Difference between revisions of "Time-Stamp Protocol"
Jump to navigation
Jump to search
(Created page with " =Démonstration= Voir Time Stamp Authority https://freetsa.org/index_en.php#online <pre> ########################################################### # 1. create a tsq fi...") |
|||
Line 1: | Line 1: | ||
+ | |||
+ | |||
+ | |||
=Démonstration= |
=Démonstration= |
||
+ | |||
+ | ==LibreOffice== |
||
+ | |||
+ | Voir https://freetsa.org/guide/libreoffice-time-stamping.html |
||
+ | |||
+ | ==FreeTSA== |
||
Voir Time Stamp Authority https://freetsa.org/index_en.php#online |
Voir Time Stamp Authority https://freetsa.org/index_en.php#online |
||
Line 54: | Line 63: | ||
# Verification: OK |
# Verification: OK |
||
</pre> |
</pre> |
||
+ | |||
+ | ==Java== |
||
+ | * https://techblog.bozho.net/using-trusted-timestamping-java/ |
||
+ | * https://gist.github.com/Glamdring/c452531e97073a9ab259b987b62bbd77 |
Revision as of 11:01, 26 December 2018
Démonstration
LibreOffice
Voir https://freetsa.org/guide/libreoffice-time-stamping.html
FreeTSA
Voir Time Stamp Authority https://freetsa.org/index_en.php#online
########################################################### # 1. create a tsq file (SHA 512) ########################################################### openssl ts -query -data file.png -no_nonce -sha512 -out file.tsq # Option -cert: FreeTSA is expected to include its signing certificate in the response. (Optional) # If the tsq was created with the option "-cert", its verification does not require "-untrusted". #$ openssl ts -query -data file.png -no_nonce -sha512 -cert -out file.tsq # How to make Timestamps of many files? # To timestamp multiple files, create a text file with all their SHA-512 hashes and timestamp it. # Alternatively, you may pack all the files to be timestamped in a zip/rar/img/tar, etc file and timestamp it. # Generate a text file with all the hashes of the /var/log/ files $ find /var/log/ -type f -exec sha512sum {} + > compilation.txt ########################################################### # 2. cURL Time Stamp Request Input (HTTP / HTTPS) ########################################################### # HTTP 2.0 in cURL: Get the latest cURL release and use this command: curl --http2. curl -H "Content-Type: application/timestamp-query" --data-binary '@file.tsq' https://freetsa.org/tsr > file.tsr # Using the Tor-network. #$ curl -k --socks5-hostname 127.0.0.1:9050 -H "Content-Type: application/timestamp-query" --data-binary '@file.tsq' https://th3ccojidpgbgv5d.onion/tsr > file.tsr # tsget is very useful to stamp multiple time-stamp-queries: https://www.openssl.org/docs/manmaster/apps/tsget.html #$ tsget -h https://freetsa.org/tsr file1.tsq file2.tsq file3.tsq ########################################################### # 3. Verify tsg file ########################################################### wget https://freetsa.org/files/tsa.crt wget https://freetsa.org/files/cacert.pem # Timestamp Information. openssl ts -reply -in file.tsr -text # Verify (two diferent ways). # openssl ts -verify -data file -in file.tsr -CAfile cacert.pem -untrusted tsa.crt openssl ts -verify -in file.tsr -queryfile file.tsq -CAfile cacert.pem -untrusted tsa.crt # Verification: OK