CEN TS 419221-3-2016 Protection Profiles for TSP Cryptographic modules - Part 3 Cryptographic module for CSP key generation services《TSP密码模块的保护配置文件-第3部分 CSP密钥生成服务的加密模块》.pdf
《CEN TS 419221-3-2016 Protection Profiles for TSP Cryptographic modules - Part 3 Cryptographic module for CSP key generation services《TSP密码模块的保护配置文件-第3部分 CSP密钥生成服务的加密模块》.pdf》由会员分享,可在线阅读,更多相关《CEN TS 419221-3-2016 Protection Profiles for TSP Cryptographic modules - Part 3 Cryptographic module for CSP key generation services《TSP密码模块的保护配置文件-第3部分 CSP密钥生成服务的加密模块》.pdf(46页珍藏版)》请在麦多课文档分享上搜索。
1、PD CEN/TS 419221-3:2016Protection Profiles for TSPCryptographic modulesPart 3: Cryptographic module for CSP keygeneration servicesBSI Standards PublicationWB11885_BSI_StandardCovs_2013_AW.indd 1 15/05/2013 15:06PD CEN/TS 419221-3:2016 PUBLISHED DOCUMENTNational forewordThis Published Document is the
2、 UK implementation of CEN/TS419221-3:2016.The UK participation in its preparation was entrusted to TechnicalCommittee IST/17, Cards and personal identification.A list of organizations represented on this committee can beobtained on request to its secretary.This publication does not purport to includ
3、e all the necessaryprovisions of a contract. Users are responsible for its correctapplication. The British Standards Institution 2016. Published by BSI StandardsLimited 2016ISBN 978 0 580 92179 7ICS 35.040; 35.240.30Compliance with a British Standard cannot confer immunity fromlegal obligations.This
4、 Published Document was published under the authority of theStandards Policy and Strategy Committee on 31 July 2016.Amendments issued since publicationDate Text affectedPD CEN/TS 419221-3:2016TECHNICAL SPECIFICATION SPCIFICATION TECHNIQUE TECHNISCHE SPEZIFIKATION CEN/TS 419221-3 July 2016 ICS 35.040
5、; 35.240.30 Supersedes CWA 14167-3:2004English Version Protection Profiles for TSP Cryptographic modules - Part 3: Cryptographic module for CSP key generation servicesProfils de protection pour modules cryptographiques utiliss par les prestataires de services de confiance - Partie 3 : Module cryptog
6、raphique utilis par le prestataire de services de certification pour la gnration de cls Schutzprofile fr kryptographische Module von vertrauenswrdigen Dienstanbietern - Teil 3: Kryptographisches Modul fr CSP Schlsselgenerierungsdienste This Technical Specification (CEN/TS) was approved by CEN on 8 M
7、ay 2016 for provisional application. The period of validity of this CEN/TS is limited initially to three years. After two years the members of CEN will be requested to submit their comments, particularly on the question whether the CEN/TS can be converted into a European Standard. CEN members are re
8、quired to announce the existence of this CEN/TS in the same way as for an EN and to make the CEN/TS available promptly at national level in an appropriate form. It is permissible to keep conflicting national standards in force (in parallel to the CEN/TS) until the final decision about the possible c
9、onversion of the CEN/TS into an EN is reached. CEN members are the national standards bodies of Austria, Belgium, Bulgaria, Croatia, Cyprus, Czech Republic, Denmark, Estonia, Finland, Former Yugoslav Republic of Macedonia, France, Germany, Greece, Hungary, Iceland, Ireland, Italy, Latvia, Lithuania,
10、 Luxembourg, Malta, Netherlands, Norway, Poland, Portugal, Romania, Slovakia, Slovenia, Spain, Sweden, Switzerland, Turkey andUnited Kingdom. EUROPEAN COMMITTEE FOR STANDARDIZATION COMIT EUROPEN DE NORMALISATION EUROPISCHES KOMITEE FR NORMUNG CEN-CENELEC Management Centre: Avenue Marnix 17, B-1000 B
11、russels 2016 CEN All rights of exploitation in any form and by any means reserved worldwide for CEN national Members. Ref. No. CEN/TS 419221-3:2016 EPD CEN/TS 419221-3:2016CEN/TS 419221-3:2016 (E) 2 Contents Page European foreword . 3 0 Introduction 4 0.1 General 4 0.2 Document Structure . 5 1 Scope
12、 6 2 Normative references 6 3 Terms and definitions . 6 4 General 6 4.1 PP reference 6 4.2 TOE overview 6 4.2.1 TOE usage and major security features 6 4.2.2 TOE type . 8 4.2.3 Available non-TOE hardware/firmware/software . 8 5 Conformance Claims 8 5.1 CC conformance claim . 8 5.2 PP claim 9 5.3 Con
13、formance rationale . 9 5.4 Conformance statement 9 6 Security Problem Definition 9 6.1 TOE assets 9 6.2 Threats . 10 6.3 Organizational security policies . 12 6.4 Assumptions . 13 7 Security Objectives 13 7.1 General . 13 7.2 Security objectives for the TOE . 13 7.3 Security objectives for the opera
14、tional environment . 15 7.4 Security objectives rationale . 16 8 Security Requirements . 21 8.1 Security functional requirements 21 8.1.1 Subjects, objects, security attributes and operations . 21 8.1.2 Security requirements operations . 22 8.1.3 Security Audit (FAU) . 23 8.1.4 Cryptographic Support
15、 (FCS) . 24 8.1.5 User Data Protection (FDP) 25 8.1.6 Identification and Authentication (FIA) 28 8.1.7 Security Management (FMT) 29 8.1.8 Privacy (FPR) . 30 8.1.9 Protection of the TSF (FPT) 31 8.1.10 Trusted path/channels (FTP) 33 8.2 Security assurance requirements 33 8.3 Security requirements rat
16、ionale 34 8.3.1 Security functional requirements rationale . 34 8.3.2 Security assurance requirements rationale . 40 Bibliography . 41 PD CEN/TS 419221-3:2016CEN/TS 419221-3:2016 (E) 3 European foreword This document (CEN/TS 419221-3:2016) has been prepared by Technical Committee CEN/TC 224 “Persona
17、l identification and related personal devices with secure element, systems, operations and privacy in a multi sectorial environment”, the secretariat of which is held by AFNOR. Attention is drawn to the possibility that some of the elements of this document may be the subject of patent rights. CEN s
18、hall not be held responsible for identifying any or all such patent rights. This document supersedes CWA 14167-3:2004. This document has been prepared under a mandate given to CEN by the European Commission and the European Free Trade Association. CEN/TS 419221, Protection Profiles for TSP cryptogra
19、phic modules, is currently composed of the following parts: Part 1: Overview; Part 2: Cryptographic module for CSP signing operations with backup; Part 3: Cryptographic module for CSP key generation services; Part 4: Cryptographic module for CSP signing operations without backup. According to the CE
20、N/CENELEC Internal Regulations, the national standards organisations of the following countries are bound to announce this Technical Specification: Austria, Belgium, Bulgaria, Croatia, Cyprus, Czech Republic, Denmark, Estonia, Finland, Former Yugoslav Republic of Macedonia, France, Germany, Greece,
21、Hungary, Iceland, Ireland, Italy, Latvia, Lithuania, Luxembourg, Malta, Netherlands, Norway, Poland, Portugal, Romania, Slovakia, Slovenia, Spain, Sweden, Switzerland, Turkey and the United Kingdom. PD CEN/TS 419221-3:2016CEN/TS 419221-3:2016 (E) 4 Introduction 0.1 General This CEN Technical Standar
22、d specifying a Protection Profile for Cryptographic Module for CSP Key Generation Services is issued by the European Committee for Standardization. The document is for use by the European Commission in accordance with the procedure laid down in Article 9 of the Directive 1999/93/EC of the European p
23、arliament and of the council of 13 December 1999 on a Community framework for electronic signatures 1, referred to as the Directive in the remainder of the Protection Profile, as generally recognized standard for electronic-signature products in the Official Journal of the European Communities. The
24、Directive states in Annex II that certification-service-providers must: (f) use trustworthy systems and products which are protected against modification and ensure the technical and cryptographic security of the process supported by them; (g) take measures against forgery of certificates, and, in c
- 1.请仔细阅读文档,确保文档完整性,对于不预览、不比对内容而直接下载带来的问题本站不予受理。
- 2.下载的文档,不会出现我们的网址水印。
- 3、该文档所得收入(下载+内容+预览)归上传者、原创作者;如果您是本文档原作者,请点此认领!既往收益都归您。
下载文档到电脑,查找使用更方便
10000 积分 0人已下载
下载 | 加入VIP,交流精品资源 |
- 配套讲稿:
如PPT文件的首页显示word图标,表示该PPT已包含配套word讲稿。双击word图标可打开word文档。
- 特殊限制:
部分文档作品中含有的国旗、国徽等图片,仅作为作品整体效果示例展示,禁止商用。设计者仅对作品中独创性部分享有著作权。
- 关 键 词:
- CENTS41922132016PROTECTIONPROFILESFORTSPCRYPTOGRAPHICMODULESPART3CRYPTOGRAPHICMODULEFORCSPKEYGENERATIONSERVICESTSP

链接地址:http://www.mydoc123.com/p-592775.html