Overview
ISO 19626-2:2021, “Processes, data elements and documents in commerce, industry and administration - Trusted communication platform for electronic documents - Part 2: Applications,” specifies the processes and interfaces for a Trusted Communication Platform (TCP). As a connected standard to ISO 19626-1, it defines the communication interactions between TCP components in a technology‑neutral way - covering the processes, APIs, network and security requirements, and the evidence model for trusted electronic document exchange.
Key technical topics and requirements
- TCP relational architecture: Defines how TCP main and TCP client roles interconnect (client/server, identity directory, TCE repository) to enable trusted, delegated communication.
- Core components and functionalities:
- TTP identity directory - registration and lookup of communication servers and e‑identities.
- TCP communication server - transaction handling, message forwarding, TCE creation.
- TCP communication client - delegation of transmission to servers under agreed SLAs.
- TCE repository - storage and preservation of Trusted Communication Evidence (TCE).
- Processes (PR1–PR8): Standardized workflows such as server registration, e‑identity registration, communication authentication, e‑document transmission, perusal confirmation, TCE preservation, communication verification, and spam handling.
- APIs and interface requirements:
- Technology‑neutral APIs for identity directory, communication server and TCE repository (detailed in Clause 6).
- Network and security requirements for APIs, including authentication, non‑repudiation and protocol considerations.
- Informative annexes on message header and TCE structure to support interoperability.
- Trust and evidence: Creation and storage of TCE to provide proof of trusted communication (non‑repudiation) across distributed and IoT/cloud environments.
- Operational controls: Whitelist/blacklist concepts, service level agreement (SLA) roles, spam handling and verification processes.
Practical applications and target users
ISO 19626-2 is aimed at organizations implementing secure, auditable electronic document exchange where proof of delivery and non‑repudiation matter. Typical use cases and users include:
- B2B platforms and enterprise integration middleware
- e‑government and public administration services exchanging official documents
- Cloud and IoT service providers integrating trusted messaging between devices, services and humans
- Software vendors and system integrators building TCP communication servers, clients or TCE repositories
- Compliance, legal and records management teams requiring standardized evidence preservation
Related standards
- ISO 19626-1:2020 - Fundamentals of the Trusted Communication Platform (normative reference)
- ISO 19626 series - Other parts and annexes for full implementation guidance
Keywords: ISO 19626-2:2021, Trusted Communication Platform, TCP, e-documents, TCE, TTP identity directory, communication server, APIs, non-repudiation, interoperability, IoT, cloud.