Unless the context clearly requires otherwise, the terms used in this chapter have the meanings given them in this section.
"Accept a certificate" means either:
"Asymmetric cryptosystem" means an algorithm or series of algorithms that provide a secure key pair.
"Certificate" means a computer-based record that:
"Certification authority" means a person who issues a certificate.
"Certification authority disclosure record" means an online, publicly accessible electronic record that concerns a licensed certification authority and is kept by the secretary. A certification authority disclosure record has the contents specified by rule by the secretary under section 325K.03.
"Certification practice statement" means a declaration of the practices that a certification authority employs in issuing certificates generally, or employed in issuing a material certificate.
"Certify" means to declare with reference to a certificate, with ample opportunity to reflect, and with a duty to apprise oneself of all material facts.
"Confirm" means to ascertain through appropriate inquiry and investigation.
"Correspond," with reference to keys, means to belong to the same key pair.
"Digital signature" or "digitally signed" means a transformation of a message using an asymmetric cryptosystem such that a person having the initial message and the signer's public key can accurately determine:
"Financial institution" means a national or state-chartered commercial bank or trust company, savings bank, savings association, or credit union authorized to do business in the state of Minnesota and the deposits of which are federally insured.
"Forge a digital signature" means either:
"Hold a private key" means to be authorized to utilize a private key.
"Incorporate by reference" means to make one message a part of another message by identifying the message to be incorporated and expressing the intention that it be incorporated.
"Issue a certificate" means the acts of a certification authority in creating a certificate and notifying the subscriber listed in the certificate of the contents of the certificate.
"Key pair" means a private key and its corresponding public key in an asymmetric cryptosystem, keys which have the property that the public key can verify a digital signature that the private key creates.
"Licensed certification authority" means a certification authority to whom a license has been issued by the secretary and whose license is in effect, or a certification authority who operates under a license issued by a governmental entity which has been certified pursuant to section 325K.05, subdivision 5.
"Message" means a digital representation of information.
"Notify" means to communicate a fact to another person in a manner reasonably likely under the circumstances to impart knowledge of the information to the other person.
"Operative personnel" means one or more natural persons acting as a certification authority or its agent, or in the employment of, or under contract with, a certification authority, and who have duties directly involving the issuance of certificates, creation of private keys, or administration of a certification authority's computing facilities.
"Person" means a human being or an organization capable of signing a document, either legally or as a matter of fact.
"Private key" means the key of a key pair used to create a digital signature.
"Public key" means the key of a key pair used to verify a digital signature.
"Publish" means to record or file in a repository.
"Qualified right to payment" means an award of damages against a licensed certification authority by a court having jurisdiction over the certification authority in a civil action for violation of this chapter.
"Recipient" means a person who has received a certificate and a digital signature verifiable with reference to a public key listed in the certificate and is in a position to rely on it.
"Recognized repository" means a repository recognized by the secretary under section 325K.25.
"Recommended reliance limit" means the monetary amount recommended for reliance on a certificate under section 325K.17.
"Repository" means a system for storing and retrieving certificates and other information relevant to digital signatures.
"Revoke a certificate" means to make a certificate ineffective permanently from a specified time forward. Revocation is effected by notation or inclusion in a set of revoked certificates, and does not imply that a revoked certificate is destroyed or made illegible.
"Rightfully hold a private key" means the authority to utilize a private key:
"Secretary" means the Minnesota secretary of state.
"Subscriber" means a person who:
If the suitable guaranty is a surety bond, it must be issued by a surety authorized by the commissioner of commerce to do business in this state. If the suitable guaranty is an irrevocable letter of credit, it must be issued by a financial institution authorized to do business in this state. If the suitable guaranty is a policy of insurance, it must be issued by an insurance company authorized by the commissioner of commerce to do business in this state.
Once a qualified right to payment or claim has been satisfied from the suitable guaranty, the licensed certification authority must provide evidence to the secretary that the amount required by rule is again available.
"Summary suspension" means a temporary rescission of a certification authority's license by order of the secretary. The secretary may order the summary suspension of a license before holding a hearing. The summary suspension is effective for up to five business days. If an action for suspension or revocation is instituted within five business days, the summary suspension is extended until the action for suspension or revocation is ultimately determined.
"Suspend a certificate" means to make a certificate ineffective temporarily for a specified time forward.
"Time stamp" means either:
"Transactional certificate" means a valid certificate incorporating by reference one or more of the digital signatures.
"Trustworthy system" means computer hardware and software that:
"Valid certificate" means a certificate that:
However, a transactional certificate is a valid certificate only in relation to the digital signature incorporated in it by reference.
"Verify a digital signature" means, in relation to a given digital signature, message, and public key, to determine accurately that:
Minn. Stat. § 325K.01
1997 c 178 s 2; 1998 c 321 s 1-8