BS ISO/IEC 19286:2018 aims to normalize privacy-enhancing protocols and services byusing the mechanisms from parts of ISO/IEC 7816 and parts of ISO/IEC 18328 that contribute to security and privacy,providing discoverability means of privacy-enabling attributes,defining requirements for attribute-based credential handling, andidentifying data objects and commands for ICCs.Existing privacy-enhancing protocols available in a generic context are adopted for distributed systems including ICCs. Additionally, existing authentication protocols between an ICC and an external device used for establishing a secure channel are enhanced with privacy protection. Secure communication between an ICC and an on-card device is also considered.All the protocols and services described in this document contribute to privacy. Annex B describes an example of privacy impact assessments of respective systems.Cross References:ISO/IEC 7816-8ISO/IEC 18328-3ISO/IEC 7816-9ISO/IEC 7816-11ISO/IEC 7816-4:2013ISO/IEC 20008-2ISO/IEC 10536 (all parts)EN 419212-1ISO/IEC 7501-1ISO/IEC 18328-1ISO/IEC 18370-2ISO/IEC 18013-3ISO/IEC 24760-1EN 419212-2ISO/IEC 15693 (all parts)ISO/IEC 29191ISO/IEC 14443 (all parts)EN 14890-2ISO/IEC 29115EN 14890-1ISO/IEC 29101ISO/IEC 11770-3:2015ISO/IEC 29100:2011ISO/IEC 29134:2017All current amendments available at time of purchase are included with the purchase of this document.