标准号:ISO/IEC 19790-2006
英文名称:Information technology - Security techniques - Security requirements for cryptographic modules
被替代标准:ISO/IEC 19790-2012
代替标准:ISO/IEC FDIS 19790-2005
采用标准:ANSI/INCITS/ISO/IEC 19790-2009,IDT;BS ISO/IEC 19790-2006,IDT;JIS X 19790-2007,IDT
起草单位:ISO/IEC JTC 1/SC 27
标准简介:This International Standard specifies the security requirements for a cryptographic module utilized within a
security system protecting sensitive information in computer and telecommunication systems. This
International Standard defines four security levels for cryptographic modules to provide for a wide spectrum of
data sensitivity (e.g., low value administrative data, million dollar funds transfers, and life protecting data) and
a diversity of application environments (e.g., a guarded facility, an office, and a completely unprotected
location). Four security levels are specified for each of 10 requirement areas. Each security level offers an
increase in security over the preceding level.
While the security requirements specified in this International Standard are intended to maintain the security
provided by a cryptographic module, compliance to this International Standard is not sufficient to ensure that a
particular module is secure or that the security provided by the module is sufficient and acceptable to the
owner of the information that is being protected.
ISO_IEC 19790-2006 信息技术.安全技术.密码模块的安全要求.pdf
(404.23 KB)