World’s First Signature Act Certification for Signature Software with Software-as-a-Service Architecture

Unique SaaS architecture allows use of more signature functions
without new installations
Düsseldorf – September 2, 2009
As of now, signature specialist AuthentiDate is offering an extensive base component certified in accordance with the German signature act. The “Signature Lifecycle Management Base Component” (SLMBC) is the first to allow the representation of virtually any possible signature and time stamp application using a standard software component.
AuthentiDate SLMBC has been tested and certified in accordance with the strict requirements for the German signature act. The software was tested by an independent test center accredited to do so by the federal office for information security (BSI). An approval center authorised by the federal network agency then issued the appropriate certification in accordance with the signature act (SigG). This certification provides independent proof of security in accordance with the conditions of the signature act and ordinance.
Unique “Software as a Service” Architecture
For the first time, the core architecture of a piece of signature software that has been tested and certified in accordance with SigG is based on the pioneering “Software-as-a-Service” architecture. I.e. the integration into service-oriented application environments (SOA) is supported by the internal SaaS architecture and consistently continued. Consequently, IT systems that do not want to be without certified signature functions can, for the first time, be realised as entire SaaS concepts.
Many Application Areas – One Certified Component
The unique architecture and the SLMBC concept enable every user to react flexibly to existing and future requirements without the need to install/integrate additional software. What has been certified under the signature act is no individual product that would limit application by the user but rather an extensive software component with a wealth of functions, for example such as signature generation for individual, batch, convenience and mass signatures and signature authentication for all variants in accordance with the current intentions of the federal network agency and the federal office for information security.
Advantages for the users: they need install the SigG certified base component only once and can then use whichever functions they require by licence key. Further functions can be licensed subsequently at any time.
Unlike many other signature technologies available on the market, no new or reinstallation is generally required with SLMBC for the use of other signature functions. The user pays only for the signature functions that are really needed and is nonetheless extremely flexible to quickly have the use of other functions. This can be advantageous particularly for resigning, as this functionality is generally required only rarely.
In addition, an extensive range of functions is available for requesting and generating time stamps compliant with international standard RFC3161.
Naturally, the SLMBC signature application component supports card readers and signature cards from various, current market providers. Users are therefore able to choose for themselves which hardware to use.
Client-Server Signature Processes
Using the SOA and SaaS architecture that is independent of the operating system, it is now possible for the first time to implement client-server signature processes allocated by the signature software. The flexible JAVA architecture allows the representation of all current and future cards and standards such as eCard API from the BSI, eHealth/eGK formats and processes, ERS and long-term archiving.
Trusted Viewer
The scope of delivery of the SLMBC also includes a legally compliant trusted viewer for the safe viewing of data and test results that are to be signed. The trusted viewer can be used to sign both individual and multiple files all at once. To do this, the certified base component generates so-called batch signatures. The trusted viewer also supports the generation of "convenience signatures" for the field of eHealth.
Here, the modern, intuitively operated user interface allows even inexperienced users to sign / time stamp electronic data in a quick and legally compliant manner at the local workstation.
The AuthentiDate SLMBC base component is available immediately and licensed as a function module, e.g. as an archive, scan, or client module. "We are delighted that SLMBC represents the world’s first certified signature software based on SaaS architecture" says AuthentiDate International AG chief executive officer and AuthentiDate Deutschland GmbH Managing Director Jan C. Wendenburg. "As a result, our customers are able to use even simpler and quicker legally compliant signature solutions and they are equipped for future developments e.g. such as the electronic identity card, electronic health card, patient re-cords and many other signature processes."
About AuthentiDate
AuthentiDate (Düsseldorf) is the inventor of the central, qualified mass signature and one of the leading providers in the international signature market. This signature and IT security specialist has played a pioneering role for a number of years, shaping the market through innovation.
AuthentiDate signature products have been used successfully for a number of years by over 50% of German health insurances as well as numerous companies and organisations both within Germany and abroad, e.g. such as EnBw, HAYS, Klinikum Braunschweig, SOLVAY Chemicals and TÜV Rheinland.
AuthentiDate technologies meet the strict requirements of the German signature act and the EU signature directive. The SLMBC signature software, which has been tested and certified under the signature act, is available exclusively from AuthentiDate Deutschland GmbH. AuthentiDate International AG is a certification service provider accredited by the federal network agency and operates a trust centre in accordance with the German signa-ture act.
AuthentiDate International AG
Rethelstraße 47
40237 Düsseldorf
Fon +49 (0)211 43 69 89-50
Fax +49 (0)211 43 69 89-19
Judith Balfanz
VP Marketing
Email presse(at)authentidate.de
www.authentidate.de



