Security is a prime concern when verifying the identity of individuals and businesses online; and verifying the authenticity of electronic documents. Electronic identification, authentication and trust services (eIDAS) is an EU regulation that establishes standards for electronic identities, authentication and signatures. The goal of the Regulation is to encourage the creation of a single European market for secure electronic commerce.
BS EN 419212 series supports services in the context of eIDAS including signatures. BS EN 419212-3 focuses on device authentication, which describes the device authentication protocols and the related key management services to establish a secure channel.
BS EN 419212-3 specifies device authentication to be used for Qualified electronic Signature Creation Devices (QSCDs) in various contexts including:
BS EN 419212-3 on eIDAS device authentication is useful for:
eIDAS regulates electronic signatures, electronic transactions, involved bodies, and their embedding processes to provide a safe way for users to conduct business online like electronic funds transfer or transactions with public services.
BS EN 419212-3 provides you with different device authentication protocols, which include device authentication with privacy protection, privacy constrained modular EAC (mEAC) protocol with non-traceability feature, symmetric authentication scheme and the legacy protocol, key transport protocol based on RSA (cryptographic algorithm). The device authentication protocols should apply to sole-control signature mandated by the EU regulation eIDAS.
BS EN 419212-3 describes device authentication that requires mandatory steps to provide a secure authentication. BS EN 419212-3 contributes towards making online access to devices more secure.
EN 419212-3:2017