ISO 21177:2023 PDF
Intelligent transport systems — ITS station security services for secure session establishment and authentication between trusted devices
Intelligent transport systems — ITS station security services for secure session establishment and authentication between trusted devices
- Статус документа:
- Отменён
- Формат:
- Электронный (PDF)
- Количество страниц:
- 100
- Дата публикации:
- 7 апреля 2023 г.
- Издание:
- ISO IS 21177 edition 1 version 1
- ICS:
- 03.220.01
This document contains specifications for a set of ITS station security services required to ensure the authenticity of the source and integrity of information exchanged between trusted entities, i.e.: — between devices operated as bounded secured managed entities, i.e. "ITS Station Communication Units" (ITS-SCU) and "ITS station units" (ITS-SU) as specified in ISO 21217; and — between ITS-SUs (composed of one or several ITS-SCUs) and external trusted entities such as sensor and control networks. These services include the authentication and secure session establishment which are required to exchange information in a trusted and secure manner. These services are essential for many intelligent transport system (ITS) applications and services including time-critical safety applications, automated driving, remote management of ITS stations (ISO 24102-2), and roadside/infrastructure-related services.
Abstract
Overview
ISO 21177:2023 - Intelligent transport systems - ITS station security services for secure session establishment and authentication between trusted devices - specifies a set of security services for ITS stations to ensure authenticity and integrity of information exchanged between trusted entities. The standard covers secure session establishment and authentication between bounded secured managed entities (ITS Station Communication Units - ITS‑SCU) and ITS station units (ITS‑SU), as well as between ITS‑SUs and external trusted entities such as sensor and control networks.
Key topics and technical requirements
- Secure session establishment and authentication: Services and procedures to negotiate trusted sessions that protect source authenticity and message integrity. The standard clarifies how these services relate to Transport Layer Security (TLS) and to application-level specifications.
- Architecture and functional entities: Definitions of roles and components (ITS‑SCU, ITS‑SU), cryptomaterial handles, session identifiers and session state management.
- Access control and authorization state: Mechanisms and PDUs for access control (e.g., AccessControlPdu, AccessControlResult) and how access policy is enforced during sessions.
- Authentication enhancements: Support for enhanced and extended authentication workflows, including a referenced method using SPAKE2 for password-authenticated key exchange.
- Service primitives and interfaces: Application–security (App‑Sec) interface primitives such as App‑Sec‑Configure, App‑Sec‑StartSession, App‑Sec‑Data, App‑Sec‑EndSession and related confirm/indication primitives to integrate security services with ITS applications.
- Process flows and sequence diagrams: Detailed flows for Configure, Start session, Send/Receive data, Extend session, Secure connection brokering and session termination.
- Security management information: PDUs and messages for certificate/CRL requests and security management information exchange.
Applications and who uses this standard
ISO 21177:2023 is essential for implementers and stakeholders building secure ITS ecosystems:
- Vehicle OEMs and automotive cybersecurity teams implementing secure V2X/ITS stations
- Roadside infrastructure and traffic management operators deploying trusted roadside units
- Suppliers of ITS‑SCU and ITS‑SU hardware/software modules
- System integrators and security architects designing time‑critical safety systems and automated driving features
- Remote management and maintenance platforms for ITS stations (linked to ISO 24102‑2)
Practical applications include time‑critical safety messaging, automated driving communications, roadside/infrastructure services, and secure remote management of ITS devices.
Related standards
- ISO 21217 - ITS station and communication unit definitions (ITS‑SCU, ITS‑SU)
- ISO 24102‑2 - Remote management of ITS stations
- Transport Layer Security (TLS) - referenced for relationship to session security
Keywords: ISO 21177:2023, ITS station security services, secure session establishment, authentication between trusted devices, ITS‑SCU, ITS‑SU, ITS security, automated driving security, access control PDU, SPAKE2, cryptomaterial handles.
Технические детали
- Технический комитет
- ISO/TC 204 - Intelligent transport systems
- SKU
- ISO 21177:2023
Похожие стандарты
Упомянутые в описании и другие стандарты ISO
ISO 24102-2:2015
ОтменёнIntelligent transport systems — Communications access for land mobiles (CALM) — ITS station management — Part…
ISO 21217:2010
ОтменёнIntelligent transport systems — Communications access for land mobiles (CALM) — Architecture
ISO 8689-1:2000
ДействующийWater quality — Biological classification of rivers — Part 1: Guidance on the interpretation of biological qu…
Overview ISO 8689-1:2000, titled Water quality - Biological classification of rivers - Part 1: Guidance on the interpretation of biological quality data from surveys of benthic macroinvertebrates, is…
ISO/ASTM51540-04(2012)
ОтменёнStandard Practice for Use of a Radiochromic Liquid Dosimetry System (Withdrawn 2020)
Significance and Use4.1 The radiochromic liquid dosimetry system provides a means of measuring absorbed dose in materials (5-7). Under the influence of ionizing radiation, chemical reactions take pla…
ISO/ASTM51204-04
ДействующийStandard Practice for Dosimetry in Gamma Irradiation Facilities for Food Processing (Withdrawn 2013)
Significance and Use4.1 Food products may be treated with ionizing radiation, such as gamma-rays from 60Co or 137Cs sources, for numerous purposes, including control of parasites and pathogenic micro…
ISO/ASTM51431-05
ОтменёнStandard Practice for Dosimetry in Electron Beam and X-Ray (Bremsstrahlung) Irradiation Facilities for Food P…
Significance and Use4.1 Food products may be treated with acceleratorgenerated radiation (electrons and X-rays) for numerous purposes, including control of parasites and pathogenic microorganisms, in…
ISO/ASTM52628-20e1
ДействующийStandard Practice for Dosimetry in Radiation Processing
1.1 This practice describes the basic requirements that apply when making absorbed dose measurements in accordance with the ASTM E61 series of dosimetry standards. In addition, it provides guidance o…
ISO/ASTM52921-13(2019)
ДействующийStandard Terminology for Additive Manufacturing—Coordinate Systems and Test Methodologies
Significance and Use 3.1 Although many additive manufacturing systems are based heavily upon the principles of Computer Numerical Control (CNC), the coordinate systems and nomenclature specific to CN…