百检网首页 我的订单 400-101-7153

BS ISO/IEC 10181-3-1996 信息技术.开放系统互连.开式系统用安全帧.存取控制帧

作者:百检网 时间:2021-07-16

标准号:BS ISO/IEC 10181-3-1996
中文标准名称:信息技术.开放系统互连.开式系统用安全帧.存取控制帧
英文标准名称:Information technology - Open systems interconnection - Security frameworks for open systems - Access control framework
标准类型:L79
发布日期:1997/2/15 12:00:00
实施日期:1997/2/15 12:00:00
中国标准分类号:L79
国际标准分类号:35.100.01
适用范围:The Security Frameworks are intended to address the application of security services in an Open Systems environment, where the term Open Systems is taken to include areas such as Database, Distributed Applications, ODP and OSI. The Security Frameworks are concerned with defining the means of providing protection for systems and objects within systems, and with the interactions between systems. The Security Frameworks are not concerned with the methodology for constructing systems or mechanisms. The Security Frameworks address both data elements and sequences of operations (but not protocol elements) that are used to obtain specific security services. These security services may apply to the communicating entities of systems as well as to data exchanged between systems, and to data managed by systems. In the case of Access Control, accesses may either be to a system (i.e. to an entity that is the communicating part of a system) or within a system. The information items that need to be presented to obtain the access, as well as the sequence of operations to request the access and for notification of the results of the access, are considered to be within the scope of the Security Frameworks. However, any information items and operations that are dependent solely on a particular application and that are strictly concerned with local access within a system are considered to be outside the scope of the Security Frameworks. Many applications have requirements for security to protect against threats to resources, including information, resulting from the interconnection of Open Systems. Some commonly known threats, together with the security services and mechanisms that can be used to protect against them, in an OSI environment, are described in CCITT Rec. X.800 | ISO 7498-2. The process of determining which uses of resources within an Open System environment are permitted and, where appropriate, preventing unauthorized access is called access control. This Recommendation | International Standard defines a general framework for the provision of access control services. This Security Framework: a) defines the basic concepts for access control; b) demonstrates the manner in which the basic concepts of access control can be specialized to support some commonly recognized access control services and mechanisms; c) defines these services and corresponding access control mechanisms; d) identifies functional requirements for protocols to support these access control services and mechanisms; e) identifies management requirements to support these access control services and mechanisms; f) addresses the interaction of access control services and mechanisms with other security services and mechanisms. As with other security services, access control can be provided only within the context of a defined security policy for a particular application. The definition of access control policies is outside the scope of this Recommendation | International Standard, however, some characteristics of access control policies are discussed. It is not a matter for this Recommendation | International Standard to specify details of the protocol exchanges which may need to be performed in order to provide access control services. This Recommendation | International Standard does not specify particular mechanisms to support these access control services nor the details of security management services and protocols. A number of different types of standard can use this framework including: a) standards that incorporate the concept of access control; b) standards that specify abstract services that include access control; c) standards that specify uses of an access control service; d) standards that specify the means of providing access control within an Open System environment; and e) standards that specify access control mechanisms. Such standards can use this framework as follows: - standard types a, b, c, d, and e c

相关标准

《GB/T36480-2018Cl.6.4》信息技术 紧缩嵌入式摄像头通用规范
《GB/T36480-2018Cl.6.9》信息技术 紧缩嵌入式摄像头通用规范
《GB/T36480-2018Cl.6.2》信息技术 紧缩嵌入式摄像头通用规范
《GB/T36480-2018Cl.6.3》信息技术 紧缩嵌入式摄像头通用规范
《GB/T36480-2018Cl.6.5》信息技术 紧缩嵌入式摄像头通用规范
《GB/T36480-2018Cl.6.6》信息技术 紧缩嵌入式摄像头通用规范
《GB/T36480-2018Cl.6.7》信息技术 紧缩嵌入式摄像头通用规范
《GB/T36480-2018Cl.6.8》信息技术 紧缩嵌入式摄像头通用规范
《GB/T36480-2018Cl.6.1》信息技术 紧缩嵌入式摄像头通用规范
《GB/T2423.18-2012》电工电子产品环境试验 第2部分:试验方法 试验Kb:盐雾,交变(氯化钠溶液)
百检网专注于为第三方检测机构以及中小微企业搭建互联网+检测电商服务平台,是一个创新模式的检验检测服务网站。百检网致力于为企业提供便捷、高效的检测服务,简化检测流程,提升检测服务效率,利用互联网+检测电商,为客户提供多样化选择,从根本上降低检测成本提升时间效率,打破行业壁垒,打造出行业创新的检测平台。

百检能给您带来哪些改变?

1、检测行业全覆盖,满足不同的检测;

2、实验室全覆盖,就近分配本地化检测;

3、工程师一对一服务,让检测更精准;

4、免费初检,初检不收取检测费用;

5、自助下单 快递免费上门取样;

6、周期短,费用低,服务周到;

7、拥有CMA、CNAS、CAL等权威资质;

8、检测报告权威有效、中国通用;

客户案例展示

  • 上海朗波王服饰有限公司
  • 浙江圣达生物药业股份有限公司
  • 天津市长庆电子科技有限公司
  • 桑德斯微电子器件(南京)有限公司
  • 上海嘉叠贸易有限公司
  • 上海纽特丝纺织品有限公司
  • 无锡露米娅纺织有限公司
  • 东方电气风电(凉山)有限公司
  • 宁波图米文具用品有限公司
  • 江苏力之创特种装备制造有限公司

相关资讯

暂无相关资讯

最新资讯

百检网