ISO/TR 21186-3:2021 PDF
Cooperative intelligent transport systems (C-ITS) — Guidelines on the usage of standards — Part 3: Security
Cooperative intelligent transport systems (C-ITS) — Guidelines on the usage of standards — Part 3: Security
- Статус документа:
- Действующий
- Формат:
- Электронный (PDF)
- Количество страниц:
- 125
- Дата публикации:
- 6 февраля 2021 г.
- Издание:
- ISO TR 21186 edition 1 version 1
- ICS:
- 01.120
This document provides guidelines on security applicable in Intelligent Transport Systems (ITS) related to communications and data access. In particular, this document provides analyses and best practice content for secure ITS connectivity using ISO/TS 21177. This document analyses and identifies issues related to application security, access control, device security and PKI for a secure ITS ecosystem.
Abstract
Overview
ISO/TR 21186-3:2021 - Cooperative Intelligent Transport Systems (C-ITS) - Guidelines on the usage of standards - Part 3: Security provides practical, implementer-focused guidance for securing Intelligent Transport Systems (ITS). The report explains how to apply security controls for communications, data access and device protection in C‑ITS environments and offers analyses and best practices for secure ITS connectivity using ISO/TS 21177.
Key deliverables in the document include:
- Guidance on security design processes for C‑ITS applications.
- Communications security and source authentication measures.
- Access control, device security and Public Key Infrastructure (PKI)/Certificate Authority (CA) considerations.
- A use-case driven threat model and example access-control implementation for ISO/TS 21177‑conformant devices.
- Inputs and gap analysis for developing Certificate Policies (CPs) and improving ITS PKI.
Key topics and requirements
- Security design for C‑ITS applications: lifecycle considerations for threat analysis, security objectives and Security Functional Requirements (SFRs).
- Communications security mechanisms: secure sessions, transport layer protection and message authenticity for ITS station interactions.
- Source authentication & access control: role-based access, resource discovery, policy structure and TLS integration examples.
- PKI and certificate management: CA roles, certification processes, CP inputs and identified gaps for ITS deployments.
- Device-level analysis: an IDX device use case with threat modelling, asset identification, SFR mapping and comparison to Common Criteria protection profiles.
- Implementation guidance: stepwise examples (define/load policy, configure TLS, establish secure sessions, access-controlled discovery) tailored to ISO/TS 21177.
Practical applications and who uses it
This technical report is targeted at practitioners who design, deploy or audit secure ITS systems:
- System architects & security engineers: for threat modelling, SFR selection and architecture decisions.
- Vehicle OEMs & roadside equipment manufacturers: to implement device security, access control and ISO/TS 21177 integration.
- PKI operators & certificate authorities: to align CPs and issuance processes with C‑ITS needs and mitigate identified PKI threats.
- Infrastructure operators & service providers: to apply access policies and secure communications between ITS stations.
- Standards bodies & test labs: for comparing protection profiles and addressing gaps with Common Criteria and other PPs.
Related standards
- ISO/TS 21177 - device-to-device secure sessions and resource access authorization (central reference for this TR)
- Common Criteria protection profiles (referenced for mapping SFRs and assessing gaps)
- European C‑ITS Certificate Policy (discussed in gap analysis and CP change needs)
Using ISO/TR 21186-3:2021 helps stakeholders implement consistent, standards-based security controls across C‑ITS deployments, reduce interoperability risks and inform certificate policy and PKI decisions for trusted ITS ecosystems.
Технические детали
- Технический комитет
- ISO/TC 204 - Intelligent transport systems
- SKU
- ISO/TR 21186-3:2021
Похожие стандарты
Упомянутые в описании и другие стандарты ISO
PD CEN ISO/TS 21177:2019
ОтменёнIntelligent transport systems. ITS station security services for secure session establishment and authenticat…
What is ISO/TS 21177 - ITS station security services about? Intelligent Transport System (ITS) aims to achieve traffic efficiency by minimizing traffic problems. ISO/TS 21177 contains specifications…
ISO 8689-1:2000
ДействующийWater quality — Biological classification of rivers — Part 1: Guidance on the interpretation of biological qu…
Overview ISO 8689-1:2000, titled Water quality - Biological classification of rivers - Part 1: Guidance on the interpretation of biological quality data from surveys of benthic macroinvertebrates, is…
ISO/ASTM51540-04(2012)
ОтменёнStandard Practice for Use of a Radiochromic Liquid Dosimetry System (Withdrawn 2020)
Significance and Use4.1 The radiochromic liquid dosimetry system provides a means of measuring absorbed dose in materials (5-7). Under the influence of ionizing radiation, chemical reactions take pla…
ISO/ASTM51204-04
ДействующийStandard Practice for Dosimetry in Gamma Irradiation Facilities for Food Processing (Withdrawn 2013)
Significance and Use4.1 Food products may be treated with ionizing radiation, such as gamma-rays from 60Co or 137Cs sources, for numerous purposes, including control of parasites and pathogenic micro…
ISO/ASTM51431-05
ОтменёнStandard Practice for Dosimetry in Electron Beam and X-Ray (Bremsstrahlung) Irradiation Facilities for Food P…
Significance and Use4.1 Food products may be treated with acceleratorgenerated radiation (electrons and X-rays) for numerous purposes, including control of parasites and pathogenic microorganisms, in…
ISO/ASTM52628-20e1
ДействующийStandard Practice for Dosimetry in Radiation Processing
1.1 This practice describes the basic requirements that apply when making absorbed dose measurements in accordance with the ASTM E61 series of dosimetry standards. In addition, it provides guidance o…
ISO/ASTM52921-13(2019)
ДействующийStandard Terminology for Additive Manufacturing—Coordinate Systems and Test Methodologies
Significance and Use 3.1 Although many additive manufacturing systems are based heavily upon the principles of Computer Numerical Control (CNC), the coordinate systems and nomenclature specific to CN…
ISO/ASTMTR52917-EB
ДействующийAdditive Manufacturing — Round Robin Testing — General Guidelines
This document outlines the steps with regard to aspects of design to conduct and run a round robin study (RRS) to assess the degree of variability in an additive manufacturing material or process. Th…