EN 419212-4-2018 Application Interface for Secure Elements for Electronic Identification Authentication and Trusted Services - Part 4 Privacy specific Protocols.pdf
《EN 419212-4-2018 Application Interface for Secure Elements for Electronic Identification Authentication and Trusted Services - Part 4 Privacy specific Protocols.pdf》由会员分享,可在线阅读,更多相关《EN 419212-4-2018 Application Interface for Secure Elements for Electronic Identification Authentication and Trusted Services - Part 4 Privacy specific Protocols.pdf(24页珍藏版)》请在麦多课文档分享上搜索。
1、BSI Standards PublicationWB11885_BSI_StandardCovs_2013_AW.indd 1 15/05/2013 15:06Application Interface for Secure Elements for Electronic Identification, Authentication and Trusted ServicesPart 4: Privacy specific ProtocolsBS EN 419212-4:2018National forewordThis British Standard is the UK implement
2、ation of EN 419212-4:2018. Together with BS EN 419212-1:2017, BS EN 419212-2:2017, BS EN 419212-3:2017 and BS EN 419212-5:2018, it supersedes BS EN 419212-1:2014 and BS EN 419212-2:2014, which will be withdrawn upon publication of all parts.The UK participation in its preparation was entrusted to Te
3、chnical Committee IST/17, Cards and security devices for personal identification.A list of organizations represented on this committee can be obtained on request to its secretary.This publication does not purport to include all the necessary provisions of a contract. Users are responsible for its co
4、rrect application. The British Standards Institution 2018 Published by BSI Standards Limited 2018ISBN 978 0 580 95130 5ICS 35.240.15Compliance with a British Standard cannot confer immunity from legal obligations.This British Standard was published under the authority of the Standards Policy and Str
5、ategy Committee on 30 April 2018.Amendments/corrigenda issued since publicationDate Text affectedBRITISH STANDARDBS EN 419212-4:2018EUROPEAN STANDARDNORME EUROPENNEEUROPISCHE NORMEN 419212-4April 2018ICS 35.240.15 Supersedes EN 419212-1:2014, EN 419212-2:2014EUROPEAN COMMITTEE FOR STANDARDIZATIONCOM
6、IT EUROPEN DE NORMALISATIONEUROPISCHES KOMITEE FR NORMUNGCEN-CENELEC Management Centre: Avenue Marnix 17, B-1000 Brussels 2018 CEN Ref. No. EN 419212-4:2018: EAll rights of exploitation in any form and by any means reserved worldwide for CEN national MembersApplication Interface for Secure Elements
7、for Electronic Identification, Authentication and Trusted Services - Part 4: Privacy specific ProtocolsInterface applicative des lments scuriss utiliss comme dispositifs de cration de signature lectronique qualifie (cachet) - Partie 4 : Protocoles spcifiques la protection de la vie priveAnwendungssc
8、hnittstelle fr sichere Elemente zur elektronischen Identifikation, Authentisierung und fr vertrauenswrdige Dienste - Teil 4: Datenschutzspezifische ProtokolleThis European Standard was approved by CEN on 6 February 2017.CEN members are bound to comply with the CEN/CENELEC Internal Regulations which
9、stipulate the conditions for giving this European Standard the status of a national standard without any alteration. Up-to-date lists and bibliographical references concerning such national standards may be obtained on application to the CEN-CENELEC Management Centre or to any CEN member.This Europe
10、an Standard exists in three official versions (English, French, German). A version in any other language made by translation under the responsibility of a CEN member into its own language and notified to the CEN-CENELEC Management Centre has the same status as the official versions.CEN members are t
11、he national standards bodies of Austria, Belgium, Bulgaria, Croatia, Cyprus, Czech Republic, Denmark, Estonia, Finland, Former Yugoslav Republic of Macedonia, France, Germany, Greece, Hungary, Iceland, Ireland, Italy, Latvia, Lithuania, Luxembourg, Malta, Netherlands, Norway, Poland, Portugal, Roman
12、ia, Serbia, Slovakia, Slovenia, Spain, Sweden, Switzerland, Turkey and United Kingdom.English VersionEN 419212-4:2018 (E)European foreword 3Introduction .41 Scope .52 Normative references 53 Introduction 53.1 General .53.2 Auxiliary Data Comparison 63.2.1 General63.2.2 Presentation of the auxiliary
13、data .63.2.3 Age Verification . 83.2.4 Document Validation 93.3 Restricted Identification 103.3.1 General.103.3.2 Command APDU for Step RI:1 .123.3.3 Command APDU for Step RI:2 .134 e-Services with trusted third party protocol 144.1 General 144.2 Architecture 144.3 Enhanced Role Authentication (ERA)
14、 protocol .164.4 Authentication flow steps .174.4.1 General.174.4.2 Step 1: Service selection .184.4.3 Step 2: User consent.184.4.4 Step 3 User authentication to the SP .194.4.5 Step 4 Access to the service (or go to next steps) 194.4.6 Step 5 Request for attributes (OPT) .194.4.7 Step 6 Restoration
15、 of security context (OPT) .194.4.8 Step 7 User authentication to the AP (OPT) 194.4.9 Step 8 Reading and providing attribute requested (OPT) 194.4.10 Step 9 Restoration of security context (OPT) .194.4.11 Step 10 Ask access to the service (OPT) .194.4.12 Step 11 Verification of attributes by the SP
16、 (OPT) 194.4.13 Step 12 Grant access to the service (OPT) 19Bibliography .202Contents PageBS EN 419212-4:2018EN 419212-4:2018 (E)European forewordThis document (EN 419212-4:2018) has been prepared by Technical Committee CEN/TC 224 “Personal identification and related personal devices with secure ele
17、ment, systems, operations and privacy in a multi sectorial environment”, the secretariat of which is held by AFNOR.This European Standard shall be given the status of a national standard, either by publication of an identical text or by endorsement, at the latest by October 2018, and conflicting nat
18、ional standards shall be withdrawn at the latest by October 2018.Attention is drawn to the possibility that some of the elements of this document may be the subject of patent rights. CEN shall not be held responsible for identifying any or all such patent rights.This document supersedes EN 419212-1:
19、2014 and EN 419212-2:2014.This standard supports services in the context of electronic IDentification, Authentication and Trust Services (eIDAS) including signatures.In EN 419212 Part 2, the standard allows support of implementations of the European legal framework for electronic signatures, definin
20、g the functional and security features for a Secure Elements (SE) (e.g. smart cards) intended to be used as a Qualified Signature Creation Device (QSCD) according to the Terms of the “European Regulation on Electronic Identification and Trust Services for electronic transactions in the internal mark
21、et”.A Secure Element (SE) compliant to the standard will be able to produce a “qualified electronic signature” that fulfils the requirements of section 4, in particular Articles 26 (requirements for advanced electronic signatures) and 29 (requirements for qualified electronic signature creation devi
22、ces) of the so-called eIDAS Regulation and therefore can be considered equivalent to a hand-written signature.This standard consists of five parts: Part 1: “Introduction and common definitions” describes the history, application context, market perspective and a tutorial about the basic understandin
23、g of electronic signatures. It also provides common terms and references valid for the entire 419212 series. Part 2: “Signature and Seal Services” describes the specifications for signature generation according to the eIDAS regulation. Part 3: “Device Authentication” describes the device authenticat
24、ion protocols and the related key management services to establish a secure channel. Part 4: “Privacy specific Protocols” describes functions and services to provide privacy to identification services. Part 5: “Trusted eServices” describes services that may be used in conjunction with signature serv
- 1.请仔细阅读文档,确保文档完整性,对于不预览、不比对内容而直接下载带来的问题本站不予受理。
- 2.下载的文档,不会出现我们的网址水印。
- 3、该文档所得收入(下载+内容+预览)归上传者、原创作者;如果您是本文档原作者,请点此认领!既往收益都归您。
下载文档到电脑,查找使用更方便
10000 积分 0人已下载
下载 | 加入VIP,交流精品资源 |
- 配套讲稿:
如PPT文件的首页显示word图标,表示该PPT已包含配套word讲稿。双击word图标可打开word文档。
- 特殊限制:
部分文档作品中含有的国旗、国徽等图片,仅作为作品整体效果示例展示,禁止商用。设计者仅对作品中独创性部分享有著作权。
- 关 键 词:
- EN41921242018APPLICATIONINTERFACEFORSECUREELEMENTSFORELECTRONICIDENTIFICATIONAUTHENTICATIONANDTRUSTEDSERVICESPART4PRIVACYSPECIFICPROTOCOLSPDF

链接地址:http://www.mydoc123.com/p-1312117.html