...
The ability for anyone to sign
Jürgen: one-time signature with OTP (i.e enter code sent via SMS) - weaker security
Jürgen: signature with hardware device (smart card, phone etc) - stronger security
Use ID BB to authorize and sign a document.
Jürgen: ID BB is probably good for cloud platforms (i.e signing portals)
Jürgen: Should be possible to sign with standalone app, without ID BB
Auditability
Validatable
Revoke certificate.
Jürgen: Is it meant to be revoke certificates? Revoking signatures I think very hard to do.
Highly secure.
Preservation of esignature
Jürgen: Non-Repudiation
Jürgen: Lawful/qualified e-signatures (i.e made equal to handwritten signatures by law)
...
Has an ekyc or authentication service.
Jürgen: Registration/KYC should be possible to be performed online or face to face
Jürgen: Should be possible to performed via phone call/SMS
Bulk signing is out of scope.
Collaboration in the signature is limited by the type of the document and the support of the document.
Jürgen: There should be levels of how strongly KYS KYC is done /and how good is the signature creation device
Challenges:
Central service vs Distributed model
What if there is no eKyc/auth available?
Phone-based signature?
...