FIELD: physics.
SUBSTANCE: invention relates to means of protecting data using electronic signatures (ES). User device stores the electronic signature key in an encrypted form. Authentication server stores an encryption key of the electronic signature. Upon request of the authentication server, the software application on the user device establishes a secure connection of the user device with the authentication server with two-way certificate authentication. User device receives from the authentication server a hash of the document displayed by the software application on the user's device screen and compared by the user to the hash of the document presented to it earlier for review together with the document. Upon successful comparison and agreement, a user, using a software application interface on a user device, sends a request for an encryption key to an authentication server. Using the encryption key, the software application decrypts the signature key of the applicant and generates an electronic signature.
EFFECT: technical result consists in improvement of ES protection degree by means of ES key encryption key with simultaneous creation of protected channel with two-way certificate authentication.
7 cl, 1 dwg
Authors
Dates
2019-09-11—Published
2017-09-21—Filed