Present situation - DRAFT Emile Bartolé CEN/WS XBRL: Improving transparency in financial and business reporting CWA2 Situation & latest evolutions 1CWA2.

Slides:



Advertisements
Similar presentations
13 September 2012 SDMX Technical Working Group1 Report of the SDMX Technical Standards Working Group SDMX Expert Group Meeting, Paris, September 2012.
Advertisements

Implementation of a Validated Statistical Computing Environment Presented by Jeff Schumack, Associate Director – Drug Development Information September.
Secure Naming structure and p2p application interaction IETF - PPSP WG July 2010 Christian Dannewitz, Teemu Rautio and Ove Strandberg.
Monolithic vs modular: decision required Modular –Advantage: ease of definition of a « national to be delivered dataset » (by selecting required instances)
Present situation Emile Bartolé CEN/WS XBRL: Improving transparency in financial and business reporting CWA2 Situation & latest evolutions 1CWA2.
26 September 2012 Katrin Heinze CEN/WS XBRL Kick-off meeting CWA1 deliverables 1CWA1.
26 September 2012 Emile Bartolé CEN/WS XBRL Kick-off meeting CWA2 deliverable - DRAFT 1CWA2.
26 September 2012 Aitor Azcoaga CEN/WS XBRL Kick-off meeting CWA3 Standardized roll-out package 1CWA3.
CWA3 Standardized roll-out package
Reducing administrative burden in Bulgaria: Single Entry Point for Reporting Fiscal and Statistical Information Dr.Mariana Kotzeva President of National.
cetis SWNI: Implementation & Testing By Scott Wilson, CETIS.
February Harvesting RDF metadata Building digital library portals with harvested metadata workshop EU-DL All Projects concertation meeting DELOS.
Research and Innovation Participant Portal Concept for electronic-only grant management in Horizon 2020 Peter HÄRTWICH
Grants 3.0 Departmental Administrator Review January 22, 2014.
12 December 2012 Emile Bartolé, CSSF LU CEN/WS XBRL CWA2Page 1 CWA2: Metadata container to wrap a submitted XBRL instance document and compliance test.
ICIS-NPDES Plugin Design Preview Webinar ICIS-NPDES Full Batch OpenNode2 Plugin Project Presented by Bill Rensmith Windsor Solutions, Inc. 3/15/2012.
DPM ARCHITECT FOR XBRL XBRL taxonomy editor aimed at BUSINESS USERS Based on the DPM approach and DPM XBRL Architecture Currently on its last stage of.
Public Key Infrastructure A Quick Look Inside PKI Technology Investigation Center 3/27/2002.
IORS Project Workshop for top reporting design organisations Way forward for Reporting Organisations Dominique ROLAND – Project Team member.
© EBA | European Banking Authority New COREP & FINREP - Experiences 5 May 2014 | Rome Owen Jones | CRR Taxonomy Project EBA.
GROUP 3 Larry Gillis Eric Lam Cindy Lee Calvin Nguyen Evgeni Zlatanov.
XML Encryption Prabath Siriwardena Director, Security Architecture.
Methodology of Data Point Model in European Banking Supervision: COREP/FINREP Ignacio Boixo, EuroFiling Coordinator Malatya, 3 th May 2012.
Developing an XBRL Reporting Architecture Rafael Valero Arce Fujitsu España Services es.fujitsu.com.
DecisionSoft Validation for large scale consumers of XBRL Paul Warren DecisionSoft Limited 12 May 2004.
Lecture 5: security: PGP Anish Arora CIS694K Introduction to Network Security.
Preparatory Solvency II Reporting Industry Presentation.
Cryptography1 CPSC 3730 Cryptography Chapter 11, 12 Message Authentication and Hash Functions.
INFORMATION SYSTEMS DPM ARCHITECT: STATUS AND NEXT STEPS Presented by Bartosz Ochocki Authored by Víctor Morilla Rome, May 2014.
TrustPort Public Key Infrastructure. Keep It Secure Table of contents  Security of electronic communications  Using asymmetric cryptography.
CSE 597E Fall 2001 PennState University1 Digital Signature Schemes Presented By: Munaiza Matin.
Situation november / december DRAFT Emile Bartolé CEN/WS XBRL: Improving transparency in financial and business reporting CWA2 Situation 1CWA2.
Security Standards under Review for esMD. Transaction Timeline An esMD transaction begins with the creation of some type of electronic content (e.g. X12.
Secure Systems Research Group - FAU Patterns for Digital Signature using hashing Presented by Keiko Hashizume.
CSCI 6962: Server-side Design and Programming
12 December, 2012 Katrin Heinze, Bundesbank CEN/WS XBRL CWA1: European Filing Rules CWA1Page 1.
AQA Computing A2 © Nelson Thornes 2009 Section Unit 3 Section 6.4: Internet Security Digital Signatures and Certificates.
Digital Signatures and e-Identity. Getting the best out of DSS / DSS-X services. Andreas Kuehne – DSS-X member.
WS-Security: SOAP Message Security Web-enhanced Information Management (WHIM) Justin R. Wang Professor Kaiser.
Grants 3.0 Faculty Review January 21, Agenda Introductions Meeting Objective Background and Project Objective Key Changes Examples: -Amendment.
Information Security Fundamentals Major Information Security Problems and Solutions Department of Computer Science Southern Illinois University Edwardsville.
1 Sujan Kukreja, B 10-7 German Banking Supervisory IT Systems Overview, Architecture, Challenges Katrin Heinze.
Emile Bartolé CEN/WS XBRL: Improving transparency in financial and business reporting CWA2 final deliveries 1CWA2.
Security Standards under Review for esMD. Transaction Timeline An esMD transaction begins with the creation of some type of electronic content (e.g. X12.
Electronic data collection system eSTAT in Statistics Estonia: functionality, authentication and further developments issues 4th June 2007 Maia Ennok,
 A Web service is a method of communication between two electronic devices over World Wide Web.
12 December, 2012 Aitor Azcoaga, EIOIPA CEN/WS XBRL CWA3: Standardized roll-out package CWA3Page 1.
Lifecycle Metadata for Digital Objects October 18, 2004 Transfer / Authenticity Metadata.
1 Possible Principles and Requirements Frederick Hirsch, Nokia 12 July 2008.
5 October, 2012 CEN/WS XBRL Comité Européen de Normalisation, WorkShop on XBRL Eurofiling Confcall 1.
Selene Dalecky March 20, 2007 FDsys: GPO’s Digital Content System.
Electronic Mail Security Prepared by Dr. Lamiaa Elshenawy
Chapter 11: Advanced Inheritance Concepts. Objectives Create and use abstract classes Use dynamic method binding Create arrays of subclass objects Use.
Lifecycle Metadata for Digital Objects October 9, 2002 Transfer / Authenticity Metadata.
Slide 1 November 2005, Vancouver, BCIETF DNSEXT 2929bis etc. Donald E. Eastlake 3 rd
M-PEDD Technical Working Group
Lecture 8 (Chapter 18) Electronic Mail Security Prepared by Dr. Lamiaa M. Elshenawy 1.
OGSA-WG Basic Profile Session #1 Security
Introducing CounterSign
B. R. Chandavarkar CSE Dept., NITK Surathkal
Progress Update MSIS: Bratislava, April 2005
European Citizens’ Initiative, Commission regulation proposal Focus on IT aspects Jérôme Stefanini DIGIT.B.2 05/06/2018.
Technical update 05 of April 2017
Gibraltar Financial Services Commission
ELECTRONIC MAIL SECURITY
ELECTRONIC MAIL SECURITY
CEN/WS XBRL Kick-off meeting
Digital Signature Standard (DSS)
Presentation transcript:

Present situation - DRAFT Emile Bartolé CEN/WS XBRL: Improving transparency in financial and business reporting CWA2 Situation & latest evolutions 1CWA2

Objectives of CWA2 Dual objective of CWA2: standardize The way of submitting instances, a container with standardized Encryption Digital signature Compression … The way of transmitting the usual metadata that determine the context of an xbrl reporting instance the sender of the document contact details date and time of submission … Page 2CWA2

Deliverables Specification document(s)Delivered (draft) Header XML schemaDelivered (draft) Instance Feedback XML schemaDelivered (draft) Container Feedback XML schemaDelivered (draft) Container Test toolsIn progress (draft) CBV in dimensional XBRLIn progress (draft)

Enhanced workflow Submission container Declarer header.xml nationalinstance1.xbrl nationalinstance2.xbrl Subcontainer National Supervision Authority European / OtherSupervisionAuthority Feedback

Submission container Multiple XBRL instance documents packed with one xml header file Header is the only file with a naming convention: header.xml; it is located on top-level of the compression package Header lists xbrl instances contained in the container Instances should always have extension.xbrl Use of folders is optional; in case they are used, all references (in header to XBRL instances; in XBRL instances to taxonomy files) must respect them. Folder names used here (Instances, Taxonomy) are given as examples Authorities may define their naming convention (files, folders) Multiple compression packages per security envelope are allowed Other files in adequate file formats (e.g. an audit report to prove the validity of the figures) are allowed, particularly also valid subcontainers, whether up to the ZIP, the Xades-EPES (SignedSubContainers) or to the encryption structure (FullSubContainers) Page 5 Package & Compress (zip) Signature (XADES-EPES) header.xml Instances instance1.xbrl instance2.xbrl … instancen.xbrl Taxonomy taxonomy-file1.xml |.xsd taxonomy-file2.xml |.xsd … taxonomy-filen.xml |.xsd SignedSubContainers XadesSignedSubcontainer.xml FullSubContainers EncryptedSubcontainer.xml Attachment AuditReport.pdf Encryption (XML Encryption)

Page 6 Signature 1 (contributor 1 - private key) Encryption (public key of the first destinee) Zip Header Instance 1 Instance 2... Instance n SignedSubContainers XadesSignedSubcontainer.xml not encrypted potentially signed by a different contributor FullSubContainers EncryptedSubcontainer.xml encrypted for final destinee potentially signed by a different contributor usual container structure National Supervision Authority Single collection - multiple dispatching Encryption (next destinee) & transfer OtherAuthority: e.g. EBA OtherAuthority: BIS / ESRB / Banking Union / … Transfer only

EBA requirement: Ensure integrity Solution: use signed subcontainers! Integrity of data is guaranteed for both receivers respectively, for NSA in the Instances integrity area, for subsequent institutions in their respective subcontainers integrity area If InstanceAn.xbrl is meant to have identical content as InstanceAn.xbrl, enhanced services possible are possible by NSA: guarantee identity of information delivered to NSA and ESA (via simple file comparison) Page 7 Package & Compress (zip) Signature (XADES-EPES) header.xml Instances InstanceA1.xbrl InstanceA2.xbrl … InstanceAn.xbrl SignedSubContainers SignedSubcontainer.xml Header.xml InstanceB1.xbrl InstanceB2.xbrl … InstanceBn.xbrl Encryption (XML Encryption) NSANSA ESAESA Integrity areas

EBA requirement: use with secure transport Page 8 Package & Compress (zip) Signature (XADES-EPES) header.xml Instances InstanceA1.xbrl InstanceA2.xbrl … InstanceAn.xbrl SignedSubContainers SignedSubcontainer.xml Header.xml InstanceB1.xml InstanceB2.xml … InstanceBn.xml Encryption (XML Encryption) Unsecure or undefined transport: Package & Compress (zip) header.xml Instances InstanceA1.xbrl InstanceA2.xbrl … InstanceAn.xbrl SignedSubContainers SignedSubcontainer.xml Header.xml InstanceB1.xml InstanceB2.xml … InstanceBn.xml Secure transport:

Feedback container One XML feedback file per XBRL instance in the original submission container Feedback files will be generated systematically, even if no errors at validation time occurred (also positive acknowledge) The XML schema for the feedback files will contain a hash code for the original file guaranteeing non- repudiation of the submitted XBRL instances The feedback file will have the same name as the original instance it refers to (but with extension.xml instead of the original.xbrl) Folder name used here (Feedback) is given as an example Package & Compress (zip) Signature (XADES-EPES) Feedback instance1.xml instance2.xml … instancen.xml Encryption (XML Encryption) Page 9

Page 10CWA2 Standards & Algorithms TopicReferences & StructuresAlgorithmsRemark Compr ession ents/casestudies/APPNOTE.T XT zipV2.0 or higher Hashhttp://csrc.nist.gov/publications /fips/fips180-4/fips pdf SHA256Identify files Digital Signat ure lex.europa.eu/LexUriServ/Lex UriServ.do?uri=OJ:L:2011:053: 0066:0072:EN:PDF XADES-EPES txt RSAwithSHA512 Encryp tion core1/ (Fallback: core/) core/ txt RSA (OAEPWITHSHA- 512ANDMGF1PADDING)

Tools developement: Environment: Java TopicFrameworkPackages Manage zip filesStandard Javajava.util.zip Manage xml filesStandard Java XML EncryptionStandard Javajavax.crypto, java.security, javax.xml.crypto Digital Signature (XAdES) Eid-dss dss/

CWA2 Header XML Direct import of the core business vocabulary into the draft header schema Support of initial & update submissions Full support of signed as well as signed & encrypted subcontainers

Header Orientations Types of header fields CWA2Page 13 Type of fieldWay of dealing with it Related to filing instance reportsIntegrated into the header XML schema Transport relatedNot in the scope of the header taxonomy, this should be part of the submission / transport system used Data relatedNot in the scope of the header taxonomy, this should be part of the data taxonomy

Core business vocabulary in XBRL Re-implementation of the EU Core business vocabulary Dimensional XBRL DPM (with Tables) being developed First taxonomy version available

Thanks for your attention Page 15 Comments or questions? CWA2