Timestamp Validation (Optional)
Objective:
Validate the timestamps associated with digital signatures to ensure their reliability and time synchronization.
Guidelines:
- Use a trusted Time Stamping Authority (TSA) to provide accurate and synchronized timestamps for digital signatures.
- The use of a centralized timestamp is mandatory. RISA-GovCA provides a centralized TSA system.
By following these guidelines, developers can ensure that their PKI service integration meets the required standards for security and reliability. Implementing these practices should be a fundamental part of the development process to ensure compliance with industry standards. Before deploying the PKI services, developers must contact RISA at pki@risa.gov.rw . RISA will then perform the PKI service integration assessment.