Integrated Trusted SIC module for packaging documents, manifests, signatures, timestamps, certificate and revocation material, validation reports and preservation metadata into one governed dossier.

ASiC Signer & Evidence Packager
Portable evidence dossiers inside Trusted SIC

Package business documents, manifest, detached signatures, timestamps, certificate and revocation material, validation reports and preservation metadata into one governed electronic dossier.

WHY A CONTAINER

Separate the business document from the evolving cryptographic evidence.

ASiC supports dossier-centric preservation: the original business object can remain unchanged while classical, hybrid or PQC signatures and validation evidence are added, inspected and renewed under a versioned manifest.

DOC

Business objects

PDF, XML, structured records, attachments or code artifacts.

MAN

Manifest & metadata

Object identifiers, hashes, signer intent, transaction context and policy.

SIG

Detached signatures

Classical CAdES/CMS, project-approved PQC artifacts or both.

TSA

Trusted time

RFC 3161 timestamps, archive timestamps and renewal schedule.

VAL

Validation material

Certificate chain, OCSP/CRL, validation report and verifier facts.

LTA

Preservation evidence

Renewal records, evidence hashes and archive-ready export.

TRUSTED SIC FLOW

ASiC is the evidence carrier for the complete signing transaction.

01

RP submits dossier

Documents, hashes, metadata and requested signature policy.

02

Trusted SIC approval

Signer authenticates and approves the exact transaction.

03

Protected signature

Multi-CA signing core invokes HSM/QSCD/SAM.

04

ASiC packaging

Manifest and detached signatures are assembled.

05

Time & validation

TSA, chain, OCSP/CRL and validation report are added.

06

Verify & preserve

Portal inspection, evidence receipt and renewal policy.

SUPPORTED TRANSITION PATTERNS

Profiles with explicit verifier expectations

  • Classical detached signature plus PQC evidence object
  • Parallel classical and PQC signatures over one manifest
  • PQC-only profile for a governed closed ecosystem
  • Validation report that records each independent path
  • Archive timestamp renewal before algorithm or certificate degradation

PUBLICATION GATE

Required before production wording

  • Exact ASiC profile and container validation rules
  • Signature OIDs, parameter sets and provider versions
  • Viewer/verifier interoperability matrix
  • Negative and malformed-container test corpus
  • Timestamp, revocation and renewal evidence
  • Size, performance and archive-operation benchmark

RELATED PRODUCTS

ASiC is delivered through Trusted SIC with Certificate Fabric, TSA and Evidence Shield.