Overview
ISO/IEC 10164-9:1995 (also published as ITU‑T X.741) specifies an Access Control Security Model and the management information required to create and administer access control within Open Systems Interconnection (OSI) Systems Management. The standard is generic - it does not mandate a specific security policy, leaving policy choices to implementers - and is intended for broad use including Telecommunications Management Network (TMN) environments.
Key Topics
The standard covers the information and functional building blocks needed for OSI-based access control management:
- Access Control Security Model: conceptual model for representing access rights in OSI systems management.
- Management Information: definitions of managed objects, parameters, attributes, and name bindings used to represent access control data.
- Access Control Policies & Procedures: structures for representing policies, rules and procedures (policy choice is implementation-specific).
- Services and Functional Units: service definitions including access control management service, targets/initiators administration, operations administration, label administration, and access control notification.
- Protocol & Syntax: abstract syntax, elements of procedure, and negotiation of the access control functional unit (aligned with OSI/CMIP principles).
- Conformance: static, dynamic, and management information conformance requirements and proforma templates (MCS, MICS, MOCS, MRCS, MIDS).
- Annexes: extensive annexes provide management information definitions, proformas, mapping to CMIP access control parameters, and relation to security frameworks (e.g., X.812 / ISO/IEC 10181‑3).
Applications and Users
ISO/IEC 10164-9:1995 is practical for:
- Network and systems management architects designing OSI/CMIP-based management systems with integrated access control.
- TMN operators and vendors implementing standardized management interfaces in telecommunications networks.
- Security architects who need a standardized model for representing access control objects and attributes in management systems.
- Conformance testers and integrators verifying static/dynamic behavior and management information conformance against OSI access control specifications.
Practical benefits include consistent representation of access control data across management systems, interoperability in OSI/CMIP environments, and a reusable template for implementing access control services in diverse applications.
Related Standards
- Identical text: ITU‑T X.741
- Works with other OSI management and security standards such as ISO/IEC 10164 (other parts), ISO/IEC 10181 (security frameworks), ISO/IEC 9595/9596 (CMIS/CMIP) and ASN.1/BER specifications referenced by the OSI stack.
Keywords: ISO/IEC 10164-9:1995, access control, OSI systems management, Access Control Security Model, TMN, ITU‑T X.741, CMIP, managed objects, security management, conformance.