i.e. are there sources of temporal truth which can not be mocked and imitated, such that so long as you have their public key, you can ping them for the time and confirm that the timestamp they sent you was signed by them?
i.e. are there sources of temporal truth which can not be mocked and imitated, such that so long as you have their public key, you can ping them for the time and confirm that the timestamp they sent you was signed by them?
It's used extensively in code signing and document signing. If a code signed file has a signed timestamp, it will continue to be treated as valid after expiration so long as the CA doesn't mark your certificate for lifetime signing (really only StartCom Class 2).
If you open Adobe Reader, you can sign PDF files. Just click the second tab on the right, Certificates and then Timestamp. You can use http://timestamp.digicert.com/ as the TSA (time stamping authority) for free.
[0] http://www.ntp.org/ntpfaq/NTP-s-algo-crypt.htm
[1] http://en.m.wikipedia.org/wiki/Network_Time_Protocol#Securit...