您的位置: 标准下载 » 国际标准 » ISO 国际标准 »

ISO/IEC 15408-1-2005 信息技术.安全技术.IT安全的评价标准.第1部分:介绍和一般模型

时间:2024-05-15 08:59:17 来源: 标准资料网 作者:标准资料网 阅读:8439
下载地址: 点击此处下载
【英文标准名称】:Informationtechnology-Securitytechniques-EvaluationcriteriaforITsecurity-Part1:Introductionandgeneralmodel
【原文标准名称】:信息技术.安全技术.IT安全的评价标准.第1部分:介绍和一般模型
【标准号】:ISO/IEC15408-1-2005
【标准状态】:作废
【国别】:国际
【发布日期】:2005-10
【实施或试行日期】:
【发布单位】:国际标准化组织(IX-ISO)
【起草单位】:ISO/IECJTC1/SC27
【标准类型】:()
【标准水平】:()
【中文主题词】:置信区间;数据处理;数据保护;数据安全;数据传输;定义;信息交换;信息技术;信任等级;模型;特性;可靠度;安全
【英文主题词】:Confidenceintervals;Dataexchange;Dataprocessing;Dataprotection;Datasecurity;Datatransmission;Definitions;Englishlanguage;Evaluations;Informationexchange;Informationinterchange;Informationtechnology;ITsecurity;Levelofconfidence;Models;Properties;Reliability;Safety
【摘要】:ISO/IEC15408ismeanttobeusedasthebasisforevaluationofsecuritypropertiesofITproductsandsystems.Byestablishingsuchacommoncriteriabase,theresultsofanITsecurityevaluationwillbemeaningfultoawideraudience.Certaintopics,becausetheyinvolvespecializedtechniquesorbecausetheyaresomewhatperipheraltoITsecurity,areconsideredtobeoutsidethescopeofISO/IEC15408.Someoftheseareidentifiedbelow:a)ISO/IEC15408doesnotcontainsecurityevaluationcriteriapertainingtoadministrativesecuritymeasuresnotrelateddirectlytotheITsecuritymeasures.However,itisrecognisedthatasignificantpartofthesecurityofaTOEcanoftenbeachievedthroughadministrativemeasuressuchasorganisational,personnel,physical,andproceduralcontrols.AdministrativesecuritymeasuresintheoperatingenvironmentoftheTOEaretreatedassecureusageassumptionswherethesehaveanimpactontheabilityoftheITsecuritymeasurestocountertheidentifiedthreats.b)TheevaluationoftechnicalphysicalaspectsofITsecuritysuchaselectromagneticemanationcontrolisnotspecificallycovered,althoughmanyoftheconceptsaddressedwillbeapplicabletothatarea.Inparticular,ISO/IEC15408addressessomeaspectsofphysicalprotectionoftheTOE.c)ISO/IEC15408addressesneithertheevaluationmethodologynortheadministrativeandlegalframeworkunderwhichthecriteriamaybeappliedbyevaluationauthorities.However,itisexpectedthatISO/IEC15408willbeusedforevaluationpurposesinthecontextofsuchaframeworkandsuchamethodology.d)TheproceduresforuseofevaluationresultsinproductorsystemaccreditationareoutsidethescopeofISO/IEC15408.ProductorsystemaccreditationistheadministrativeprocesswherebyauthorityisgrantedfortheoperationofanITproductorsysteminitsfulloperationalenvironment.EvaluationfocusesontheITsecuritypartsoftheproductorsystemandthosepartsoftheoperationalenvironmentthatmaydirectlyaffectthesecureuseofITelements.Theresultsoftheevaluationprocessareconsequentlyavaluableinputtotheaccreditationprocess.However,asothertechniquesaremoreappropriatefortheassessmentsofnon-ITrelatedproductorsystemsecuritypropertiesandtheirrelationshiptotheITsecurityparts,accreditorsshouldmakeseparateprovisionforthoseaspects.e)ThesubjectofcriteriafortheassessmentoftheinherentqualitiesofcryptographicalgorithmsisnotcoveredinISO/IEC15408.ShouldindependentassessmentofmathematicalpropertiesofcryptographyembeddedinaTOEberequired,theevaluationschemeunderwhichISO/IEC15408isappliedmustmakeprovisionforsuchassessments.Informationtechnology—Securitytechniques—EvaluationcriteriaforITsecurity—Part1:IntroductionandgeneralmodelThispartofISO/IEC15408definestwoformsforexpressingITsecurityfunctionalandassurancerequirements.Theprotectionprofile(PP)constructallowscreationofgeneralizedreusablesetsofthesesecurityrequirements.ThePPcanbeusedbyprospectiveconsumersforspecificationandidentificationofproductswithITsecurityfeatureswhichwillmeettheirneeds.Thesecuritytarget(ST)expressesthesecurityrequirementsandspecifiesthesecurityfunctionsforaparticularproductorsystemtobeevaluated,calledthetargetofevaluation(TOE).TheSTisusedbyevaluatorsasthebasisforevaluationsconductedinaccordancewithISO/IEC15408.
【中国标准分类号】:L70
【国际标准分类号】:35_040
【页数】:41P;A4
【正文语种】:英语


Product Code:SAE AMS4077
Title:Aluminum Alloy Sheet and Plate, Alclad One Side, 4.4Cu - 1.5Mg - 0.60Mn (Clad One Side 2024-0), Annealed
Issuing Committee:Ams D Nonferrous Alloys Committee
Scope:This specification covers an aluminum alloy in the form of sheet and plate.This product has been used typically for structural components, including machine tapered parts, but usage is not limited to such applications.【英文标准名称】:Childcarearticles-Reclinedcradles;GermanversionEN12790:2002
【原文标准名称】:育儿用品.摇篮
【标准号】:DINEN12790-2003
【标准状态】:作废
【国别】:德国
【发布日期】:2003-01
【实施或试行日期】:
【发布单位】:德国标准化学会(DE-DIN)
【起草单位】:
【标准类型】:()
【标准水平】:()
【中文主题词】:悬挂结构;安全带;沙发床;设计;材料规范;材料;幼儿;儿童;儿童用家具;使用说明;帆布睡椅;;;适用性;儿童座椅;试验;作标记;座椅;包装件;规范(验收);婴儿;特性;安全要求;定义;儿童保护设备;安全;尺寸
【英文主题词】:Babies;Carryingstraps;Childproofequipment;Children;Childrensfurniture;Childrensseats;Deckchairs;Definitions;Design;Dimensions;Divans;Fitnessforpurpose;Infants;Instructionsforuse;Marking;Materials;Materialsspecification;Packages;Properties;Rockingequipments;Safety;Safetybelts;Safetyrequirements;Seating;Specification(approval);Suspendedstructures;Testing
【摘要】:Thisstandardspecifiestherequirementsandthecorrespondingtestmethodsforfixedorfoldingreclinedcradlesintendedforchildrenuptothe6monthsandoruptoaweightof9kg.
【中国标准分类号】:Y80
【国际标准分类号】:97_190
【页数】:23P;A4
【正文语种】:德语