ISO/IEC 29167-10:2017
Information technology — Automatic identification and data capture techniques — Part 10: Crypto suite AES-128 security services for air interface communications
Information technology — Automatic identification and data capture techniques — Part 10: Crypto suite AES-128 security services for air interface communications
- Статус документа:
- Отменён
- Формат:
- Электронный (PDF)
- Количество страниц:
- 58
- Дата публикации:
- 16 октября 2017 г.
- Издание:
- ISO/IEC IS 29167 edition 2 version 1
- ICS:
- 35.040
ISO/IEC 29167-10:2017 specifies the crypto suite for AES-128 for the ISO/IEC 18000 air interfaces standards for radio frequency identification (RFID) devices. Its purpose is to provide a common crypto suite for security for RFID devices that might be referred by ISO committees for air interface standards and application standards. ISO/IEC 29167-10:2017 specifies a crypto suite for AES-128 for an air interface for RFID systems. The crypto suite is defined in alignment with existing air interfaces. ISO/IEC 29167-10:2017 specifies various authentication methods and methods of use for the encryption algorithm. A Tag and an Interrogator can support one, a subset, or all of the specified options, clearly stating what is supported.
Abstract
Overview
ISO/IEC 29167-10:2017 defines a standardized AES-128 crypto suite for air-interface communications in RFID systems. Intended for use with the ISO/IEC 18000 family of air interface standards, this part of ISO/IEC 29167 provides a common set of security services and message formats so Tags and Interrogators can implement interoperable authentication and encryption on radio links.
Key topics and technical requirements
- Crypto algorithm: AES with a fixed 128-bit key (AES-128) used in ECB and CBC modes, and MAC generation (AES-CMAC-96) as specified in the document.
- Authentication methods: Defines Tag Authentication (TAM), Interrogator Authentication (IAM) and Mutual Authentication (MAM), with message/response sequences and state diagrams.
- Message formats and procedures: Specifies message/response blocks, initialization/reset procedures, and how custom data can be included in authentication exchanges.
- Encryption direction: The crypto suite supports encryption on the Tag side for encrypting messages sent from Tag→Interrogator and decrypting messages received from Interrogator→Tag.
- Conformance: Requirements and obligations for both Interrogator and Tag implementations, including how supported options must be declared.
- Key management: Key tables and KeyUpdate mechanisms are defined to support operational key lifecycle.
- Normative and informative annexes: Includes cipher description, state transition tables, error handling, protocol-specific information and test vectors to aid implementation and testing.
Practical applications
- Securing RFID communications in supply chain, inventory, asset tracking, and access control systems where ISO/IEC 18000 air interfaces are used.
- Enabling interoperable RFID security implementations across manufacturers by providing a common AES-128 crypto suite and standardized authentication methods.
- Use cases that require authenticated reads (Tag Authentication) or authenticated writes (Interrogator Authentication), and scenarios that demand mutual authentication for higher trust.
- Developers of RFID tags, interrogators/readers, middleware vendors, system integrators and standards committees referencing air-interface security.
Who should use this standard
- RFID hardware designers implementing interoperable security on ISO/IEC 18000 air interfaces.
- Firmware and protocol engineers responsible for Tag/Interrogator authentication and encryption.
- Test labs and integrators validating conformity to ISO security services and interoperability.
- Standards bodies and application profile authors that need a harmonized AES-128 crypto profile for RFID air interfaces.
Related standards
- ISO/IEC 18000 series (air interfaces for RFID)
- ISO/IEC 29167-1 (general RFID security services)
- ISO/IEC 9797-1 (MAC mechanisms using block ciphers)
- ISO/IEC 19762 (AIDC vocabulary)
Keywords: ISO/IEC 29167-10:2017, AES-128, RFID security, air interface, crypto suite, Tag Authentication, Interrogator Authentication, mutual authentication, AES-CMAC-96, ISO/IEC 18000.
Технические детали
- Технический комитет
- ISO/IEC JTC 1/SC 31 - Automatic identification and data capture techniques
- SKU
- ISO/IEC 29167-10:2017
Похожие стандарты
Стандарты, упомянутые в описании
ISO/IEC TR 20017:2011
ДействующийInformation technology — Radio frequency identification for item management — Electromagnetic interference im…
Overview ISO/IEC TR 20017:2011 is an informative Technical Report addressing the electromagnetic interference (EMI) impact of ISO/IEC 18000 RFID interrogator emitters on implantable pacemakers and im…
ISO/IEC 29167-22:2018
ОтменёнInformation technology — Automatic identification and data capture techniques — Part 22: Crypto suite SPECK s…
ISO/IEC 29167-22:2018 - SPECK crypto suite for RFID air interfaces ## Overview ISO/IEC 29167-22:2018 specifies a crypto suite based on the lightweight block cipher SPECK for radio‑frequency identific…
ISO/IEC 29167-12:2015
ДействующийInformation technology — Automatic identification and data capture techniques — Part 12: Crypto suite ECC-DH…
Overview ISO/IEC 29167-12:2015 specifies a crypto suite for ECC-DH (Elliptic Curve Diffie-Hellman) tailored to RFID air interface communications. Intended for use with the ISO/IEC 18000 family of air…
ISO/IEC 9797-1:2011
ДействующийInformation technology — Security techniques — Message Authentication Codes (MACs) — Part 1: Mechanisms using…
Overview ISO/IEC 9797-1:2011 - Information technology - Security techniques - Message Authentication Codes (MACs) - Part 1: Mechanisms using a block cipher specifies six standardized MAC algorithms t…