首页 馆藏资源 舆情信息 标准服务 科研活动 关于我们
现行 CAN/CSA-ISO/IEC/IEEE 8802-1AE:21
到馆提醒
收藏跟踪
购买正版
Telecommunications and exchange between information technology systems - Requirements for local and metropolitan area networks - Part 1AE: Media access control (MAC) security (Adopted ISO/IEC/IEEE 8802-1AE:2020, second edition, 2020-08) 信息技术系统之间的电信和交换.局域网和城域网的要求.第1AE部分:媒体访问控制(MAC)安全性(采用ISO/IEC/IEEE 8802-1AE:2020 第二版 2020-08)
发布日期: 2021-03-01
前言:信息技术部门的标准制定与国际标准制定相协调。通过CSA信息技术技术委员会(TCIT),加拿大人担任加拿大标准委员会(SCC)ISO/IEC信息技术联合技术委员会(ISO/IEC JTC1)的SCC镜像委员会(SMC),该委员会是加拿大的ISO成员机构,也是IEC加拿大国家委员会的发起人。此外,作为国际电信联盟(ITU)的成员,加拿大还参加了国际电报和电话协商委员会(ITU)- T) 。为简洁起见,本标准通篇称为“CSA ISO/IEC/IEEE 8802-1AE”。本标准取代CSA ISO/IEC/IEEE 8802-1AE:20(采用ISO/IEC/IEEE 8802-1AE:2013)。出版时,ISO/IEC/IEEE 8802-1AE:2020仅可从ISO和IEC获得英文版本。CSA集团将在ISO和IEC发布法文版。本标准已由技术委员会正式批准,无需修改,并根据加拿大标准委员会对加拿大国家标准的要求制定。CSA集团已将其作为加拿大国家标准发布。 范围:本标准的范围是通过对MAC客户端透明的媒体访问独立协议和实体规定无连接用户数据保密性、帧数据完整性和数据源真实性。注:MAC客户端符合IEEE标准802®、IEEE标准802.1Q的规定™, 和IEEE标准802.1X。为此,ita)规定了声称符合本标准的设备应满足的要求。b) 在提供MAC服务以及保留服务请求和指示的语义和参数方面,规定了对MACsec的要求。 c) 描述了为纠正服务提供而受到的威胁,包括故意威胁和意外威胁。d) 指定用于防止或限制利用这些威胁的攻击效果的安全服务。e) 研究威胁和MACsec的使用对服务质量(QoS)的潜在影响,具体说明对MAC安全实体和协议的设计和操作的限制。f) 模型支持在MAC子层中独立于媒体访问控制方法的MAC安全实体(SECY)的操作方面的安全MAC服务。g) 指定用于提供安全服务的MACsec协议数据单元(MPDU)的格式。 h) 确定每个部门要执行的功能,并提供其内部运作的架构模型,包括提供这些功能的流程和实体。i) 指定每个SecY使用关联的并置端口访问实体(PAE,IEEE Std 802.1X)来发现和验证MACsec协议对等方,以及使用该PAE的密钥协议实体(KaY)来同意和更新加密密钥。j) 指定性能要求,并建议SecY操作参数的默认值和适用范围。k) 指定如何将SecYs合并到端站、桥接器和两个端站的体系结构中- 端口以太网数据加密设备(EDE)。l) 确定MAC安全管理的要求,确定受管对象,并定义SecYs的管理操作。m) 指定用于管理TCP/IP网络中MAC安全操作的管理信息库(MIB)模块。n) 指定用于本标准的密码套件的要求、标准和选择。
Preface:Standards development within the Information Technology sector is harmonized with international standards development. Through the CSA Technical Committee on Information Technology (TCIT), Canadians serve as the SCC Mirror Committee (SMC) on ISO/IEC Joint Technical Committee 1 on Information Technology (ISO/IEC JTC1) for the Standards Council of Canada (SCC), the ISO member body for Canada and sponsor of the Canadian National Committee of the IEC. Also, as a member of the International Telecommunication Union (ITU), Canada participates in the International Telegraph and Telephone Consultative Committee (ITU-T).For brevity, this Standard will be referred to as "CSA ISO/IEC/IEEE 8802-1AE" throughout.This Standard supersedes CSA ISO/IEC/IEEE 8802-1AE:20 (adopted ISO/IEC/IEEE 8802-1AE:2013). At the time of publication, ISO/IEC/IEEE 8802-1AE:2020 is available from ISO and IEC in English only. CSA Group will publish the French version when it becomes available from ISO and IEC.This Standard has been formally approved, without modification, by the Technical Committee and has been developed in compliance with Standards Council of Canada requirements for National Standards of Canada. It has been published as a National Standard of Canada by CSA Group.Scope:The scope of this standard is to specify provision of connectionless user data confidentiality, frame data integrity, and data origin authenticity by media access independent protocols and entities that operate transparently to MAC Clients.NOTE—The MAC Clients are as specified in IEEE Std 802®, IEEE Std 802.1Q™, and IEEE Std 802.1X.To this end, ita) Specifies the requirements to be satisfied by equipment claiming conformance to this standard.b) Specifies the requirements for MACsec in terms of provision of the MAC Service and the preservation of the semantics and parameters of service requests and indications.c) Describes the threats, both intentional and accidental, to correct provision of the service.d) Specifies security services that prevent, or restrict, the effect of attacks that exploit these threats.e) Examines the potential impact of both the threats and the use of MACsec on the Quality of Service (QoS), specifying constraints on the design and operation of MAC Security entities and protocols.f) Models support of the secure MAC Service in terms of the operation of media access control method independent MAC Security Entities (SecYs) within the MAC Sublayer.g) Specifies the format of the MACsec Protocol Data Unit (MPDUs) used to provide secure service.h) Identifies the functions to be performed by each SecY, and provides an architectural model of its internal operation in terms of Processes and Entities that provide those functions.i) Specifies each SecY's use of an associated and collocated Port Access Entity (PAE, IEEE Std 802.1X) to discover and authenticate MACsec protocol peers and its use of that PAE's Key Agreement Entity (KaY) to agree and update cryptographic keys.j) Specifies performance requirements and recommends default values and applicable ranges for the operational parameters of a SecY.k) Specifies how SecYs are incorporated within the architecture of end stations, bridges, and two-port Ethernet Data Encryption devices (EDEs).l) Establishes the requirements for management of MAC Security, identifying the managed objects and defining the management operations for SecYs.m) Specifies the Management Information Base (MIB) module for managing the operation of MAC Security in TCP/IP networks.n) Specifies requirements, criteria, and choices of Cipher Suites for use with this standard.
分类信息
发布单位或类别: 未知国家-其他未分类
关联关系
研制信息
相似标准/计划/法规
现行
KS X ISO/IEC 21481(2021 Confirm)
정보 기술-전기 통신과 시스템 간 정보 교환-근거리 무선 통신(NFC)-인터페이스와 프로토콜-2(NFCIP-2)
信息技术——系统间远程通信和信息交换——近场通信
2006-11-17
现行
KS X ISO/IEC 21481(2017 Confirm)
정보 기술-전기 통신과 시스템 간 정보 교환-근거리 무선 통신(NFC)-인터페이스와 프로토콜-2(NFCIP-2)
信息技术-系统间通信和信息交换-近场通信
2006-11-17
现行
ISO/IEC 22534-2005
Information technology — Telecommunications and information exchange between systems — Application session services
信息技术——系统间的电信和信息交换——应用程序会话服务
2005-05-20
现行
ISO/IEC 16317-2011
Information technology — Telecommunications and information exchange between systems — proxZzzy for sleeping hosts
信息技术——系统间的电信和信息交换——睡眠主机的Proxzy
2011-09-15
现行
GB/T 42402-2023
信息技术 系统间远程通信和信息交换 6TiSCH网络协议
Information technology—Telecommunications and information exchange between systems—6TiSCH network protocol
2023-03-17
现行
ISO/IEC TR 9575-1995
Information technology — Telecommunications and information exchange between systems — OSI Routeing Framework
信息技术——系统间的电信和信息交换——OSI路由框架
1995-10-12
现行
GB/Z 17977-2000
信息技术 系统间远程通信和信息交换 OSI路由选择框架
Information technology--Telecommunication and information exchange between systems--OSI routing framework
2000-01-03
现行
ISO/IEC TR 20002-2012
Information technology — Telecommunications and information exchange between systems — Managed P2P: Framework
信息技术——系统间的电信和信息交换——托管P2P:框架
2012-11-19
现行
GB/T 34962-2017
信息技术 系统间远程通信和信息交换 休眠主机代理
Information technology—Telecommunications and information exchange between systems—ProxZzzy for sleeping hosts
2017-11-01
现行
BS ISO/IEC 13871-1995
Information technology. Telecommunications and information exchange between systems. Private telecommunications networks. Digital channel aggregation
信息技术 系统间的电信和信息交换 私人电信网络 数字信道聚合
1998-08-15
现行
ISO/IEC 13871-1995
Information technology — Telecommunications and information exchange between systems — Private telecommunications networks — Digital channel aggregation
信息技术——系统间的电信和信息交换——专用电信网络——数字信道聚合
1995-12-21
现行
ISO/IEC TR 26927-2011
Information technology — Telecommunications and information exchange between systems — Corporate telecommunication networks — Mobility for enterprise communications
信息技术——系统间的电信和信息交换——企业电信网络——企业通信的移动性
2011-09-01
现行
GB/T 43781-2024
信息技术 系统间远程通信和信息交换 视联网系统要求
Information technology—Telecommunications and information exchange between systems—Requirement for video to video network system
2024-03-15
现行
ITU-T X.274
Information technology - Telecommunication and information exchange between systems - Transport layer security protocol
信息技术.系统间远程通信和信息交换.传输层安全协议
1994-07-01
现行
ISO/IEC 22425-2017
Information technology - Telecommunications and information exchange between systems - NFC-SEC Test Methods
信息技术 电信和系统之间的信息交换 NFC-SEC测试方法
2017-11-15
现行
BS ISO/IEC 8482-1994
Information technology. Telecommunications and information exchange between systems. Twisted pair multipoint interconnections
信息技术 系统间的电信和信息交换 双绞线多点互连
1994-08-15
现行
BS ISO/IEC 8481-1996
Information technology. Telecommunications and information exchange between systems. DTE to DTE direct connections
信息技术 系统间的电信和信息交换 DTE到DTE的直接连接
1997-06-15
现行
BS ISO/IEC 10736-1995
Information technology. Telecommunications and information exchange between systems. Transport layer security protocol
信息技术 系统间的电信和信息交换 传输层安全协议
1995-09-15
现行
BS ISO/IEC 22425-2017
Information technology. Telecommunications and information exchange between systems. NFC-SEC Test Methods
信息技术 系统间的电信和信息交换 NFC-SEC试验方法
2017-11-30
现行
KS X 3705(2017 Confirm)
정보 기술-전기 통신 및 시스템간의 정보 교환-수송층 보안 프로토콜
信息技术系统间通信和信息交换传输层安全协议
2007-11-30