PD ISO/IEC TS 20540:2018 PDF
Information technology. Security techniques. Testing cryptographic modules in their operational environment
Information technology. Security techniques. Testing cryptographic modules in their operational environment
- Статус документа:
- Отменён
- Формат:
- Электронный (PDF)
- Дата публикации:
- 30 июня 2018 г.
- ICS:
- 35.030
- Технический комитет:
- IEC
- SKU:
- PD ISO/IEC TS 20540:2018
Abstract
1 Scope This document provides recommendations and checklists which can be used to support the specification and operational testing of cryptographic modules in their operational environment within an organization ’s security system. The cryptographic modules have four security levels which ISO/IEC 19790 defines to provide for a wide spectrum of data sensitivity (e.g. low-value administrative data, million-dollar funds transfers, life-protecting data, personal identity information, and sensitive information used by government) and a diversity of application environments (e.g. a guarded facility, an office, removable media, and a completely unprotected location). This document includes:
a) recommendations to perform secure assessing for cryptographic module installation, configuration and operation;
b) recommendations to inspecting the key management system, protection of authentication credentials, and public and critical security parameters in the operational environment ;
c) recommendations for identifying cryptographic module vulnerabilities;
d) checklists for the
Похожие стандарты
Упомянутые в описании и другие стандарты PD