ISO/IEC 7816-15:2016
Identification cards — Integrated circuit cards — Part 15: Cryptographic information application
Identification cards — Integrated circuit cards — Part 15: Cryptographic information application
- Статус документа:
- Действующий
- Формат:
- Электронный (PDF)
- Количество страниц:
- 117
- Дата публикации:
- 9 мая 2016 г.
- Издание:
- ISO/IEC IS 7816 edition 2 version 1
- ICS:
- 35.240.15
ISO/IEC 7816-15:2016 specifies an application in a card. This application contains information on cryptographic functionality. This part of ISO/IEC 7816 defines a common syntax and format for the cryptographic information and mechanisms to share this information whenever appropriate. The objectives of this part of ISO/IEC 7816 are to - facilitate interoperability among components running on various platforms (platform neutral), - enable applications in the outside world to take advantage of products and components from multiple manufacturers (vendor neutral), - enable the use of advances in technology without rewriting application-level software (application neutral), and - maintain consistency with existing, related standards while expanding upon them only where necessary and practical. It supports the following capabilities: - storage of multiple instances of cryptographic information in a card; - use of the cryptographic information; - retrieval of the cryptographic information, a key factor for this is the notion of "Directory Files", which provides a layer of indirection between objects on the card and the actual format of these objects; - cross-referencing of the cryptographic information with DOs defined in other parts of ISO/IEC 7816 when appropriate; - different authentication mechanisms; - multiple cryptographic algorithms (the suitability of these is outside the scope of this part of ISO/IEC 7816). ISO/IEC 7816-15.2016 does not cover the internal implementation within the card and/or the outside world. It is not mandatory for implementations complying with this International Standard to support all options described. In case of discrepancies between ASN.1 definitions in the body of the text and the module in Annex A, Annex A takes precedence.
Abstract
Overview
ISO/IEC 7816-15:2016 - "Identification cards - Integrated circuit cards - Part 15: Cryptographic information application" defines a standardized, platform-neutral application for storing, organizing and sharing cryptographic information on smart cards (integrated circuit cards). The standard specifies a common syntax and file formats (ASN.1-based) for cryptographic information objects (CIOs), directory files and related mechanisms to enable vendor-neutral, application-neutral and interoperable use of keys, certificates and authentication objects across multiple platforms.
Key objectives:
- Facilitate interoperability among components on different platforms
- Enable multi-vendor product integration
- Allow technological evolution without rewriting application-level software
- Maintain consistency with related standards while expanding only where needed
Note: ISO/IEC 7816-15:2016 does not mandate internal card implementation details and implementations are not required to support every option. In case of ASN.1 discrepancies, Annex A (ASN.1 module) takes precedence.
Key Topics and Technical Requirements
- Cryptographic Information Objects (CIOs): Common classes and attributes for private/public keys, secret keys, certificates, authentication objects and opaque data containers.
- File structure and Directory Files: Mechanisms such as EF.DIR and DF.CIA provide indirection for locating and retrieving cryptographic objects on the card.
- ASN.1 Syntax and Encoding: Information syntax defined in ASN.1 (with encoding guidelines and a normative ASN.1 module in Annex A).
- Storage & Retrieval: Support for multiple instances of cryptographic information and cross-referencing with data objects from other parts of ISO/IEC 7816.
- Access Control & Authentication: Definitions for access restrictions and multiple authentication mechanisms to protect keys and sensitive objects.
- Algorithm Agnostic: Support for multiple cryptographic algorithms (suitability of algorithms is out of scope).
- Extensibility: Cross-referencing and object identifiers to integrate with other ISO/IEC 7816 data objects and external applications.
Practical Applications and Who Uses It
ISO/IEC 7816-15 is used by:
- Smart card and secure element manufacturers (key and certificate storage formats)
- System integrators and software developers building card-based authentication, digital signature and secure ID systems
- Government agencies and credential issuers for eIDs, passports and national ID programs
- Payment, telecom and IoT solutions that require secure on-card cryptography and standardized object management
- Certificate Authorities and Public Key Infrastructure (PKI) implementers integrating card-based credentials
Benefits include improved interoperability across vendors, simplified integration of cryptographic services, and predictable object access and protection models.
Related Standards
- Other parts of the ISO/IEC 7816 series (file structure, data object definitions and APDU conventions) provide complementary specifications for card file systems and command interfaces.
- Annex A of ISO/IEC 7816-15 contains the normative ASN.1 module and takes precedence for encoding definitions.
Технические детали
- Технический комитет
- ISO/IEC JTC 1/SC 17 - Cards and security devices for personal identification
- SKU
- ISO/IEC 7816-15:2016
Похожие стандарты
Другие стандарты ISO
ISO 8212:1986
ОтменёнSoaps and detergents — Techniques of sampling during manufacture
Overview Standard Reference: ISO 8212:1986 Title: Soaps and detergents - Techniques of sampling during manufacture ISO 8212:1986 defines standardized techniques for taking representative samples of s…
ISO 20662:2020
ДействующийShips and marine technology — Hopper dredger supervisory and control systems
Overview ISO 20662:2020 - Ships and marine technology: Hopper dredger supervisory and control systems (HD‑SCS) - specifies the components, structure, general requirements, and functional requirements…
ISO 3021:2023
ДействующийAdventure tourism — Hiking and trekking activities — Requirements and recommendations
Overview ISO 3021:2023 - Adventure tourism: Hiking and trekking activities - Requirements and recommendations defines safety-focused requirements and recommendations for hiking and trekking offered a…
ISO 3826-2:2008
ДействующийPlastics collapsible containers for human blood and blood components — Part 2: Graphical symbols for use on l…
Overview ISO 3826-2:2008 - "Plastics collapsible containers for human blood and blood components - Part 2: Graphical symbols for use on labels and instruction leaflets" defines a system of internatio…
ISO/IEC 24730-1:2014
ДействующийInformation technology — Real-time locating systems (RTLS) — Part 1: Application programming interface (API)
Overview ISO/IEC 24730-1:2014 specifies the Application Programming Interface (API) for Real‑Time Locating Systems (RTLS). The standard defines a minimal, interoperable boundary that lets application…
ISO 8668-5:1992
ДействующийAircraft — Terminal junction systems — Part 5: Detail specification for type 3 system
Overview - ISO 8668-5:1992 (Aircraft terminal junction systems, Type 3) ISO 8668-5:1992 defines the detail specification for Type 3 Terminal Junction Systems (TJS) used in aircraft electrical install…
ISO 7574-3:1985
ДействующийAcoustics — Statistical methods for determining and verifying stated noise emission values of machinery and e…
Overview ISO 7574-3:1985 is part of the ISO 7574 series on acoustics and provides a simple (transition) statistical method for determining and verifying stated noise emission values for batches (lots…
ISO 15638-15:2014
ДействующийIntelligent transport systems — Framework for cooperative telematics applications for regulated vehicles (TAR…
Overview - ISO 15638-15:2014 (Vehicle location monitoring, TARV) ISO 15638-15:2014 is part of the ISO 15638 suite for Intelligent Transport Systems (ITS) and defines the framework and data specificat…