ISO/IEC 10181-6:1996
Information technology — Open Systems Interconnection — Security frameworks for open systems: Integrity framework
Information technology — Open Systems Interconnection — Security frameworks for open systems: Integrity framework
- Статус документа:
- Действующий
- Формат:
- Электронный (PDF)
- Количество страниц:
- 18
- Дата публикации:
- 19 сентября 1996 г.
- Издание:
- ISO/IEC IS 10181 edition 1 version 1
- ICS:
- 35.100.01
Specifies a general framework for the provision of integrity services.
Abstract
Overview
ISO/IEC 10181-6:1996 - Information technology - Open Systems Interconnection - Security frameworks for open systems: Integrity framework - defines a general integrity framework for open systems (OSI). It formalizes the concept of data integrity (the constancy of a data value), describes how integrity services apply to data and sequences of operations, and specifies high-level provisions for delivering integrity services across databases, distributed applications, open distributed processing and OSI environments.
Key topics and technical scope
This part of ISO/IEC 10181 provides a structured treatment of integrity considerations rather than implementation recipes. Major topics include:
- Definitions and scope: formal definitions (integrity-protected channel/environment, shield/unshield, validate) and the intended application domains.
- Types of integrity services and mechanisms: taxonomy of integrity approaches (cryptographic techniques such as digital signatures, seals and encipherment of redundant data; context-based methods such as replication and pre-agreed context; detection/acknowledgement and prevention methods).
- Integrity information and facilities (Clause 7): classes of integrity information (Shield Integrity Information, Modification Detection Integrity Information, Unshield Integrity Information) and operational/management facilities needed to support integrity.
- Integrity policies (Clause 6): policy expression, data and entity characterization, identity-based and rule-based policies.
- Threats and attacks: analysis of threats to integrity and typical integrity attack classes.
- Interactions with other security services: how integrity mechanisms relate to access control, data origin authentication, confidentiality, audit and non‑repudiation.
- Classification and management: classification of mechanisms (clause 8), and management/operational requirements to support integrity provision.
The framework is algorithm‑agnostic - it does not mandate specific cryptographic algorithms (ISO maintains algorithm registration via ISO/IEC 9979).
Practical applications and who uses it
ISO/IEC 10181-6 is useful for:
- Security architects and systems engineers designing integrity controls for distributed systems, databases and network services.
- Standards developers aligning protocol- and service-level integrity definitions with OSI security frameworks.
- Implementers and vendors that need to map product features (digital signatures, message authentication, replication controls) to a recognized integrity taxonomy.
- Auditors and compliance teams assessing whether integrity policies, facilities and management processes meet accepted framework expectations.
Typical applications include protecting configuration data, transaction logs, messages exchanged between systems, and any data whose unauthorized modification would undermine authentication, access control, confidentiality, audit or non-repudiation.
Related standards
- ISO/IEC 10181 series (Parts 1–7): Overview, Authentication, Access Control, Non‑repudiation, Confidentiality, Integrity, Security Audit.
- ISO/IEC 7498-2 / ITU-T X.800 (security architecture)
- ITU-T X.815 (identical text)
- ISO/IEC 9979 (cryptographic algorithm registration)
Keywords: ISO/IEC 10181-6, integrity framework, data integrity, OSI security, integrity services, integrity mechanisms, integrity policies.
Технические детали
- Технический комитет
- ISO/IEC JTC 1 - Information technology
- SKU
- ISO/IEC 10181-6:1996
Похожие стандарты
Упомянутые в описании и другие стандарты ISO
ISO/IEC 9979:1999
ОтменёнInformation technology — Security techniques — Procedures for the registration of cryptographic algorithms
ISO 8212:1986
ОтменёнSoaps and detergents — Techniques of sampling during manufacture
Overview Standard Reference: ISO 8212:1986 Title: Soaps and detergents - Techniques of sampling during manufacture ISO 8212:1986 defines standardized techniques for taking representative samples of s…
ISO 20662:2020
ДействующийShips and marine technology — Hopper dredger supervisory and control systems
Overview ISO 20662:2020 - Ships and marine technology: Hopper dredger supervisory and control systems (HD‑SCS) - specifies the components, structure, general requirements, and functional requirements…
ISO 3021:2023
ДействующийAdventure tourism — Hiking and trekking activities — Requirements and recommendations
Overview ISO 3021:2023 - Adventure tourism: Hiking and trekking activities - Requirements and recommendations defines safety-focused requirements and recommendations for hiking and trekking offered a…
ISO 3826-2:2008
ДействующийPlastics collapsible containers for human blood and blood components — Part 2: Graphical symbols for use on l…
Overview ISO 3826-2:2008 - "Plastics collapsible containers for human blood and blood components - Part 2: Graphical symbols for use on labels and instruction leaflets" defines a system of internatio…
ISO/IEC 24730-1:2014
ДействующийInformation technology — Real-time locating systems (RTLS) — Part 1: Application programming interface (API)
Overview ISO/IEC 24730-1:2014 specifies the Application Programming Interface (API) for Real‑Time Locating Systems (RTLS). The standard defines a minimal, interoperable boundary that lets application…
ISO 8668-5:1992
ДействующийAircraft — Terminal junction systems — Part 5: Detail specification for type 3 system
Overview - ISO 8668-5:1992 (Aircraft terminal junction systems, Type 3) ISO 8668-5:1992 defines the detail specification for Type 3 Terminal Junction Systems (TJS) used in aircraft electrical install…
ISO 7574-3:1985
ДействующийAcoustics — Statistical methods for determining and verifying stated noise emission values of machinery and e…
Overview ISO 7574-3:1985 is part of the ISO 7574 series on acoustics and provides a simple (transition) statistical method for determining and verifying stated noise emission values for batches (lots…