CAN CSA-ISO IEC 10181-1-2000 Information technology - Open Systems Interconnection - Security frameworks for open systems Overview.pdf
《CAN CSA-ISO IEC 10181-1-2000 Information technology - Open Systems Interconnection - Security frameworks for open systems Overview.pdf》由会员分享,可在线阅读,更多相关《CAN CSA-ISO IEC 10181-1-2000 Information technology - Open Systems Interconnection - Security frameworks for open systems Overview.pdf(31页珍藏版)》请在麦多课文档分享上搜索。
1、CSA I NTE RNAT IO N A1 / 1 National Standard of Canada CAN/CSA-ISODEC 10181-1-00 (ISO/IEC 10181-1 :1996) International Standard ISO/IEC 10181-1:1996 (first edition 1996-08-01) has been adopted without modification as CSA Standard CAN/CSA-ISO/IEC 10181-1-00, which has been approved as a National Stan
2、dard of Canada by the Standards Council of Canada. ISBN 1-55324-090-1 March 2000 Information technology - Open Systems Interconnection - Security frameworks for open systems: Overview (Reaff i r med 2004) Technologies de Iin formation - lnterconnexiun de s ystgrnes ouverts (OS,) - Cadre pour fa s8cu
3、rit6 dans les s yst this remains the continuing responsibility of the accredited standards-development organization. Those who have a need to apply standards are encouraged to use National Standards of Canada whenever practicable. These standards are subject to periodic review; therefore, users are
4、cautioned to obtain the latest edition from the organization preparing the standard. The responsibility for approving National Standards of Canada rests with the Standards Council of Canada 45 OConnor Street, Suite 1200 Ottawa, Ontario, K1 P 6N7 Canada A National Standard of Canada is a standard whi
5、ch CSA INTERNATIONAL c . Les normes nationales du Canada sont publi6es en versions frangaise et anglaise. Although the intended primary application of this Standard is stated in its Scope, it is important to note that it remains the responsibility of the users to judge its suitability for their part
6、icular purpose. lnformation technology - Open Systems Interconnection - Security frameworks for open systems: Overview CAN/CSA-150/1EC 7 0 78 7 - 7-00 CAN/CSA-ISO/IEC 101 81 -1 -00 Information technology - Open Systems Interconnection - Security tkmwworks for open systems: Overview CSA Preface Stand
7、ards development within the Information Technology sector is harmonized with international standards development. Through the CSA Technical Committee on Information Technology (TCIT), Canadians serve as the Canadian Advisory Committee (CAC) on ISO/IEC Joint Technical Committee 7 on Information Techn
8、ology (ISO/IEC JTCI) for the Standards Councit of Canada (SCC), the IS0 member body for Canada and sponsor of the Canadian National Committee of the IEC. Also, as a member of the International Telecommunication Union (ITU), Canada participates in the International Telegraph and Telephone Consultativ
9、e Committee (ITU-T). This International Standard was reviewed by the CSA TClT under the jurisdiction of the Strategic Steering Committee on Information Technology and deemed acceptable for use in Canada. (A committee membership list is available on request from the CSA Project Manager.) From time to
10、 time, ISO/IEC may publish addenda, corrigenda, etc. The CSA TClT will review these documents for approval and publication. For a listing, refer to the CSA Information Products catalogue or CSA Info Update or contact a CSA Sales representative. This Standard has been formatly approved, without modif
11、ication, by these Committees and has been approved as a National Standard of Canada by the Standards Council of Canada. March 2000 0 CSA International - 2000 All rights reserved. No part of this publication may be reproduced in any form whatsoever without the prior permission of the publisher. lSO/C
12、 material is reprinted with permission. Inquiries regording this National Standard of Canada should be addressed to CSA lnternationa/ 7 78 Rexdale Boulevard, Toronto, Ontario, M9W 1 R3. March 2000 CSA/I INTERNATIONAL STANDARD ISO/IEC 10181-1 First edition 1996-08-01 Information technology - Open Sys
13、tems Interconnection - Security frameworks for open systems: Overview Technologies de Iinformation - lnterconnexion de s ystgmes ouverts (OS11 - Cadre pour la s6curitd dam les s ystgmes ouverts: PrGsentation I Reference number ISO/IEC 10181-1 11 996(E) EO/IEC 1018 1- 1 1996(E) CONTENTS Page 1 2 3 7
14、8 scope Normative references . 2.1 Identical Recommendations I International Standards 2.2 Paired Recommendations I International Standards equivalent in technical content Definitions 3.1 Basic Reference Model definitions . 3.2 Security architecture definitions . 3.3 Additional definitions . Abbrevi
15、ations . Notation Organization . 6.1 6.2 6.3 6.4 6.5 6.6 6. 7 Part 7 - Security audit and alarms 6.8 Key management Part 1 - Overview . Part 2 - Authentication . Part 3 - Access control . Part 4 - Non-repudiation . Part 5 - Confidentiality . Part 6 - Integrity . Common concepts 7.1 Security informat
16、ion . 7.2 Security domain 7.2.1 Security policy and security policy rules 7.2.2 Secwity domain authority . 7.2.3 Inter-relationships among security domains . 7.2.4 Establishment of secure interaction rules 7.2.5 Interdomain security information transfer . Security policy considerations for specific
17、security services 7.3 7.4 Trusted entities 7.5 Trust 7.6 Trusted third parties 8.1 Security labels . 8.3 Security certificates . Verification and chaining of security certificates . Generic security information 8.2 Cryptographic checkvalues . Introduction to security certificates . Revocation of sec
18、urity certificates Re-use of security certificates . 8.3.1 8.3.2 8.3.3 8.3.4 8.3.5 Security certificate structure . 8.4 Security tokens 1 4 4 4 4 4 5 5 5 6 6 6 6 7 7 7 8 8 9 9 9 9 10 10 10 10 11 11 fl 12 12 12 12 13 0 ISO/IEC 1996 All rights reserved . Unless otherwise specified. no part of this pub
19、lication may be reproduced or utilized in any form or by any means. electronic or mechanical. including photocopying and micro- film. without permission in writing from the publisher . ISO/IEC Copyright Office Case postale 56 CH- 121 1 Genkve 20 Switzerland 0 ISO/IEC ISO/IEC 10181-1:1996(E) 9 10 11
20、12 Generic security facilities . 9.1 Management related facilities . 9.1.1 Install SI 9.1.2 Deinstall SI . . 9.1.3 Change SI 9.1.4 Validate SI 9.1.5 Invalidate SI 9.1.6 DisableRe-enable security service . 9.1.7 Enrol 9.1.8 Un-enrol 9.1.9 Distribute SI 9.1.10 List SI 9.2 Operational related facilitie
21、s . 9.2.1 Identify trusted security authorities . 9.2.2 Identify secure interaction Nles 9.2.3 Acquire SI . 9.2.4 Generate SI 9.2.5 Verify SI . Interactions between security mechanisms Denial of service and avaiIability . Other requirements . Annex A . Some examples of protection mechanisms for secu
22、rity certificates . Protection using a parameter within the security certificate . A.1 A.2 Protection using an OS1 communications security service . A.2.1 The authentication method A.2.2 The secret key method A.2.3 The public key method A.2.4 The one-way function method Protection of the inkmaI and
23、external parameters while in transit . A.3.1 A.3.2 Transfer of external parameters among entities Use of security certificates by single entities or by groups of entities Linking a security certificate with accesses A.3 Transfer of internal parameters to the issuing security authority A.4 AS Annex B
24、 . Bibliography . 13 13 13 13 13 14 14 14 14 14 14 14 14 14 14 14 14 15 15 15 16 17 17 17 17 17 18 18 18 18 18 19 19 20 . 111 0 ISOIIEC Foreword IS0 (the International Organization for Standardization) and IEC (the Inter- national Electrotechnical Commission) form the specialized system for worldwid
- 1.请仔细阅读文档,确保文档完整性,对于不预览、不比对内容而直接下载带来的问题本站不予受理。
- 2.下载的文档,不会出现我们的网址水印。
- 3、该文档所得收入(下载+内容+预览)归上传者、原创作者;如果您是本文档原作者,请点此认领!既往收益都归您。
下载文档到电脑,查找使用更方便
10000 积分 0人已下载
下载 | 加入VIP,交流精品资源 |
- 配套讲稿:
如PPT文件的首页显示word图标,表示该PPT已包含配套word讲稿。双击word图标可打开word文档。
- 特殊限制:
部分文档作品中含有的国旗、国徽等图片,仅作为作品整体效果示例展示,禁止商用。设计者仅对作品中独创性部分享有著作权。
- 关 键 词:
- CANCSAISOIEC1018112000INFORMATIONTECHNOLOGYOPENSYSTEMSINTERCONNECTIONSECURITYFRAMEWORKSFOROPENSYSTEMSOVERVIEWPDF

链接地址:http://www.mydoc123.com/p-590201.html