Uploaded image for project: 'PDFBox'
  1. PDFBox
  2. PDFBOX-2776

support "Long Term Validation" signature extensions (LTV)

    XMLWordPrintableJSON

Details

    • Improvement
    • Status: Open
    • Major
    • Resolution: Unresolved
    • 2.0.0
    • None
    • Signing
    • None

    Description

      in recent acrobat readers, every signature is commented w.r.t. "LTV"

      ETSI TS 102 778-4 V1.1.2 (2009-12) Technical Specification
      referenced as part 4 in
      http://en.wikipedia.org/wiki/PAdES

      It would be great if pdf signatures created with PDFBox would assist in creatign those.

      Target test setup:
      1) input of an unsigned PDF-1.5 document
      2) signature with
      a) local key pair
      b) hsm
      c) remote signature service (e.g. via soap)
      3) add ocsp response for LTV (crls typically are larger)
      ==> Result: signed pdf where acrobat reader claims it to be "LTV enabled"

      see also PDFBOX-1848

      more in
      http://stackoverflow.com/questions/26090558/ltv-enabled-signature-in-pdf

      Attachments

        1. certified_368835_Sig_de_201026171017_LTV.pdf
          146 kB
          Ralf Hauser
        2. nonSigPdf-sig1.pdf
          209 kB
          Ralf Hauser
        3. notCertified_368835_Sig_en_201026090509_report.png
          90 kB
          Michael Klink
        4. notCertified_368835_Sig_en_201026090509.pdf
          138 kB
          Ralf Hauser
        5. shortLivedCrlAsLTV-sig.pdf
          316 kB
          Ralf Hauser

        Issue Links

          Activity

            People

              Unassigned Unassigned
              hauser@acm.org Ralf Hauser
              Votes:
              3 Vote for this issue
              Watchers:
              13 Start watching this issue

              Dates

                Created:
                Updated: