Secure CommunicationSecure Time StampingNotarizationNon-repudiationConnection with Other ServicesNeed for a Secure Data ArchiveComplexity of This ServiceThe Human FactorPrivilege ManagementAuthentication and AuthorizationAuthorization AuthoritiesDelegationConnection with the PKIPrivacyMechanisms Required to Create PKI-Enabled ServicesDigital Signatures, Hashes, MACs, and CiphersTrusted Time SourcesPrivilege Policy Creation MechanismPrivilege Policy Processing EnginesPrivilege Management Infrastructure MechanismsPrivacy ArchitectureOperational ConsiderationsTrusted Time Delivery MechanismSecure ProtocolsServer RedundancyPhysically Secure Archive FacilitiesPrivacy Certificates and Identity MappingReal LifeComprehensive PKI and Current PracticeSummary