ISO/IEC 7064:2003
Information technology — Security techniques — Check character systems
Information technology — Security techniques — Check character systems
- Статус документа:
- Действующий
- Формат:
- Электронный (PDF)
- Количество страниц:
- 13
- Дата публикации:
- 7 марта 2003 г.
- Издание:
- ISO/IEC IS 7064 edition 1 version 1
- ICS:
- 35.030
ISO/IEC 7064:2002 specifies a set of check character systems capable of protecting strings against errors which occur when people copy or key data. The strings may be of fixed or variable length and may have character sets which are numeric (10 digits: 0 to 9); alphabetic (26 letters: A to Z); alphanumeric (letters and digits). Embedded spaces and special characters are ignored. ISO/IEC 7064:2002 specifies conformance requirements for products described as generating check characters or checking strings using the systems given in this International Standard. ISO/IEC 7064:2002 is for use in information interchange between organizations; it is also strongly recommended as good practice for internal information systems. The check character systems specified in ISO/IEC 7064:2002 can detect: all single substitution errors (the substitution of a single character for another, for example 4234 for 1234); all or nearly all single (local) transposition errors (the transposition of two single characters, either adjacent or with one character between them, for example 12354 or 12543 for 12345); all or nearly all shift errors (shifts of the whole string to the left or right); a high proportion of double substitution errors (two separate single substitution errors in the same string, for example 7234587 for 1234567); a high proportion of all other errors. ISO/IEC 7064:2002 excludes systems designed specifically to: permit both error detection and automatic correction; detect deliberate falsification; check strings interchanged solely between machines. ISO/IEC 7064:2002 specifies two types of systems: pure systems; hybrid systems. The pure systems use a single modulus for all stages of the calculation.
Abstract
Overview
ISO/IEC 7064:2003 - Information technology - Security techniques - Check character systems - defines a validated set of check character (check digit/checksum) systems for protecting human-entered strings against transcription and keying errors. It covers numeric, alphabetic and alphanumeric strings (embedded spaces and special characters are ignored), specifies conformance requirements for products that generate or check check characters, and is intended for information interchange between organizations as well as internal systems.
Key topics and requirements
- Scope of protection: systems specified can detect
- all single substitution errors (one character changed),
- all or nearly all single local transposition errors (adjacent or with one character between),
- circular shift (left/right) errors,
- a high proportion of double substitutions and other errors.
- Exclusions: ISO/IEC 7064 is not intended to permit automatic error correction, detect deliberate falsification, or cover strings exchanged exclusively between machines.
- System types
- Pure systems (single modulus for all stages): e.g. MOD 11–2, MOD 37–2, MOD 97–10, MOD 661–26, MOD 1271–36. These can produce one or two check characters; some produce a supplementary character outside the protected character set (e.g., “X”).
- Hybrid systems (two moduli, one equal to character-set size and one one greater): e.g. MOD 11,10, MOD 27,26, MOD 37,36. Hybrid systems always return a check character within the original character set.
- Placement & computation
- Check character(s) are placed at the rightmost end of the string.
- Standard specifies the mathematical formula using modulus and radix (geometric progression) and two computational methods: recursive and polynomial; both are equivalent in result.
- Conformance and designation
- Product descriptions must state which ISO/IEC 7064 systems they generate/check (full designation recommended, single-digit codes allowed for brevity).
Practical applications
- Prevent transcription/keying errors in identifiers such as account numbers, membership IDs, product codes, serial numbers and reference numbers exchanged between organizations.
- Useful where human data entry or copy/scan of codes is common and high error-detection capability is required.
- Selected by system architects, software developers, database designers, standards compliance teams, and IT security practitioners to improve data integrity in business processes.
Who should use this standard
- Banks, financial services, publishing, supply chain, registration authorities, and software vendors that handle human-entered identifiers.
- Developers and QA teams implementing check-digit validation or generating check characters in applications and APIs.
Related standards
- ISO 2108, ISO 6166 (other identifier-related standards). Note: ISO 2894 has been withdrawn. ISO/IEC 7064 supersedes ISO 7064:1983 with technical revisions.
Технические детали
- Технический комитет
- ISO/IEC JTC 1/SC 27 - Information security, cybersecurity and privacy protection
- SKU
- ISO/IEC 7064:2003
Похожие стандарты
Стандарты, упомянутые в описании
ISO 21083-1:2018
ДействующийTest method to measure the efficiency of air filtration media against spherical nanomaterials — Part 1: Size…
Overview ISO 21083-1:2018 defines a standardized test method to measure the efficiency of air filtration media against spherical nanomaterials in the size range 20 nm to 500 nm. The standard specifie…