ISO/IEC 10118-1:2016
Information technology — Security techniques — Hash-functions — Part 1: General
Information technology — Security techniques — Hash-functions — Part 1: General
- Статус документа:
- Действующий
- Формат:
- Электронный (PDF)
- Количество страниц:
- 12
- Дата публикации:
- 14 октября 2016 г.
- Издание:
- ISO/IEC IS 10118 edition 3 version 1
- ICS:
- 35.030
ISO/IEC 10118-1:2016 specifies hash-functions and is therefore applicable to the provision of authentication, integrity and non-repudiation services. Hash-functions map strings of bits of variable (but usually upper bounded) length to fixed-length strings of bits, using a specified algorithm. They can be used for - reducing a message to a short imprint for input to a digital signature mechanism, and - committing the user to a given string of bits without revealing this string. NOTE The hash-functions specified in ISO/IEC 10118 (all parts) do not involve the use of secret keys. However, these hash-functions may be used, in conjunction with secret keys, to build message authentication codes. Message Authentication Codes (MACs) provide data origin authentication as well as message integrity. Techniques for computing a MAC using a hash-function are specified in ISO/IEC 9797‑2 [1]. ISO/IEC 10118-1:2016 contains definitions, symbols, abbreviations and requirements that are common to all the other parts of ISO/IEC 10118. The criteria used to select the algorithms specified in subsequent parts of ISO/IEC 10118 are defined in Annex B of this document.
Abstract
Overview
ISO/IEC 10118-1:2016 is the general part of the ISO/IEC 10118 series that defines the vocabulary, model and common requirements for cryptographic hash‑functions. The standard describes how hash‑functions map variable‑length bit strings to fixed‑length hash‑codes, explains fundamental properties such as collision resistance and preimage resistance, and sets out a general iterative model used by the specific hash algorithms published in later parts of the series.
Key topics and technical requirements
- Definitions and symbols: clear, standardized terminology (e.g., hash‑function, hash‑code, initializing value (IV), round‑function φ, output transformation T).
- Security properties: requirements for computational infeasibility of finding preimages or collisions (see Annex C for security considerations).
- General hashing model: a four‑step iterative process:
- Padding - pad input so length is a multiple of the block size L.
- Splitting - divide padded input into L‑bit blocks.
- Iteration - apply a round‑function φ iteratively with an initializing value IV to produce an intermediate state.
- Output transformation - apply T (e.g., truncation) to derive the final hash‑code.
- Padding methods: normative methods are specified (Method 1 - append ‘1’ then as many ‘0’ bits as needed; Method 2 - append length encoding with parameter r), and implementations must agree on which method is used.
- Parameterization: specification of L, IV, φ, padding, and T is required for any concrete hash‑function based on the model.
- Operational requirement: parties must operate on precisely the same bit representation of data prior to hashing to ensure interoperable results.
- Algorithm selection criteria: Annex B defines the criteria and process used to select candidate hash algorithms for inclusion in the ISO/IEC 10118 series.
Practical applications and users
ISO/IEC 10118-1:2016 is applicable wherever cryptographic hashing is required for:
- Authentication, message integrity and non‑repudiation (e.g., preparing digests for digital signatures).
- Commitment schemes where a user commits to a bit string without revealing it.
- Building Message Authentication Codes (MACs) when combined with secret keys (see ISO/IEC 9797‑2 for MAC construction using hash‑functions). Typical users:
- Security architects and cryptographers defining or validating hashing components
- Software and firmware engineers implementing cryptographic libraries
- Compliance officers, auditors and standards bodies assessing hash usage
- Device and application developers requiring interoperable, standards‑based hash implementations
Related standards
- ISO/IEC 10118 (other parts) - specific hash algorithms and detailed parameter sets
- ISO/IEC 9797‑2 - techniques for computing MACs using hash‑functions
Keywords: ISO/IEC 10118-1:2016, hash functions, collision-resistant, padding methods, round-function, hash-code, message integrity, non-repudiation, ISO/IEC 9797-2.
Технические детали
- Технический комитет
- ISO/IEC JTC 1/SC 27 - Information security, cybersecurity and privacy protection
- SKU
- ISO/IEC 10118-1:2016
Похожие стандарты
Упомянутые в описании и другие стандарты ISO
ISO/IEC 10118-3:2018
ДействующийIT Security techniques — Hash-functions — Part 3: Dedicated hash-functions
Overview ISO/IEC 10118-3:2018 - IT Security techniques - Hash-functions - Part 3: Dedicated hash‑functions specifies a set of specially designed (dedicated) cryptographic hash‑functions. The standard…
ISO/IEC 9797-2:2021
ДействующийInformation security — Message authentication codes (MACs) — Part 2: Mechanisms using a dedicated hash-functi…
Overview ISO/IEC 9797-2:2021 - Information security - Message authentication codes (MACs) - Part 2: Mechanisms using a dedicated hash-function - specifies standardized MAC algorithms that derive an m…
ISO 8212:1986
ОтменёнSoaps and detergents — Techniques of sampling during manufacture
Overview Standard Reference: ISO 8212:1986 Title: Soaps and detergents - Techniques of sampling during manufacture ISO 8212:1986 defines standardized techniques for taking representative samples of s…
ISO 20662:2020
ДействующийShips and marine technology — Hopper dredger supervisory and control systems
Overview ISO 20662:2020 - Ships and marine technology: Hopper dredger supervisory and control systems (HD‑SCS) - specifies the components, structure, general requirements, and functional requirements…
ISO 3021:2023
ДействующийAdventure tourism — Hiking and trekking activities — Requirements and recommendations
Overview ISO 3021:2023 - Adventure tourism: Hiking and trekking activities - Requirements and recommendations defines safety-focused requirements and recommendations for hiking and trekking offered a…
ISO 3826-2:2008
ДействующийPlastics collapsible containers for human blood and blood components — Part 2: Graphical symbols for use on l…
Overview ISO 3826-2:2008 - "Plastics collapsible containers for human blood and blood components - Part 2: Graphical symbols for use on labels and instruction leaflets" defines a system of internatio…
ISO/IEC 24730-1:2014
ДействующийInformation technology — Real-time locating systems (RTLS) — Part 1: Application programming interface (API)
Overview ISO/IEC 24730-1:2014 specifies the Application Programming Interface (API) for Real‑Time Locating Systems (RTLS). The standard defines a minimal, interoperable boundary that lets application…
ISO 8668-5:1992
ДействующийAircraft — Terminal junction systems — Part 5: Detail specification for type 3 system
Overview - ISO 8668-5:1992 (Aircraft terminal junction systems, Type 3) ISO 8668-5:1992 defines the detail specification for Type 3 Terminal Junction Systems (TJS) used in aircraft electrical install…