Title :
Qualified Electronic Signature via SIM Card Using JavaCard 3 Connected Edition Platform
Author :
Breier, Jakub ; Pomothy, Adam
Author_Institution :
Sch. of Phys. & Math. Sci., Temasek Labs., Nanyang Technol. Univ., Singapore, Singapore
Abstract :
Digital signature is one of the most common ways of determining the origin of a document in a digital way. To ensure authenticity, integrity and non-repudiation when such signatures are used, many countries have their standards and regulations. In EU, a signature that complies with those regulations is called ´Qualified Electronic Signature´ (QES). There are many QES solutions using dedicated smart cards or security tokens and few of them that use SIM cards as a signature creation device. These SIM-based solutions usually use a third party to perform a signature, such as mobile service operator and operate as a hybrid solutions. Hence, a cooperative connection between a mobile device and a SIM card is needed. In this paper we propose a solution based on the Java Card 3.0 Connected Edition platform that operate fulfills following conditions: it is a mobile service operator-independent and mobile phone operating system-independent. The first condition is achieved by performing all the operations directly on a SIM card and the second condition is satisfied by avoiding the application running on a mobile phone operating system. Instead, we propose a web based application to perform the necessary verification methods on the SIM card. So this proposed application can be accessed via mobile phone web browser. Of course, our solution satisfies the Common Criteria standard requirements for the EAL 4 level.
Keywords :
Internet; Java; digital signatures; mobile computing; smart cards; EAL 4 level; EU; JavaCard 3 connected edition platform; QES; SIM card; Web based application; dedicated smart cards; digital signature; mobile device; mobile phone Web browser; qualified electronic signature; security tokens; Digital signatures; Java; Mobile communication; Mobile handsets; Public key; JavaCard; PKI; Qualified Electronic Signature; SIM Card; digital signature;
Conference_Titel :
Availability, Reliability and Security (ARES), 2014 Ninth International Conference on
Conference_Location :
Fribourg
DOI :
10.1109/ARES.2014.53