ANSI X9.73-2017 Cryptographic Message Syntax - ASN.1 and XML.pdf
《ANSI X9.73-2017 Cryptographic Message Syntax - ASN.1 and XML.pdf》由会员分享,可在线阅读,更多相关《ANSI X9.73-2017 Cryptographic Message Syntax - ASN.1 and XML.pdf(119页珍藏版)》请在麦多课文档分享上搜索。
1、 American National Standard for Financial Services ANSI X9.73-2017 Cryptographic Message Syntax ASN.1 and XML Accredited Standards Committee X9, Incorporated Financial Industry Standards Date Approved: September 28, 2017 American National Standards Institute American National Standards, Technical Re
2、ports and Guides developed through the Accredited Standards Committee X9, Inc., are copyrighted. Copying these documents for personal or commercial use outside X9 membership agreements is prohibited without express written permission of the Accredited Standards Committee X9, Inc. For additional info
3、rmation, please contact ASC X9, Inc., 1212 West Street, Suite 200, Annapolis, MD 21401. This page left intentionally blank ANSI X9.73-2017 ASC X9, Inc. 2017 All rights reserved iii Contents Page Foreword . v Introduction vi 1 Scope 1 2 Normative references 2 3 Terms and definitions . 2 4 Symbols and
4、 abbreviated terms 7 5 Application . 8 6 Message schema . 9 6.1 XML namespace. 9 6.2 Transfer formats 9 6.3 Content type . 10 6.3.1 Content . 10 6.3.2 Identification 11 6.3.3 Encapsulation 11 6.4 Signed data 12 6.4.1 Schema definition 12 6.4.2 Signer information . 14 6.4.3 Signed attribute types . 1
5、6 6.4.4 Unsigned attributes . 25 6.4.5 Detached signatures . 26 6.4.6 Signature process . 26 6.5 Enveloped data 27 6.6 Authenticated data 29 6.6.1 Techniques . 29 6.6.2 MAC and HMAC creation 32 6.6.3 MAC and HMAC verification . 32 6.7 Digested data . 33 6.8 Encrypted data . 34 6.9 Named key encrypte
6、d data . 35 6.10 Signcrypted data 36 6.10.1 Schema definition 36 6.10.2 Processing modes . 38 7 Key management processing . 45 7.1 General . 45 7.2 Key transport . 46 7.3 Key agreement . 46 7.3.1 Operations and procedures 46 7.3.2 Key control . 46 7.3.3 Message components and processing . 48 7.4 Sym
7、metric key encryption key . 48 7.5 Password-based encryption . 48 7.6 Other key management techniques . 49 8 S/MIME formatting . 51 Annex A (normative) Abstract Schema 52 ANSI X9.73-2017 iv ASC X9, Inc. 2017 All rights reserved A.1 General 52 A.2 Information object identifiers .52 A.3 CMS schema spe
8、cification .55 A.4 CKM schema specification .64 A.5 Key agreement schema specification .66 A.6 Password-based encryption schema specification .67 A.7 CKM-Header schema specification 68 A.8 TokenizationManifest specification .73 A.9 Signcryption .75 A.10 Database Encryption Key Management 78 Annex B
9、(normative) SOAP security extensions .81 B.1 Security tokens 81 B.2 SOAP processing model .81 B.3 Attaching CMS security tokens 82 B.4 Extension syntax .82 Annex C (informative) UNIversal Financial Industry (UNIFI) 84 C.1 Overview .84 C.2 Content .85 Annex D (informative) Dynamic Symmetric Key Manag
10、ement Framework 87 D.1 Description .87 D.1.1 CKM administration .87 D.1.2 Token distribution .94 D.1.3 Secure channels 95 Annex E (informative) Database Encryption Key Management .96 E.1 Introduction 96 E.2 Single Server Initial Data Encryption Key .96 E.3 Single Server Change Data Encryption Key .9
11、7 E.4 Multiple Data Encryption Keys with Single Server.99 E.5 Multiple Data Encryption Keys with Multiple Servers 100 E.6 Multiple HMAC Keys with Multiple Servers .102 Bibliography 105 ANSI X9.73-2017 ASC X9, Inc. 2017 All rights reserved v Foreword Approval of an American National Standard requires
12、 verification by ANSI that the requirements for due process, consensus, and other criteria for approval have been met by the standards developer. Consensus is established when, in the judgment of the ANSI Board of Standards Review, substantial agreement has been reached by directly and materially af
13、fected interests. Substantial agreement means much more than a simple majority, but not necessarily unanimity. Consensus requires that all views and objections be considered, and that a concerted effort be made toward their resolution. The use of American National Standards is completely voluntary;
14、their existence does not in any respect preclude anyone, whether he has approved the standards or not from manufacturing, marketing, purchasing, or using products, processes, or procedures not conforming to the standards. The American National Standards Institute does not develop standards and will
15、in no circumstances give an interpretation of any American National Standard. Moreover, no person shall have the right or authority to issue an interpretation of an American National Standard in the name of the American National Standards Institute. Requests for interpretation should be addressed to
16、 the secretariat or sponsor whose name appears on the title page of this standard. CAUTION NOTICE: This American National Standard may be revised or withdrawn at any time. The procedures of the American National Standards Institute require that action be taken to reaffirm, revise, or withdraw this s
17、tandard no later than five years from the date of approval. Published by Accredited Standards Committee X9, Incorporated Financial Industry Standards 275 West Street, Suite 107 Annapolis, MD 21401 USA X9 Online http:/www.x9.org Copyright 2010-2017 ASC X9, Inc. All rights reserved. No part of this pu
18、blication may be reproduced in any form, in an electronic retrieval system or otherwise, without prior written permission of the publisher. Published in the United States of America. ANSI X9.73-2017 vi ASC X9, Inc. 2017 All rights reserved Introduction Financial business practices have changed with
19、the introduction of computer and network-based technologies. Increased reliance on electronic transactions has heightened the need to manage the security of information and communications technology. Huge amounts in funds and securities are transferred daily by electronic communication mechanisms co
20、ntrolled by security practices based on business policies. The high value or sheer volume of such transactions within an open environment exposes the financial community to the risk of potentially severe consequences from accidental or deliberate disclosure, alteration, substitution, or destruction
21、of data. This risk is compounded by interconnected networks, and the increased number and sophistication of malicious adversaries. When financial transactions involve systemically important payment systems, these consequences may adversely affect national and global financial markets. This standard
22、defines a cryptographic message syntax that can be used to protect financial transactions and other information from the threats described above. The syntax is easily extensible in design to allow the use of any cryptographic algorithm defined in current or future standards appropriate for use by th
23、e financial services. The cryptographic syntax is suitable for the protection of the identity and rights management information critical for secure access control. The syntax provides support for data confidentiality, data integrity, data origin authentication, and non-repudiation services needed to
24、 provide strong, mutual authentication. These services can be applied to prevent innovative types of fraud such as phishing that are aimed at identity impersonation and theft, and which threaten the interests of financial institutions and their customers, the merchants, consumers and other actors of
- 1.请仔细阅读文档,确保文档完整性,对于不预览、不比对内容而直接下载带来的问题本站不予受理。
- 2.下载的文档,不会出现我们的网址水印。
- 3、该文档所得收入(下载+内容+预览)归上传者、原创作者;如果您是本文档原作者,请点此认领!既往收益都归您。
下载文档到电脑,查找使用更方便
10000 积分 0人已下载
下载 | 加入VIP,交流精品资源 |
- 配套讲稿:
如PPT文件的首页显示word图标,表示该PPT已包含配套word讲稿。双击word图标可打开word文档。
- 特殊限制:
部分文档作品中含有的国旗、国徽等图片,仅作为作品整体效果示例展示,禁止商用。设计者仅对作品中独创性部分享有著作权。
- 关 键 词:
- ANSIX9732017CRYPTOGRAPHICMESSAGESYNTAXASN1ANDXMLPDF

链接地址:http://www.mydoc123.com/p-439647.html