Juan Carlos Cruellas
Polytechnic University of Catalonia
Network
Latest external collaboration on country level. Dive into details by clicking on the dots.
Publication
Featured researches published by Juan Carlos Cruellas.
IEEE Internet Computing | 2006
Nick Pope; Juan Carlos Cruellas
Implementing digital signatures on an individual basis presents many challenges, particularly with regard to key management and maintenance. The digital signature services standard eliminates the need to distribute user keys or signing devices across an organization. Instead, it facilitates the use of networked servers to create and verify signatures. The protocols flexibility makes it suitable for applications from simple time-stamping to advanced forms of signatures with full legal recognition
Innovations in Systems and Software Engineering | 2012
Juan Carlos Cruellas; Andrea Caccia; Konrad Lanz; Giulana Marzola; Luigi Rizzo; Laurent Velez
This paper provides background information on the strategy of ETSI regarding the production of an integral package of tools for accelerating the production of Interoperable Electronic Signatures across Europe, provides hints on how its different components will fit within the new rationalized framework of European Standards on Electronic Signatures, and finally outlines the main achievements of the ETSI STF-428 project (“Quick fixes to testing of electronic signatures standards“).
Archive | 2011
Juan Carlos Cruellas; Jörg Apitzsch; Luca Boldrin; Andrea Caccia; Santino Foti; Paloma LLaneza; Gregory Sun
This paper outlines the main achievements of the ETSI STF-402 in the area of Registered Electronic Mail (REM henceforth), related to the provision of means for achieving interoperability between solutions that make use of S/MIME for structuring messages and SMTP as transport and some identified solutions using SOAP on HTTP respectively for the same purposes.
Innovations in Systems and Software Engineering | 2006
Nick Pope; Juan Carlos Cruellas
Deploying support for digital signatures can be a major headache for any organisation. In many cases signatures are created on behalf of an organisation but may be applied by a constantly changing authorised group of personnel. The need to manage the allocation and certification of the multitude of user keys can be particularly burdensome and difficult to secure. This paper presents an alternative approach to the digital signing, which significantly reduces these headaches, being supported by a number of companies and standardised by OASIS. The OASIS “Digital Signature Services” (DSS) standard specifies the use of a specialised server for the creation and verification of signatures under control of remote clients. Instead of keys having to be held and managed individually, OASIS DSS enables keys and other aspects of the signing service to be managed centrally on a networked server. The OASIS DSS protocol supports a range of signature formats including XML and CMS. It is designed around a basic “Core” set of elements and procedures which can be profiled to support specific uses such as time-stamping (including XML structured timestamps), corporate entity seals, electronic post marks and code signing.
international conference on information and communication security | 1999
Montse Rubia; Juan Carlos Cruellas; Manuel Medina
This paper introduces the barriers of interoperability that exist between the X.509 and EDIFACT Public Key Infrastructures (PKI), and proposes a solution to remove them. The solution goes through the DEDICA (Directory based EDI Certificate Access and management) Project. The main objective of this project is to define and to provide the means to make these two infrastructures inter-operable without increasing the amount of information to be managed by them. The proposed solution is a gateway tool interconnecting both PKIs. The main goal of this gateway is to act as a TTP that “translates” certificates issued by one PKI to the other’s format, and then signs the translation to make it a new certificate. The gateway will, in fact, act as a proxy Certification Authority (CA) of the CAs of the other PKI, and will take the responsibility of the certified data authenticity, on the behalf of the original CA.
database and expert systems applications | 1998
Montse Rubia; Juan Carlos Cruellas; Manuel Medina; Isabel Gallego
This paper shows a successful system to translate security objects from one encoding schema to another. The problem is similar to the translation of official documents from one language to other: we need an official translator, with recognised right to certify, that the information s/he is giving on the translation corresponds exactly with the information contained in the original document. This function can only be given by a TTP (Trusted Third Party). This TTP has to be able to check the validity and authenticity of all the data included in the original document, and translate it to the other environment, signing the translation, to certify, not only the authenticity of the data, but also the signatory of the original document. Since this particular TTP is connecting users and applications of two different environments, we have defined it as a gateway, and this paper describes with detail its architecture and functional requirements. To be more precise, the general architecture of this kind of TTP has been particularised to the case of X.509 and EDIFACT PKI, and the details of the internal modules of the gateway in this particular implementation are also given.
Proceedings of the IFIP TC6/WG6.5 International Conference on Upper Layer Protocols, Architectures and Applications | 1994
Francisco Jordan; Manuel Medina; Juan Carlos Cruellas; Isabel Gallego
public key cryptography | 1999
Montse Rubia; Juan Carlos Cruellas; Manuel Medina
Lecture Notes in Computer Science | 1999
Montse Rubia; Juan Carlos Cruellas; Manuel Medina
Bayreuth Reports on Information Systems Management | 2007
Oscar Ardaiz; Michele Catalano; Pablo Chacin; Isaac Chao; Juan Carlos Cruellas; Felix Freitag; Manuel Medina; Leandro Navarro; Miguel Valero; Liviu Joita; Omer Farooq Rana; Björn Schnizler; Torsten Eymann