EN 419241-1-2018 Trustworthy Systems Supporting Server Signing - Part 1 General System Security Requirements.pdf
《EN 419241-1-2018 Trustworthy Systems Supporting Server Signing - Part 1 General System Security Requirements.pdf》由会员分享,可在线阅读,更多相关《EN 419241-1-2018 Trustworthy Systems Supporting Server Signing - Part 1 General System Security Requirements.pdf(46页珍藏版)》请在麦多课文档分享上搜索。
1、BSI Standards PublicationWB11885_BSI_StandardCovs_2013_AW.indd 1 15/05/2013 15:06Trustworthy Systems Supporting Server SigningPart 1: General System Security RequirementsBS EN 4192411:2018EUROPEAN STANDARD NORME EUROPENNE EUROPISCHE NORM EN 419241-1 July 2018 ICS 35.030 Supersedes CEN/TS 419241:2014
2、English Version Trustworthy Systems Supporting Server Signing - Part 1: General System Security Requirements Systmes fiables de serveur de signature lectronique -Partie 1: Exigences de scurit gnrales du systme Vertrauenswrdige Systeme, die Serversignaturen untersttzen - Teil 1: Allgemeine Systemsich
3、erheitsanforderungen This European Standard was approved by CEN on 30 April 2018. CEN members are bound to comply with the CEN/CENELEC Internal Regulations which stipulate the conditions for giving this European Standard the status of a national standard without any alteration. Up-to-date lists and
4、bibliographical references concerning such national standards may be obtained on application to the CEN-CENELEC Management Centre or to any CEN member. This European Standard exists in three official versions (English, French, German). A version in any other language made by translation under the re
5、sponsibility of a CEN member into its own language and notified to the CEN-CENELEC Management Centre has the same status as the official versions. CEN members are the national standards bodies of Austria, Belgium, Bulgaria, Croatia, Cyprus, Czech Republic, Denmark, Estonia, Finland, Former Yugoslav
6、Republic of Macedonia, France, Germany, Greece, Hungary, Iceland, Ireland, Italy, Latvia, Lithuania, Luxembourg, Malta, Netherlands, Norway, Poland, Portugal, Romania, Serbia, Slovakia, Slovenia, Spain, Sweden, Switzerland, Turkey and United Kingdom. EUROPEAN COMMITTEE FOR STANDARDIZATION COMIT EURO
7、PEN DE NORMALISATION EUROPISCHES KOMITEE FR NORMUNG CEN-CENELEC Management Centre: Rue de la Science 23, B-1040 Brussels 2018 CEN All rights of exploitation in any form and by any means reserved worldwide for CEN national Members. Ref. No. EN 419241-1:2018 ENational forewordThis British Standard is
8、the UK implementation of EN 4192411:2018. It supersedes PD CEN/TS 419241:2014, which is withdrawn.The UK participation in its preparation was entrusted to Technical Committee IST/17, Cards and security devices for personal identification.A list of organizations represented on this committee can be o
9、btained on request to its secretary.This publication does not purport to include all the necessary provisions of a contract. Users are responsible for its correct application. The British Standards Institution 2018 Published by BSI Standards Limited 2018ISBN 978 0 580 95733 8ICS 35.030; 35.240.99Com
10、pliance with a British Standard cannot confer immunity from legal obligations.This British Standard was published under the authority of the Standards Policy and Strategy Committee on 31 July 2018.Amendments/corrigenda issued since publicationDate Text affectedBRITISH STANDARDBS EN 4192411:2018EUROP
11、EAN STANDARD NORME EUROPENNE EUROPISCHE NORM EN 419241-1 July 2018 ICS 35.030 Supersedes CEN/TS 419241:2014English Version Trustworthy Systems Supporting Server Signing - Part 1: General System Security Requirements Systmes fiables de serveur de signature lectronique -Partie 1: Exigences de scurit g
12、nrales du systme Vertrauenswrdige Systeme, die Serversignaturen untersttzen - Teil 1: Allgemeine Systemsicherheitsanforderungen This European Standard was approved by CEN on 30 April 2018. CEN members are bound to comply with the CEN/CENELEC Internal Regulations which stipulate the conditions for gi
13、ving this European Standard the status of a national standard without any alteration. Up-to-date lists and bibliographical references concerning such national standards may be obtained on application to the CEN-CENELEC Management Centre or to any CEN member. This European Standard exists in three of
14、ficial versions (English, French, German). A version in any other language made by translation under the responsibility of a CEN member into its own language and notified to the CEN-CENELEC Management Centre has the same status as the official versions. CEN members are the national standards bodies
15、of Austria, Belgium, Bulgaria, Croatia, Cyprus, Czech Republic, Denmark, Estonia, Finland, Former Yugoslav Republic of Macedonia, France, Germany, Greece, Hungary, Iceland, Ireland, Italy, Latvia, Lithuania, Luxembourg, Malta, Netherlands, Norway, Poland, Portugal, Romania, Serbia, Slovakia, Sloveni
16、a, Spain, Sweden, Switzerland, Turkey and United Kingdom. EUROPEAN COMMITTEE FOR STANDARDIZATION COMIT EUROPEN DE NORMALISATION EUROPISCHES KOMITEE FR NORMUNG CEN-CENELEC Management Centre: Rue de la Science 23, B-1040 Brussels 2018 CEN All rights of exploitation in any form and by any means reserve
17、d worldwide for CEN national Members. Ref. No. EN 419241-1:2018 EBS EN 4192411:2018EN 419241-1:2018 (E) 2 Contents Page European foreword . 4 Introduction 6 1 Scope 7 1.1 General 7 1.2 Outside of the scope . 7 1.3 Audience . 7 2 Normative references 8 3 Terms and definitions . 8 4 Symbols and abbrev
18、iations 10 5 Description of trustworthy systems supporting server signing . 11 5.1 General . 11 5.2 Signature creation and server signing objectives 11 5.3 Signature bound to a natural person or seal bound to a legal person 11 5.4 Sole control assurance levels . 11 5.5 Batch server signing 12 5.6 Si
19、gning key and cryptographic module 12 5.7 Signers authentication 12 5.7.1 Electronic identification means 12 5.7.2 Authentication Mechanism . 12 5.7.3 Authentication target . 13 5.7.4 Delegation of authentication to an external party . 13 5.8 Signature activation data 14 5.9 Signature activation pro
20、tocol 14 5.10 Signers interaction component 14 5.11 Signature activation module 15 5.12 Environments 15 5.12.1 Tamper protected environment . 15 5.12.2 TSP protected environment . 15 5.12.3 Signers environment 16 5.13 Functional model 16 5.13.1 General . 16 5.13.2 Scope of requirements . 16 5.13.3 S
21、ignature activation mechanisms 17 5.13.4 TW4S components . 19 6 Security requirements . 20 6.1 General . 20 6.2 General security requirements (SRG) 20 6.2.1 Management (SRG_M) . 20 6.2.2 Systems and operations (SRG_SO) 22 6.2.3 Identification and authentication (SRG_IA) 22 6.2.4 System access contro
22、l (SRG_SA) 23 6.2.5 Key management (SRG_KM) . 23 6.2.6 Auditing (SRG_AA) 26 6.2.7 Archiving (SRG_AR) . 28 BS EN 4192411:2018EN 419241-1:2018 (E) 3 6.2.8 Backup and recovery (SRG_BK) . 28 6.3 Core components security requirements (SRC) 29 6.3.1 Signing key setup (SRC_SKS) - Cryptographic key (SRC_ SK
23、S.1) . 29 6.3.2 Signer authentication (SRC_SA) . 29 6.3.3 Digital signature creation (SRC_DSC) - Cryptographic operation (SRC_DSC.1) 30 6.4 Additional security requirements for SCAL2 (SRA) . 30 6.4.1 General . 30 6.4.2 Signature activation protocol and signature activation data (SRA_SAP) . 30 6.4.3
24、Signing key management (SRA_SKM) 32 Annex A (normative) Requirements for electronic identification means, characteristics and design 34 A.1 Enrolment 34 A.1.1 Application and registration 34 A.1.2 Identity proofing and verification (natural person) 34 A.1.3 Identity proofing and verification (legal
- 1.请仔细阅读文档,确保文档完整性,对于不预览、不比对内容而直接下载带来的问题本站不予受理。
- 2.下载的文档,不会出现我们的网址水印。
- 3、该文档所得收入(下载+内容+预览)归上传者、原创作者;如果您是本文档原作者,请点此认领!既往收益都归您。
下载文档到电脑,查找使用更方便
10000 积分 0人已下载
下载 | 加入VIP,交流精品资源 |
- 配套讲稿:
如PPT文件的首页显示word图标,表示该PPT已包含配套word讲稿。双击word图标可打开word文档。
- 特殊限制:
部分文档作品中含有的国旗、国徽等图片,仅作为作品整体效果示例展示,禁止商用。设计者仅对作品中独创性部分享有著作权。
- 关 键 词:
- EN41924112018TRUSTWORTHYSYSTEMSSUPPORTINGSERVERSIGNINGPART1GENERALSYSTEMSECURITYREQUIREMENTSPDF

链接地址:http://www.mydoc123.com/p-1312119.html