AIR FORCE FIPS-PUB-201-1 CHG NOTICE 1-2006 Personal Identity Verification (PIV) of Federal Employees and Contractors.pdf
《AIR FORCE FIPS-PUB-201-1 CHG NOTICE 1-2006 Personal Identity Verification (PIV) of Federal Employees and Contractors.pdf》由会员分享,可在线阅读,更多相关《AIR FORCE FIPS-PUB-201-1 CHG NOTICE 1-2006 Personal Identity Verification (PIV) of Federal Employees and Contractors.pdf(91页珍藏版)》请在麦多课文档分享上搜索。
1、 FIPS PUB 201-1 Change Notice 1FEDERAL INFORMATION PROCESSING STANDARDS PUBLICATION Personal Identity Verification (PIV) of Federal Employees and Contractors Computer Security Division Information Technology Laboratory National Institute of Standards and Technology Gaithersburg, MD 20899-8900 March
2、2006 U.S. DEPARTMENT OF COMMERCE Carlos M. Gutierrez, Secretary NATIONAL INSTITUTE OF STANDARDS AND TECHNOLOGY William A. Jeffrey, Director Provided by IHSNot for ResaleNo reproduction or networking permitted without license from IHS-,-,-PERSONAL IDENTITY VERIFICATION (PIV) OF FEDERAL EMPLOYEES AND
3、CONTRACTORS Acknowledgements NIST would like to acknowledge the significant contributions of the Federal Identity Credentialing Committee (FICC) and the Smart Card Interagency Advisory Board (IAB) for providing valuable contributions to the development of technical frameworks on which this standard
4、is based. Special thanks to those who have participated in the workshops and provided valuable technical suggestions in shaping this standard. NIST also acknowledges the comments received from government and industry organizations during the preliminary draft review period. ii Provided by IHSNot for
5、 ResaleNo reproduction or networking permitted without license from IHS-,-,-PERSONAL IDENTITY VERIFICATION (PIV) OF FEDERAL EMPLOYEES AND CONTRACTORS FOREWORD The Federal Information Processing Standards Publication Series of the National Institute of Standards and Technology (NIST) is the official
6、series of publications relating to standards and guidelines adopted and promulgated under the provisions of the Federal Information Security Management Act (FISMA) of 2002. Comments concerning FIPS publications are welcomed and should be addressed to the Director, Information Technology Laboratory,
7、National Institute of Standards and Technology, 100 Bureau Drive, Stop 8900, Gaithersburg, MD 20899-8900. Dr. Shashi Phoha, Director Information Technology Laboratory ABSTRACT This standard specifies the architecture and technical requirements for a common identification standard for Federal employe
8、es and contractors. The overall goal is to achieve appropriate security assurance for multiple applications by efficiently verifying the claimed identity of individuals seeking physical access to Federally controlled government facilities and electronic access to government information systems. The
9、standard contains two major sections. Part one describes the minimum requirements for a Federal personal identity verification system that meets the control and security objectives of Homeland Security Presidential Directive 12, including personal identity proofing, registration, and issuance. Part
10、two provides detailed specifications that will support technical interoperability among PIV systems of Federal departments and agencies. It describes the card elements, system interfaces, and security controls required to securely store, process, and retrieve identity credentials from the card. The
11、physical card characteristics, storage media, and data elements that make up identity credentials are specified in this standard. The interfaces and card architecture for storing and retrieving identity credentials from a smart card are specified in Special Publication 800-73, Interfaces for Persona
12、l Identity Verification. Similarly, the interfaces and data formats of biometric information are specified in Special Publication 800-76, Biometric Data Specification for Personal Identity Verification. This standard does not specify access control policies or requirements for Federal departments an
13、d agencies. Keywords: Architecture, authentication, authorization, biometrics, credential, cryptography, Federal Information Processing Standards (FIPS), HSPD 12, identification, identity, infrastructure, model, Personal Identity Verification, PIV, validation, verification. iii Provided by IHSNot fo
14、r ResaleNo reproduction or networking permitted without license from IHS-,-,-PERSONAL IDENTITY VERIFICATION (PIV) OF FEDERAL EMPLOYEES AND CONTRACTORS Federal Information Processing Standards 201 2005 Announcing the Standard for Personal Identity Verification of Federal Employees and Contractors Fed
15、eral Information Processing Standards Publications (FIPS PUBS) are issued by the National Institute of Standards and Technology (NIST) after approval by the Secretary of Commerce pursuant to the Federal Information Security Management Act (FISMA) of 2002. 1. Name of Standard. FIPS PUB 201: Personal
16、Identity Verification (PIV) of Federal Employees and Contractors. 2. Category of Standard. Information Security. 3. Explanation. Homeland Security Presidential Directive 12 (HSPD 12), dated August 27, 2004, entitled “Policy for a Common Identification Standard for Federal Employees and Contractors,”
17、 directed the promulgation of a Federal standard for secure and reliable forms of identification for Federal employees and contractors. It further specified secure and reliable identification that + Is issued based on sound criteria for verifying an individual employees identity + Is strongly resist
18、ant to identity fraud, tampering, counterfeiting, and terrorist exploitation + Can be rapidly authenticated electronically + Is issued only by providers whose reliability has been established by an official accreditation process. The directive stipulated that the standard include graduated criteria,
19、 from least secure to most secure, to ensure flexibility in selecting the appropriate level of security for each application. As promptly as possible, but in no case later than eight months after the date of promulgation, executive departments and agencies are required to implement the standard for
20、identification issued to Federal employees and contractors in gaining physical access to controlled facilities and logical access to controlled information systems. 4. Approving Authority. Secretary of Commerce. iv Provided by IHSNot for ResaleNo reproduction or networking permitted without license
21、from IHS-,-,-PERSONAL IDENTITY VERIFICATION (PIV) OF FEDERAL EMPLOYEES AND CONTRACTORS 5. Maintenance Agency. Department of Commerce, NIST, Information Technology Laboratory (ITL). 6. Applicability. This standard is applicable to identification issued by Federal departments and agencies to Federal e
22、mployees and contractors (including contractor employees) for gaining physical access to Federally controlled facilities and logical access to Federally controlled information systems except for “national security systems” as defined by 44 U.S.C. 3542(b)(2). Except as provided in HSPD 12, nothing in
23、 this standard alters the ability of government entities to use the standard for additional applications. Special-Risk Security ProvisionThe U.S. Government has personnel, facilities, and other assets deployed and operating worldwide under a vast range of threats (e.g., terrorist, technical, intelli
24、gence), particularly heightened overseas. For those agencies with particularly sensitive OCONUS threats, the issuance, holding, and/or use of PIV credentials with full technical capabilities as described herein may result in unacceptably high risk. In such cases of extant risk (e.g., to facilities,
- 1.请仔细阅读文档,确保文档完整性,对于不预览、不比对内容而直接下载带来的问题本站不予受理。
- 2.下载的文档,不会出现我们的网址水印。
- 3、该文档所得收入(下载+内容+预览)归上传者、原创作者;如果您是本文档原作者,请点此认领!既往收益都归您。
下载文档到电脑,查找使用更方便
10000 积分 0人已下载
下载 | 加入VIP,交流精品资源 |
- 配套讲稿:
如PPT文件的首页显示word图标,表示该PPT已包含配套word讲稿。双击word图标可打开word文档。
- 特殊限制:
部分文档作品中含有的国旗、国徽等图片,仅作为作品整体效果示例展示,禁止商用。设计者仅对作品中独创性部分享有著作权。
- 关 键 词:
- AIRFORCEFIPSPUB2011CHGNOTICE12006PERSONALIDENTITYVERIFICATIONPIVOFFEDERALEMPLOYEESANDCONTRACTORSPDF

链接地址:http://www.mydoc123.com/p-427400.html