ISO/IEC 9594-8:2020

International Standard   Current Edition · Approved on 01 December 2020

Information technology — Open systems interconnection — Part 8: The Directory: Public-key and attribute certificate frameworks

ISO/IEC 9594-8:2020 Files

English 224 Pages
Current Edition
100.85 BHD

ISO/IEC 9594-8:2020 Scope

This document addresses some of the security requirements in the areas of authentication and other security services through the provision of a set of frameworks upon which full services can be based. Specifically, this Recommendation | International Standard defines frameworks for:

? public-key certificates; and

? attribute certificates.

The public-key certificate framework defined in this Recommendation | International Standard specifies the information objects and data types for a public-key infrastructure (PKI), including public-key certificates, certificate revocation lists (CRLs), trust broker and authorization and validation lists (AVLs). The attribute certificate framework specifies the information objects and data types for a privilege management infrastructure (PMI), including attribute certificates, and attribute certificate revocation lists (ACRLs). This Recommendation | International Standard also provides the framework for issuing, managing, using and revoking certificates. An extensibility mechanism is included in the defined formats for both certificate types and for all revocation list schemes. This Recommendation | International Standard also includes a set of extensions, which is expected to be generally useful across a number of applications of PKI and PMI. The schema components (including object classes, attribute types and matching rules) for storing PKI and PMI information in a directory, are included in this Recommendation | International Standard.

This Recommendation | International Standard specifies the framework for strong authentication, involving credentials formed using cryptographic techniques. It is not intended to establish this as a general framework for authentication, but it can be of general use for applications which consider these techniques adequate.

Authentication (and other security services) can only be provided within the context of a defined security policy. It is a matter for users of an application to define their own security policy.

Best Sellers

GSO 150-2:2013
 
Gulf Standard
Expiration dates for food products - Part 2 : Voluntary expiration dates
BH GSO 150-2:2015
GSO 150-2:2013 
Bahraini Standard
Expiration dates for food products - Part 2 : Voluntary expiration dates
BH GSO 2055-1:2016
GSO 2055-1:2015 
Bahraini Technical Regulation
HALAL FOOD - Part 1 : General Requirements
GSO 2055-1:2015
 
Gulf Technical Regulation
HALAL FOOD - Part 1 : General Requirements

Recently Published

ISO/IEC 23009-9:2025
 
International Standard
Information technology — Dynamic adaptive streaming over HTTP (DASH) — Part 9: Redundant encoding and packaging for segmented live media (REaP)
ISO/IEC TR 27599:2025
 
International Standard
Information technology — Brain-computer interfaces — Use cases
ISO 4517:2025
 
International Standard
Physical vapor deposition (PVD) coatings — Contact angle measurement of metallic hydrophobic PVD coatings
ISO 15237:2025
 
International Standard
Coal — Determination of total mercury