Information Technology Act Section 30 — Certifying Authority to follow certain procedures

CHAPTER VI REGULATION OF CERTIFYING AUTHORITIES

Cyber Law

Summary

Sub-section (a) requires every Certifying Authority to use hardware, software, and procedures that are secure from intrusion and misuse.

Sub-section (b) requires the Certifying Authority to provide a reasonable level of reliability in its services, and these services must be reasonably suited to performing their intended functions.

Sub-section (c) requires the Certifying Authority to follow security procedures that ensure the secrecy and privacy of electronic signatures are assured.

Under clause (ca), the Certifying Authority must be the repository of all electronic signature Certificates issued under this Act.

Under clause (cb), the Certifying Authority must publish information about its practices, electronic signature Certificates, and the current status of such certificates.

Sub-section (d) requires the Certifying Authority to observe such other standards as may be specified by regulations.

Official Text

Every Certifying Authority shall,—

(a) make use of hardware, software and procedures that are secure from intrusion and misuse;

(b) provide a reasonable level of reliability in its services which are reasonably suited to the performance of intended functions;

(c) adhere to security procedures to ensure that the secrecy and privacy of the 1[electronic signatures] are assured; 3*** 4[

(ca) be the repository of all electronic signature Certificates issued under this Act;

(cb) publish information regarding its practices, electronic signature Certificates and current status of such certificates; and ]

(d) observe such other standards as may be specified by regulations.