ISO/IEC 11770-3:2021 PDF

ISO/IEC 11770-3:2021 PDF

Name:
ISO/IEC 11770-3:2021 PDF

Published Date:
10/01/2021

Status:
Active

Description:

Information security - Key management - Part 3: Mechanisms using asymmetric techniques

Publisher:
International Organization for Standardization/International Electrotechnical Commission

Document status:
Active

Format:
Electronic (PDF)

Delivery time:
10 minutes

Delivery time (for Russian version):
200 business days

SKU:

Choose Document Language:
$83.4
Need Help?

This document defines key management mechanisms based on asymmetric cryptographic techniques. It specifically addresses the use of asymmetric techniques to achieve the following goals.

a) Establish a shared secret key for use in a symmetric cryptographic technique between two entities A and B by key agreement. In a secret key agreement mechanism, the secret key is computed as the result of a data exchange between the two entities A and B. Neither of them is able to predetermine the value of the shared secret key.

b) Establish a shared secret key for use in a symmetric cryptographic technique between two entities A and B via key transport. In a secret key transport mechanism, the secret key is chosen by one entity A and is transferred to another entity B, suitably protected by asymmetric techniques.

c) Make an entity's public key available to other entities via key transport. In a public key transport mechanism, the public key of entity A is transferred to other entities in an authenticated way, but not requiring secrecy.

Some of the mechanisms of this document are based on the corresponding authentication mechanisms in ISO/IEC°9798 3.

This document does not cover certain aspects of key management, such as:

°°°° key lifecycle management;

°°°° mechanisms to generate or validate asymmetric key pairs; and

°°°° mechanisms to store, archive, delete, destroy, etc., keys.

While this document does not explicitly cover the distribution of an entity's private key (of an asymmetric key pair) from a trusted third party to a requesting entity, the key transport mechanisms described can be used to achieve this. A private key can in all cases be distributed with these mechanisms where an existing, non-compromised key already exists. However, in practice the distribution of private keys is usually a manual process that relies on technological means such as smart cards, etc.

This document does not specify the transformations used in the key management mechanisms.

NOTE°°°°°° To provide origin authentication for key management messages, it is possible to make provisions for authenticity within the key establishment protocol or to use a public key signature system to sign the key exchange messages.


File Size : 1 file , 1.9 MB
Note : This product is unavailable in Russia, Ukraine, Belarus
Published : 10/01/2021
Same As : ISO/IEC 11770-3:2021

History

ISO/IEC 11770-3:2021
Published Date: 10/01/2021
Information security - Key management - Part 3: Mechanisms using asymmetric techniques
$83.4
ISO/IEC 11770-3:2015/Amd1:2017
Published Date: 11/01/2017
- Amendment 1: Blinded Diffie-Hellman key agreement
$5.7
ISO/IEC 11770-3:2008
Published Date: 07/15/2008
Information technology - Security techniques - Key management - Part 3: Mechanisms using asymmetric techniques
$79.5
ISO/IEC 11770-3:1999
Published Date: 11/01/1999
Information technology -- Security techniques -- Key management -- Part 3: Mechanisms using asymmetric techniques
$38.7

Related products

ISO/IEC TS 27006-2:2021
Published Date: 03/01/2021
Requirements for bodies providing audit and certification of information security management systems - Part 2: Privacy information management systems
$24.3
ISO/IEC 24761:2019
Published Date: 10/01/2019
Information technology - Security techniques - Authentication context for biometrics
$75
ISO/IEC 11770-7:2021
Published Date: 07/01/2021
Information security - Key management - Part 7: Cross-domain password-based authenticated key exchange
$49.8

Best-Selling Products