B: Supported Standards and RFCsΒΆ

Standards support
Reference Feature
PDF Reference 1.7 (ISO 32000-1) . See also PDF for Archive (PDF/A) and PDF for Exchange (PDF/X). Representing signatures in the PDF language.
RFC 3280, Internet X.509v3 Public Key Infrastructure, Certificate and Certificate Revocation List (CRL) Profile. CRL revocation checking, chain building, path validation, cross certificates, multiple chains.
RFC 2560, X.509 Internet PKI Online Certificate Status Protocol-OCSP. OCSP revocation checking.
RFC 3161, Internet X.509 Public Key Infrastructure Time-Stamp Protocol Timestamping: signing and signature validation.
RFC 3281, Attribute Certificate Profile, S. Farrell, R. Housley April 2002. Attribute certificates.
RFC 2437, PKCS #1: RSA Cryptography Specifications Version 2.0 (1024, 2048, 4096). A format used for creating a digital signature object which is embedded in a document.
RFC 2898, PKCS #5: Password-Based Cryptography Specification Ver. 2.0. Password security.
RFC 2315, PKCS #7: Cryptographic Message Syntax, Version 1.5. A format used for creating a digital signature object which is embedded in a document.
PKCS #11: URI Scheme Cryptographic token interface (smart cards, tokens, etc.)
RFC 1321, The MD5 Message-Digest Algorithm Creating a document hash during signing.
RFC 3174, US Secure Hash Algorithm 1 (SHA1) Creating a document hash during signing. Deprecated with 11.0.
RFC 6234 US Secure Hash Algorithms (SHA and SHA-based HMAC and HKDF) Creating a document hash during signing.
FIPS PUB 186-2, Digital Signature Standard, describes DSA signatures. Digital signatures. Deprecated with 11.0.
FIPS PUB 186-3, Digital Signature Standard, describes DSA signatures. Digital signatures. 11.0 introduces support for 3 ECDSA named curves.
FIPS PUB 197, Advanced Encryption Standard (AES 128, 256). Certificate security.
ISIS-MTT Specification v.1.1 March 2004. Attribute certificates.
NIST PKITS “Public Key Interoperability Test Suite Certification Path Validation” Chain building and path validation, including cross certificates and multiple chains.
OIDS. ASN.1 Object identifiers (OIDs)
RFC 2396, Uniform Resource Identifiers (URI): Generic Syntax. All.
RFC 2595, Using TLS with IMAP, POP3 and ACAP. The PLAIN authentication mechanism used by the roaming ID feature.
RFC 3778, The application/pdf Media Type. Adobe Systems Incorporated. Describes PDF media type, digital signatures, and encryption.
ETSI 102 778 PDF Advanced Electronic Signatures (PAdES), Parts 1,2,3 and 4. Digital signature; especially LTV.
ETSI/ESI Technical Standard (TS) 102 778 Digital signatures.
JITC: Joint Interoperability Test Command PKI compliance test suite DoD-mandated PKI test suite. Compliant since 7.x. See http://blogs.adobe.com/security/tag/jitc.
Support for APIs, organizations, etc.
Item Description
MSCAPI Microsoft’s CryptoAPI
Keychain Macintosh’s CryptoAPI
Esign A U.S. law conformed to by Acrobat and EchoSign signatures.