首页 馆藏资源 舆情信息 标准服务 科研活动 关于我们
现行 ICAO 9303-Part 11
到馆提醒
收藏跟踪
购买正版
Machine Readable Travel Documents - Part 11 - Security Mechanisms for MRTDs (Doc 9303) 机器可读旅行证件第11部分MRTDs的安全机制
Doc 9303第七版代表了国际民航组织机器可读旅行规范的重组 文件。在没有对规范进行实质性修改的情况下,新版Doc 9303已重新格式化为一号机读公务旅行证件(TD1)、二号机读公务旅行证件(TD2)和三号机读旅行证件(TD3)以及签证的一套规范。这套规范由各种单独的文件组成,其中包括通用规范(适用于所有MRTD)和MRTD形状系数特定规范。Doc 9303第11部分以Doc 9303第6版第1部分机器可读护照第2卷为基础, 具有生物识别功能的电子护照规范(2006年)和Doc 9303第三版,第3部分,机读公务旅行证件,第2卷,具有生物识别功能的电子MRtds规范(2008年)。第11部分提供了规范,以使各国和供应商能够为其提供加密安全功能 提供非接触式集成电路(IC)只读访问的电子机器可读旅行证件(“EMRTD”)。密码协议被指定为:防止从非接触式IC中窃取数据;防止非接触式IC和读卡器之间的通信被窃听; 基于公钥基础设施,为非接触式IC上存储的数据提供身份验证 (PKI)如第12部分所述;并提供非接触式IC本身的认证。本版Doc 9303中未规定对敏感数据(即二次生物识别)的额外访问控制,但 保护这些数据的国家计划是允许的。未来版本的 9303号文件。非接触式IC上存储的数据的身份验证是使IC能够用于 手动和/或自动检查。因此,此功能是必需的。建议实施一种协议,以防止非接触式IC上存储的数据被窃取,并防止IC和终端之间的通信被窃听。 其他协议的实施是可选的,允许发布国或组织决定 根据国家法规/要求提供必要的安全功能。
The Seventh Edition of Doc 9303 represents a restructuring of the ICAO specifications for Machine Readable Travel Documents. Without incorporating substantial modifications to the specifications, in this new edition Doc 9303 has been reformatted into a set of specifications for Size 1 Machine Readable Official Travel Documents (TD1), Size 2 Machine Readable Official Travel Documents (TD2), and Size 3 Machine Readable Travel Documents (TD3), as well as visas. This set of specifications consists of various separate documents in which general (applicable to all MRTDs) as well as MRTD form factor specific specifications are grouped.This Part 11 of Doc 9303 is based on the Sixth Edition of Doc 9303, Part 1, Machine Readable Passports, Volume 2, Specifications for Electronically Enabled Passports with Biometric Identification Capability (2006) and the Third Edition of Doc 9303, Part 3, Machine Readable Official Travel Documents, Volume 2, Specifications for Electronically Enabled MRtds with Biometric Identification Capability (2008).This Part 11 provides specifications to enable States and suppliers to implement cryptographic security features for electronic machine readable travel documents ("eMRTDs") offering contactless integrated circuit (IC) read-only access.Cryptographic protocols are specified to:prevent skimming of data from the contactless IC;prevent eavesdropping on the communication between contactless IC and reader;provide authentication of the data stored on the contactless IC based on the Public Key Infrastructure (PKI) described in Part 12; andprovide authentication of the contactless IC itself.Additional access control to sensitive data (i.e. secondary biometrics) is not specified in this edition of Doc 9303, but national schemes to protect these data are allowed. An interoperable specification is foreseen for future editions of Doc 9303.The authentication of the data stored on the contactless IC is the basic security feature to enable the use of the IC for manual and/or automated inspection. This feature is therefore REQUIRED.Implementation of a protocol to prevent skimming of the data stored on the contactless IC and to prevent eavesdropping on the communication between IC and terminal is RECOMMENDED.Implementation of the other protocols is OPTIONAL, allowing the issuing State or organization to decide on the necessary set of security features according to national regulations/demands.
分类信息
发布单位或类别: 国际组织-国际民航组织
关联关系
研制信息
相似标准/计划/法规