Chuyển đến nội dung

Chữ ký số

Ký bằng chứng thư, để một người đọc có thể chứng minh tệp không bị thay đổi.

Xử lý trên thiết bị của bạn

Công cụ này chạy hoàn toàn trong trình duyệt của bạn. Tệp của bạn không bao giờ được tải lên, và bạn có thể tự kiểm chứng điều đó trong tab mạng của trình duyệt. Tự kiểm chứng: mở tab mạng của trình duyệt và theo dõi. Bạn sẽ thấy một yêu cầu nhỏ hỏi xem bạn còn tác vụ nào không - một tên công cụ và một mã băm, không bao giờ là tệp.

Công cụ này làm gì

This applies a real cryptographic signature: a detached CMS SignedData structure computed over the document's bytes and embedded in the file, which Acrobat and other compliant readers check when the document is opened. Unlike a drawn signature it establishes two things - that the holder of a particular certificate signed, and that not one byte has changed since.

When the recipient will verify rather than merely look: a tender submission, an invoice under an e-invoicing rule, a document going into an archive that requires signed originals, or anything where a later argument about whether the file was altered is a real possibility.

Cách hoạt động

  1. Drop two files onto this page: the PDF, and your certificate as a .p12 or .pfx file. The order does not matter - the PDF is recognised by its contents.
  2. Type the passphrase that protects the certificate. It is used in your browser to unwrap the private key and is never sent.
  3. Fill in the reason and the location if your recipient expects them. Both are recorded inside the signature and shown by readers that display signature details.
  4. Leave visible on to draw a signature block on the page you choose, or turn it off for a signature that exists only in the file's structure.
  5. Press Sign with certificate, then open the result in Acrobat to see what a recipient's reader will report.

Every online signing service asks you to upload the one file you should never upload. Here the .p12 is read in the page and parsed inside a worker that holds nothing else, and the worker is terminated when the job finishes - the thread is discarded rather than a variable cleared, so nothing of the key survives into a later job.

A PDF signature covers the byte ranges its /ByteRange array names, and that array has to be written into the file in place, after space for the signature has been reserved. Re-serialising the document afterwards moves every offset and invalidates what was just computed - the mistake naive implementations make, and the reason some signed PDFs report as broken the moment they are opened.

A self-signed certificate produces a valid signature that readers report as validity unknown, because they have no reason to believe the name on it. That is not a failure: it says the mathematics checks out and the identity does not. A certificate issued by an authority your recipient's reader already trusts is what turns that into a green tick.

There is no trusted timestamp and no revocation checking, because both need a network service that this tool never contacts. The signing time recorded is your own computer's clock, which a strict recipient should treat as a claim rather than proof. An encrypted PDF is refused for a related reason: a signature computed over ciphertext is not something a reader will validate.

Công cụ này không làm được gì

  • A self-signed certificate shows as validity unknown in the recipient's reader until they choose to trust it. Only a certificate from an authority their reader already trusts avoids that.
  • No trusted timestamp is applied and no revocation is checked, because both require contacting a server. The recorded signing time is your device's clock.
  • This produces a basic signature rather than a long-term-validation profile, so once the certificate expires nothing in the file confirms the signature was made while it was valid.
  • Encrypted documents are refused. Remove the password with Unlock PDF before signing.
  • The visible signature block has a fixed position and size on the page you choose; it cannot be dragged elsewhere.

Câu hỏi thường gặp

Cái này khác với Ký PDF ở chỗ nào?
Ký PDF vẽ một hình ảnh của chữ ký lên trang. Cái này tính một chữ ký mã hóa trên các byte của tệp bằng khóa riêng của bạn và nhúng nó vào, nên một người đọc có thể cho biết ai đã ký, theo chứng thư, và liệu có gì thay đổi kể từ đó không. Bản vẽ tay không thiết lập được cả hai điều đó.
Tôi lấy chứng thư ở đâu?
Từ một tổ chức chứng thực - một số chương trình quốc gia, nhiều CA thương mại và một vài nhà tuyển dụng cấp chúng. Thứ bạn cần là một gói PKCS#12, một tệp .p12 hoặc .pfx chứa chứng thư của bạn cùng với khóa riêng của nó. Một chứng thư tự ký tạo bằng OpenSSL vẫn ký rất tốt, nhưng các trình đọc sẽ không tự động tin nó.
Vì sao Acrobat nói tính hợp lệ của chữ ký là không xác định?
Vì nó đã xác minh phần toán học và không thể xác minh danh tính. Thông báo này có nghĩa là chữ ký còn nguyên vẹn và tài liệu không đổi, nhưng chứng thư không nối được tới một tổ chức mà trình đọc tin cậy - đó là điều xảy ra với mọi chứng thư tự ký.
Khóa riêng của tôi có được tải lên không?
Không, và đây là công cụ mà điều đó quan trọng nhất. Tệp .p12 được đọc trong trang và được phân tích bên trong một Web Worker bị chấm dứt ngay khi công việc kết thúc, nên khóa không được giữ lại và không có gì được truyền đi. Hãy mở tab mạng trước khi bạn ký và xem nó vẫn trống.
Có dấu thời gian đáng tin cậy không?
Không. Một dấu thời gian đến từ một tổ chức cấp dấu thời gian qua mạng, và công cụ này hoàn toàn không thực hiện yêu cầu mạng nào, nên thời gian được ghi lại là đồng hồ của chính máy bạn. Nó là một lời khẳng định chứ không phải bằng chứng, và một người nhận có chính sách nghiêm ngặt nên được cho biết trước.
Tài liệu của tôi có được tải lên không?
Không. Cả tài liệu lẫn chứng thư đều ở lại trên thiết bị của bạn; chữ ký được tính và ghi vào tệp ngay tại chỗ. Sau khi trang đã tải xong một lần, việc ký hoạt động khi kết nối bị tắt, đó là một cách hợp lý để xử lý thứ gì đó bảo mật.

Công cụ liên quan