UPC: More information about access to new CMS

search-result-placeholder.jpg

The Unified Patent Court has provided more information about the new authentication mode and electronic signature, which are necessary to access the CMS of the new court.

Image
unified-patent-court
As is explained in a document which was published today, ‘to be able to use the CMS system and eSignature functions, you need first to contact one of the providers on the trusted list on the EU Trust Services portal.’

The document can be found here.

Comments (6)
Your email address will not be published.
default-avatar.png
Concerned observer
October 12, 2022 AT 5:14 PM

All very well, but we still have no clarification on which type of certificate for authentication will be required. Also, whilst it is nice to know that LuxTrust should be able to provide suitable secure devices, what about any other providers? Or, in the space of the approximately 11 weeks left before the (purported) start of the sunrise period, are all of the thousands of eligible attorneys from across the whole of Europe supposed to obtain their (individual) secure device from just ONE provider? That hardly seems like the most workable solution.

default-avatar.png
Opt in, opt out, shake it all about
October 12, 2022 AT 5:30 PM

This "extra information" is still extremely vague and still places the onus on the users and the providers to figure out how to comply. This is reinforced by the extraordinarily unhelpful and vague "answers" provided on the FAQ page that is linked to from the new document, e.g.: "In case the selected provider did not provide a physical device (smart card or token), you can select a trusted provider located in another country, Please refer to the following list on the EU Trust Services portal" "Although the list of providers state only EU member states, several providers listed in this list have in place procedures of recognition for both EU citizens and non-EU citizens and for foreign citizens when they generate the personal certificates. Please refer to the selected provider to have the detailed information." "Some providers listed in the trusted list are certified to use “online” identification means (like video conferencing) but for a limited choice of qualified signature creation device. Please refer to the selected provider to have the detailed information."

default-avatar.png
Han Shot First
October 12, 2022 AT 6:44 PM

Also "You need a device containing “Qualified certificate for electronic signature”.... ....To login to the CMS a client authentication certificate is needed: it is USUALLY installed by the provider on the same secure device. IN GENERAL, the providers include these two types of certificates (authentication and signature) on the same device. You should check this with your selected provider." It does seem like a lot of work is being left to the users. I've heard that the LuxTrust solution will satisfy the test link that's been provided but this relates only, as far as I know, to the authentication certificate. I presume, but am in no way certain, that the LuxTrust signature certificate will be OK.

default-avatar.png
LightBlue
October 13, 2022 AT 9:17 AM

The problem is with the current login is that the system is looking for eIDAS compatibility of the authentication certificate whereas only the qualified signature certificate is eIDAS compatible. Their software needs re-working. A problem is that they do not respond to contact messages pointing out this situation.

default-avatar.png
Concerned observer response to LightBlue
October 13, 2022 AT 11:11 AM

It seems that this further information from the UPC does not rule out any of the possibilities that I described in my comment from 6 October. Firstly, the fact that the UPC has name-checked only ONE provider of secure devices leaves open the possibility that those designing the UPC’s web-based CMS do not have a good understanding of the kind of secure devices and certificates that are available “in the wild”. Secondly, the fact that the UPC has still not explained what type of authentication certificate is required leaves open the possibility that those designing the UPC’s web-based CMS do not have a good understanding of the eIDAS legislation. Finally, the fact that there are no reports of the UPC having resolved the issues with secure devices from other providers leaves open the possibility that the CMS that was supposed to be ready for September is still not fit for purpose. And yet, apparently, there is still no thought of delaying the start of the sunrise period. Why is that?

Leave a Comment
Your email address will not be published.
Clear all
Become a contributor!
Interested in contributing? Submit your proposal for a blog post now and become a part of our legal community! Contact Editorial Guidelines