ISO/IEC 10118-3:2018
IT Security techniques — Hash-functions — Part 3: Dedicated hash-functions
IT Security techniques — Hash-functions — Part 3: Dedicated hash-functions
- Статус документа:
- Действующий
- Формат:
- Электронный (PDF)
- Количество страниц:
- 398
- Дата публикации:
- 31 октября 2018 г.
- Издание:
- ISO/IEC IS 10118 edition 4 version 1
- ICS:
- 35.030
This document specifies dedicated hash-functions, i.e. specially designed hash-functions. The hash-functions in this document are based on the iterative use of a round-function. Distinct round-functions are specified, giving rise to distinct dedicated hash-functions. The use of Dedicated Hash-Functions 1, 2 and 3 in new digital signature implementations is deprecated. NOTE As a result of their short hash-code length and/or cryptanalytic results, Dedicated Hash-Functions 1, 2 and 3 do not provide a sufficient level of collision resistance for future digital signature applications and they are therefore, only usable for legacy applications. However, for applications where collision resistance is not required, such as in hash-functions as specified in ISO/IEC 9797‑2, or in key derivation functions specified in ISO/IEC 11770‑6, their use is not deprecated. Numerical examples for dedicated hash-functions specified in this document are given in Annex B as additional information. For information purposes, SHA-3 extendable-output functions are specified in Annex C.
Abstract
Overview
ISO/IEC 10118-3:2018 - IT Security techniques - Hash-functions - Part 3: Dedicated hash‑functions specifies a set of specially designed (dedicated) cryptographic hash‑functions. The standard defines these algorithms in detail: their models, parameters, byte ordering, padding methods, constants, initialization values and the iterative round‑function descriptions used to compute hash codes. Annex B provides numerical examples and Annex C includes SHA‑3 extendable‑output functions for information.
Key technical topics and requirements
- Models and design: Defines both a round‑function model (iterative construction) and a sponge model for dedicated hash‑function design and use.
- Algorithm specifications: Exact descriptions for multiple dedicated hash‑functions (e.g., RIPEMD‑160, RIPEMD‑128, SHA‑1, SHA‑224, SHA‑256, SHA‑384, SHA‑512, WHIRLPOOL, SHA‑512/224, etc.) including:
- Parameters, functions and constants
- Byte ordering conventions
- Padding methods
- Initializing values
- Detailed round‑function operation and sequence
- Security guidance: Notes deprecation of Dedicated Hash‑Functions 1, 2 and 3 (RIPEMD‑160, RIPEMD‑128, SHA‑1 as listed) for new digital signature implementations due to short hash lengths and known cryptanalytic weaknesses. Their use remains allowed for legacy systems and for applications where collision resistance is not required (for example, certain MACs or KDFs per ISO/IEC 9797‑2 and ISO/IEC 11770‑6).
- Annexes: Numerical examples (Annex B) to aid implementers and SHA‑3 XOF information (Annex C).
Practical applications and who uses this standard
ISO/IEC 10118-3 is intended for:
- Cryptographic library implementers and software developers who need authoritative, interoperable definitions of hash algorithms.
- Security architects and protocol designers specifying hash functions for messaging, file integrity, key derivation or MAC constructions.
- Product vendors and embedded systems developers implementing legacy support or compliance with existing deployments.
- Evaluators, auditors and standards compliance officers verifying correct algorithm implementation and conformance.
- Educators and researchers referencing formal algorithm definitions and example vectors.
Use cases:
- Legacy system maintenance where older hash algorithms remain deployed.
- KDFs and MACs where collision resistance is not a primary requirement (per ISO/IEC 9797‑2, ISO/IEC 11770‑6).
- Implementations requiring exact algorithmic parameters, padding and byte‑order rules for interoperability.
Related standards
- ISO/IEC 10118‑1 (symbols and general provisions referenced)
- ISO/IEC 9797‑2 (message authentication codes)
- ISO/IEC 11770‑6 (key derivation)
- SHA‑3 specifications (referenced in Annex C for extendable‑output functions)
Keywords: ISO/IEC 10118-3, dedicated hash-functions, hash function standard, SHA-1 deprecation, RIPEMD, WHIRLPOOL, cryptographic hash, IT security techniques, collision resistance.
Технические детали
- Технический комитет
- ISO/IEC JTC 1/SC 27 - Information security, cybersecurity and privacy protection
- SKU
- ISO/IEC 10118-3:2018
Похожие стандарты
Упомянутые в описании и другие стандарты ISO
ISO/IEC 9797-2:2021
ДействующийInformation security — Message authentication codes (MACs) — Part 2: Mechanisms using a dedicated hash-functi…
Overview ISO/IEC 9797-2:2021 - Information security - Message authentication codes (MACs) - Part 2: Mechanisms using a dedicated hash-function - specifies standardized MAC algorithms that derive an m…
BS ISO/IEC 10118-1:2016+A1:2021
ДействующийInformation technology. Security techniques. Hash-functions. General.
ISO 8212:1986
ОтменёнSoaps and detergents — Techniques of sampling during manufacture
Overview Standard Reference: ISO 8212:1986 Title: Soaps and detergents - Techniques of sampling during manufacture ISO 8212:1986 defines standardized techniques for taking representative samples of s…
ISO 20662:2020
ДействующийShips and marine technology — Hopper dredger supervisory and control systems
Overview ISO 20662:2020 - Ships and marine technology: Hopper dredger supervisory and control systems (HD‑SCS) - specifies the components, structure, general requirements, and functional requirements…
ISO 3021:2023
ДействующийAdventure tourism — Hiking and trekking activities — Requirements and recommendations
Overview ISO 3021:2023 - Adventure tourism: Hiking and trekking activities - Requirements and recommendations defines safety-focused requirements and recommendations for hiking and trekking offered a…
ISO 3826-2:2008
ДействующийPlastics collapsible containers for human blood and blood components — Part 2: Graphical symbols for use on l…
Overview ISO 3826-2:2008 - "Plastics collapsible containers for human blood and blood components - Part 2: Graphical symbols for use on labels and instruction leaflets" defines a system of internatio…
ISO/IEC 24730-1:2014
ДействующийInformation technology — Real-time locating systems (RTLS) — Part 1: Application programming interface (API)
Overview ISO/IEC 24730-1:2014 specifies the Application Programming Interface (API) for Real‑Time Locating Systems (RTLS). The standard defines a minimal, interoperable boundary that lets application…
ISO 8668-5:1992
ДействующийAircraft — Terminal junction systems — Part 5: Detail specification for type 3 system
Overview - ISO 8668-5:1992 (Aircraft terminal junction systems, Type 3) ISO 8668-5:1992 defines the detail specification for Type 3 Terminal Junction Systems (TJS) used in aircraft electrical install…