Slide 1

Slide 1 text

fast forward 1

Slide 2

Slide 2 text

2 Cloud Signature Chatbot Sign a document within a Telegram chat Emanuele Cisbani Technical Evangelist at Intesi Group [email protected] 9 March 2017

Slide 3

Slide 3 text

3 Cloud Signature: Step Into Digital Transformation Agility, efficiency, cost saving, great customer experiences: ● Get documents signed in minutes, not days ● Paper lifecycle cost saving ● Mobile & easy user experience, as expected by people today ● Legally valid and enforceable

Slide 4

Slide 4 text

4 eIDAS: Unified EU eSignature ● eIDAS is the base for the EU Digital Single Market ● eIDAS enforce pan-EU interoperability from 1st July 2016 ● The Qualified eSignature has the equivalent legal effect as a handwritten signature ● Regulation mean mandatory adoption for all member states ● Legitimizes cloud-based signatures by removing smartcard requirements

Slide 5

Slide 5 text

5 Authenticity & Integrity In The Digital Era In the digital world, it is easy to reproduce a message. The digital identity "bits" cannot be directly transmitted alongside the message itself. Whoever gets hold of these aspects may have the opportunity to act digitally on my behalf.

Slide 6

Slide 6 text

6 e-Identity: Cryptographic vs. Biometric Cryptographic identity is uniquely generated by cryptographic keys, which are securely stored inside a device. ● Provides a "native digital" identity without statistical errors ● Protects privacy ● Is based on portable devices (not necessarily connected to the network) ● Allows digital identity revocation Biometric devices use physiological or behavioral characteristics, as in the case of fingerprints, iris scans, calligraphy, voice and face recognition. The only advantage of biometric solutions is that you do not need to identify users in advance and they do not need to carry any particular personal device.

Slide 7

Slide 7 text

7 Cloud Signature Powered by Time4Mind ● Time4Mind is a platform of webAPI for Trust Services ● Time4Mind supports Advanced (AdES) and Qualified (QES) eSignatures in the EU’s eIDAS regulation. ● Time4Mind works with accredited certificate authorities (CAs) and qualified signature creation devices (QSCDs). Adobe Sign Valid Sign Signature Printer Driver Any legacy Application Signature Mail Gateway Cloud Signature Chatbot Time4Store

Slide 8

Slide 8 text

8 Cloud Signature Bot Telegram App Valid App Trust Services TELEGRAM Chat Services Cloud Signature BOT PkBox Chat Auth Sign Doc Chat User Cloud Application

Slide 9

Slide 9 text

9 Demo https://github.com/cisba/cloudsignaturebot [email protected]

Slide 10

Slide 10 text

10 Requirements ● Python3 >= 3.4.2 ● python libraries: ○ requests - RESTful client ○ Zeep - SOAP client ○ Flask - RESTful server ○ python-telegram-bot - Telegram Bot API wrapper ● PkBox server to process document signatures locally (envelops) ● Time4Mind ssl-client certificates to use webapi for strong authentication

Slide 11

Slide 11 text

11 Possible Improved Usage Scenarios ● Signature meeting: same document signed by two or more users in a group chat ● Signature of a set of documents in one shot ● Selection of certificates to use in case you have more than one suitable ● BP integration: start a signature process on other applications (i.e.: create a folder on Valid Sign)

Slide 12

Slide 12 text

12 Questions & Answers https://github.com/cisba/cloudsignaturebot [email protected]

Slide 13

Slide 13 text

www.intesigroup.com Thank you! Emanuele Cisbani - [email protected]