ISO/IEC 7816-4:2020
Identification cards — Integrated circuit cards — Part 4: Organization, security and commands for interchange
Identification cards — Integrated circuit cards — Part 4: Organization, security and commands for interchange
- Статус документа:
- Действующий
- Формат:
- Электронный (PDF)
- Количество страниц:
- 176
- Дата публикации:
- 27 мая 2020 г.
- Издание:
- ISO/IEC IS 7816 edition 4 version 1
- ICS:
- 35.240.15
This document is intended to be used in any sector of activity. It specifies: — contents of command-response pairs exchanged at the interface, — means of retrieval of data elements and data objects in the card, — structures and contents of historical bytes to describe operating characteristics of the card, — structures for applications and data in the card, as seen at the interface when processing commands, — access methods to files and data in the card, — a security architecture defining access rights to files and data in the card, — means and mechanisms for identifying and addressing applications in the card, — methods for secure messaging, — access methods to the algorithms processed by the card. It does not describe these algorithms. It does not cover the internal implementation within the card or the outside world. This document is independent from the physical interface technology. It applies to cards accessed by one or more of the following methods: contacts, close coupling and radio frequency. If the card supports simultaneous use of more than one physical interface, the relationship between what happens on different physical interfaces is out of the scope of this document.
Abstract
Overview - ISO/IEC 7816-4:2020 (Identification cards, Part 4)
ISO/IEC 7816-4:2020 standardizes the interface-level behaviour of integrated circuit cards (smart cards). It is sector-agnostic and specifies the contents of command-response pairs, data object formats, file and application structures as seen at the card interface, access methods to files and algorithms, and a security architecture including access rights and secure messaging. The document is independent of the physical interface and applies to cards accessed via contacts, close coupling, or radio frequency. It explicitly does not define cryptographic algorithms or internal card implementations.
Key topics and technical requirements
- Command-response pairs: syntax, conditions of operation, payload fragmentation, chaining, class and instruction byte semantics, and status bytes.
- Data objects and TLV encoding: SIMPLE-TLV and BER-TLV structures; primitive vs. constructed data objects; tag allocation and interpretation.
- Application and file structures: available structures, validity areas, file control and data control information, file descriptors, life-cycle status and instance identification.
- Referencing and retrieval: methods to reference data elements and objects (tag lists, element lists, headers, wrappers) and resolution of extended headers.
- Security architecture: security attributes, access rules, cryptographic mechanism identifiers, security parameters templates and attributes for logical channels and data objects.
- Secure messaging (SM): mechanisms and DOs for confidentiality and authentication, protection of chained commands/responses, control reference templates and security environments.
- Logical channels and interface independence: coding of class byte, logical channel management, and rules when multiple physical interfaces are supported (note: inter-interface relationships are out of scope).
Practical applications and users
Who uses ISO/IEC 7816-4:
- Card manufacturers and IC designers implementing command parsing, file systems, and security attributes.
- Firmware and middleware developers building host-side drivers, card managers, and secure-channel implementations.
- Payment, telecom (SIM/eUICC), eID and access-control schemes that require standardized file access and secure messaging.
- Security architects and certification laboratories validating access rules, secure messaging, and TLV payload handling.
- System integrators and application providers ensuring interoperable application selection, addressing, and data retrieval from cards.
Benefits:
- Ensures interoperable command protocols and data formats across smart card ecosystems.
- Provides a standardized security model for access control and secure messaging without mandating specific cryptographic algorithms.
Related standards
- Part of the ISO/IEC 7816 series (physical characteristics, transmission protocols and other parts address complementary concerns).
- Applicable alongside national/regulatory specifications for payment, identity, and telecom applications.
Технические детали
- Технический комитет
- ISO/IEC JTC 1/SC 17 - Cards and security devices for personal identification
- SKU
- ISO/IEC 7816-4:2020
Похожие стандарты
Упомянутые в описании и другие стандарты ISO
ISO/IEC 7816-15:2016
ДействующийIdentification cards — Integrated circuit cards — Part 15: Cryptographic information application
Overview ISO/IEC 7816-15:2016 - "Identification cards - Integrated circuit cards - Part 15: Cryptographic information application" defines a standardized, platform-neutral application for storing, or…
ISO 8212:1986
ОтменёнSoaps and detergents — Techniques of sampling during manufacture
Overview Standard Reference: ISO 8212:1986 Title: Soaps and detergents - Techniques of sampling during manufacture ISO 8212:1986 defines standardized techniques for taking representative samples of s…
ISO 20662:2020
ДействующийShips and marine technology — Hopper dredger supervisory and control systems
Overview ISO 20662:2020 - Ships and marine technology: Hopper dredger supervisory and control systems (HD‑SCS) - specifies the components, structure, general requirements, and functional requirements…
ISO 3021:2023
ДействующийAdventure tourism — Hiking and trekking activities — Requirements and recommendations
Overview ISO 3021:2023 - Adventure tourism: Hiking and trekking activities - Requirements and recommendations defines safety-focused requirements and recommendations for hiking and trekking offered a…
ISO 3826-2:2008
ДействующийPlastics collapsible containers for human blood and blood components — Part 2: Graphical symbols for use on l…
Overview ISO 3826-2:2008 - "Plastics collapsible containers for human blood and blood components - Part 2: Graphical symbols for use on labels and instruction leaflets" defines a system of internatio…
ISO/IEC 24730-1:2014
ДействующийInformation technology — Real-time locating systems (RTLS) — Part 1: Application programming interface (API)
Overview ISO/IEC 24730-1:2014 specifies the Application Programming Interface (API) for Real‑Time Locating Systems (RTLS). The standard defines a minimal, interoperable boundary that lets application…
ISO 8668-5:1992
ДействующийAircraft — Terminal junction systems — Part 5: Detail specification for type 3 system
Overview - ISO 8668-5:1992 (Aircraft terminal junction systems, Type 3) ISO 8668-5:1992 defines the detail specification for Type 3 Terminal Junction Systems (TJS) used in aircraft electrical install…
ISO 7574-3:1985
ДействующийAcoustics — Statistical methods for determining and verifying stated noise emission values of machinery and e…
Overview ISO 7574-3:1985 is part of the ISO 7574 series on acoustics and provides a simple (transition) statistical method for determining and verifying stated noise emission values for batches (lots…