Signature/seal creation devices come in many forms to protect the electronic signature/seal creation data (e.g. private key) of the signatory/creator of the seal, such as smartcards, SIM cards, USB sticks.
A qualified signature/seal creation device (QSCD), by following stricter requirements laid down in the UAE laws (see below), offers higher guarantees regarding the protection (e.g. mitigating any kind of replication or forgery) of the electronic signature/seal creation data (such as the private key) and brings therefore higher legal certainty regarding the created qualified electronic signatures/seals.
For example, a smartcard (e.g. ID card), when following specific requirements, can be seen as a QSCD as, in order to “unlock” the electronic signature creation data, the signatory shall physically possess the smartcard and know the associated PIN code.
A QSCD is not necessarily in the physical possession of the signatory/creator of the seal but can also be remotely managed by a qualified trust service provider (QTSP). This type of QSCD is known as “remote QSCD”. Those remote QSCD may offer an improved user experience while maintaining the legal certainty offered by qualified electronic signatures/seals.
The UAE legal framework for trust services requires QCSDs prior to be provided by QTSPs to signatories/creators of the seals to meet the requirements of the UAE laws and to be approved by TDRA.
The following list provides information (e.g. type of the device, name and versioning of the device, contact details about the vendor, certification details and certificate, and TDRA approval status) about the QSCDs approved by TDRA.
<INSERT LIST>
This information is provided by TDRA in accordance with the Cabinet Resolution No. (28) for 2023 on the Executive Regulations of Federal Law by Decree No. (46) of 2021 on Electronic Transactions and Trust Services and with the Resolution No (xx) for 2023 on the rules and conditions regulating the qualified signature creation devices resolution, their certification and approval, adopted pursuant to Article (21) of Federal Decree-Law No. (46) of 2021 on Electronic Transactions and Trust Services, and pursuant to Articles (26) and (27) of Federal Executive Regulation No. (28) of 2023.
Approval of QSCD by TDRA may be requested by means of the following forms <ADD LINK>.Device name: | nShield Connect 500+, nShield Connect 1500+, nShield Connect 6000+ (v11.72.03) |
Status | |
TDRA approval start date | 3/19/2024 |
TDRA approval expiration date (without prejudice of earlier revocation by TDRA) | 3/19/2029 Note: Approval duration is 5 years or until end of certification date whichever occurs first |
Notifying stakeholder / QTSP | eMudhra Limited, Sai Arcade, 3rd Floor, No.56, Outer Ring Road, Bangalore - 560103 (India) |
eMudhra DMCC | |
Trade name | eMudhra DMCC |
Postal address | Lake Plaza - 3006 Cluster T - Jumeirah Lake Towers - Dubai - United Arab Emirates |
Contact name | Scott Rea |
Contact position | ĚVP Strategy |
Contact email | scott.rea@emudhra.com |
Contact phone number | +971-52-847-5093 |
URL to body | https://emudhra.com/ |
Device manufacturer (sponsor): | nCipher Security Limited |
Device manufacturer (developer, if different): | - |
Certification Body | Organismo di Certificazione della Sicurezza Informatica (OCSI) - Italy |
Remote QSCD | Yes |
IMPORTANT NOTE: Device aimed to be managed on behalf of the user by a Qualified Trust Service Provider duly licensed and qualified in the UAE | |
Qualified Signature Creation Device (QSigCD) | Yes |
Certification Body reference | OCSI/ACC/THL/02/2017/RA |
Certification report & certificate location | Device Verification Report |
OCSI Certificate of Conformity List | |
Product Certification Report | |
Summary of Amendments | |
Certification starting date | 11/28/2019 |
Certification expiration date | - (up to revocation) |
Qualified Seal Creation Device (QSealCD) | Yes |
Certification Body reference | OCSI/ACC/THL/02/2017/RA |
Certification report & certificate location | Device Verification Report |
OCSI Certificate of Conformity List | |
Product Certification Report | |
Summary of Amendments | |
Certification starting date | 11/28/2019 |
Certification expiration date | - (up to revocation) |
Device name: | nShield Solo XC Hardware Security Module v12.60.15 |
Status | |
TDRA approval start date | xx-0x-2024 |
TDRA approval expiration date (without prejudice of earlier revocation by TDRA) |
6/10/2026 Note: Proposed duration when compliant with Bylaw is 5 years or end of certification date whichever occurs first for QSCD Type 1 devices that meet the Bylaw |
Notifying stakeholder / QTSP | Sovos Compliance, LLC |
Trade name | SOVOS |
Postal address | Office of Information Security, 200 Ballardvale Street, Building 1, 4th Floor, Wilmington, MA 01887, USA |
Contact name | Dilara İnal |
Contact position | Regulatory Counsel, Regulatory Analysis & Design at Sovos |
Contact email | Dilara.inal@sovos.com |
Contact phone number | +1-866-890-3970 |
URL to body | https://sovos.com/ |
Device manufacturer (sponsor): | Entrust, Minneapolis1187 Park Place, Shakopee, MN 55379, USA |
Device manufacturer (developer, if different): | nCipher Security Limited (an Entrust company), One Station Square, Cambridge CB1 2GA, UK |
Certification Body | TUV Rheinland Nederland B.V. (The Netherlands) |
Remote QSCD | no |
Qualified Signature Creation Device (QSigCD) | Yes |
Certification Body reference | NSCIB-CC-21-0368256 |
Certification report & certificate location | eIDAS Certificate |
Common Criteria (CC) Certificate | |
Certification Report | |
Assurance Continuity Maintenance Report | |
Certificates | |
Certification starting date | 6/10/2021 |
Certification expiration date | 6/10/2026 |
Qualified Seal Creation Device (QSealCD) | Yes |
Certification Body reference | NSCIB-CC-21-0368256 |
Certification report & certificate location | eIDAS Certificate |
Common Criteria (CC) Certificate | |
Certification Report | |
Assurance Continuity Maintenance Report | |
Certificates | |
Certification starting date | 6/10/2021 |
Certification expiration date | 6/10/2026 |
Device name: | STARCOS 3.7 eIDAS C2 |
Status | |
TDRA approval start date | 3/19/2024 |
TDRA approval expiration date (without prejudice of earlier revocation by TDRA) | 3/19/2029 |
Notifying stakeholder / QTSP | Palaxo International LTD. |
Circularo Mena FZE - DTEC Dubai Technology Entrepreneur Centre, Dubai Silicon Oasis, UAE License ID: 3163 VAT ID: 100600421000003 |
|
Trade name | CIRCULARO |
Postal address | |
Contact name | Josef Neumann |
Contact position | CEO |
Contact email | josef.neumann@circularo.com |
Contact phone number | +61 421 817 894 |
URL to body | https://www.circularo.com/ |
Device manufacturer (sponsor): | Giesecke+Devrient Mobile Security GmbH, Prinzregentenstraße 161, 81677 München, Germany |
Device manufacturer (developer, if different): | - |
Certification Body | SRC Security Research & Consulting GmbH (Germany) |
Remote QSCD | No |
Qualified Signature Creation Device (QSigCD) | Yes |
Certification Body reference | SRC.00057.QSCD.11.2022 |
Certification report & certificate location | SRC Certificate (de) |
SRC Certificate (en) |
|
Certification Report | |
Certification starting date | 11/25/2022 |
Certification expiration date | 12/31/2029 |
Qualified Seal Creation Device (QSealCD) | Yes |
Certification Body reference | SRC.00057.QSCD.11.2022 |
Certification report & certificate location | SRC Certificate (de) |
SRC Certificate (en) | |
Certification Report | |
Certification starting date | 11/25/2022 |
Certification expiration date | 12/31/2029 |
Device name: | Thales Luna K7 Cryptographic Module (firmware versions: 7.7.1 or 7.7.2) |
Status | |
TDRA approval start date | 3/19/2024 |
TDRA approval expiration date (without prejudice of earlier revocation by TDRA) | 7/20/2027 Note: Approval duration is 5 years or until end of certification date whichever occurs first |
Notifying stakeholder / QTSP | Dubai Electronic Security Center |
Trade name | DESC |
Postal address | P.O. Box 36996 |
Contact name | Mohamed Khalifa |
Contact position | Section Head of Digital Certificates |
Contact email | Mohammad.Khalifa@desc.gov.ae |
Contact phone number | +971556676976 |
URL to body | https://www.desc.gov.ae |
Device manufacturer (sponsor): | Thales DIS CPL Canada Inc. (formerly Gemalto Canada Inc.), 20 Colonnade Road, Suite 200 Ottawa, Ontario K2E 7M6, Canada |
Device manufacturer (developer, if different): | - |
Certification Body | TUV Rheinland Nederland B.V. |
Remote QSCD | no |
Qualified Signature Creation Device (QSigCD) | Yes |
Certification Body reference | CC-22-195307-eIDAS |
Certification report & certificate location | eIADS Certificate |
Common Criteria (CC) Certificate | |
Certification Report | |
Assurance Continuity Maintenance Report | |
Certificates | |
Certification starting date | 2/27/2022 |
Certification expiration date | 7/20/2027 (date from certification body) |
Qualified Seal Creation Device (QSealCD) | Yes |
Certification Body reference | CC-22-195307-eIDAS |
Certification report & certificate location | eIADS Certificate |
Common Criteria (CC) Certificate | |
Certification Report | |
Assurance Continuity Maintenance Report | |
Certificates | |
Certification starting date | 2/27/2022 |
Certification expiration date | 7/20/2027 (date from certification body) |
Device name: | Thales Luna K7 Cryptographic Module (firmware versions: 7.7.0) |
Status | |
TDRA approval start date | 3/19/2024 |
TDRA approval expiration date (without prejudice of earlier revocation by TDRA) | 7/20/2027 Note: Approval duration is 5 years or until end of certification date whichever occurs first |
Notifying stakeholder / QTSP | Dubai Electronic Security Center |
Trade name | DESC |
Postal address | P.O. Box 36996 |
Contact name | Mohamed Khalifa |
Contact position | Section Head of Digital Certificates |
Contact email | Mohammad.Khalifa@desc.gov.ae |
Contact phone number | +971556676976 |
URL to body | https://www.desc.gov.ae |
Notifying stakeholder / QTSP | Lleida Information Technology Network Services LLC |
Trade name | Lleida.net |
Postal address | 2 Sheikh Zayed Road Burj Al Salam, 25th Floor Office 17, P.O. BOX 73690 Dubai |
Contact name | Eva Pané Vidal |
Contact position | Compliance Chief Officer |
Contact email | compliance@lleida.net |
Contact phone number | +971 4 043116549 |
URL to body | https://www.lleida.net |
Device manufacturer (sponsor): | Thales DIS CPL Canada Inc. (formerly Gemalto Canada Inc.), 20 Colonnade Road, Suite 200 Ottawa, Ontario K2E 7M6, Canada |
Device manufacturer (developer, if different): | - |
Certification Body | TUV Rheinland Nederland B.V. |
Remote QSCD | no |
Qualified Signature Creation Device (QSigCD) | Yes |
Certification Body reference | CC-20-195307-eIDAS; CC-22-195307-eIDAS |
Certification report & certificate location | eIADS Certificate |
eIADS Certificate | |
Common Criteria (CC) Certificate | |
Certification Report | |
Common Criteria (CC) Certificate | |
Certification Report | |
Assurance Continuity Maintenance Report | |
Certificates | |
Certification starting date | 10/6/2020 |
Certification expiration date | 7/20/2027 (date from certification body) |
Qualified Seal Creation Device (QSealCD) | Yes |
Certification Body reference | CC-20-195307-eIDAS; CC-22-195307-eIDAS |
Certification report & certificate location | eIADS Certificate |
eIADS Certificate | |
Common Criteria (CC) Certificate | |
Certification Report | |
Common Criteria (CC) Certificate | |
Certification Report | |
Assurance Continuity Maintenance Report | |
Certificates | |
Certification starting date | 10/6/2020 |
Certification expiration date | 7/20/2027 (date from certification body) |
Device name: | SafeSign IC PKI applet en JCOP 4 P71 eIDAS QSCD v3.0.1.12 |
Status | |
TDRA approval start date | 3/19/2024 |
TDRA approval expiration date (without prejudice of earlier revocation by TDRA) | 4/20/2026 Note: Approval duration is 5 years or until end of certification date whichever occurs first |
Notifying stakeholder / QTSP | Lleida Information Technology Network Services LLC |
Trade name | Lleida.net |
Postal address | 2 Sheikh Zayed Road Burj Al Salam, 25th Floor Office 17, P.O. BOX 73690 Dubai |
Contact name | Eva Pané Vidal |
Contact position | Compliance Chief Officer |
Contact email | compliance@lleida.net |
Contact phone number | +971 4 043116549 |
URL to body | https://www.lleida.net |
Device manufacturer (sponsor): | A.E.T. Europe B.V., Ijsselburcht 3, 6825 BS Arnhem, The Netherlands |
Device manufacturer (developer, if different): | - |
Certification Body | TUV Rheinland Nederland B.V. |
Remote QSCD | no |
Qualified Signature Creation Device (QSigCD) | yes |
Certification Body reference | CC-21-0274076 |
Certification report & certificate location | https://www.tuv-nederland.nl/assets/files/cerfiticaten/2022/02/eidas-certificate-21-0274076-vs2.pdf |
https://www.tuv-nederland.nl/assets/files/cerfiticaten/2022/02/nscib-cc-0274076-cr-v2.pdf | |
https://www.tuv-nederland.nl/assets/files/cerfiticaten/2023/05/nscib-cc-0274076-ma-1.pdf | |
https://www.tuv-nederland.nl/common-criteria/certificates.html | |
Certification starting date | 4/20/2021 |
Certification expiration date | 4/20/2026 (date from certification body) |
Qualified Seal Creation Device (QSealCD) | yes |
Certification Body reference | CC-21-0274076 |
Certification report & certificate location | https://www.tuv-nederland.nl/assets/files/cerfiticaten/2022/02/eidas-certificate-21-0274076-vs2.pdf |
https://www.tuv-nederland.nl/assets/files/cerfiticaten/2022/02/nscib-cc-0274076-cr-v2.pdf | |
https://www.tuv-nederland.nl/assets/files/cerfiticaten/2023/05/nscib-cc-0274076-ma-1.pdf | |
https://www.tuv-nederland.nl/common-criteria/certificates.html | |
Certification starting date | 4/20/2021 |
Certification expiration date | 4/20/2026 (date from certification body) |
Device name: | nShield Connect 500, nShield Connect 500+, nShield Connect 1500, nShield Connect 1500+, nShield Connect 6000, nShield Connect 6000+ |
Status | |
TDRA approval start date | 3/19/2024 |
TDRA approval expiration date (without prejudice of earlier revocation by TDRA) | 3/19/2029 Note: Approval duration is 5 years or until end of certification date whichever occurs first |
Notifying stakeholder / QTSP | eMudhra Limited, Sai Arcade, 3rd Floor, No.56, Outer Ring Road, Bangalore - 560103 (India) |
eMudhra DMCC | |
Trade name | eMudhra DMCC |
Postal address | Lake Plaza - 3006 Cluster T - Jumeirah Lake Towers - Dubai - United Arab Emirates |
Contact name | Scott Rea |
Contact position | ĚVP Strategy |
Contact email | scott.rea@emudhra.com |
Contact phone number | +971-52-847-5093 |
URL to body | https://emudhra.com/ |
Device manufacturer (sponsor): | Thales e-Security Ltd. |
Device manufacturer (developer, if different): | - |
Certification Body | Organismo di Certificazione della Sicurezza Informatica (OCSI) - Italy |
Remote QSCD | Yes |
IMPORTANT NOTE: Device aimed to be managed on behalf of the user by a Qualified Trust Service Providerduly licensed and qualified in the UAE | |
Qualified Signature Creation Device (QSigCD) | Yes |
Certification Body reference | OCSI/ACC/THL/02/2017/RA |
Certification report & certificate location | Device Verification Report |
OCSI Certificate of Conformity List | |
Product Certification Report | |
Summary of Amendments | |
Certification starting date | 2/5/2018 |
Certification expiration date | - (up to revocation) |
Qualified Seal Creation Device (QSealCD) | Yes |
Certification Body reference | OCSI/ACC/THL/02/2017/RA |
Certification report & certificate location | https://www.ocsi.gov.it/documenti/accertamenti/thales/ac_rda_eidas_nshield_v1.0.pdf |
https://www.ocsi.gov.it/index.php/dispositivi-di-firma/dispositivi-accertati.html | |
https://www.ocsi.gov.it/documenti/certificazioni/thales/rc_thales_nshield_v1.0.pdf | |
https://www.ocsi.gov.it/documenti/certificazioni/thales/st_thales_nshield_v1.0_public.pdf | |
Certification starting date | 2/5/2018 |
Certification expiration date | - (up to revocation) |