DIN CEN ISO/TS 19299 Electronic fee collection - Security framework (ISO/TS 19299:2015)
Данный раздел/документ содержится в продуктах:
- Техэксперт: Машиностроительный комплекс
- Картотека зарубежных и международных стандартов
- CSA CAN/CSA-ISO/IEC-8473-4-98 Information Technology - Protocol for Providing the Connectionless-Mode Network Service: Provision of the Underlying Service by a Subnetwork that Provides the OSI Data Link Service
- ISO ISO/IEC 9646-1 Information Technology - Open Systems Interconnection - Conformance Testing Methodology and Framework - Part 1: General Concepts - Second Edition
- 35
- CSA CAN/CSA-ISO/IEC-8473-4-98 Information Technology - Protocol for Providing the Connectionless-Mode Network Service: Provision of the Underlying Service by a Subnetwork that Provides the OSI Data Link Service
- ISO ISO/IEC 9646-1 Information Technology - Open Systems Interconnection - Conformance Testing Methodology and Framework - Part 1: General Concepts - Second Edition
- 35.100
- CSA CAN/CSA-ISO/IEC-8473-4-98 Information Technology - Protocol for Providing the Connectionless-Mode Network Service: Provision of the Underlying Service by a Subnetwork that Provides the OSI Data Link Service
- ISO ISO/IEC 9646-1 Information Technology - Open Systems Interconnection - Conformance Testing Methodology and Framework - Part 1: General Concepts - Second Edition
- 35.100.30
- CSA CAN/CSA-ISO/IEC-8473-4-98 Information Technology - Protocol for Providing the Connectionless-Mode Network Service: Provision of the Underlying Service by a Subnetwork that Provides the OSI Data Link Service
- ISO ISO/IEC 9646-1 Information Technology - Open Systems Interconnection - Conformance Testing Methodology and Framework - Part 1: General Concepts - Second Edition
- CSA CAN/CSA-ISO/IEC-8473-4-98 Information Technology - Protocol for Providing the Connectionless-Mode Network Service: Provision of the Underlying Service by a Subnetwork that Provides the OSI Data Link Service
- CSA CAN/CSA-ISO/IEC-8473-4-98 Information Technology - Protocol for Providing the Connectionless-Mode Network Service: Provision of the Underlying Service by a Subnetwork that Provides the OSI Data Link Service
- CSA CAN/CSA-ISO/IEC-8473-4-98 Information Technology - Protocol for Providing the Connectionless-Mode Network Service: Provision of the Underlying Service by a Subnetwork that Provides the OSI Data Link Service
- BSI BS ISO/IEC 8473-5 Information Technology - Protocol for Providing the Connectionless-Mode Network Service Part 5: Provision of the Underlying Service by ISDN Circuit-Switched B-Channels
- BSI BS ISO/IEC 8348 Information Technology - Open Systems Interconnection - Network Service Definition - AMD 10502: July 1999
- BSI BS ISO/IEC 13210 Information Technology - Requirements and Guidelines for Test Methods Specifications and Test Method Implementation for Measuring Conformance to POSIX Standards
- ISO ISO/IEC 9646-1 Information Technology - Open Systems Interconnection - Conformance Testing Methodology and Framework - Part 1: General Concepts - Second Edition
- BSI BS ISO/IEC 13210 Information Technology - Requirements and Guidelines for Test Methods Specifications and Test Method Implementation for Measuring Conformance to POSIX Standards
- BSI BS ISO/IEC 8348 Information Technology - Open Systems Interconnection - Network Service Definition - AMD 10502: July 1999
- BSI BS ISO/IEC 8348 Information Technology - Open Systems Interconnection - Network Service Definition - AMD 10502: July 1999
- BSI BS ISO/IEC 13210 Information Technology - Requirements and Guidelines for Test Methods Specifications and Test Method Implementation for Measuring Conformance to POSIX Standards
- ISO ISO/IEC 9646-1 Information Technology - Open Systems Interconnection - Conformance Testing Methodology and Framework - Part 1: General Concepts - Second Edition
- BSI BS ISO/IEC 13210 Information Technology - Requirements and Guidelines for Test Methods Specifications and Test Method Implementation for Measuring Conformance to POSIX Standards
- BSI BS ISO/IEC 13210 Information Technology - Requirements and Guidelines for Test Methods Specifications and Test Method Implementation for Measuring Conformance to POSIX Standards
- ISO ISO/IEC 9646-1 Information Technology - Open Systems Interconnection - Conformance Testing Methodology and Framework - Part 1: General Concepts - Second Edition
- DIN EN 15876-1 Electronic fee collection - Evaluation of on-board and roadside equipment for conformity to EN 15509 - Part 1: Test suite structure and test purposes
- ISO TS 14907-2 Electronic fee collection - Test procedures for user and fixed equipment - Part 2: Conformance test for the on-board unit application interface - Third Edition
- CSA CAN/CSA-ISO/IEC-8473-4-98 Information Technology - Protocol for Providing the Connectionless-Mode Network Service: Provision of the Underlying Service by a Subnetwork that Provides the OSI Data Link Service
- Картотека зарубежных и международных стандартов
Deutsches Institut fur Normung e. V.
Electronic fee collection - Security framework (ISO/TS 19299:2015)
N CEN ISO/TS 19299
Annotation
The overall scope of this Technical Specification is an information security framework for all organizational and technical entities of an EFC scheme and in detail for the interfaces between them, based on the system architecture defined in ISO 17573. The security framework describes a set of requirements and associated security measures for stakeholders to implement and thus ensure a secure operation of their part of an EFC system as required for a trustworthy environment according to its security policy.
The scope of this Technical Specification comprises the following:
— definition of a trust model (Clause 5); Basic assumptions and principles for establishing trust between the stakeholders.
— security requirements (Clause 6);
— security measures
— countermeasures (Clause 7); Security requirements to support actual EFC system implementations.
— security specifications for interface implementation (Clause 8); These specifications represent an add-on for security to the corresponding standards. Figure 5 above shows the relevant interfaces and the corresponding relevant interface standards, as illustrated in Figure 6.
— key management (Clause 9); Covering the (initial) setup of key exchange between stakeholders and several operational procedures like key renewal, certificate revocation, etc.
— security profiles (Annex A);
— implementation conformance statement (Annex B) provides a checklist to be used by an equipment supplier, a system implementation, or an actor of a role declaring his conformity to this Technical Specification;



