收藏 分享(赏)

ISO_IEC_20648_2016E-Character_PDF_document.pdf

上传人:益****师 文档编号:234761 上传时间:2023-03-14 格式:PDF 页数:18 大小:342.05KB
下载 相关 举报
ISO_IEC_20648_2016E-Character_PDF_document.pdf_第1页
第1页 / 共18页
ISO_IEC_20648_2016E-Character_PDF_document.pdf_第2页
第2页 / 共18页
ISO_IEC_20648_2016E-Character_PDF_document.pdf_第3页
第3页 / 共18页
ISO_IEC_20648_2016E-Character_PDF_document.pdf_第4页
第4页 / 共18页
ISO_IEC_20648_2016E-Character_PDF_document.pdf_第5页
第5页 / 共18页
ISO_IEC_20648_2016E-Character_PDF_document.pdf_第6页
第6页 / 共18页
亲,该文档总共18页,到这儿已超出免费预览范围,如果喜欢就下载吧!
资源描述

1、Information technology TLS specification for storage systemsTechnologies de linformation Spcification TLS pour systmes de stockageINTERNATIONAL STANDARDISO/IEC20648Reference numberISO/IEC 20648:2016(E)First edition2016-03-01 ISO/IEC 2016 ii ISO/IEC 2016 All rights reservedCOPYRIGHT PROTECTED DOCUMEN

2、T ISO/IEC 2016,Published in SwitzerlandAll rights reserved.Unless otherwise specified,no part of this publication may be reproduced or utilized otherwise in any form or by any means,electronic or mechanical,including photocopying,or posting on the internet or an intranet,without prior written permis

3、sion.Permission can be requested from either ISO at the address below or ISOs member body in the country of the requester.ISO copyright officeCh.de Blandonnet 8 CP 401CH-1214 Vernier,Geneva,SwitzerlandTel.+41 22 749 01 11Fax+41 22 749 09 47copyrightiso.orgwww.iso.orgISO/IEC 20648:2016(E)ISO/IEC 2064

4、8:2016(E)Foreword.ivIntroduction.v1 Scope.12 Normative references.13 Terms and definitions.14 Symbols and abbreviated terms.25 Overview and concepts.35.1 General.35.2 Storage specifications.35.3 Overview of TLS.45.3.1 TLS Background.45.3.2 TLS functionality.45.3.3 Summary of cipher suites.45.3.4 X.5

5、09 digital certificates.56 Requirements.56.1 TLS protocol requirements.56.2 Cipher suites.66.2.1 Required cipher suites for interoperability.66.2.2 Recommended cipher suites for enhanced security.66.3 Digital certificates.77 Guidance for the implementation and use of TLS in data storage.77.1 Digital

6、 certificates.77.1.1 Certificate model.77.1.2 Chain of trust.87.1.3 Certificate lifecycle.87.1.4 Revocation.87.2 Security awareness.87.3 Cipher suites.97.4 Using TLS with HTTP.97.5 Use of pre-shared keys.9Bibliography.11 ISO/IEC 2016 All rights reserved iiiContents Page ISO/IEC 20648:2016(E)Foreword

7、ISO(the International Organization for Standardization)and IEC(the International Electrotechnical Commission)form the specialized system for worldwide standardization.National bodies that are members of ISO or IEC participate in the development of International Standards through technical committees

8、 established by the respective organization to deal with particular fields of technical activity.ISO and IEC technical committees collaborate in fields of mutual interest.Other international organizations,governmental and non-governmental,in liaison with ISO and IEC,also take part in the work.In the

9、 field of information technology,ISO and IEC have established a joint technical committee,ISO/IEC JTC 1.The procedures used to develop this document and those intended for its further maintenance are described in the ISO/IEC Directives,Part 1.In particular the different approval criteria needed for

10、the different types of document should be noted.This document was drafted in accordance with the editorial rules of the ISO/IEC Directives,Part 2(see www.iso.org/directives).Attention is drawn to the possibility that some of the elements of this document may be the subject of patent rights.ISO and I

11、EC shall not be held responsible for identifying any or all such patent rights.Details of any patent rights identified during the development of the document will be in the Introduction and/or on the ISO list of patent declarations received(see www.iso.org/patents).Any trade name used in this docume

12、nt is information given for the convenience of users and does not constitute an endorsement.For an explanation on the meaning of ISO specific terms and expressions related to conformity assessment,as well as information about ISOs adherence to the WTO principles in the Technical Barriers to Trade(TB

13、T),see the following URL:Foreword Supplementary information.ISO/IEC 20648 was prepared by the Storage Networking Industry Association(SNIA)as TLS Specification for Storage Systems,Version 1.0.1 and was adopted,under the PAS procedure,by Joint Technical Committee ISO/IEC JTC 1,Information technology,

14、in parallel with its approval by the national bodies of ISO and IEC.The content of ISO/IEC 20648 and SNIA TLS Specification for Storage Systems Version 1.0.1 is identical.iv ISO/IEC 2016 All rights reserved ISO/IEC 20648:2016(E)IntroductionWithin Information and Communications Technology(CT),one of

15、the best defenses against telecommunications attacks is to deploy security services implemented with mechanisms specified in standards that are thoroughly vetted in the public domain and rigorously tested by third party laboratories,by vendors,and by users of commercial off-the-shelf products.Three

16、services that most often address network user security requirements are confidentiality,message integrity and authentication.The Internet Engineering Task Force(IETF)with its Transport Layer Security(TLS)has a standard that is able to prevent tampering,message forgery,and eavesdropping by encrypting data units,or segments,from one end of the transport layer to the other.In addition,TLS is application protocol independent,which means higher-level protocols like HTTP can layer on top of the TLS pr

展开阅读全文
相关资源
猜你喜欢
相关搜索

当前位置:首页 > 专业资料 > 国外标准

copyright@ 2008-2023 wnwk.com网站版权所有

经营许可证编号:浙ICP备2024059924号-2