GB/T 35285-2017 in English
VALIDInformation security technology―Public key infrastructure―Technical requirements for digital certificate based reliable electronic signature creation and verification
- Issued on:2017-12-29
- Implemented on:2018-07-01
- File Format:PDF
- Delivery:Via email within 1~3 business days
$214.00
| Standard No: | GB/T 35285-2017 |
| Document status: | VALID |
| Title in English: | Information security technology―Public key infrastructure―Technical requirements for digital certificate based reliable electronic signature creation and verification |
| Title in Chinese: | 信息安全技术 公钥基础设施 基于数字证书的可靠电子签名生成及验证技术要求 |
| Language: | English |
| File Format: | Electronic (PDF) |
| Delivery: | Via email within 1~3 business days |
| Issued on: | 2017-12-29 |
| Implemented on: | 2018-07-01 |
| ICS Classification: | 35.040-Character sets and information coding |
| Chinese Classification: | L80-Data encryption |
| Professional Classification: | GB-National Standard |
| Related Topics: | Verify device technology
Biosafety certificate GBT35285 GB/T 35285-2017 public key infrastructure Information Technology Security Technology Public Key Infrastructure Certificate Management Protocol |
《GB/T 35285-2017信息安全技术 公钥基础设施 基于数字证书的可靠电子签名生成及验证技术要求》由TC260(全国网络安全标准化技术委员会)归口,主管部门为国家标准化管理委员会。
Introduction
GB/T 35285—2017 Standard Overview
This standard specifies in detail the technical requirements for reliable electronic signature generation and verification based on digital certificates, including core contents such as electronic certification service providers, electronic signatory identities, and electronic signature-related data. The following is a comparison table of the core framework of the standard:
| Dimensions | Standard Requirements | Technical Specifications |
|---|---|---|
| Electronic Certification Service Provider | Basic conditions, core services (certificate registration/generation/issuance/revocation) and auxiliary services (timestamp/online query) | Comply with the requirements of the national cryptography authorities to ensure the security and uniqueness of the certificate. |
| Electronic signatory identity | Effective identification, signature production data control and signatory file management | Multiple identification mechanisms based on knowledge or biometrics to ensure identity authenticity. |
| Electronic signature related data | Data composition to be signed, signature strategy and verification data acquisition requirements | Comply with GB/T 25064-2010 standard and support multiple signature formats (BES/ES-T/ES-C/ES-X). |
Implementation case analysis
For example, in the e-government scenario, government agencies, as electronic certification service providers, need to ensure that their certificate registration system can strictly verify the identity of applicants and protect sensitive information from being leaked. When promoting the electronic signature system, a certain city adopted the secure signature generation device (SSCD) based on the SM2 algorithm to achieve the integrity of the signer's file and the effectiveness of the signature strategy.

Loading PDF document...
Error loading PDF. Please make sure the file is valid and try again.
We also recommend
-

GB/T 45240-2025 in English
General requirements for device-independent quantum random number generators
2025-01-24 -

GB/T 15278-1994 in English
Information processing-Data encipherment-Physical layer interoperability requirements
1994-01-02 -

GB/T 22186-2016 in English
Information security techniques―Security technical requirements for IC card chip with CPU
2016-08-29 -

GB/T 20009-2019 in English
Information security technology—Security evaluation criteria for database management system
2019-08-30 -

GB/T 25056-2018 in English
Information security technology—Specifications of cryptograph and related security technology for certificate authentication system
2018-06-07 -

GB/Z 24294.1-2018 in English
Information security technology—Guide of implementation for internet-basede-government information security—Part 1:General
2018-03-15 -

GB/T 20518-2018 in English
Information security technology—Public key infrastructure—Digital certificate format
2018-06-07