ITU-T X 811-1995 Information Technology - Open Systems Interconnection - Security Frameworks for Open Systems Authentication Framework - Data Networks and Open System Communication.pdf
《ITU-T X 811-1995 Information Technology - Open Systems Interconnection - Security Frameworks for Open Systems Authentication Framework - Data Networks and Open System Communication.pdf》由会员分享,可在线阅读,更多相关《ITU-T X 811-1995 Information Technology - Open Systems Interconnection - Security Frameworks for Open Systems Authentication Framework - Data Networks and Open System Communication.pdf(52页珍藏版)》请在麦多课文档分享上搜索。
1、ITU-T RECMNUX-833 75 = 4862593 Ob07708 LO7 INTERNATIONAL TELECOMMUNICATION UNION ITU-T TELECOMMUNICATION STANDARDIZATION SECTOR OF ITU DATA NETWORKS AND OPEN SYSTEM COM MUN ICATIONS SECURITY X.811 (04195) INFORMATION TECHNOLOGY - OPEN SYSTEMS INTERCONNECTION - SECURITY FRAMEWORKS FOR OPEN SYSTEMS: A
2、UTHENTICATION FRAMEWORK ITU-T Recommendation X.811 (Previously “CCIlT Recommendation”) COPYRIGHT International Telecommunications Union/ITU TelecommunicationsLicensed by Information Handling ServicesITU-T RECMN*X.BLL 95 i862591 Ob07909 043 W FOREWORD ITU (International Telecommunication Union) is th
3、e United Nations Specialized Agency in the field of telecommunications. The IT Telecommunication Standardization Sector (ITU-T) is a permanent organ of the ITU. Some 179 member countries, 84 telecom operating entities, 145 scientific and industrial organizations and 38 international organizations pa
4、rticipate in ITU-T which is the body which sets world telecommunications standards (Recommendations). The approval of Recommendations by the Members of IT-T is covered by the procedure laid down in WTSC Resolution No. 1 (Helsinki, 1993). In addition, the World Telecommunication Standardization Confe
5、rence (WTSC), which meets every four years, approves Recommendations submitted to it and establishes the study programme for the following period. In some areas of information technology which fall within ITLJ-Ts purview, the necessary standards are prepared on a collaborative basis with IS0 and IEC
6、. The text of IT-T Recommendation X.811 was approved on 10th of April 1995. The identical text is also published as ISO/IEC International Standard 10181-2. NOTE In this Recommendation, the expression “Administration” is used for conciseness to indicate both a telecommunication administration and a r
7、ecognized operating agency. O ITU 1996 All rights reserved. No part of this publication may be reproduced or utilized in any form or by any means, electronic or mechanical, including photocopying and microfilm, without permission in writing from the ITU. COPYRIGHT International Telecommunications Un
8、ion/ITU TelecommunicationsLicensed by Information Handling ServicesITU-T RECMNUX.83L 95 R 4862593 0607930 865 R PUBLIC DATA NETWORKS Services and facilities ITU-T X-SERIES RECOMMENDATIONS DATA NETWORKS AND OPEN SYSTEM COMMUNICATIONS (February 1994) ORGANIZATION OF X-SERIES RECOMMENDATIONS X. 1-X.19
9、I Subject area 1 Recommendation series Interfaces Transmission, signalling and switching X.20-X.49 X.50-X.89 Network aspects Maintenance X.90-X.149 X. 150-X. 179 Administrative arrangements OPEN SYSTEMS INTERCONNECTION X.180-X.199 Model and notation X.200-X.209 Service definitions X.2 1 O-X.2 19 - C
10、onnection-mode protocol specifications Connectionless-mode protocol specifications X.220-X.229 X.230-X.239 PICS proformas Protocol identification X.240-X.259 X.260-X.269 Security protocols X.270-X.279 Layer managed objects X.280-X.289 Conformance testing INTERWORKING BETWEEN NETWORKS X.290-X.299 Gen
11、eral Mobile data transmission systems x.300-x.349 X.350-X.369 Management MESSAGE HANDLING SYSTEMS X.370-X.399 x.400-x.499 DIRECTORY OS1 NETWORKING AND SYSTEM ASPECTS x.500-x.599 Networking Naming, addressing and registration X.600-X.649 X.650-X.679 Abstract Syntax Notation One (ASN.l) OS1 MANAGEMENT
12、 X.680-X.699 x.700-x.799 SECURITY OS1 APPLICATIONS X.800-X.849 Commitment, concurrency and recovery Transaction processing X.850-X.859 X.860-X.879 Remote operations OPEN DISTRIBUTED PROCESSING X.880-X.899 x.900-x.999 COPYRIGHT International Telecommunications Union/ITU TelecommunicationsLicensed by
13、Information Handling Services _ ITU-T RECMN*X.Bll 75 U 4862571 QbO9Ll Tl CONTENTS . Introduction 1 2 3 4 5 6 7 8 9 Scope Normative references . 2.1 Identical Recommendations I International Standards 2.2 2.3 Additional references Definitions Abbreviations . General discussion of authentication 5.1 B
14、asic concepts of authentication . 5.2 Aspects of authentication service 5.3 Principles used in authentication . 5.4 Phases of authentication 5.5 Trusted Third Party Involvement 5.6 Types of principal . 5.7 Human user authentication 5.8 Types of attack on authentication . Authentication information a
15、nd facilities . 6.1 Authentication information . Characteristics of authentication mechanisms 7.1 Symmetry/Asymmetry 7.2 Use of CryptographicNon-cryptographic techniques . 7.3 Types of authentication . Authentication mechanisms . 8.1 Classification by vulnerabilities 8.2 Initiation of transfer 8.3 U
16、se of authentication certificates 8.4 Mutual authentication . 8.5 Summary of class characteristics Paired Recommendations I International Standards equivalent in technical content 6.2 Facilities 8.6 Classification by configuration . Interactions with other security services/mechanisms . 9.1 Access c
17、ontrol . 9.2 Data integrity 9.3 Data confidentiality . 9.4 Non-repudiation 9.5 Audit . Annex A . Human user authentication Annex B . Authentication in the OS1 Model Annex C - Countering replay using unique numbers or challenges . Annex D - Protection against some forms of attack on authentication .
18、Annex E - Bibliography Annex F - Some specific examples of authentication mechanisms Annex G - Authentication facilities outline ITU-T Rec . X.Sll(1995 E) Page 11 1 2 2 2 2 2 4 4 4 6 8 8 9 12 13 13 15 15 18 22 22 23 23 23 23 29 29 29 30 30 33 33 33 34 34 34 35 31 38 39 42 43 46 1 COPYRIGHT Internati
19、onal Telecommunications Union/ITU TelecommunicationsLicensed by Information Handling ServicesITU-T RECMN*X.BLL 95 Y862591 Ob03912 b38 Introduction Many applications have requirements for security to protect against threats to the communication of information. Some commonly known threats, together wi
20、th the security services and mechanisms that can be used to protect against them, are described in IT Rec. X.800 I IS0 7498-2. Many Open Systems applications have security requirements which depend upon correctly identifying the principals involved. Such requirements may include the protection of as
21、sets and resources against unauthorized access, for which an identity based access control mechanism might be used, and/or the enforcement of accountability by the maintenance of audit logs of relevant events, as well as for accounting and charging purposes. The process of corroborating an identity
22、is called authentication. This Recommendation I International Standard defines a general framework for the provision of authentication services. 11 ITU-T Rec. X.811(1995 E) COPYRIGHT International Telecommunications Union/ITU TelecommunicationsLicensed by Information Handling ServicesITU-T RECMN*X-8
23、33 95 = 4862591 0607933 574 = ISOAEC 10181-2 : 1996 (E) INTERNATIONAL STANDARD ITU-T RECOMMENDATION INFORMATION TECHNOLOGY - OPEN SYSTEMS INTERCONNECTION - SECURITY FRAMEWORKS FOR OPEN SYSTEMS: AUTHENTICATION FRAMEWORK 1 Scope The series of Recommendations I International Standards on Security Frame
24、works for Open Systems addresses the application of security services in an Open Systems environment, where the term “Open Systems” is taken to include areas such as Database, Distributed Applications, Open Distributed Processing and OSI. The Security Frameworks are concerned with defining the means
- 1.请仔细阅读文档,确保文档完整性,对于不预览、不比对内容而直接下载带来的问题本站不予受理。
- 2.下载的文档,不会出现我们的网址水印。
- 3、该文档所得收入(下载+内容+预览)归上传者、原创作者;如果您是本文档原作者,请点此认领!既往收益都归您。
下载文档到电脑,查找使用更方便
10000 积分 0人已下载
下载 | 加入VIP,交流精品资源 |
- 配套讲稿:
如PPT文件的首页显示word图标,表示该PPT已包含配套word讲稿。双击word图标可打开word文档。
- 特殊限制:
部分文档作品中含有的国旗、国徽等图片,仅作为作品整体效果示例展示,禁止商用。设计者仅对作品中独创性部分享有著作权。
- 关 键 词:
- ITUTX8111995INFORMATIONTECHNOLOGYOPENSYSTEMSINTERCONNECTIONSECURITYFRAMEWORKSFOROPENSYSTEMSAUTHENTICATIONFRAMEWORKDATANETWORKSANDOPENSYSTEMCOMMUNICATIONPDF

链接地址:http://www.mydoc123.com/p-805761.html