BS ISO/IEC TR 14516-2002 信息技术.安全技术.委托第三方服务的使用和管理指南
作者:标准资料网
时间:2024-05-10 14:42:33
浏览:8748
来源:标准资料网
下载地址: 点击此处下载
【英文标准名称】:Informationtechnology-Securitytechniques-Guidelinesfortheuseandmanagementoftrustedthirdpartyservices
【原文标准名称】:信息技术.安全技术.委托第三方服务的使用和管理指南
【标准号】:BSISO/IECTR14516-2002
【标准状态】:现行
【国别】:英国
【发布日期】:2002-08-05
【实施或试行日期】:2002-08-05
【发布单位】:英国标准学会(GB-BSI)
【起草单位】:BSI
【标准类型】:()
【标准水平】:()
【中文主题词】:安全;远程通信;定义;数据处理;安全要求;信息技术;信息处理;传播技术
【英文主题词】:Communicationtechnology;Dataprocessing;Definition;Definitions;Informationprocessing;Informationtechnology;Safety;Safetyrequirements;Telecommunication;Telecommunications
【摘要】:AssociatedwiththeprovisionandoperationofaTrustedThirdParty(TTP)areanumberofsecurity-relatedissuesforwhichgeneralguidanceisnecessarytoassistbusinessentities,developersandprovidersofsystemsandservices,etc.Thisincludesguidanceonissuesregardingtheroles,positionsandrelationshipsofTTPsandtheentitiesusingTTPservices,thegenericsecurityrequirements,whoshouldprovidewhattypeofsecurity,whatthepossiblesecuritysolutionsare,andtheoperationaluseandmanagementofTTPservicesecurity.ThisRecommendation|TechnicalReportprovidesguidancefortheuseandmanagementofTTPs,acleardefinitionofthebasicdutiesandservicesprovided,theirdescriptionandtheirpurpose,andtherolesandliabilitiesofTTPsandentitiesusingtheirservices.Itisintendedprimarilyforsystemmanagers,developers,TTPoperatorsandenterpriseuserstoselectthoseTTPservicesneededforparticularrequirements,theirsubsequentmanagement,useandoperationaldeployment,andtheestablishmentofaSecurityPolicywithinaTTP.ItisnotintendedtobeusedasabasisforaformalassessmentofaTTPoracomparisonofTTPs.ThisRecommendation|TechnicalReportidentifiesdifferentmajorcategoriesofTTPservicesincluding:timestamping,non-repudiation,keymanagement,certificatemanagement,andelectronicnotarypublic.Eachofthesemajorcategoriesconsistsofseveralserviceswhichlogicallybelongtogether.
【中国标准分类号】:L70
【国际标准分类号】:35_040
【页数】:42P.;A4
【正文语种】:英语
【原文标准名称】:信息技术.安全技术.委托第三方服务的使用和管理指南
【标准号】:BSISO/IECTR14516-2002
【标准状态】:现行
【国别】:英国
【发布日期】:2002-08-05
【实施或试行日期】:2002-08-05
【发布单位】:英国标准学会(GB-BSI)
【起草单位】:BSI
【标准类型】:()
【标准水平】:()
【中文主题词】:安全;远程通信;定义;数据处理;安全要求;信息技术;信息处理;传播技术
【英文主题词】:Communicationtechnology;Dataprocessing;Definition;Definitions;Informationprocessing;Informationtechnology;Safety;Safetyrequirements;Telecommunication;Telecommunications
【摘要】:AssociatedwiththeprovisionandoperationofaTrustedThirdParty(TTP)areanumberofsecurity-relatedissuesforwhichgeneralguidanceisnecessarytoassistbusinessentities,developersandprovidersofsystemsandservices,etc.Thisincludesguidanceonissuesregardingtheroles,positionsandrelationshipsofTTPsandtheentitiesusingTTPservices,thegenericsecurityrequirements,whoshouldprovidewhattypeofsecurity,whatthepossiblesecuritysolutionsare,andtheoperationaluseandmanagementofTTPservicesecurity.ThisRecommendation|TechnicalReportprovidesguidancefortheuseandmanagementofTTPs,acleardefinitionofthebasicdutiesandservicesprovided,theirdescriptionandtheirpurpose,andtherolesandliabilitiesofTTPsandentitiesusingtheirservices.Itisintendedprimarilyforsystemmanagers,developers,TTPoperatorsandenterpriseuserstoselectthoseTTPservicesneededforparticularrequirements,theirsubsequentmanagement,useandoperationaldeployment,andtheestablishmentofaSecurityPolicywithinaTTP.ItisnotintendedtobeusedasabasisforaformalassessmentofaTTPoracomparisonofTTPs.ThisRecommendation|TechnicalReportidentifiesdifferentmajorcategoriesofTTPservicesincluding:timestamping,non-repudiation,keymanagement,certificatemanagement,andelectronicnotarypublic.Eachofthesemajorcategoriesconsistsofseveralserviceswhichlogicallybelongtogether.
【中国标准分类号】:L70
【国际标准分类号】:35_040
【页数】:42P.;A4
【正文语种】:英语
下载地址:
点击此处下载