ITU-T X 800-1991 Security Architecture for Open Systems Interconnection for CCITT Applications (Study Group VII) 49 pp《CCIT开放网络互连安全结构研究组7 49pp》.pdf
《ITU-T X 800-1991 Security Architecture for Open Systems Interconnection for CCITT Applications (Study Group VII) 49 pp《CCIT开放网络互连安全结构研究组7 49pp》.pdf》由会员分享,可在线阅读,更多相关《ITU-T X 800-1991 Security Architecture for Open Systems Interconnection for CCITT Applications (Study Group VII) 49 pp《CCIT开放网络互连安全结构研究组7 49pp》.pdf(49页珍藏版)》请在麦多课文档分享上搜索。
1、INTERNATIONAL TELECOMMUNICATION UNION CCITT X.800 THE INTERNATIONAL TELEGRAPH AND TELEPHONE CONSULTATIVE COMM ITTEE DATA COMMUNICATION NETWORKS: OPEN SYSTEMS INTERCONNECTION (OSI); SECURITY, STRUCTURE AND APPLICATIONS SECURITY ARCHITECTURE FOR OPEN SYSTEMS INTERCONNECTION FOR CCITT APPLICATIONS Reco
2、mmendation X.800 COPYRIGHT International Telecommunications Union/ITU TelecommunicationsLicensed by Information Handling ServicesCCITT RECMN*X=8OQ 91 m 4862593 0563723 8 m INTERNATIONAL TELECOMMUNICATION UNION CCITT THE INTERNATIONAL TELEGRAPH AND TELEPHONE CONS U LTATIVE COM M ITTE E DATA COMMUNICA
3、TION NETWORKS: OPEN SYSTEMS INTERCONNECTION (OSI); SECURITY, STRUCTURE AND APPLICATIONS SECURITY ARCHITECTURE FOR OPEN SYSTEMS INTERCONNECTION FOR CCITT APPLICATIONS Recommendation X.800 I Geneva, 1991 COPYRIGHT International Telecommunications Union/ITU TelecommunicationsLicensed by Information Han
4、dling ServicesCCITT RECMN*X=BOO 91 4862593 05b3724T- FOREWORD The CCJIT (the International Telegraph and Telephone Consultative Committee) is a permanent organ of the International Telecommunication Union (ITU). CC is responsible for studying technical, operating and tariff questions and issuing Rec
5、ommendations on them with a view to standardizing telecommunications on a worldwide basis. The Plenary Assembly of CC which meets every four years, establishes the topics for study and approves Recommendations prepared by its Study Groups. The approval of Recommendations by the members of CCIT betwe
6、en Plenary Assemblies is covered by the procedure laid down in CCIIT Resolution No. 2 (Melbourne, 1988). Recommendation X.800 was prepared by Study Group VI1 and was approved under the Resolution No. 2 procedure on the 22nd of March 1991. CCIIT NOTE In this Recommendation, the expression “Administra
7、tion” is used for conciseness to indicate both a telecommunication Administration and a recognized private operating agency. o ITU 1991 All rights reserved. No part of ihis-publication may be reproduced or utilized in any form or by any means, electronic or mechanical, including photocopying and mic
8、rofilm, without permission in writing from the ITU. COPYRIGHT International Telecommunications Union/ITU TelecommunicationsLicensed by Information Handling ServicesRecommendation X.800 SECURITY ARCHITECTRE FOR OPEN SYSTEMS INTERCONNECIION FOR CCITT APPLICATIONS O Introduction Recommendation X.200 de
9、scribes the Reference Model for open systems interconnection (OSI). It establishes a framework for coordinating the development of existing and future Recommendations for the interconnection of systems. The objective of OS1 is to permit the interconnection of heterogeneous computer systems so that u
10、seful communication between application processes may be achieved. At various times, security controls must be established in order to protect the information exchanged between the application processes. Such controls should make the cost of improperly obtaining or modifying data greater than the po
11、tential value of so doing, or make the time required to obtain the data improperly so great that the value of the data is lost. This Recommendation defines the general security-related architectural elements which can be applied appropriately in the circumstances for which protection of communicatio
12、n between open systems is required. It establishes, within the framework of the Reference Model, guidelines and consraints to improve existing Recornmendations or to develop new Recommendations in the context of OS1 in order to allow secure communications and thus provide a consistent approach to se
13、curity in OSI. A background in security will be helpful in understanding this Recommendation. The reader who is not well versed in security is advised to read Annex A first. This Recommendation extends the Reference Model (Recommendation X.200) to cover security aspects which are general architectur
14、ai elements of communications protocols, but which are not discussed in the Reference Model. 1 Scope aud field of application This Recommendation: a) b) This Recommendation extends the field of application of Recommendation X.200, to cover secure communications between open systems. Basic security s
15、ervices and mechanisms and their appropriate placement have been identified for all layers of the Reference Model. In addition, the architecturai relationships of the security services and mechanisms to the Reference Model have been identified. Additional security measures may be needed in end syste
16、ms, installations and organizations. These measures apply in various application contexts. The definition of security services need4 to support such additional security measures is outside the scope of the Recornmendation. provides a general description of security services and related mechanisms, w
17、hich may be provided by the Reference Model; and defines the positions within the Reference Model where the services and mechanisms may be provided. 1 Recommendation X.800 and IS0 7498-2 (Information processing systems - Open systems interconnection - Basic Reference Made1 -Part 2: Security architec
18、ture) are technically aligned. Recommendation X.800 1 COPYRIGHT International Telecommunications Union/ITU TelecommunicationsLicensed by Information Handling Services-CCITT RECMN%X=800 71 m 4862593 05b3726 3 m OS1 security functions are concerned only with those visible aspects of a communications p
19、ath which permit end systems to achieve the secure transfer of information between them. OS1 security is not concerned with security measures needed in end systems, installations, and organizations, except where these have implications on the choice and position of security services visible in OSI.
20、These latter aspects of security may be standardized but not within the scope of OS1 Recommendations. This Recommendation adds to the concepts and principles defined in Recommendation X.200; it does not modify them. It is not an implementation specification, nor is it a basis for appraising the conf
21、ormance of actual implementations. 2 References Rec. X.200 -Reference Model of open systems interconnection for CCIT applications. IS0 7498 - Information processing systems - Open systems interconnection - Basic Reference Model (1984). IS0 7498-4 - Information processing systems - Open systems inter
22、connection - Basic Reference Model - Part 4: Management framework (1989). IS0 7498/AD1- Information processing systems -Open systems interconnection - Basic Reference Model - Addendum 1: Connectionless-mode transmission (1987). IS0 8648 - Information processing systems - Open systems interconnection
23、 - Internal organization of the network layer (1988). 3 Definitions and abbreviations 3.1 following terms defined in it: This Recommendation builds on concepts developed in Recommendation X.200 and makes use of the a) (N)-connection; b) (N)-data-transmission; c) 0-entity; d) 0-facility; e) 0-layer;
24、f) Open system; g) Peer entities; h) 0-protocol; j) 0-protocol-data-unit; k) Orelay; 1) Routing; m) Sequencing; n) (N)-service; p) (N)-semice-daia-unit; q) (N)-user-data; r) Sub-network; s) OS1 resource; and t) Transfer syntax. 2 Recommendation X.800 COPYRIGHT International Telecommunications Union/
- 1.请仔细阅读文档,确保文档完整性,对于不预览、不比对内容而直接下载带来的问题本站不予受理。
- 2.下载的文档,不会出现我们的网址水印。
- 3、该文档所得收入(下载+内容+预览)归上传者、原创作者;如果您是本文档原作者,请点此认领!既往收益都归您。
下载文档到电脑,查找使用更方便
10000 积分 0人已下载
下载 | 加入VIP,交流精品资源 |
- 配套讲稿:
如PPT文件的首页显示word图标,表示该PPT已包含配套word讲稿。双击word图标可打开word文档。
- 特殊限制:
部分文档作品中含有的国旗、国徽等图片,仅作为作品整体效果示例展示,禁止商用。设计者仅对作品中独创性部分享有著作权。
- 关 键 词:
- ITUTX8001991SECURITYARCHITECTUREFOROPENSYSTEMSINTERCONNECTIONFORCCITTAPPLICATIONSSTUDYGROUPVII49PPCCIT

链接地址:http://www.mydoc123.com/p-805743.html