E-Commerce Unit 3
E-Commerce Unit 3
Signatures
What is Signature?
Integrity
Non-repudiation
Sec.2(1)(p)
Sec.5
Sender:
•
Prepares a "hash" (a short, unique,
mathematically-derived summary) of this document
(to save processing power / time)
CA
Subscriber
CA
CCA
Subscriber
CA
Subscriber
of
y
or es
ct cat
ire fi s
D erti RL
C C
Public key infrastructure or PKI is the
governing body behind issuing digital
certificates. It helps to protect confidential
data and gives unique identities to users and
systems. Thus, it ensures security in
communications.
• Generates the key pairs – This key pair generated by the CA can be either
independent or in collaboration with the client.
(2)The Controller shall discharge his functions under this Act subject to the general
control and directions of the Central Government.
(3)The Deputy Controllers and Assistant Controllers shall perform the functions
assigned to them by the Controller under the general superintendence and control of
the Controller.
(5)The Head Office and Branch Office of the office of the Controller shall be at such
places as the Central Government may specify, and these may be established at such
places as the Central Government may think fit.
18. Functions of Controller. -
The Controller may perform all or any of the following functions, namely:-
(e)specifying the conditions subject to which the Certifying Authorities shall conduct
their business;
(g)specifying the form and content of a Electronic Signature Certificate and the key;
(h)specifying the form and manner in which accounts shall be maintained by the
Certifying Authorities;
(i)specifying the terms and conditions subject to which auditors may be appointed and
the remuneration to be paid to them;
(k)specifying the manner in which the Certifying Authorities shall conduct their
dealings with the subscribers;
(l)resolving any conflict of interests between the Certifying Authorities and the
subscribers;
(2)No license shall be issued under sub-section (1), unless the applicant
fulfills such requirements with respect to qualification, expertise, manpower,
financial resources and other infrastructure facilities, which are necessary to
issue Electronic Signature Certificates as may be prescribed by the Central
Government.
(a)be valid for such period as may be prescribed by the Central Government;
ation for issue of a license shall be in such form as may be prescribed by the Centra
n practice statement;
uch fees, not exceeding twenty-five thousand rupees as may be prescribed by the Ce
(a)made a statement in, or in relation to, the application for the issue
or renewal of the license, which is incorrect or false in material
particulars;
(a)make use of hardware, software, and procedures that are secure from
intrusion and misuse;
(2)A Digital Signature Certificate shall not be suspended for a period exceeding
fifteen days unless the subscriber has been given an opportunity of being heard
in the matter.