ISO 9735-5:2002 PDF
Electronic data interchange for administration, commerce and transport (EDIFACT) — Application level syntax rules (Syntax version number: 4, Syntax release number: 1) — Part 5: Security rules for batch EDI (authenticity, integrity and non-repudiation of origin)
Electronic data interchange for administration, commerce and transport (EDIFACT) — Application level syntax rules (Syntax version number: 4, Syntax release number: 1) — Part 5: Security rules for batch EDI (authenticity, integrity and non-repudiation of origin)
- Статус документа:
- Действующий
- Формат:
- Электронный (PDF)
- Количество страниц:
- 38
- Дата публикации:
- 4 июля 2002 г.
- Издание:
- ISO IS 9735 edition 2 version 1
- ICS:
- 35.240.60
This part of ISO 9735 specifies syntax rules for EDIFACT security. It provides a method to address message/package level, group level and interchange level security for authenticity, integrity and non-repudiation of origin, in accordance with established security mechanisms.
Abstract
Overview
ISO 9735-5:2002 defines application-level syntax rules for securing batch EDIFACT (Electronic Data Interchange for Administration, Commerce and Transport) with a focus on authenticity, integrity and non‑repudiation of origin. It specifies how to include EDIFACT security header and trailer segment groups around messages, packages, groups and interchanges so that established security mechanisms can be applied consistently in a batch EDI environment.
Key topics and requirements
- Scope and conformance
- Applies to batch EDI; confidentiality is handled in ISO 9735‑7.
- Uses syntax version number 4 and syntax release 01 (data elements 0002 and 0076 in UNB).
- Conformance implies also complying with ISO 9735 parts 1, 2, 8 and 10.
- Security levels supported
- Message/package level, group level and interchange level security for authenticity, integrity and non‑repudiation.
- Placement and structure
- Security header/trailer groups are inserted after UNH and before UNT for messages, or after UNO and before UNP for packages.
- Defined segments and segment groups include USH (Security Header), USA (Security Algorithm), USC (Certificate), USR (Security Result) and UST (Security Trailer).
- Algorithm and key handling
- Supports symmetric algorithms, hash functions, compression and digital‑signature style mechanisms (message‑dependent hash).
- USH and USA segments convey algorithm identifiers, parameters and optional filter functions; USC carries certificates where asymmetric methods are used.
- Supporting material
- Informative annexes provide threats and solutions, protection examples, filter functions for character repertoires and lists of security services/algorithms.
- Normative references
- Cross‑references to ISO 9735 parts and to ISO/IEC 10181 security frameworks (authentication, integrity, non‑repudiation).
Practical applications
- Implementing tamper‑evident batch EDI exchanges between trading partners (banks, logistics providers, manufacturers, government agencies).
- Enabling non‑repudiation of origin and message integrity in automated B2B workflows.
- Integrating certificate-based or symmetric security mechanisms into existing EDIFACT message flows without changing message content.
Who should use this standard
- EDI implementers, system integrators and software vendors building EDIFACT batch processing solutions.
- Security architects and compliance officers defining EDI security policies.
- Trading partner technical teams needing interoperable message/package-level security in EDIFACT exchanges.
Related standards
- ISO 9735 (other parts: Part 1, 2, 6, 7, 8, 10)
- ISO/IEC 10181‑2, ‑4, ‑6 (authentication, non‑repudiation, integrity frameworks)
Keywords: ISO 9735-5, EDIFACT security, batch EDI, authenticity, integrity, non-repudiation, USH, USA, USC, UST, UNH, UNO.
Технические детали
- Технический комитет
- ISO/TC 154 - Processes, data elements and documents in commerce, industry and administration
- SKU
- ISO 9735-5:2002
Похожие стандарты
Стандарты, упомянутые в описании
ISO 9735-7:1999
ОтменёнElectronic data interchange for administration, commerce and transport (EDIFACT) — Application level syntax r…
ISO 9735-10:2002
ОтменёнElectronic data interchange for administration, commerce and transport (EDIFACT) — Application level syntax r…
ISO/IEC 10181-5:1996
ДействующийInformation technology — Open Systems Interconnection — Security frameworks for open systems: Confidentiality…
Overview - ISO/IEC 10181-5:1996 (Confidentiality framework) ISO/IEC 10181-5:1996 defines a general framework for confidentiality services within Open Systems Interconnection (OSI). Published as part…
ISO/IEC 10181-2:1996
ДействующийInformation technology — Open Systems Interconnection — Security frameworks for open systems: Authentication…
Overview ISO/IEC 10181-2:1996 - "Information technology - Open Systems Interconnection - Security frameworks for open systems: Authentication framework" defines a general, vendor‑neutral framework fo…