(2) The time of receipt of the electronic message is determined as follows: (a) If the addressee has designated an information system for the purpose of receiving electronic messages, then receipt occurs at the time when the message enters the designated information system and if the message is sent to an informations system the time of receipt will be the time when the message is retrieved by the addressee. (b) If the addressee has not designated an information system, then receipt occurs when the message enters an information system of the addressee. (3) The electronic message is deemed to be dispatched at the place where the originator has its place of business, and is deemed to be received at the place where the addressee has its place of business even if the place where the information system is located differ from the place where the message is presumed to be received. (4) If the originator or the addressee has more than one place of business, the place of business is that which has the closest relationship to the underlying transaction or, where there is no underlying transaction, the principal place of business and if the originator or the addressee does not have a place of business, then reference is to be made to its habitual residence. Chapter Four Methods of Protecting Electronic Transactions Article (18): Ciphering is to be used as a mean of protecting electronic transactions in order to keep the information and the data of the message confidential and to verify the person of the originator and to prevent others from getting information or electronic messages so as not to reach the addressee or to corrupt them. Article (19) One of the following means shall be used to protect information systems: (a) Public key Ciphering. (b) Firewalls. (c) Information Filters. (d) Non-repudiation means. (e) File and Message Ciphering Technology. (f) Protecting of backup Data. (g) Anti Worms and Anti Virus Programs. (h) Any other means authorized by competent Authority. Article (20) Save the ciphering keys determined by the National Security Council, the employee designated by the competent authority may request from any owner of ciphering key to allow him checking the necessary informations pertinent to that key and the owner of the key shall handover the key to that employee. Article (21) 1- Where specific authentication procedure were applied as agreed upon between the parties on electronic record to verify that it has not been changed since a certain time, then such a record shall be treated as a protected electronic record since that time up to the time of verification. 8

Seleccionar párrafo de destino3