Loading data. Please wait

CEN/TS 16439

Electronic fee collection - Security framework

Số trang: 141
Ngày phát hành: 2013-01-00

Liên hệ
EFC specific scope ISO 17573 defines the roles and functions as well as the internal and external entities of the EFC system environment. Based on the system architecture defined in ISO 17573, the security framework describes a set of requirements and security measures for stakeholders to implement and operate their part of an EFC system as required for a trustworthy environment according to its basic information security policy. In general, the overall scope is an information security framework for all organisational and technical entities and in detail for the interfaces between them. Figure 3 below illustrates the abstract EFC system model used to analyse the threats, define the security requirements and security measures of this Technical Specification. This Technical Specification is based on the assumption of an OBE which is dedicated to EFC purposes only and neither considers value added services based on EFC OBE, nor more generic OBE platforms (called in-vehicle ITS Stations) used to host the EFC application. The scope of this security framework comprises the following: general information security objectives of the stakeholders; threat analysis; definition of a trust model; security requirements; security measures - countermeasures; security specifications for interface implementation; key management; security policies; privacy-enabled implementations. The following is outside the scope of this Technical Specification: a complete risk assessment for an EFC system; security issues rising from an EFC application running on an ITS station; NOTE Security issues associated with an EFC application running on an ITS station will be covered in a CEN Technical Report on "Guidelines for EFC-applications based on in vehicle ITS Stations" that is being developed at the time of publication of this document. entities and interfaces of the interoperability management role; the technical trust relation of the model between TSP and User; a complete specification and description of all necessary security measures to all identified threats; concrete implementation specifications for implementation of security for EFC system, e. g. European electronic toll service (EETS); detailed specifications required for privacy-friendly EFC implementations. The detailed scope of the bullet points and the clause with the corresponding content is given below: General information security objectives of the stakeholders (informative, Annex C) To derive actual security requirements and define implementations, it is crucial to gain a common understanding of the possible different perspectives and objectives of such stakeholders of a toll charging environment.
Số hiệu tiêu chuẩn
CEN/TS 16439
Tên tiêu chuẩn
Electronic fee collection - Security framework
Ngày phát hành
2013-01-00
Trạng thái
Có hiệu lực
Tiêu chuẩn tương đương
DIN CEN/TS 16439 (2013-05), IDT * PD CEN/TS 16439 (2013-02-28), IDT * ONR CEN/TS 16439 (2013-10-15), IDT * CEN/TS 16439:en (2013-03-01), IDT * UNI CEN/TS 16439:2013 (2013-03-14), IDT * STN P CEN/TS 16439 (2013-07-01), IDT * CSN P CEN/TS 16439 (2013-08-01), IDT * DS/CEN/TS 16439 (2013-03-08), IDT * NPR-CEN/TS 16439:2013 en (2013-02-01), IDT
Tiêu chuẩn liên quan
EN 15509 (2007-05) * CEN ISO/TS 12813 (2009-11) * EN ISO 12855 (2012-02) * CEN ISO/TS 13141 (2010-02) * EN ISO 14906 (2011-10) * CEN ISO/TS 17575-1 (2010-06) * ISO/IEC 8825-1 (2008-12) * ISO/IEC 8825-2 (2008-12) * ISO/IEC 9594-8 (2008-12) * ISO/IEC 9797-1 (2011-03) * ISO/IEC 10118-3 (2004-03) * ISO/IEC 11770-1 (2010-12) * ISO/IEC 11770-3 (2008-07) * ISO/IEC 14888-2 (2008-04) * ISO/IEC 14888-3 (2006-11) * ISO/IEC 18031 (2011-11) * ISO/IEC 18033-2 (2006-05) * ISO/IEC 19790 (2012-08) * IETF RFC 4301 (2005-12) * IETF RFC 4347 (2006-04) * IETF RFC 4648 (2006-10) * IETF RFC 5035 (2007-08) * IETF RFC 5246 (2008-08) * IETF RFC 5280 (2008-05) * IETF RFC 5746 (2010-02)
Thay thế cho
FprCEN/TS 16439 (2012-04)
Thay thế bằng
Lịch sử ban hành
CEN/TS 16439 (2013-01)
Electronic fee collection - Security framework
Số hiệu tiêu chuẩn CEN/TS 16439
Ngày phát hành 2013-01-00
Mục phân loại 03.220.20. Vận tải đường bộ
35.240.60. Ứng dụng IT trong vận tải, thương mại và các lĩnh vực khác
Trạng thái Có hiệu lực
* FprCEN/TS 16439 (2012-04)
Từ khóa
Computer technology * Confidence intervals * Data exchange * Data processing * Data protection * Data security * Data structures * Data transmission * Definitions * E-business * Electronic * Electronic Data Interchange * Electronic systems * Fees * Highway regulations * Information interchange * Information technology * Message accounting * Motor vehicles * Payment * Payment order * Precalculation * Profile * Properties * Reliability * Road transport * Safety * Safety requirements * Signal transmission * Specification * Specification (approval) * Tariffs * Telecommunication transmission methods * Telematics * Traffic and traveller information * Traffic measurement * TTI * Usage fees * Information exchange
Số trang
141