of December 9, 2015 No. 1187

About approval of Rules of check of authenticity of the electronic digital signature

(as amended of the Order of the Minister of information and communications of the Republic of Kazakhstan of 30.12.2016 No. 316)

According to the subitem 10) Item 1 of article 5 of the Law of the Republic of Kazakhstan of January 7, 2003 "About the electronic document and the electronic digital signature" PRIKAZYVAYU:

1. Approve the enclosed Rules of check of authenticity of the electronic digital signature.

2. To committee of communication, informatization and information of the Ministry for Investments and Development of the Republic of Kazakhstan (Kazangap T. B.) provide:

1) state registration of this order in the Ministry of Justice of the Republic of Kazakhstan;

2) within ten calendar days after state registration of this order in the Ministry of Justice of the Republic of Kazakhstan the direction it the copy in printing and electronic form on official publication in periodic printing editions and information system of law of Ad_let, and also in the Republican center of legal information for entering into reference control bank of regulatory legal acts of the Republic of Kazakhstan;

3) placement of this order on Internet resource of the Ministry for Investments and Development of the Republic of Kazakhstan and on the intranet portal of state bodies;

4) within ten working days after state registration of this order in the Ministry of Justice of the Republic of Kazakhstan submission to Legal department of the Ministry for Investments and Development of the Republic of Kazakhstan of data on execution of the actions provided by subitems 1), 2) and 3) of Item 2 of this order.

3. To impose control of execution of this order on the supervising vice-minister of investments and development of the Republic of Kazakhstan.

4. This order becomes effective from the date of its first official publication and extends to the legal relationship which arose since January 1, 2016.

Minister of investments and development of the Republic of Kazakhstan

A. Isekeshev

Approved by the Order of the Minister of investments and development of the Republic of Kazakhstan of December 9, 2015 No. 1187

Rules of check of authenticity of the electronic digital signature

Chapter 1. General provisions

1. These rules of check of authenticity of the electronic digital signature (further - Rules) are developed according to the subitem 10) of article 5 of the Law of the Republic of Kazakhstan of January 7, 2003 "About the electronic document and the electronic digital signature" (further - the Law) and determine procedure for test of authenticity of the electronic digital signature information system at stage of creation and functioning of information system.

2. In these rules the following concepts are applied:

1) means of cryptographic information protection (further - SKZI) the means realizing algorithms of cryptographic conversions, generation, forming, distribution or management of keys;

2) the list of the withdrawn registration certificates (further - SORS) the part of the register of registration certificates containing data on registration certificates which are terminated their serial numbers, date and the reason of recall (cancellations);

3) certification center - the legal entity certifying compliance of public key of the electronic digital signature to private key of the electronic digital signature, and also confirming reliability of the registration certificate;

4) the registration certificate - the paper document or the electronic document issued by the certification center for confirmation of conformity of the electronic digital signature to requirements established by the Law;

5) the electronic document - the document in which information is provided in electronic and digital form and is certified by means of the electronic digital signature;

6) the electronic digital signature (further - the EDS) - set of electronic digital characters created by means of the electronic digital signature and confirming reliability of the electronic document, its accessory and invariance of content;

7) means of the EDS - set of the program and technical means used for creation and check of authenticity of the electronic digital signature;

8) hash - array conversion of input data of arbitrary length to the bit party of the fixed length;

9) hash function - function of display of the sequence of bytes in the sequence of bytes of fixed size.

Chapter 2. Procedure for test of authenticity of the electronic digital signature

3. At stage of creation and functioning of information system, in case of receipt of the electronic document containing the registration certificate of the signing party in information system the functionality of check of authenticity of the EDS performing the following checks is implemented:

1) verification of the EDS in the electronic document.

2) verification of the registration certificate of the signing party;

4. The information system checks the EDS on the electronic document, by use of public key of the EDS which contains in the registration certificate of the signing party. The electronic document shall contain the registration certificate of the signing party.

5. Verification of the EDS is performed upside-down on which the signature of the document, according to the following scheme was made:

1) by means of public key of the EDS of the sender the message hash (the signature of the sender) will be decoded;

2) with the help the hash function is calculated the checksum of the original message.

At this stage the reconciliation of two checksums if they are equal, the EDS is considered correct (the positive result of verification of the EDS is determined) is made if are not equal, then the EDS is considered not valid (the negative result of verification of the EDS is determined).

6. The information system if the positive result of verification of the EDS is determined checks registration certificates of the signing party by accomplishment of the following checks with use of SKZI and means of the EDS of certification center:

1) check of effective period of the registration certificate. Check of effective periods from the checked registration certificate to the confidential root registration certificate of certification center, taking into account intermediate registration certificates of certification centers;

2) verification of the registration certificate on otozvannost (cancellation). Verification of the registration certificate on otozvannost (cancellation) is performed by one of the following methods:

on the basis of SORS of certification center. This method of check confirms whether the checked registration certificate at the time of the beginning of effective period of SORS of certification center is cancelled;

online the verification of the registration certificate on cancellation based on the On-line Certificate Status Protocol protocol (further - OCSP). This method of check confirms whether the checked registration certificate at the time of forming of the receipt OCSP is cancelled;


