Standard
[WITHDRAWN]
ISO 13491-1:2007-06
Banking - Secure cryptographic devices (retail) - Part 1: Concepts, requirements and evaluation methods
German title
Bankwesen - Sichere Verschlüsselungsgeräte (Einzelhandel) - Teil 1: Konzepte, Anforderungen und Zertifizierungsmethoden
Publication date
2007-06
Original language
English
Pages
30
Publication date
2007-06
Original language
English
Pages
30
Product information on this site:
Quick delivery via download or delivery service
Buy securely with a credit card or pay upon receipt of invoice
All transactions are encrypted
Content
Content (en)
Foreword
Introduction
Scope
Normative references
Terms and definitions
Abbreviated terms
Secure cryptographic device concepts
Show subsection Close subsection General
Attack scenarios
Show subsection Close subsection General
Penetration
Monitoring
Manipulation
Modification
Substitution
Defence measures
Show subsection Close subsection General
Device characteristics
Device management
Environment
Requirements for device security characteristics
Show subsection Close subsection Introduction
Physical security requirements for SCDs
Show subsection Close subsection General
Tamper evidence requirements
Tamper resistance requirements
Tamper response requirements
Physically secure devices
Devices using exclusively unique key per transaction key management
Logical security requirements for SCDs
Show subsection Close subsection Dual control
Unique key per device
Assurance of genuine device
Design of functions
Use of cryptographic keys
Sensitive device states
Multiple cryptographic relationships
SCD software authentication
Logical design features
Requirements for device management
Show subsection Close subsection General
Life cycle phases
Life cycle protection requirements
Show subsection Close subsection General
Manufacturing and post-manufacturing
Pre-use
Use
Post-use
Life cycle protection methods
Show subsection Close subsection Manufacturing
Post-manufacturing
Pre-use
Use
Post-use
Accountability
Device management principles of audit and control
Evaluation methods
Show subsection Close subsection General
Show subsection Close subsection Choice of evaluation method
Informal method
Semi-formal method
Formal method
Risk assessment
Informal evaluation method
Show subsection Close subsection General
Manufacturer/sponsor
Assessor
Assessment review body
Assessment checklist
Assessment results
Assessment Report
Semi-formal evaluation method
Show subsection Close subsection General
Manufacturer/sponsor
Evaluation agency
Evaluation review body
Evaluation results
Evaluation report
Formal evaluation method
Concepts of security levels for system security (informative)
Bibliography
Cooperation at DIN
Please get in touch with the relevant contact person at DIN if you have problems understanding the content of the standard or need advice on how to apply it.
Loading recommended items...
Loading recommended items...
Loading recommended items...
Loading recommended items...