首页 馆藏资源 舆情信息 标准服务 科研活动 关于我们
现行 ISO/IEC/IEEE 8802-1AE:2020
到馆阅读
收藏跟踪
购买正版
Telecommunications and exchange between information technology systems — Requirements for local and metropolitan area networks — Part 1AE: Media access control (MAC) security 信息技术系统间的电信和交换局域网和城域网的要求第1AE部分:媒体访问控制(MAC)安全
发布日期: 2020-08-21
本文件规定了通过媒体访问独立协议和实体提供无连接用户数据保密性、帧数据完整性和数据源真实性,这些协议和实体对MAC客户端透明。 注:MAC客户机符合IEEE标准802?、IEEE标准802.1Q?、?,和IEEE标准802.1X。2. 为此,它 a) 规定声称符合本标准的设备应满足的要求。 b) 在提供MAC服务和 保留服务请求和指示的语义和参数。 c) 描述了为纠正服务提供而受到的威胁,包括故意威胁和意外威胁。 d) 指定用于防止或限制利用这些威胁的攻击效果的安全服务。 e) 检查威胁和MACsec的使用对服务质量的潜在影响 (QoS),指定MAC安全实体和协议的设计和操作限制。 f) 模型在媒体访问控制方法的操作方面支持安全MAC服务 MAC子层内的独立MAC安全实体(SecYs)。 g) 指定用于提供安全服务的MACsec协议数据单元(MPDU)的格式。 h) 确定每个部门要执行的功能,并提供其架构模型 提供这些功能的流程和实体的内部运营。 i) 指定每个SecY对关联并置端口访问实体(PAE)的使用, IEEE Std 802.1X)来发现和验证MACsec协议对等方及其对该PAE的使用 密钥协议实体(KaY)同意并更新加密密钥。 j) 指定性能要求,并建议系统的默认值和适用范围 安全的操作参数。 k) 指定如何将SecYs合并到端站、网桥和两个端口的体系结构中 以太网数据加密设备(EDE)。 l) 确定MAC安全管理的要求,确定受管对象 以及定义SecYs的管理操作。 m) 指定用于管理MAC操作的管理信息库(MIB)模块 TCP/IP网络的安全性。 n) 指定用于本标准的密码套件的要求、标准和选择。
This document specifies provision of connectionless user data confidentiality, frame data integrity, and data origin authenticity by media access independent protocols and entities that operate transparently to MAC Clients. NOTE—The MAC Clients are as specified in IEEE Std 802?, IEEE Std 802.1Q?, and IEEE Std 802.1X.2 To this end, it a) Specifies the requirements to be satisfied by equipment claiming conformance to this standard. b) Specifies the requirements for MACsec in terms of provision of the MAC Service and the preservation of the semantics and parameters of service requests and indications. c) Describes the threats, both intentional and accidental, to correct provision of the service. d) Specifies security services that prevent, or restrict, the effect of attacks that exploit these threats. e) Examines the potential impact of both the threats and the use of MACsec on the Quality of Service (QoS), specifying constraints on the design and operation of MAC Security entities and protocols. f) Models support of the secure MAC Service in terms of the operation of media access control method independent MAC Security Entities (SecYs) within the MAC Sublayer. g) Specifies the format of the MACsec Protocol Data Unit (MPDUs) used to provide secure service. h) Identifies the functions to be performed by each SecY, and provides an architectural model of its internal operation in terms of Processes and Entities that provide those functions. i) Specifies each SecY's use of an associated and collocated Port Access Entity (PAE, IEEE Std 802.1X) to discover and authenticate MACsec protocol peers and its use of that PAE's Key Agreement Entity (KaY) to agree and update cryptographic keys. j) Specifies performance requirements and recommends default values and applicable ranges for the operational parameters of a SecY. k) Specifies how SecYs are incorporated within the architecture of end stations, bridges, and two-port Ethernet Data Encryption devices (EDEs). l) Establishes the requirements for management of MAC Security, identifying the managed objects and defining the management operations for SecYs. m) Specifies the Management Information Base (MIB) module for managing the operation of MAC Security in TCP/IP networks. n) Specifies requirements, criteria, and choices of Cipher Suites for use with this standard.
分类信息
关联关系
研制信息
归口单位: ISO/IEC JTC 1/SC 6
相似标准/计划/法规
现行
KS X ISO/IEC 21481(2021 Confirm)
정보 기술-전기 통신과 시스템 간 정보 교환-근거리 무선 통신(NFC)-인터페이스와 프로토콜-2(NFCIP-2)
信息技术——系统间远程通信和信息交换——近场通信
2006-11-17
现行
KS X ISO/IEC 21481(2017 Confirm)
정보 기술-전기 통신과 시스템 간 정보 교환-근거리 무선 통신(NFC)-인터페이스와 프로토콜-2(NFCIP-2)
信息技术-系统间通信和信息交换-近场通信
2006-11-17
现行
ISO/IEC 22534-2005
Information technology — Telecommunications and information exchange between systems — Application session services
信息技术——系统间的电信和信息交换——应用程序会话服务
2005-05-20
现行
ISO/IEC 16317-2011
Information technology — Telecommunications and information exchange between systems — proxZzzy for sleeping hosts
信息技术——系统间的电信和信息交换——睡眠主机的Proxzy
2011-09-15
现行
GB/T 42402-2023
信息技术 系统间远程通信和信息交换 6TiSCH网络协议
Information technology—Telecommunications and information exchange between systems—6TiSCH network protocol
2023-03-17
现行
ISO/IEC TR 9575-1995
Information technology — Telecommunications and information exchange between systems — OSI Routeing Framework
信息技术——系统间的电信和信息交换——OSI路由框架
1995-10-12
现行
GB/Z 17977-2000
信息技术 系统间远程通信和信息交换 OSI路由选择框架
Information technology--Telecommunication and information exchange between systems--OSI routing framework
2000-01-03
现行
ISO/IEC TR 20002-2012
Information technology — Telecommunications and information exchange between systems — Managed P2P: Framework
信息技术——系统间的电信和信息交换——托管P2P:框架
2012-11-19
现行
GB/T 34962-2017
信息技术 系统间远程通信和信息交换 休眠主机代理
Information technology—Telecommunications and information exchange between systems—ProxZzzy for sleeping hosts
2017-11-01
现行
BS ISO/IEC 13871-1995
Information technology. Telecommunications and information exchange between systems. Private telecommunications networks. Digital channel aggregation
信息技术 系统间的电信和信息交换 私人电信网络 数字信道聚合
1998-08-15
现行
ISO/IEC 13871-1995
Information technology — Telecommunications and information exchange between systems — Private telecommunications networks — Digital channel aggregation
信息技术——系统间的电信和信息交换——专用电信网络——数字信道聚合
1995-12-21
现行
ISO/IEC TR 26927-2011
Information technology — Telecommunications and information exchange between systems — Corporate telecommunication networks — Mobility for enterprise communications
信息技术——系统间的电信和信息交换——企业电信网络——企业通信的移动性
2011-09-01
现行
GB/T 43781-2024
信息技术 系统间远程通信和信息交换 视联网系统要求
Information technology—Telecommunications and information exchange between systems—Requirement for video to video network system
2024-03-15
现行
ITU-T X.274
Information technology - Telecommunication and information exchange between systems - Transport layer security protocol
信息技术.系统间远程通信和信息交换.传输层安全协议
1994-07-01
现行
ISO/IEC 22425-2017
Information technology - Telecommunications and information exchange between systems - NFC-SEC Test Methods
信息技术 电信和系统之间的信息交换 NFC-SEC测试方法
2017-11-15
现行
BS ISO/IEC 8482-1994
Information technology. Telecommunications and information exchange between systems. Twisted pair multipoint interconnections
信息技术 系统间的电信和信息交换 双绞线多点互连
1994-08-15
现行
BS ISO/IEC 8481-1996
Information technology. Telecommunications and information exchange between systems. DTE to DTE direct connections
信息技术 系统间的电信和信息交换 DTE到DTE的直接连接
1997-06-15
现行
BS ISO/IEC 10736-1995
Information technology. Telecommunications and information exchange between systems. Transport layer security protocol
信息技术 系统间的电信和信息交换 传输层安全协议
1995-09-15
现行
BS ISO/IEC 22425-2017
Information technology. Telecommunications and information exchange between systems. NFC-SEC Test Methods
信息技术 系统间的电信和信息交换 NFC-SEC试验方法
2017-11-30
现行
KS X 3705(2017 Confirm)
정보 기술-전기 통신 및 시스템간의 정보 교환-수송층 보안 프로토콜
信息技术系统间通信和信息交换传输层安全协议
2007-11-30