BS EN 419241 series of European Standards focuses on trustworthy system supporting server signing (TW4S) system, which offers remote digital signatures as a service. It ensures that signer’s signing key or keys are only used under the sole control of the signer for the intended purpose.
BS EN 419241-1 specifies security requirements for sensitive system components which may be used by the TW4S. The TW4S is composed at least of one server signing application and one signature creation device or one remote signature creation device.
BS EN 419241-1 provides commonly recognized functional models of TW4S.
BS EN 419241-1 specifies overall requirements that apply across all of the services identified in the functional model and security requirements for each of the services identified in the TW4S.
BS EN 419241-1 on TW4S security is useful for:
The TW4S uses a cryptographic module to generate the signing key and create the digital signature value. The goal of TW4S system is to generate advanced electronic signatures. A TW4S is intended to deliver to the signer or to some other application, a digital signature created based on the data to be signed.
BS EN 419241-1 covers security requirements and recommendations for TW4S that generate digital signatures. BS EN 419241-1 provides you with requirements and recommendations for a networked signing server which may manage signing keys used by natural or legal persons for the creation of digital signatures.
BS EN 419241-1 describes the different concepts of server signing in order to clarify that how the security requirements should be implemented and covers all requirements applicable to a server signing system in order to be regarded as a TW4S.
EN 419241-1:2018