ISO IEC 24767-1-2008 Information technology - Home network security - Part 1 Security requirements《信息技术 家庭网络安全性 第1部分 安全性要求》.pdf
《ISO IEC 24767-1-2008 Information technology - Home network security - Part 1 Security requirements《信息技术 家庭网络安全性 第1部分 安全性要求》.pdf》由会员分享,可在线阅读,更多相关《ISO IEC 24767-1-2008 Information technology - Home network security - Part 1 Security requirements《信息技术 家庭网络安全性 第1部分 安全性要求》.pdf(28页珍藏版)》请在麦多课文档分享上搜索。
1、 ISO/IEC 24767-1 Edition 1.0 2008-09 INTERNATIONAL STANDARD Information technology Home network security Part 1: Security requirements ISO/IEC 24767-1:2008(E) THIS PUBLICATION IS COPYRIGHT PROTECTED Copyright 2008 ISO/IEC, Geneva, Switzerland All rights reserved. Unless otherwise specified, no part
2、of this publication may be reproduced or utilized in any form or by any means, electronic or mechanical, including photocopying and microfilm, without permission in writing from either IEC or IECs member National Committee in the country of the requester. If you have any questions about ISO/IEC copy
3、right or have an enquiry about obtaining additional rights to this publication, please contact the address below or your local IEC member National Committee for further information. IEC Central Office 3, rue de Varemb CH-1211 Geneva 20 Switzerland Email: inmailiec.ch Web: www.iec.ch About the IEC Th
4、e International Electrotechnical Commission (IEC) is the leading global organization that prepares and publishes International Standards for all electrical, electronic and related technologies. About IEC publications The technical content of IEC publications is kept under constant review by the IEC.
5、 Please make sure that you have the latest edition, a corrigenda or an amendment might have been published. Catalogue of IEC publications: www.iec.ch/searchpub The IEC on-line Catalogue enables you to search by a variety of criteria (reference number, text, technical committee,). It also gives infor
6、mation on projects, withdrawn and replaced publications. IEC Just Published: www.iec.ch/online_news/justpub Stay up to date on all new IEC publications. Just Published details twice a month all new publications released. Available on-line and also by email. Electropedia: www.electropedia.org The wor
7、lds leading online dictionary of electronic and electrical terms containing more than 20 000 terms and definitions in English and French, with equivalent terms in additional languages. Also known as the International Electrotechnical Vocabulary online. Customer Service Centre: www.iec.ch/webstore/cu
8、stserv If you wish to give us your feedback on this publication or need further assistance, please visit the Customer Service Centre FAQ or contact us: Email: csciec.ch Tel.: +41 22 919 02 11 Fax: +41 22 919 03 00 ISO/IEC 24767-1 Edition 1.0 2008-09 INTERNATIONAL STANDARD Information technology Home
9、 network security Part 1: Security requirements INTERNATIONAL ELECTROTECHNICAL COMMISSION K ICS 35.200 PRICE CODE ISBN 2-8318-1000-1 2 24767-1 ISO/IEC 2008(E) CONTENTS FOREWORD.4 1 Scope.5 2 Terms, definitions and abbreviations 5 2.1 Terms and definitions 5 2.2 Abbreviations 6 3 Conformance6 4 Secur
10、ity requirements for home electronic systems and networks.6 4.1 General .6 4.2 Home electronic system security .7 4.3 Issues related to HES security but out of scope of this standard11 5 Challenges .12 5.1 General .12 5.2 Always-on challenge .12 5.3 Power line challenge .12 5.4 Wireless challenge 13
11、 5.5 Complex assortment devices challenge.13 5.6 Many and diverse user needs13 5.7 Many and diverse applications.13 6 Security models14 6.1 Introduction .14 6.2 Owner supported single home HES (OSS).14 6.3 Externally supported single home HES (ESS)14 6.4 Externally supported multiple homes HES (ESM)
12、 14 7 Threat analysis.15 7.1 General .15 7.2 Unauthorized access .15 7.3 Malicious software and configuration.16 7.4 Denial of service .17 7.5 Unintended modification of data during communication .17 7.6 User errors17 7.7 System failures .17 7.8 Security service providers .17 8 Security requirements
13、.17 8.1 General .17 8.2 Access control.18 8.3 Data and message authentication19 8.4 Remote access control 19 8.5 Protection of communications19 8.6 Firewalls20 8.7 Virus protection .20 8.8 Protection against denial of service attacks.20 8.9 Auditing.21 8.10 Recovery.21 9 Requirements on security sol
14、utions 21 24767-1 ISO/IEC 2008(E) 3 9.1 General .21 9.2 Different levels of security services for different applications in a home.21 9.3 Convenience .22 Annex A (informative) Comparison between office IT systems and home electronic system security requirements .23 Bibliography24 Figure 1 A concept
15、model of home networks10 Figure 2 Different considerations in different home environments 11 Table 1 Security threats and corresponding defences 18 4 24767-1 ISO/IEC 2008(E) INFORMATION TECHNOLOGY HOME NETWORK SECURITY Part 1: Security requirements FOREWORD 1) ISO (International Organization for Sta
16、ndardization) and IEC (International Electrotechnical Commission) form the specialized system for worldwide standardization. National bodies that are members of ISO or IEC participate in the development of International Standards. Their preparation is entrusted to technical committees; any ISO and I
17、EC member body interested in the subject dealt with may participate in this preparatory work. International governmental and non-governmental organizations liaising with ISO and IEC also participate in this preparation. 2) In the field of information technology, ISO and IEC have established a joint
18、technical committee, ISO/IEC JTC 1. Draft International Standards adopted by the joint technical committee are circulated to national bodies for voting. Publication as an International Standard requires approval by at least 75 % of the national bodies casting a vote. 3) The formal decisions or agree
19、ments of IEC and ISO on technical matters express, as nearly as possible, an international consensus of opinion on the relevant subjects since each technical committee has representation from all interested IEC and ISO member bodies. 4) IEC, ISO and ISO/IEC publications have the form of recommendati
20、ons for international use and are accepted by IEC and ISO member bodies in that sense. While all reasonable efforts are made to ensure that the technical content of IEC, ISO and ISO/IEC publications is accurate, IEC or ISO cannot be held responsible for the way in which they are used or for any misi
21、nterpretation by any end user. 5) In order to promote international uniformity, IEC and ISO member bodies undertake to apply IEC, ISO and ISO/IEC publications transparently to the maximum extent possible in their national and regional publications. Any divergence between any ISO/IEC publication and
22、the corresponding national or regional publication should be clearly indicated in the latter. 6) ISO and IEC provide no marking procedure to indicate their approval and cannot be rendered responsible for any equipment declared to be in conformity with an ISO/IEC publication. 7) All users should ensu
23、re that they have the latest edition of this publication. 8) No liability shall attach to IEC or ISO or its directors, employees, servants or agents including individual experts and members of their technical committees and IEC or ISO member bodies for any personal injury, property damage or other d
24、amage of any nature whatsoever, whether direct or indirect, or for costs (including legal fees) and expenses arising out of the publication of, use of, or reliance upon, this ISO/IEC publication or any other IEC, ISO or ISO/IEC publications. 9) Attention is drawn to the normative references cited in
- 1.请仔细阅读文档,确保文档完整性,对于不预览、不比对内容而直接下载带来的问题本站不予受理。
- 2.下载的文档,不会出现我们的网址水印。
- 3、该文档所得收入(下载+内容+预览)归上传者、原创作者;如果您是本文档原作者,请点此认领!既往收益都归您。
下载文档到电脑,查找使用更方便
10000 积分 0人已下载
下载 | 加入VIP,交流精品资源 |
- 配套讲稿:
如PPT文件的首页显示word图标,表示该PPT已包含配套word讲稿。双击word图标可打开word文档。
- 特殊限制:
部分文档作品中含有的国旗、国徽等图片,仅作为作品整体效果示例展示,禁止商用。设计者仅对作品中独创性部分享有著作权。
- 关 键 词:
- ISOIEC2476712008INFORMATIONTECHNOLOGYHOMENETWORKSECURITYPART1SECURITYREQUIREMENTS 信息技术 家庭 网络 安全性 部分 要求

链接地址:http://www.mydoc123.com/p-1257123.html