CAN CSA-ISO IEC 11586-2-2000 Information technology - Open Systems interconnection - Generic upper layers security Security Exchange Service Element (SESE) service definition.pdf
《CAN CSA-ISO IEC 11586-2-2000 Information technology - Open Systems interconnection - Generic upper layers security Security Exchange Service Element (SESE) service definition.pdf》由会员分享,可在线阅读,更多相关《CAN CSA-ISO IEC 11586-2-2000 Information technology - Open Systems interconnection - Generic upper layers security Security Exchange Service Element (SESE) service definition.pdf(14页珍藏版)》请在麦多课文档分享上搜索。
1、National Standard of Canada CAN/CSA-ISO/IEC 11586-2-00 (ISO/IEC 11586-2:1996) CSA INTERNATIONAL International Standard ISO/IEC 11586-2:1996 (first edition, 1996-06-01) has been adopted without modification as CSA Standard CAN/CSA-ISO/IEC 11586-2-00, which has been approved as a National Standard of
2、Canada by the Standards Council of Canada. r ISBN 1-55324-007-3 March 2000 Information technology - Open Systems interconnection - Generic upper layers security: Security Exchange Service Element (SESE) service definition Technologies de lin formation - lnterconnexion de s ystemes ouverts (OS11 - S
3、this remains the continuing responsibility of the accredited standards-development organization. Those who have a need to apply standards are encouraged to use National Standards of Canada whenever practicable. These standards are subject to periodic review; therefore, users are cautioned to obtain
4、the latest edition from the organization preparing the standard. The responsibility for approving National Standards of Canada rests with the Standards Council of Canada 45 OConnor Street, Suite 1200 Ottawa, Ontario, K1 P 6N7 Canada A National Standard of Canada is a standard which CSA INTERNATIONAL
5、 c . Les normes nationales du Canada sont publi6es en versions frangaise et anglaise. Although the intended primary application of this Standard is stated in its Scope, it is important to note that it remains the responsibility of the users to judge its suitability for their particular purpose. lnfo
6、rmation technology - Open Systems Interconnection - Generic upper layers security: Security Exchange Service Element (SESE) service definition CAN/CSA-ISO/IEC I 7 586-2-00 CAN/CSA-ISO/IEC 1 1586-2-00 Information technology - Open Systems Interconnection - Gene Part 2: Security Exchange Service Eleme
7、nt Service Definition; Part 3: Security Exchange Service Element Protocol Specification; Part 4: Protecting Transfer Syntax Specification; Part 5: Security Exchange Service Element PICS Proforma; Part 6: Protecting Transfer Syntax PICS Proforma. - - - - - - This Recommendation I International Standa
8、rd constitutes Part 2 of this series. iV ISO/IEC 11586-2 : 1996 (E) INTERNATIONAL STANDARD ITU-T RECOMMENDATION INFORMATION TECHNOLOGY - OPEN SYSTEMS INTERCONNECTION - GENERIC UPPER LAYERS SECURITY: SECURITY EXCHANGE SERVICE ELEMENT (SESE) SERVICE DEFINITION 1 Scope 1.1 provision of security service
9、s in application Iayer protocols. These include: This series of Recommendations 1 International Standards defines a set of generic facilities to assist in the a) a set of notational tools to support the specification of selective field protection requirements in an abstract syntax specification, and
10、 to support the specification of security exchanges and security transformations; b) a service definition, protocol specification and PICS proforma for an application-service-element (ASE) to support the provision of security services within the Application Layer; a specification and PICS proforma f
11、or a security transfer syntax, associated with Presentation Layer support for security services in the Application Layer. c) 1.2 This Recommendation I InternationaI Standard defines the service provided by the Security Exchange Service Element (SESE). The SESE is an ASE which allows the communicatio
12、n of security information to support the provision of security services within the Application Layer. 2 Normative references The following Recommendations and International Standards contain provisions which, through reference in this text, constitute provisions of this Recommendation I Internationa
13、l Standard. At the time of publication, the editions indicated were valid. All Recommendations and Standards are subject to revision, and parties to agreements based on this Recommendation I International Standard are encouraged to investigate the possibility of applying the most recent edition of t
14、he Recommendations and Standards listed below. Members of IEC and IS0 maintain registers of currently valid International Standards. The Telecommunication Standardization Bureau of the ITU maintains a Iist of currently valid ITU-T Recommendations. 2.1 Identical Recommendations I International Standa
15、rds - ITU-T Recommendation X.200 (1994) I ISO/IEC 7498-1 : 1994, Znforrnation technology - Open Systems Interconnection - Basic Reference Model: The Basic Model. - ITU-T Recommendation X.803 (1994) I ISO/IEC 10745: 1995, Information technology - Open Systems Interconnection - Upper layers security m
16、odel. 3 Definitions The following terms are used as defined in ITU-T Rec. X.803 I ISO/IEC 10745: - security exchange; - security exchange item. ITU-T Rec. X.831(1995 E) 1 ISO/IEC 11586-2 : 1996 (E) 4 Abbreviations For the purposes of this Recommendation I International Standard, the following abbrev
17、iations apply: ASE Application Service Element OS1 Open Systems Interconnection PICS Protocol Implementation Conformance Statement SEI Security Exchange Item 5 Conventions Clause 7 employs a tabular presentation of the SESE service primitive parameters. Each parameter is summarized using the followi
18、ng notation: M 0 U C (= Presence of the parameter is mandatory Presence of the parameter is an SESE protocol machine option Presence of the parameter is an SESE service user option Presence of the parameter is conditional The value of this parameter is identical to the value of the corresponding par
19、ameter of the preceding SESE service primitive. 6 Service overview The security exchange service element provides for the communication of information associated with any security exchange, as described in Part 1. This service is typically used for the transfer of authentication, access control, non
20、-repudiation or security management information. 6.1 Specific service facilities The following service facilities are defined: a) SE-TRANSFER; b) SE-U-ABORT; c) SE-P-ABORT. The SE-TRANSFER service facility is used to initiate a security exchange of a certain type, transfer the first security- exchan
21、ge-item (SEI), as well as transfer the other SEIs of a security exchange. It is the only service facility required in completing a security exchange. The SE-U-ABORT service facility is used by the SESE service user to indicate that an error has occurred. This service is used to abnormally terminate
22、a security exchange in progress. Optionally, this service may also abnormally terminate the ASO-association. The SE-P-ABORT service facility is used by the SESE service provider to indicate that an error has occurred. This service is used to abnormally terminate a security exchange in progress. Opti
- 1.请仔细阅读文档,确保文档完整性,对于不预览、不比对内容而直接下载带来的问题本站不予受理。
- 2.下载的文档,不会出现我们的网址水印。
- 3、该文档所得收入(下载+内容+预览)归上传者、原创作者;如果您是本文档原作者,请点此认领!既往收益都归您。
下载文档到电脑,查找使用更方便
10000 积分 0人已下载
下载 | 加入VIP,交流精品资源 |
- 配套讲稿:
如PPT文件的首页显示word图标,表示该PPT已包含配套word讲稿。双击word图标可打开word文档。
- 特殊限制:
部分文档作品中含有的国旗、国徽等图片,仅作为作品整体效果示例展示,禁止商用。设计者仅对作品中独创性部分享有著作权。
- 关 键 词:
- CANCSAISOIEC1158622000INFORMATIONTECHNOLOGYOPENSYSTEMSINTERCONNECTIONGENERICUPPERLAYERSSECURITYSECURITYEXCHANGESERVICEELEMENTSESESERVICEDEFINITIONPDF

链接地址:http://www.mydoc123.com/p-590271.html