EN 419221-5-2018 en Protection Profiles for TSP Cryptographic Modules - Part 5 Cryptographic Module for Trust Services.pdf
《EN 419221-5-2018 en Protection Profiles for TSP Cryptographic Modules - Part 5 Cryptographic Module for Trust Services.pdf》由会员分享,可在线阅读,更多相关《EN 419221-5-2018 en Protection Profiles for TSP Cryptographic Modules - Part 5 Cryptographic Module for Trust Services.pdf(82页珍藏版)》请在麦多课文档分享上搜索。
1、BSI Standards PublicationWB11885_BSI_StandardCovs_2013_AW.indd 1 15/05/2013 15:06Protection Profiles for TSP Cryptographic ModulesPart 5: Cryptographic Module for Trust ServicesBS EN 419221-5:2018EUROPEAN STANDARD NORME EUROPENNE EUROPISCHE NORM EN 419221-5 May 2018 ICS 35.040.01; 35.240.30 English
2、Version Protection Profiles for TSP Cryptographic Modules - Part 5: Cryptographic Module for Trust Services Profils de protection pour les modules cryptographiques de prestataires de services de confiance - Partie 5: Module cryptographique pour les services de confiance Schutzprofile fr kryptographi
3、sche Module von Vertrauensdienstanbietern - Teil 5: Kryptographisches Modul fr vertrauenswrdige Dienste This European Standard was approved by CEN on 2 March 2018. CEN members are bound to comply with the CEN/CENELEC Internal Regulations which stipulate the conditions for giving this European Standa
4、rd the status of a national standard without any alteration. Up-to-date lists and bibliographical references concerning such national standards may be obtained on application to the CEN-CENELEC Management Centre or to any CEN member. This European Standard exists in three official versions (English,
5、 French, German). A version in any other language made by translation under the responsibility of a CEN member into its own language and notified to the CEN-CENELEC Management Centre has the same status as the official versions. CEN members are the national standards bodies of Austria, Belgium, Bulg
6、aria, Croatia, Cyprus, Czech Republic, Denmark, Estonia, Finland, Former Yugoslav Republic of Macedonia, France, Germany, Greece, Hungary, Iceland, Ireland, Italy, Latvia, Lithuania, Luxembourg, Malta, Netherlands, Norway, Poland, Portugal, Romania, Serbia, Slovakia, Slovenia, Spain, Sweden, Switzer
7、land, Turkey and United Kingdom. EUROPEAN COMMITTEE FOR STANDARDIZATION COMIT EUROPEN DE NORMALISATION EUROPISCHES KOMITEE FR NORMUNG CEN-CENELEC Management Centre: Rue de la Science 23, B-1040 Brussels 2018 CEN All rights of exploitation in any form and by any means reserved worldwide for CEN natio
8、nal Members. Ref. No. EN 419221-5:2018 ENational forewordThis British Standard is the UK implementation of EN 419221-5:2018.The UK participation in its preparation was entrusted to Technical Committee IST/17, Cards and security devices for personal identification.A list of organizations represented
9、on this committee can be obtained on request to its secretary.This publication does not purport to include all the necessary provisions of a contract. Users are responsible for its correct application. The British Standards Institution 2018 Published by BSI Standards Limited 2018ISBN 978 0 580 95322
10、 4ICS 35.240.30; 35.030Compliance with a British Standard cannot confer immunity from legal obligations. This British Standard was published under the authority of the Standards Policy and Strategy Committee on 31 May 2018.Amendments/corrigenda issued since publicationDate Text affectedBRITISH STAND
11、ARDBS EN 419221-5:2018EUROPEAN STANDARD NORME EUROPENNE EUROPISCHE NORM EN 419221-5 May 2018 ICS 35.040.01; 35.240.30 English Version Protection Profiles for TSP Cryptographic Modules - Part 5: Cryptographic Module for Trust Services Profils de protection pour les modules cryptographiques de prestat
12、aires de services de confiance - Partie 5: Module cryptographique pour les services de confiance Schutzprofile fr kryptographische Module von Vertrauensdienstanbietern - Teil 5: Kryptographisches Modul fr vertrauenswrdige Dienste This European Standard was approved by CEN on 2 March 2018. CEN member
13、s are bound to comply with the CEN/CENELEC Internal Regulations which stipulate the conditions for giving this European Standard the status of a national standard without any alteration. Up-to-date lists and bibliographical references concerning such national standards may be obtained on application
14、 to the CEN-CENELEC Management Centre or to any CEN member. This European Standard exists in three official versions (English, French, German). A version in any other language made by translation under the responsibility of a CEN member into its own language and notified to the CEN-CENELEC Managemen
15、t Centre has the same status as the official versions. CEN members are the national standards bodies of Austria, Belgium, Bulgaria, Croatia, Cyprus, Czech Republic, Denmark, Estonia, Finland, Former Yugoslav Republic of Macedonia, France, Germany, Greece, Hungary, Iceland, Ireland, Italy, Latvia, Li
16、thuania, Luxembourg, Malta, Netherlands, Norway, Poland, Portugal, Romania, Serbia, Slovakia, Slovenia, Spain, Sweden, Switzerland, Turkey and United Kingdom. EUROPEAN COMMITTEE FOR STANDARDIZATION COMIT EUROPEN DE NORMALISATION EUROPISCHES KOMITEE FR NORMUNG CEN-CENELEC Management Centre: Rue de la
17、 Science 23, B-1040 Brussels 2018 CEN All rights of exploitation in any form and by any means reserved worldwide for CEN national Members. Ref. No. EN 419221-5:2018 EBS EN 419221-5:2018EN 419221-5:2018 (E) 2 Contents Page European foreword . 5 Introduction 6 1 Scope 7 2 Normative references 7 3 Term
18、s and definitions . 8 3.1 Terms and definitions . 8 3.2 Abbreviations . 9 4 Protection Profile 9 4.1 General 9 4.2 Protection Profile Reference 10 4.3 Protection Profile Overview . 10 4.3.1 General . 10 4.3.2 EU Qualified Electronic Signature / Seal Creation Device . 11 4.4 TOE Overview 11 4.4.1 TOE
19、 type 11 4.4.2 Usage and major security features of the TOE . 18 4.4.3 Available non-TOE hardware/software/firmware 19 5 Conformance Claim . 19 5.1 CC Conformance Claim . 19 5.2 PP Claim . 19 5.3 Conformance Rationale 19 5.4 Conformance Statement 20 6 Security Problem Definition . 20 6.1 Assets 20 6
20、.2 Subjects 20 6.3 Threats . 20 6.3.1 General . 20 6.3.2 T.KeyDisclose Unauthorised disclosure of secret/private key 21 6.3.3 T.KeyDerive Derivation of secret/private key . 21 6.3.4 T.KeyMod Unauthorised modification of a key 21 6.3.5 T.KeyMisuse Misuse of a key . 21 6.3.6 T.KeyOveruse Overuse of a
21、key . 21 6.3.7 T.DataDisclose Disclosure of sensitive client application data 21 6.3.8 T.DataMod Unauthorised modification of client application data 21 6.3.9 T.Malfunction Malfunction of TOE hardware or software . 22 6.4 Organisational Security Policies . 22 6.4.1 P.Algorithms Use of approved crypt
22、ographic algorithms 22 6.4.2 P.KeyControl Support for control of keys 22 6.4.3 P.RNG Random Number Generation 22 6.4.4 P.Audit Audit trail generation 23 6.5 Assumptions . 23 6.5.1 A.ExternalData Protection of data outside TOE control . 23 6.5.2 A.Env Protected operating environment 23 6.5.3 A.DataCo
23、ntext Appropriate use of TOE functions . 23 BS EN 419221-5:2018EN 419221-5:2018 (E) 3 6.5.4 A.UAuth Authentication of application users 24 6.5.5 A.AuditSupport Audit data review 24 6.5.6 A.AppSupport Application security support . 24 7 Security Objectives . 24 7.1 General . 24 7.2 Security Objective
24、s for the TOE . 24 7.2.1 General . 24 7.2.2 OT.PlainKeyConf Protection of confidentiality of plaintext secret keys . 24 7.2.3 OT.Algorithms Use of approved cryptographic algorithms . 24 7.2.4 OT.KeyIntegrity Protection of integrity of keys . 25 7.2.5 OT.Auth Authorization for use of TOE functions an
- 1.请仔细阅读文档,确保文档完整性,对于不预览、不比对内容而直接下载带来的问题本站不予受理。
- 2.下载的文档,不会出现我们的网址水印。
- 3、该文档所得收入(下载+内容+预览)归上传者、原创作者;如果您是本文档原作者,请点此认领!既往收益都归您。
下载文档到电脑,查找使用更方便
10000 积分 0人已下载
下载 | 加入VIP,交流精品资源 |
- 配套讲稿:
如PPT文件的首页显示word图标,表示该PPT已包含配套word讲稿。双击word图标可打开word文档。
- 特殊限制:
部分文档作品中含有的国旗、国徽等图片,仅作为作品整体效果示例展示,禁止商用。设计者仅对作品中独创性部分享有著作权。
- 关 键 词:
- EN41922152018ENPROTECTIONPROFILESFORTSPCRYPTOGRAPHICMODULESPART5CRYPTOGRAPHICMODULEFORTRUSTSERVICESPDF

链接地址:http://www.mydoc123.com/p-716528.html