryption, Our knowledge and experience puts experts on your team to deploy the industry’s best and proven encryption technologies. Our solutions will secure your sensitive data throughout its entire lifecycle. At Encryption Consulting, our people and services enable organizations to successfully achieve their data security goals in Confidentiality, Integrity, and Availability. Encryption Consulting in Brief Experts in Encryption and Data Security Space. - 30+ years of combined experience in Cyber-Security. - 70% of firm holding CISSP, CCSP, CIPP/US Certified Information Security Professional. Strategic Partners with leading Encryption technology providers. 20+ clients including some in the Fortune 100 and Fortune 500. Most of our consultants have BIG 4 (Deloitte, PWC, EY, KPMG) consulting background. focus areas Our specialty is delivering Assessments, Strategies and Implementations for organizations who either lack the specialized resources or who simply value having a trusted advisor to assist them upgrade their their data security posture. At Encryption Consulting, we have created a custom framework based on NIST 800-57, NIST 800-53 standards, FIPS and industry best practices to accelerate our client’s data protection projects. In summary, we enable organizations to identify areas in their current encryption environment needing improvement by conducting an assessment, creating a roadmap and implementing an encryption plan end-to-end.
    [Show full text]