ADSS Archive Server Features

Ease of Use

  • Long Term Archive Protocol (LTAP) and XMLERS

    This is the latest IETF specification for accessing a long-term archive using XML/SOAP web services standard interface, for archiving, exporting and deleting objects.  The evidence information for the archive objects is stored as defined by the IETF XML Evidence Record Syntax (XMLERS) specifications.

  • Reporting

    ADSS Archive Server provides detailed archive object and transaction logging, which can be easily searched and reported upon.

Security & Scalability

  • Scalability and Resilience

    ADSS Archive Server is built on a J2EE architecture and thus offers in-built resilience and scalability on single server. It is also designed to work across multiple load balanced servers so that high throughput and high availability configurations can be provided.

  • Strong Security

    Support for various hash and digital signature algorithms, e.g. RSA 2048 / 4096 together with either SHA-256 and SHA-512 secure hash algorithm are the expected norms. Detailed event and transaction log records that are HMAC protected with automatic and on demand integrity checking. Strong authentication of business applications with access controls to allow access to pre-defined profiles. Strong authentication of system administrators and operators with fine-grained access role-based access control to the product functionality. Email and SMS message alerting for reporting security events. Support for a wide variety of Hardware Security Modules (HSMs). An optional dual control capability that requires a separate security officer role holder to review and approve any configuration changes. screenshot

  • Flexibility

    ADSS Archive Server has been designed to provide a flexible, multi-policy, high security archive service. There are no transactional costs. ADSS Archive Server can be used to process any number of documents.  Documents can be passed to ADSS Archive Server in the request message from client applications or fetched by the server using a URL.  The evidence records produced can be either stored locally by ADSS Archive Server and/or returned to the client application.

  • Signature verification

    The ADSS Archive Server will optionally verify any digital signatures that exist on the target document prior to any archiving actions being taken.

  • Real-Time Alerts

    Configure emails and/or SMS alerts for specific events and send these to specific Server operators. SNMP alerting is also supported.

  • HSM

    Can work with all popular PKCS#11 HSMs, e.g. from SafeNet, nCipher/Thales and AET. Supports multiple PKCS#11 devices at the same time, including use of smartcards and USB tokens. Cryptographic keys can be grouped for purposes of high availability.

Signing & Archiving

  • Multiple Archive Profiles

    These profiles contain configuration data that defines the steps to perform before archiving the object, e.g. apply a notary signature, verify any existing signatures and gather evidential data, or add any meta-data concerning the archive process. Archive profiles also define the hashing and signing algorithms, document retention policy and how often the cryptographic security of the archived object should be refreshed. screenshot

  • Notary Signing and Archiving

    The ADSS Archive Server will digitally sign and timestamp the archived object and create an Evidence Record Syntax archive object.

Copyright © 2002-2011 Ascertia. All rights reserved.

Company | Privacy Statement | Contact Us

Ascertia is a global provider of Digital Signature products and solutions that enable trust within electronic workflows. Organisations can now safely cross the final hurdle in migrating old paper-intensive approval processes to the new secure digital world. Ascertia’s Digital Signing products are designed to be easy to integrate and use in a range of business scenarios.