A method for proving the validity of a record digitally signed by a user having
a digital certificate issued by a certification authority within a hierarchy of
certification authorities. The user signs the record, and obtains the digital certificates
and certificate revocation information for all the certification authorities in
the chain of the hierarchy extending from the user to the root certification authority.
A timestamp is applied to the record, the digital certificates and the certificate
revocation information to establish a point in time in which all items were created,
current and valid. If, at some later point, one or more of the digital certificates
either expire or are revoked, the timestamp serves as evidence of the integrity
of the signed record.