Subject: Re: How to verify PKCS#7 signature and timestamp present in PDF 2007-10-08 - By Gurpreet Singh
Back One more point....
My certificate and private key shows the singature algorithm as SHA1withRSA and the providew is also not BC. So, how i can instatiate the PdfPKCS7 object while signing the pdf. any updates needs to be done or extra steps needs to be followd to create the correct instance of PdfPKCS7 classs while sigining the pdf. May be because of this my verification is failing.
Curently while signing the PDF i am using the followign line of code:
PdfPKCS7 sgn = new PdfPKCS7(privateKey, certChain, null, "SHA-1 (See http://SHA-1.ora-code.com)", "HSMDevice JCA Provider name", true); when i m passing the SHA1withRSa instead of SHA-1 (See http://SHA-1.ora-code.com) its failing. So, please let me know the right thing to be able to pass here as SHA1 with RSA.
thanks Gurpreet Singh
On 10/8/07, Gurpreet Singh <igurpreet.singh@(protected)> wrote: > > Hi, > > Thanks for your help. Link is really helpful to know about the steps to > verify. But i have to do the same steps using Java. Anyways, I will try this > link also to verify the signed PDF. > > i m using luna device and what software i need to install on solaris box > to run your shell script to verify the certified pdf. > > thanks > Gurpreet Singh > > > On 10/8/07, antonio <aiacono@(protected)> wrote: > > > > Alle 21:10, luned? 08 ottobre 2007, Gurpreet Singh ha scritto: > > > Hi, > > > > > > I have certified the PDF and embedded the digital signature with > > timestamp > > > using iText and Bouncy Castle API's. Can anybody tells me that how to > > > verify the PKCS#7 digital signature, certificate chain and timestamp > > > present in the PDF? > > > > Hi Gurpreet, > > > > look here > > > > http://homes.esat.kuleuven.be/~decockd/wiki/bin/view.cgi/HowTos /SignatureVerification > > > > -- > > Antonio > > http://www.blia.it > > > > > > -- ---- ---- ---- ---- ---- ---- ---- ---- ---- ---- ---- ---- ---- ----- > > This SF.net email is sponsored by: Splunk Inc. > > Still grepping through log files to find problems? Stop. > > Now Search log events and configuration files using AJAX and a browser. > > Download your FREE copy of Splunk now >> http://get.splunk.com/ > > __ ____ ____ ____ ____ ____ ____ ____ ____ ____ > > iText-questions mailing list > > iText-questions@(protected) > > https://lists.sourceforge.net/lists/listinfo/itext-questions > > Buy the iText book: http://itext.ugent.be/itext-in-action/ > > > >
<div>One more point....</div> <div> </div> <div>My certificate and private key shows the singature algorithm as SHA1withRSA and the providew is also not BC. So, how i can instatiate the PdfPKCS7 object while signing the pdf. any updates needs to be done or extra steps needs to be followd to create the correct instance of PdfPKCS7 classs while sigining the pdf. May be because of this my verification is failing . </div> <div> </div> <div>Curently while signing the PDF i am using the followign line of code:</div> <div><font size="4"> <p>PdfPKCS7 sgn = new PdfPKCS7(privateKey, certChain, null, "SHA-1 (See http://SHA-1.ora-code.com)", "HSMDevice JCA Provider name", true);</p></font></div> <div>when i m passing the SHA1withRSa instead of SHA-1 (See http://SHA-1.ora-code.com) its failing. So, please let me know the right thing to be able to pass here as SHA1 with RSA.</div> <div> </div> <div>thanks</div> <div>Gurpreet Singh<br><br> </div> <div><span class="gmail_quote">On 10/8/07, <b class="gmail_sendername">Gurpreet Singh</b> <<a href="mailto:igurpreet.singh@(protected)">igurpreet.singh@(protected) .com</a>> wrote:</span> <blockquote class="gmail_quote" style="PADDING-LEFT: 1ex; MARGIN: 0px 0px 0px 0 .8ex; BORDER-LEFT: #ccc 1px solid"> <div>Hi,</div> <div> </div> <div>Thanks for your help. Link is really helpful to know about the steps to verify. But i have to do the same steps using Java. Anyways, I will try this link also to verify the signed PDF. </div> <div> </div> <div>i m using luna device and what software i need to install on solaris box to run your shell script to verify the certified pdf.</div> <div> </div> <div>thanks</div><span class="sg"> <div>Gurpreet Singh<br><br> </div></span> <div><span class="e" id="q_1158147e3d39603f_2"> <div><span class="gmail_quote">On 10/8/07, <b class="gmail_sendername">antonio< /b> <<a onclick="return top.js.OpenExtLink(window,event,this)" href="mailto :aiacono@(protected)" target="_blank">aiacono@(protected)</a>> wrote: </span> <blockquote class="gmail_quote" style="PADDING-LEFT: 1ex; MARGIN: 0px 0px 0px 0 .8ex; BORDER-LEFT: #ccc 1px solid">Alle 21:10, luned? 08 ottobre 2007, Gurpreet Singh ha scritto:<br>> Hi,<br>><br>> I have certified the PDF and embedded the digital signature with timestamp <br>> using iText and Bouncy Castle API's. Can anybody tells me that how to<br>> verify the PKCS#7 digital signature, certificate chain and timestamp <br>> present in the PDF?<br><br>Hi Gurpreet,<br><br>look here <br><a onclick="return top.js.OpenExtLink(window,event,this)" href="http:/ /homes.esat.kuleuven.be/~decockd/wiki/bin/view.cgi/HowTos/SignatureVerification" target="_blank">http://homes.esat.kuleuven.be/~decockd/wiki/bin/view.cgi/HowTos /SignatureVerification </a><br><br>--<br>Antonio<br><a onclick="return top.js.OpenExtLink(window,event ,this)" href="http://www.blia.it/" target="_blank">http://www.blia.it</a><br><br >-- ---- ---- ---- ---- ---- ---- ---- ---- ---- ---- ---- ---- ---- ----- <br>This SF.net email is sponsored by: Splunk Inc.<br>Still grepping through log files to find problems? Stop.<br>Now Search log events and configuration files using AJAX and a browser. <br>Download your FREE copy of Splunk now >> <a onclick="return top.js.OpenExtLink(window,event,this)" href="http://get .splunk.com/" target="_blank">http://get.splunk.com/</a><br>__ ____ ____ ____ __ __ ____ ____ ____ ____ ____<br>iText-questions mailing list<br><a onclick= "return top.js.OpenExtLink(window,event,this)" href="mailto:iText-questions @(protected)" target="_blank"> iText-questions@(protected)</a><br><a onclick="return top.js .OpenExtLink(window,event,this)" href="https://lists.sourceforge.net/lists /listinfo/itext-questions" target="_blank">https://lists.sourceforge.net/lists /listinfo/itext-questions </a><br>Buy the iText book: <a onclick="return top.js.OpenExtLink(window,event ,this)" href="http://itext.ugent.be/itext-in-action/" target="_blank">http:/ /itext.ugent.be/itext-in-action/</a><br></blockquote></div><br></span> </div></blockquote></div><br><br clear="all">
-- ---- ---- ---- ---- ---- ---- ---- ---- ---- ---- ---- ---- ---- ----- This SF.net email is sponsored by: Splunk Inc. Still grepping through log files to find problems? Stop. Now Search log events and configuration files using AJAX and a browser. Download your FREE copy of Splunk now >> http://get.splunk.com/ __ ____ ____ ____ ____ ____ ____ ____ ____ ____ iText-questions mailing list iText-questions@(protected) https://lists.sourceforge.net/lists/listinfo/itext-questions Buy the iText book: http://itext.ugent.be/itext-in-action/
|
|