ISO/TS 15638-4:2020 智能运输系统 规范商业货运车辆(TARV)的协作远程信息处理应用框架 第4部分:系统安全要求

标准编号:ISO/TS 15638-4:2020

中文名称:智能运输系统 规范商业货运车辆(TARV)的协作远程信息处理应用框架 第4部分:系统安全要求

英文名称:Intelligent transport systems — Framework for cooperative telematics applications for regulated commercial freight vehicles (TARV) — Part 4: System security requirements

发布日期:2020-02

标准范围

安全要求涉及硬件和软件两个方面。本文件阐述了以下方面的安全要求:-通过无线通信接口将TARV数据从IVS传输到应用服务提供商;-接收应用服务提供商向TARV IVS发出的指令;-通过无线通信处理IVS软件更新的通信方面。本文件规定了受监管商用车辆的远程通信应用要求,包括:a) 威胁、脆弱性和风险分析;b) 安全服务和架构;c) 身份管理;d) 安全架构和管理;e) 身份信任和隐私管理;f) 安全访问控制;g) 安全保密服务。本文件规定:-TARV安全通用规范;-ITS站点“有界安全管理域”(BSMD)内TARV事务和数据的安全规范;-TARV交易和在BSMD之外预定地址进行数据交易的安全规范。IVS安全要求由主要服务提供商和应用服务提供商处理(见ISO 15638-1)。应用程序服务提供安全由应用程序服务提供商处理(可能是单独的TARV标准交付文件的主题)。

Security requirements address both hardware and software aspects.This document addresses the security requirements for:— the transfer of TARV data from an IVS to an application service provider across a wireless communications interface;— the receipt of instructions from an application service provider to a TARV IVS;— the communications aspects of handling of software updates for the IVS over wireless communications.This document defines the requirements for telematics applications for regulated commercial vehicles for:a) threat, vulnerability and risk analysis;b) security services and architecture;c) identity management;d) security architecture and management;e) identity-trust and privacy management;f) security-access control;g) security-confidentiality services.This document provides:— general specifications for the security of TARV;— specifications for the security of TARV transactions and data within an ITS-station "bounded secure managed domain" (BSMD);— specifications for the security of TARV transactions and data transacted with a predetermined address outside of a BSMD.IVS security requirements are dealt with by the prime service provider and application service provider (See ISO 15638-1).Application service provision security is dealt with by the application service provider (and could be the subject of a separate TARV standards deliverable).

标准预览图


立即下载标准文件