Skip to content

ETSI TS 119 432 v1.3.1 (2026-03) - Electronic Signatures and Infrastructures (ESI); Protocols for remote digital signature creation #68

Description

@IshaiO

Formal name

ETSI TS 119 432 v1.3.1 (2026-03) - Electronic Signatures and Infrastructures (ESI); Protocols for remote digital signature creation

Overview

The present document specifies protocols and interfaces applicable when the process of creating AdES digital signatures as defined by ETSI EN 319 102-1 and/or digital signature values, as result of Data To Be Signed Representations signatures, is carried out by a distributed solution comprised of two or more systems/services/components.
The present document is limited to remote server signing, i.e. the signing key is held in a remote shared service.
NOTE: Remote signature creation with local signing, i.e. the signing key is held with the signer's personal device but other steps in the signature creation are carried out by means of networked services, is a possible solution but protocols for such architecture are not covered in the present document.
Finally, the present document does not specify any mandatory binding.
As far as it has been possible and suitable, references to constructs of CSC API JSON specifications and OASIS DSS-X XML specifications are specified in the present document. When this has not been possible the present document specifies new components semantically and also syntactically.
The authorized signer's use of its key for signing requires users to provide multiple proofs of their claimed identity before being granted access to the needed set of resources. The present document considers some ways in which the user identity verification process and the user signatures authorization process can be carried out by the service provider.

Work Plan

Current Version

EC Assessment Status

  • The EC assessed v1.2.5 (2025-10) and v1.3.1 (2026-03), and identified gaps.

Forthcoming Version

Testing & Conformance

  • Work plan: The EC is developing test specification for this STS. Target Date is currently end of 2026-05.
  • Test Specification: (link pending)
  • Relevant information: Functional Conformance Assessment Framework
  • Notes:
    • Links to the test specifications and target dates will be updated in Q2-2026.
    • The test specification will refer to ETSI TS 119 432 v1.3.1.
    • This test relates to rQES: ETSI TS 119 431-1 & ETSI TS 119 432 & ETSI EN 319 142-1 (& CSC API v2.2 & CSC API DM)

Updates

  • 2026-07-07: ETSI will make the public review draft available for comments until 2026-07-30.
  • 2026-06-30: The EC updated the target date to 2026-07-31 and the target quarter to Q3 2026.
  • 2026-06-09: ETSI will address internal ETSI comments before making a stable draft available for public review.
  • 2026-05-21: ETSI published v0.0.1 which is an early draft of v1.4.1.
  • 2026-05-12: ETSI expects a stable draft for review in June 2026.
  • 2026-04-30: The EC expects the assessment of v1.3.1 to be completed by 2026-06-30 (Q2 2026).
  • 2026-04-06: The EC expects the assessment of v1.3.1 to be completed by 2026-04-30 (Q2 2026).
  • 2026-03-31: ETSI published v1.3.1.
  • 2026-03-17: ETSI informed that final draft registered by ETSI Secretariat. ETSI expects publication on 2026-04-02.
  • 2026-03-10: ETSI informed that the revision was approved to be v1.3.1, awaiting publication in 2026-03.
  • 2026-02-26: Target date set tentatively to 2026-03-31.
  • 2026-02-09: The draft v1.2.14 has reached a status of "final draft".
  • 2026-01-28: ETSI informed that the document has a few minor issues that ETSI intends to resolve. ETSI plans that the document will go forward for approval by the end of February 2026 and is planned for publication early March 2026.
  • 2025-12-19: ETSI: The approval process of ETSI for v1.3.1 did not succeed, as some gaps were identified in the standard. ETSI will complete this standard and aims for approval on early 2026-02, and publication at the end of 2026-02 or early 2026-03. The target date for v1.3.1 was updated to 2026-03-06.
  • 2025-12-17: The target date for v1.3.1 was updated to 2026-02-28.
  • 2025-12-09: Some comments were raised during the approval process. Revised text incorporating minor updates is aimed at re-approval on mid- January 2026 and publication on February 2026.
  • 2025-11-12: ETSI expects the first updated version in early December 2025 and the second version in early 2026, 2026 Q1.
  • 2025-11-11: ETSI announced that they had prepared a final draft - v1.2.7.
  • 2025-11-10: ETSI prepared v1.2.6 - a stable draft, based on the CSC specification, ready for approval. ETSI aims to complete approval by the end of November 2025 and to publish by early December 2025. An extended version addressing all requirements of Article 12 (1) of CIR (EU) 2024/2979 is aimed for publication on early 2026.
  • 2025-11-02: The EC expects an interim version by 205-11-30 and a complete final version by 2025-12-31.
  • 2025-10-28: The EC has completed the assessment of the v1.2.5 draft standard.
  • 2025-10-03: The EC expects approval and publication by end of October 2025.

Alerts

There are no open alerts.

References

None.

Metadata

Metadata

Assignees

No one assigned

    Labels

    Art 5a(23) ICFIntegrity & Core functionalities of EUDI WalletsCIR (EU) 2026/1731Amending CIR (EU) 2024/2977, (EU) 2024/2979, (EU) 2024/2980 and (EU) 2024/2982Cat: Protocols & InteroperabilityFunctional requirements defining common standards ensuring seamless cross-border interoperability.Cat: Relying PartiesFunctional requirements for relying parties on registration, auth, data requests, and handling.Cat: Wallet ProvidersFunctional requirements on core functions, security, UI, and lifecycle, managed by EUDIW Providers.Domain: Cross DomainCommon enablers shared across domains, such as cryptographic primitives, transport security, etc.Domain: Trust ServicesSTS underpinning trust infrastructure, including electronic signatures, timestamps, certificatesDomain: WalletCovers STSs specific to ARF and wallet operations such as credential formats, protocols, and APIsEssentialEssential to guarantee interoperability, issuance, presentation, and verification of a credentialFn: QESFunctional: Qualified Electronic Signature, both for the Wallet and TSPsFnRAn STS that specifies Functional RequirementsgapThis ticket is about a gap identified in our analysis and needs to be scheduledsts: needs follow upThe standard needs follow up due to a forthcoming updated versionsts: readyThe standard has a stable version publishedtest specificationSTS entry has linked functional conformance testing activities.

    Type

    No type

    Projects

    Status
    🏗 In progress

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions