BS ISO IEC 13888-1-2009 Information technology - Security techniques - Non-repudiation - General《信息技术 安全技术 不可否认性 概述》.pdf
《BS ISO IEC 13888-1-2009 Information technology - Security techniques - Non-repudiation - General《信息技术 安全技术 不可否认性 概述》.pdf》由会员分享,可在线阅读,更多相关《BS ISO IEC 13888-1-2009 Information technology - Security techniques - Non-repudiation - General《信息技术 安全技术 不可否认性 概述》.pdf(30页珍藏版)》请在麦多课文档分享上搜索。
1、BS ISO/IEC 13888-1:2009 ICS 35.040 NO COPYING WITHOUT BSI PERMISSION EXCEPT AS PERMITTED BY COPYRIGHT LAW BRITISH STANDARD Information technology Security techniques Non-repudiation Part 1: GeneralThis British Standard was published under the authority of the Standards Policy and Strategy Committee
2、on 31 August 2009 BSI 2009 ISBN 978 0 580 59843 2 Amendments/corrigenda issued since publication Date Comments BS ISO/IEC 13888-1:2009 National foreword This British Standard is the UK implementation of ISO/IEC 13888-1:2009. It supersedes BS ISO/IEC 13888-1:2004 which is withdrawn. The UK participat
3、ion in its preparation was entrusted to Technical Committee IST/33, IT - Security techniques. A list of organizations represented on this committee can be obtained on request to its secretary. This publication does not purport to include all the necessary provisions of a contract. Users are responsi
4、ble for its correct application. Compliance with a British Standard cannot confer immunity from legal obligations.BS ISO/IEC 13888-1:2009Reference number ISO/IEC 13888-1:2009(E) ISO/IEC 2009INTERNATIONAL STANDARD ISO/IEC 13888-1 Third edition 2009-07-15 Information technology Security techniques Non
5、-repudiation Part 1: General Technologies de linformation Techniques de scurit Non-rpudiation Partie 1: Gnralits BS ISO/IEC 13888-1:2009 ISO/IEC 13888-1:2009(E) PDF disclaimer This PDF file may contain embedded typefaces. In accordance with Adobes licensing policy, this file may be printed or viewed
6、 but shall not be edited unless the typefaces which are embedded are licensed to and installed on the computer performing the editing. In downloading this file, parties accept therein the responsibility of not infringing Adobes licensing policy. The ISO Central Secretariat accepts no liability in th
7、is area. Adobe is a trademark of Adobe Systems Incorporated. Details of the software products used to create this PDF file can be found in the General Info relative to the file; the PDF-creation parameters were optimized for printing. Every care has been taken to ensure that the file is suitable for
8、 use by ISO member bodies. In the unlikely event that a problem relating to it is found, please inform the Central Secretariat at the address given below. COPYRIGHT PROTECTED DOCUMENT ISO/IEC 2009 All rights reserved. Unless otherwise specified, no part of this publication may be reproduced or utili
9、zed in any form or by any means, electronic or mechanical, including photocopying and microfilm, without permission in writing from either ISO at the address below or ISOs member body in the country of the requester. ISO copyright office Case postale 56 CH-1211 Geneva 20 Tel. + 41 22 749 01 11 Fax +
10、 41 22 749 09 47 E-mail copyrightiso.org Web www.iso.org Published in Switzerland ii ISO/IEC 2009 All rights reservedBS ISO/IEC 13888-1:2009 ISO/IEC 13888-1:2009(E) ISO/IEC 2009 All rights reserved iii Contents Page Foreword iv Introduction v 1 Scope . 1 2 Normative references . 1 3 Terms and defini
11、tions. 1 4 Symbols and abbreviated terms . 8 5 Organisation of the remainder of this part of ISO/IEC 13888. 8 6 Requirements 9 7 Generic non-repudiation services. 9 7.1 Entities involved in the provision and verification of evidence. 9 7.2 Non-repudiation services. 10 8 Trusted third party involveme
12、nt 10 8.1 General. 10 8.2 Evidence generation phase . 10 8.3 Evidence transfer, storage and retrieval phase. 11 8.4 Evidence verification phase 11 9 Evidence generation and verification mechanisms 12 9.1 General. 12 9.2 Secure envelopes . 12 9.3 Digital signatures 13 9.4 Evidence verification mechan
13、ism . 13 10 Non-repudiation tokens 13 10.1 General. 13 10.2 Generic non-repudiation token . 14 10.3 Time-stamping token 15 10.4 Notarization token. 15 11 Specific non-repudiation services 15 11.1 General. 15 11.2 Non-repudiation of origin. 16 11.3 Non-repudiation of delivery. 16 11.4 Non-repudiation
14、 of submission. 16 11.5 Non-repudiation of transport. 16 12 Use of specific non-repudiation tokens in a messaging environment . 17 Bibliography . 19 BS ISO/IEC 13888-1:2009 ISO/IEC 13888-1:2009(E) iv ISO/IEC 2009 All rights reservedForeword ISO (the International Organization for Standardization) an
15、d IEC (the International Electrotechnical Commission) form the specialized system for worldwide standardization. National bodies that are members of ISO or IEC participate in the development of International Standards through technical committees established by the respective organization to deal wi
16、th particular fields of technical activity. ISO and IEC technical committees collaborate in fields of mutual interest. Other international organizations, governmental and non-governmental, in liaison with ISO and IEC, also take part in the work. In the field of information technology, ISO and IEC ha
17、ve established a joint technical committee, ISO/IEC JTC 1. International Standards are drafted in accordance with the rules given in the ISO/IEC Directives, Part 2. The main task of the joint technical committee is to prepare International Standards. Draft International Standards adopted by the join
18、t technical committee are circulated to national bodies for voting. Publication as an International Standard requires approval by at least 75 % of the national bodies casting a vote. Attention is drawn to the possibility that some of the elements of this document may be the subject of patent rights.
19、 ISO and IEC shall not be held responsible for identifying any or all such patent rights. ISO/IEC 13888-1 was prepared by Joint Technical Committee ISO/IEC JTC 1, Information technology, Subcommittee SC 27, IT Security techniques. This third edition cancels and replaces the second edition (ISO/IEC 1
20、3888-1:2004), which has been technically revised. ISO/IEC 13888 consists of the following parts, under the general title Information technology Security techniques Non-repudiation: Part 1: General Part 2: Mechanisms using symmetric techniques Part 3: Mechanisms using asymmetric techniques BS ISO/IEC
21、 13888-1:2009 ISO/IEC 13888-1:2009(E) ISO/IEC 2009 All rights reserved v Introduction The goal of a non-repudiation service is to generate, collect, maintain, make available and verify evidence concerning a claimed event or action in order to resolve disputes about the occurrence or non occurrence o
22、f the event or action. This part of ISO/IEC 13888 defines a model for non-repudiation mechanisms providing evidence based on cryptographic check values generated using symmetric or asymmetric cryptographic techniques. Non-repudiation services establish evidence; evidence establishes accountability r
23、egarding a particular event or action. The entity responsible for the action, or associated with the event, with regard to which evidence is generated, is known as the evidence subject. Non-repudiation mechanisms provide protocols for the exchange of non-repudiation tokens specific to each non-repud
24、iation service. Non-repudiation tokens consist of secure envelopes and/or digital signatures and, optionally, additional data: Secure envelopes are generated by an evidence generating authority using symmetric cryptographic techniques. Digital signatures are generated by an evidence generator or an
- 1.请仔细阅读文档,确保文档完整性,对于不预览、不比对内容而直接下载带来的问题本站不予受理。
- 2.下载的文档,不会出现我们的网址水印。
- 3、该文档所得收入(下载+内容+预览)归上传者、原创作者;如果您是本文档原作者,请点此认领!既往收益都归您。
下载文档到电脑,查找使用更方便
5000 积分 0人已下载
下载 | 加入VIP,交流精品资源 |
- 配套讲稿:
如PPT文件的首页显示word图标,表示该PPT已包含配套word讲稿。双击word图标可打开word文档。
- 特殊限制:
部分文档作品中含有的国旗、国徽等图片,仅作为作品整体效果示例展示,禁止商用。设计者仅对作品中独创性部分享有著作权。
- 关 键 词:
- BSISOIEC1388812009INFORMATIONTECHNOLOGYSECURITYTECHNIQUESNONREPUDIATIONGENERAL 信息技术 安全技术 不可 否认 概述 PDF

链接地址:http://www.mydoc123.com/p-396304.html