EN ISO TS 19299-2015 en Electronic fee collection - Security framework.pdf
《EN ISO TS 19299-2015 en Electronic fee collection - Security framework.pdf》由会员分享,可在线阅读,更多相关《EN ISO TS 19299-2015 en Electronic fee collection - Security framework.pdf(154页珍藏版)》请在麦多课文档分享上搜索。
1、BSI Standards PublicationElectronic fee collection Security frameworkPD CEN ISO/TS 19299:2015National forewordThis Published Document is the UK implementation of CEN ISO/TS19299:2015. It supersedes PD CEN/TS 16439:2013 which is withdrawn.The UK participation in its preparation was entrusted to Techn
2、icalCommittee EPL/278, Intelligent transport systems.A list of organizations represented on this committee can be obtained onrequest to its secretary.This publication does not purport to include all the necessary provisions ofa contract. Users are responsible for its correct application. The British
3、 Standards Institution 2015.Published by BSI Standards Limited 2015ISBN 978 0 580 87862 6ICS 03.220.20; 35.240.60Compliance with a British Standard cannot confer immunity fromlegal obligations.This Published Document was published under the authority of theStandards Policy and Strategy Committee on
4、31 October 2015.Amendments/corrigenda issued since publicationDate Text affectedPUBLISHED DOCUMENTPD CEN ISO/TS 19299:2015TECHNICAL SPECIFICATION SPCIFICATION TECHNIQUE TECHNISCHE SPEZIFIKATION CEN ISO/TS 19299 October 2015 ICS 35.240.60; 03.220.20 Supersedes CEN/TS 16439:2013English Version Electro
5、nic fee collection - Security framework (ISO/TS 19299:2015) Perception de tlpage - Cadre de scurit (ISO/TS 19299:2015) Elektronische Gebhrenerhebung - Sicherheitsgrundstruktur (ISO/TS 19299:2015) This Technical Specification (CEN/TS) was approved by CEN on 26 June 2015 for provisional application. T
6、he period of validity of this CEN/TS is limited initially to three years. After two years the members of CEN will be requested to submit their comments, particularly on the question whether the CEN/TS can be converted into a European Standard. CEN members are required to announce the existence of th
7、is CEN/TS in the same way as for an EN and to make the CEN/TS available promptly at national level in an appropriate form. It is permissible to keep conflicting national standards in force (in parallel to the CEN/TS) until the final decision about the possible conversion of the CEN/TS into an EN is
8、reached. CEN members are the national standards bodies of Austria, Belgium, Bulgaria, Croatia, Cyprus, Czech Republic, Denmark, Estonia, Finland, Former Yugoslav Republic of Macedonia, France, Germany, Greece, Hungary, Iceland, Ireland, Italy, Latvia, Lithuania, Luxembourg, Malta, Netherlands, Norwa
9、y, Poland, Portugal, Romania, Slovakia, Slovenia, Spain, Sweden, Switzerland, Turkey andUnited Kingdom. EUROPEAN COMMITTEE FOR STANDARDIZATION COMIT EUROPEN DE NORMALISATION EUROPISCHES KOMITEE FR NORMUNG CEN-CENELEC Management Centre: Avenue Marnix 17, B-1000 Brussels 2015 CEN All rights of exploit
10、ation in any form and by any means reserved worldwide for CEN national Members. Ref. No. CEN ISO/TS 19299:2015 EPD CEN ISO/TS 19299:2015CEN ISO/TS 19299:2015 (E) 2 Contents Page European foreword . 3 PD CEN ISO/TS 19299:2015CEN ISO/TS 19299:2015 (E) 3 European foreword This document (CEN ISO/TS 1929
11、9:2015) has been prepared by Technical Committee ISO/TC 204 “Intelligent transport systems“ in collaboration with Technical Committee CEN/TC 278 “Intelligent transport systems” the secretariat of which is held by NEN. Attention is drawn to the possibility that some of the elements of this document m
12、ay be the subject of patent rights. CEN and/or CENELEC shall not be held responsible for identifying any or all such patent rights. This document supersedes CEN/TS 16439:2013. This document has been prepared under a mandate given to CEN by the European Commission and the European Free Trade Associat
13、ion. According to the CEN-CENELEC Internal Regulations, the national standards organizations of the following countries are bound to announce this Technical Specification: Austria, Belgium, Bulgaria, Croatia, Cyprus, Czech Republic, Denmark, Estonia, Finland, Former Yugoslav Republic of Macedonia, F
14、rance, Germany, Greece, Hungary, Iceland, Ireland, Italy, Latvia, Lithuania, Luxembourg, Malta, Netherlands, Norway, Poland, Portugal, Romania, Slovakia, Slovenia, Spain, Sweden, Switzerland, Turkey and the United Kingdom. Endorsement notice The text of ISO/TS 19299:2015 has been approved by CEN as
15、CEN ISO/TS 19299:2015 without any modification. PD CEN ISO/TS 19299:2015ISO/TS 19299:2015(E)Foreword vIntroduction vi1 Scope . 12 Normative references 23 Terms and definitions . 44 Symbols and abbreviated terms . 95 Trust model .105.1 Overview . 105.2 Stakeholders trust relations . 105.3 Technical t
16、rust model . 115.3.1 General. 115.3.2 Trust model for TC and TSP relations .115.3.3 Trust model for TSP and service user relations .135.3.4 Trust model for Interoperability Management relations .135.4 Implementation . 135.4.1 Setup of trust relations 135.4.2 Trust relation renewal and revocation 145
17、.4.3 Issuing and revocation of sub CA and end-entity certificates 145.4.4 Certificate and certificate revocation list profile and format .155.4.5 Certificate extensions .156 Security requirements .176.1 General 176.2 Information security management system 186.3 Communication interfaces . 186.4 Data
18、storage 196.5 Toll charger . 196.6 Toll service provider . 216.7 Interoperability Management . 236.8 Limitation of requirements . 237 Security measures countermeasures .247.1 Overview . 247.2 General security measures 247.3 Communication interfaces security measures .257.3.1 General. 257.3.2 DSRC-EF
19、C interface .267.3.3 CCC interface 277.3.4 LAC interface 287.3.5 Front End to TSP back end interface .287.3.6 TC to TSP interface 297.3.7 ICC interface 307.4 End-to-end security measures . 307.5 Toll service provider security measures 327.5.1 Front end security measures 327.5.2 Back end security mea
20、sures . 337.6 Toll charger security measures 347.6.1 RSE security measures .347.6.2 Back end security measures . 347.6.3 Other TC security measures 358 Security specifications for interoperable interface implementation .358.1 General 358.1.1 Subject 35 ISO 2015 All rights reserved iiiContents PagePD
21、 CEN ISO/TS 19299:2015ISO/TS 19299:2015(E)8.1.2 Signature and hash algorithms . 358.2 Security specifications for DSRC-EFC . 368.2.1 Subject 368.2.2 OBE .368.2.3 RSE 369 Key management .369.1 Overview . 369.2 Asymmetric keys 369.2.1 Key exchange between stakeholders . 369.2.2 Key generation and cert
22、ification . 379.2.3 Protection of keys .379.2.4 Application . 379.3 Symmetric keys 389.3.1 General. 389.3.2 Key exchange between stakeholders . 389.3.3 Key lifecycle . 399.3.4 Key storage and protection 409.3.5 Session keys 41Annex A (normative) Security profiles 42Annex B (normative) Implementation
23、 conformance statement (ICS) proforma 46Annex C (informative) Stakeholder objectives and generic requirements .64Annex D (informative) Threat analysis .68Annex E (informative) Security policies . 124Annex F (informative) Example for an EETS security policy 131Annex G (informative) Recommendations fo
24、r privacy-focused implementation .133Annex H (informative) Proposal for end-entity certificates 135Bibliography . 136iv ISO 2015 All rights reservedPD CEN ISO/TS 19299:2015ISO/TS 19299:2015(E)ForewordISO (the International Organization for Standardization) and IEC (the International Electrotechnical
- 1.请仔细阅读文档,确保文档完整性,对于不预览、不比对内容而直接下载带来的问题本站不予受理。
- 2.下载的文档,不会出现我们的网址水印。
- 3、该文档所得收入(下载+内容+预览)归上传者、原创作者;如果您是本文档原作者,请点此认领!既往收益都归您。
下载文档到电脑,查找使用更方便
10000 积分 0人已下载
下载 | 加入VIP,交流精品资源 |
- 配套讲稿:
如PPT文件的首页显示word图标,表示该PPT已包含配套word讲稿。双击word图标可打开word文档。
- 特殊限制:
部分文档作品中含有的国旗、国徽等图片,仅作为作品整体效果示例展示,禁止商用。设计者仅对作品中独创性部分享有著作权。
- 关 键 词:
- ENISOTS192992015ENELECTRONICFEECOLLECTIONSECURITYFRAMEWORKPDF

链接地址:http://www.mydoc123.com/p-727250.html