1、Information technology Telecommunications and information exchange between systems NFC Security Part 5:NFC-SEC entity authentication and key agreement using symmetric cryptographyTechnologies de linformation Tlcommunications et change dinformation entre systmes Scurit NFC Partie5:Authentificationden
2、titNFC-SECetaccorddeclsutilisantune cryptographie symtriqueINTERNATIONAL STANDARDISO/IEC13157-5Reference numberISO/IEC 13157-5:2016(E)First edition?1?1?ISO/IEC 2016 ii ISO/IEC 2016 All rights reservedCOPYRIGHT PROTECTED DOCUMENT ISO/IEC 2016,Published in SwitzerlandAll rights reserved.Unless otherwi
3、se specified,no part of this publication may be reproduced or utilized otherwise in any form or by any means,electronic or mechanical,including photocopying,or posting on the internet or an intranet,without prior written permission.Permission can be requested from either ISO at the address below or
4、ISOs member body in the country of the requester.ISO copyright officeCh.de Blandonnet 8 CP 401CH-1214 Vernier,Geneva,SwitzerlandTel.+41 22 749 01 11Fax+41 22 749 09 47copyrightiso.orgwww.iso.orgISO/IEC 13157-5:2016(E)ISO/IEC 13157-5:2016(E)ISO/IEC 2016 All rights reserved iiiContents PageForeword.iv
5、 Introduction.v 1Scope.12Conformance.13Normative references.14Terms and definitions.15Conventions and notations.26Acronyms.37General.38Fields and PDUs for NEAU-S.48.1Protocol Identifier(PID).48.2NFC-SEC-PDUs.48.3Entity identifiers.49Primitives.59.1General requirements.59.2Entity authentication.69.2.
6、1Mechanism.69.2.2AES.69.2.3Modes of operation.69.2.4Message Authentication Code(MAC).69.3Key agreement.69.4Key confirmation.69.4.1Overview.69.4.2Key confirmation tag generation.69.4.3Key confirmation tag verification.69.5Key Derivation Function(KDF).79.5.1Overview.79.5.2KDF for MKA and KEIA.79.5.3KD
7、F for the shared secret Z.79.5.4KDF for the SSE and SCH.79.6Data authenticated encryption during authentication.89.6.1Initial values(IV).89.6.2Additional Authenticated Data(AAD).89.6.3NEAU-S payload encryption and MAC generation.89.6.4NEAU-S payload decryption and MAC verification.810NEAU-S mechanis
8、m.910.1Protocol overview.910.2Preparation.910.3Sender(A)transformation.910.4Recipient(B)transformation.1011Data Authenticated Encryption in SCH.11iv ISO/IEC 2016 All rights reservedISO/IEC 13157-5:2016(E)Foreword ISO(the International Organization for Standardization)and IEC(the International Electr
9、otechnical Commission)form the specialized system for worldwide standardization.National bodies that are members of ISO or IEC participate in the development of International Standards through technical committees established by the respective organization to deal with particular fields of technical
10、 activity.ISO and IEC technical committees collaborate in fields of mutual interest.Other international organizations,governmental and non-governmental,in liaison with ISO and IEC,also take part in the work.In the field of information technology,ISO and IEC have established a joint technical committ
11、ee,ISO/IEC JTC 1.The procedures used to develop this document and those intended for its further maintenance are described in the ISO/IEC Directives,Part 1.In particular the different approval criteria needed for the different types of document should be noted.This document was drafted in accordance
12、 with the editorial rules of the ISO/IEC Directives,Part 2(see www.iso.org/directives).Attention is drawn to the possibility that some of the elements of this document may be the subject of patent rights.ISO and IEC shall not be held responsible for identifying any or all such patent rights.Details
13、of any patent rights identified during the development of the document will be in the Introduction and/or on the ISO list of patent declarations received(see www.iso.org/patents).Any trade name used in this document is information given for the convenience of users and does not constitute an endorse
14、ment.For an explanation on the meaning of ISO specific terms and expressions related to conformity assessment,as well as information about ISOs adherence to the World Trade Organization(WTO)principles in the Technical Barriers to Trade(TBT)see the following URL:www.iso.org/iso/foreword.html.ISO/IEC
15、13157-5 was prepared by Ecma International(as ECMA-411)and was adopted,under a special“fast-track procedure”,by Joint Technical Committee ISO/IEC JTC 1,Information technology,in parallel with its approval by national bodies of ISO and IEC.ISO/IEC 13157 consists of the following parts,under the gener
16、al title Information technology Telecommunications and information exchange between systems NFC Security:Part 1:NFC-SEC NFCIP-1 security services and protocol Part 2:NFC-SEC cryptography standard using ECDH and AES Part 3:NFC-SEC cryptography standard using ECDH-256 and AES-GCM Part 4:NFC-SEC entity authentication and key agreement using asymmetric cryptography Part 5:NFC-SEC entity authentication and key agreement using symmetric cryptography.ISO/IEC 13157-5:2016(E)ISO/IEC 2016 All rights reser