Copyright © TIBCO Software Inc. All Rights Reserved
Copyright © TIBCO Software Inc. All Rights Reserved


Chapter 8 Security : Non-Repudiation

Non-Repudiation
Non-repudiation is a technical solution to a legal issue: it prevents trading partners from falsely denying having participated in a communication or denying the validity of the communication or its parts.
For example, a non-repudiation protocol for a digital, certified document should ensure that the sender cannot deny sending the message and the receiver cannot deny receiving it. A public key digital signature can provide non-repudiation of electronic transactions if it can be guaranteed that the digital signature was created when the public key credentials were valid.
TIBCO BusinessConnect implements Public Key Infrastructure (PKI) to support non-repudiation for document exchange. This approach to non-repudiation uses public key signatures to provide authentication.
TIBCO BusinessConnect uses digital signatures, authentication, and logging to support the following non-repudiation scenarios:
Non-Repudiation Logging Scenarios in TIBCO BusinessConnect
After the inbound message is validated, the Responder logs the signed original request in its non-repudiation database because non-repudiation of request is selected in the Responder’s trading partner setup for that Initiator. Non-repudiation for inbound transactions can be enabled in the trading partner setup.
Non-Repudiation of Origin
For more information, see the chapter on Acknowledgments in TIBCO BusinessConnect EDI Protocol powered by Instream User’s Guide.
Non-Repudiation Logging of Acknowledgments on Responder
1.
2.
3.
4.
5.
Non-Repudiation Logging of Acknowledgments on Initiator
1.
2.
3.
4.
Non-Repudiation of Receipt for AS1/AS2 Transport
Non-Repudiation Logging on Initiator
1.
2.
3.
4.
5.
6.
Non-Repudiation Logging on Responder
1.
2.
3.
4.
 

Copyright © TIBCO Software Inc. All Rights Reserved
Copyright © TIBCO Software Inc. All Rights Reserved