Overview
ISO/IEC 19823-22:2019 defines conformance test methods for the SPECK crypto suite as specified in ISO/IEC 29167-22. It provides a test framework for verifying mandatory functions, protocol behavior and conformance parameters for RFID tags and interrogators operating under the ISO/IEC 18000 family. The document specifies how to validate cryptographic message flows (for example TAM1/TAM1 responses), key usage and parameter handling to ensure interoperability and security when SPECK is used as the crypto suite.
Key topics and requirements
- Scope and applicability: Tests apply to RFID devices defined in the ISO/IEC 18000-series that implement ISO/IEC 29167-22 (SPECK).
- Conformance parameters: Focus on parameters that affect functionality and interoperability, protocol commands/replies, and nominal values/tolerances.
- Test methods:
- By demonstration - laboratory testing (ISO/IEC 17025 recommended) to exercise protocol behavior.
- By design - vendor-provided technical analysis or documentation to verify certain requirements.
- Mandatory test elements: Verification of required protocol behaviors such as:
- Generation and handling of Interrogator challenges (IChallenge) and Tag responses (TResponse).
- Correct parsing and handling of TAM1 messages, step and RFU checks, BlockSize/KeySize/PS parameter support.
- Use of Key.KeyID and SPECK encryption for forming response strings.
- Test patterns: The standard includes a set of defined test patterns (Test_Pattern 1…11) to systematically validate specified behaviors and error responses.
- Prerequisites: Devices should satisfy relevant ISO/IEC 18047-6 conformance tests (e.g., pass Clause 7) before applying ISO/IEC 19823-22 test methods.
Practical applications
- Ensures interoperability between RFID tags and readers using the SPECK crypto suite.
- Validates secure authentication and secure communication commands (e.g., Authenticate, SecureComm) in RFID deployments.
- Supports product certification, supplier compliance checks, and pre-deployment security validation for supply chain, asset tracking, and inventory systems that rely on RFID security services.
Who should use this standard
- RFID and IoT device manufacturers implementing SPECK.
- Test laboratories performing conformity assessments and certification.
- System integrators and security architects validating RFID deployments.
- Compliance officers and procurement teams requiring proven interoperability and security.
Related standards
Keywords: ISO/IEC 19823-22:2019, SPECK, conformance test methods, RFID conformance, ISO/IEC 29167-22, ISO/IEC 18000, Test_Patterns, Authenticate, SecureComm.