Resumen
The goal of the non-repudiation service is to generate, collect, maintain, make available and validate evidence concerning a claimed event or action in order to resolve disputes about the occurrence or non-occurrence of the event or action. ISO/IEC 13888-2:2010 provides descriptions of generic structures that can be used for non-repudiation services, and of some specific communication-related mechanisms which can be used to provide non-repudiation of origin (NRO) and non-repudiation of delivery (NRD). Other non-repudiation services can be built using the generic structures described in ISO/IEC 13888-2:2010 in order to meet the requirements defined by the security policy.
ISO/IEC 13888-2:2010 relies on the existence of a trusted third party (TTP) to prevent fraudulent repudiation or accusation. Usually, an online TTP is needed.
Non-repudiation can only be provided within the context of a clearly defined security policy for a particular application and its legal environment. Non-repudiation policies are defined in ISO/IEC 10181-4.
Informaciones generales
-
Estado: PublicadoFecha de publicación: 2010-12Etapa: Norma Internacional confirmada [90.93]
-
Edición: 2Número de páginas: 17
-
Comité Técnico :ISO/IEC JTC 1/SC 27ICS :35.030
- RSS actualizaciones
Ciclo de vida
-
Anteriormente
RetiradaISO/IEC 13888-2:1998
-
Ahora
-
00
Preliminar
-
10
Propuesta
-
20
Preparación
-
30
Comité
-
40
Consulta
-
50
Aprobación
-
60
Publicación
-
90
Revisión
-
95
Retirada
Correcciones
Corrigen la edición actual; gratuitas; no incluidas en el texto de la norma existente.PublicadoISO/IEC 13888-2:2010/Cor 1:2012
-
00