EP0940945A2

A method and apparatus for certification and safe storage of electronic documents

Abstract

An electronic document provided by a user is certified using cryptographic functions to create a document fingerprint which is then cryptographically signed together with a time stamp. The document which was certified is archived for safe deposit and later retrieval. The document fingerprint and time stamp are returned to the user as part of a document certificate. The document certificate can be used to verify the authenticity of copies of the original document and to establish the prior existence of the document. The filename of each document certificate can include a portion of the document fingerprint associated with an electronic document to enable a very efficient search of a set of document certificates to identify possible matches between document certificates and the electronic document being verified.

EP0940945A2, drawing sheet 1
Sheet 1 of 7

Term

Term ended

Projected expiry passed 4 March 2019, 7.6 years ago.

  1. Priority
  2. Filed
  3. Published
  4. Projected expiry
  5. Today

33 claims: 7 independent, 26 dependent

  1. 1
    A method for certifying and preserving an electronic document, comprising:(a) applying a first cryptographic hash function to the electronic document to produce a document fingerprint;(b) applying a second cryptographic hash function to a document certificate which includes the document fingerprint, a time stamp, and a serial number to produce a document certificate fingerprint;(c) cryptographically signing the certificate fingerprint to produce a digital signature;and(d) storing the electronic document.
  2. 14
    A method for retrieving and authenticating an electronic document, comprising:(a) obtaining the electronic document, a document certificate associated with the electronic document and having a first document fingerprint, and a digital signature associated with the document certificate;(b) applying a first cryptographic hash function to the document certificate to produce a first document certificate fingerprint;(c) cryptographically verifying the digital signature to produce a second document certificate fingerprint;(d) indicating, when the first document certificate fingerprint matches the second document certificate fingerprint, that the first document fingerprint and the certification time associated with the document certificate are authentic;(e) applying a second cryptographic hash function to the electronic document to produce a second document fingerprint;and(f) indicating, when the first document fingerprint matches the second document fingerprint, that the contents of the electronic document are authentic.
  3. 27
    A method for determining whether an electronic document is an authentic copy based on a plurality of document certificates each having its own document fingerprint, comprising:(a) applying a cryptographic hash function to the electronic document to produce a first document fingerprint;(b) comparing the first document fingerprint to the document fingerprint of at least one document certificate from the plurality of document certificates;and(c) indicating, when the first document fingerprint matches the document fingerprint of the at least one document certificate from the plurality of document certificates, that the electronic document is an authentic copy of the electronic document associated with the at least one document certificate.
  4. 30
    A method for determining whether a candidate electronic document is an authenticate copy of an original electronic document using a document certificate associated with the original electronic document, comprising:(a) obtaining the candidate electronic document, the document certificate associated with the candidate electronic document and having a first document fingerprint, and a digital signature associated with the document certificate;(b) applying a first cryptographic hash function to the document certificate to produce a first document certificate fingerprint;(c) cryptographically verifying the digital signature to produce a second document certificate fingerprint;(d) indicating, when the first document certificate fingerprint matches the second document certificate fingerprint, that the first document fingerprint and the certification time associated with the document certificate are authentic;(e) applying a second cryptographic hash function to the candidate electronic document to produce a second document fingerprint;and(f) indicating, when the first document fingerprint matches the second document fingerprint contained within the document certificate, that the candidate electronic document is the authentic copy of the original electronic document.
  5. 31
    An apparatus for certifying and preserving an electronic document, comprising:a processor;a first memory connected to said processor, said first memory storing the electronic document and storing a plurality of instructions adapted to be executed by said processor to: (a) apply a first cryptographic hash function to the electronic document to produce a document fingerprint;(b) apply a second cryptographic hash function to a document certificate which includes the document fingerprint, a time stamp, and a serial number to produce a document certificate fingerprint;(c) cryptographically sign the certificate fingerprint to produce a digital signature;and(d) store the electronic document in said memory.
  6. 32
    An apparatus for certifying and preserving an electronic document, comprising:means for applying a first cryptographic hash function to the electronic document to produce a document fingerprint;means for applying a second cryptographic hash function to a document certificate which includes the document fingerprint, a time stamp, and a serial number to produce a document certificate fingerprint;means for cryptographically signing the certificate fingerprint to produce a digital signature;andmeans for storing the electronic document.
  7. 33
    An apparatus for certifying and preserving an electronic document to enable a user to subsequently authenticate contents of and certification date of the electronic document, comprising:a processor;anda memory connected to said processor, said memory storing a plurality of instructions adapted to be executed by said processor to: (a) obtain the electronic document, a document certificate associated with the electronic document and having a first document fingerprint, and a digital signature associated with the document certificate;(b) apply a first cryptographic hash function to the document certificate to produce a first document certificate fingerprint;(c) cryptographically verify the digital signature to produce a second document certificate fingerprint;and(d) indicate, when the first document certificate fingerprint matches the second document certificate fingerprint, that the first document fingerprint and the certification time associated with the document certificate are authentic.(e) apply a second cryptographic hash function to the electronic document to produce a second document fingerprint;(f) indicate, when the first document fingerprint matches the second document fingerprint, that the contents of the electronic document are authentic.