ISO 15782-1:2009
Withdrawn
View Superseded by
Certificate management for financial services — Part 1: Public key certificates
Hardcopy , PDF
English
10-13-2009
03-13-2019
ISO 15782-1:2009 defines a certificate management system for financial industry use for legal and natural persons that includes
- credentials and certificate contents,
- Certification Authority systems, including certificates for digital signatures and for encryption key management,
- certificate generation, distribution, validation and renewal,
- authentication structure and certification paths, and
- revocation and recovery procedures.
ISO 15782-1:2009 also recommends some useful operational procedures (e.g. distribution mechanisms, acceptance criteria for submitted credentials).
Implementation of ISO 15782-1:2009 will also be based on business risks and legal requirements.
ISO 15782-1:2009 does not include
- the protocol messages used between the participants in the certificate management process,
- requirements for notary and time stamping,
- Certificate Policy and Certification Practices requirements, or
- Attribute Certificates.
While ISO 15782-1:2009 provides for the generation of certificates that could include a public key used for encryption key management, it does not address the generation or transport of keys used for encryption.
| Committee |
ISO/TC 68/SC 2
|
| DevelopmentNote |
Supersedes ISO/DIS 15782-1. (10/2009) Also numbered as BIS IS 16189-1. (02/2015) Incorporated into ISO 21188. (04/2018)
|
| DocumentType |
Standard
|
| Pages |
49
|
| PublisherName |
International Organization for Standardization
|
| Status |
Withdrawn
|
| SupersededBy | |
| Supersedes |
| Standards | Relationship |
| BS ISO 15782-1:2009 | Identical |
| NEN ISO 15782-1 : 2009 | Identical |
| PN ISO 15782-1 : 2005 | Identical |
| BS ISO 11568-4:2007 | Banking. Key management (retail) Asymmetric cryptosystems. Key management and life cycle |
| ANSI X9 TR 34 : 2012 | INTEROPERABLE METHOD FOR DISTRIBUTION OF SYMMETRIC KEYS USING ASYMMETRIC TECHNIQUES: PART 1 - USING FACTORING-BASED PUBLIC KEY CRYPTOGRAPHY UNILATERAL KEY TRANSPORT |
| ANSI X9.96 : 2004 | FINANCIAL SERVICES - XML CRYPTOGRAPHIC MESSAGE SYNTAX (XCMS) |
| ISO/TR 19669:2017 | Health informatics — Re-usable component strategy for use case development |
| ANSI X9.117 : 2012 | SECURE REMOTE ACCESS - MUTUAL AUTHENTICATION |
| BIS IS 15256-4 : 2013 | BANKING - KEY MANAGEMENT (RETAIL) - PART 4: ASYMMETRIC CRYPTOSYSTEMS - KEY MANAGEMENT AND LIFE CYCLE |
| ANSI X9.44:2007 | FINANCIAL SERVICES - PUBLIC-KEY CRYPTOGRAPHY FOR THE FINANCIAL SERVICES INDUSTRY - KEY ESTABLISHMENT USING INTEGER FACTORIZATION CRYPTOGRAPHY |
| ISO 11568-4:2007 | Banking — Key management (retail) — Part 4: Asymmetric cryptosystems — Key management and life cycle |
| CEN ISO/TS 19299:2015 | Electronic fee collection - Security framework (ISO/TS 19299:2015) |
| ISO/IEC TR 14516:2002 | Information technology — Security techniques — Guidelines for the use and management of Trusted Third Party services |
| BIS IS 16189-2 : 2014 | BANKING - CERTIFICATE MANAGEMENT - PART 2: CERTIFICATE EXTENSIONS |
| S.R. CEN ISO/TS 19299:2015 | ELECTRONIC FEE COLLECTION - SECURITY FRAMEWORK (ISO/TS 19299:2015) |
| ISO/TS 19299:2015 | Electronic fee collection — Security framework |
| 07/30153606 DC : 0 | BS ISO 22895 - FINANCIAL SERVICES - SECURITY - CRYPTOGRAPHIC SYNTAX SCHEME |
| BIS IS/ISO 21188 : 2006 | PUBLIC KEY INFRASTRUCTURE FOR FINANCIAL SERVICES - PRACTICES AND POLICY FRAMEWORK |
| 05/30092187 DC : DRAFT APR 2005 | ISO 21188 - PUBLIC KEY INFRASTRUCTURE FOR FINANCIAL SERVICES - PRACTICES AND POLICY FRAMEWORK |
| BS ISO/IEC TR 14516:2002 | Information technology. Security techniques. Guidelines for the use and management of trusted third party services |
| DIN CEN ISO/TS 19299;DIN SPEC 74125:2016-02 | ELECTRONIC FEE COLLECTION - SECURITY FRAMEWORK (ISO/TS 19299:2015) |
| PD CEN ISO/TS 19299:2015 | Electronic fee collection. Security framework |
| ISO 19092-1:2006 | Financial services — Biometrics — Part 1: Security framework |
| ANSI X9/TG-3 : 2006 | RETAIL FINANCIAL SERVICES COMPLIANCE GUIDELINE - ONLINE PIN SECURITY AND KEY MANAGEMENT |
| ISO 15782-2:2001 | Banking — Certificate management — Part 2: Certificate extensions |
| 05/30112566 DC : DRAFT JAN 2005 | ISO 11568-4 - BANKING - KEY MANAGEMENT (RETAIL) - PART 4: ASYMMETRIC CRYPTOSYSTEMS - KEY MANAGEMENT AND LIFE CYCLE |
| ANSI X9.84 : 2010(R2017) | BIOMETRIC INFORMATION MANAGEMENT AND SECURITY FOR THE FINANCIAL SERVICES INDUSTRY |
| ANSI X9.79-4 : 2013 | PUBLIC KEY INFRASTRUCTURE (PKI) - PART 4: ASYMMETRIC KEY MANAGEMENT |
| ANSI X9.79-1 : 2001 | FINANCIAL SERVICES PUBLIC KEY INFRASTRUCTURE - PART 1: PKI PRACTICES AND POLICY FRAMEWORK |
| ANSI X9.30.1 : 1997 | PUBLIC KEY CRYPTOGRAPHY FOR THE FINANCIAL SERVICES INDUSTRY - PART 1: THE DIGITAL SIGNATURE ALGORITHM (DSA) |
| ANSI X9.57 : 1997 | PUBLIC KEY CRYPTOGRAPHY FOR THE FINANCIAL SERVICES INDUSTRY: CERTIFICATE MANAGEMENT |
| FIPS PUB 140 : 0001 | SECURITY REQUIREMENTS FOR CRYPTOGRAPHIC MODULES |
| ANSI X9.55 : 1997 | PUBLIC KEY CRYPTOGRAPHY FOR THE FINANCIAL SERVICES INDUSTRY: EXTENSIONS TO PUBLIC KEY CERTIFICATES AND CERTIFICATE REVOCATION LISTS |
| ISO/IEC 8825-2:2015 | Information technology — ASN.1 encoding rules: Specification of Packed Encoding Rules (PER) — Part 2: |
| ISO/IEC TR 14516:2002 | Information technology — Security techniques — Guidelines for the use and management of Trusted Third Party services |
| ISO/IEC 8825-1:2015 | Information technology — ASN.1 encoding rules: Specification of Basic Encoding Rules (BER), Canonical Encoding Rules (CER) and Distinguished Encoding Rules (DER) — Part 1: |
| ISO/IEC 15945:2002 | Information technology — Security techniques — Specification of TTP services to support the application of digital signatures |
| ISO/IEC 9834-1:2012 | Information technology — Procedures for the operation of object identifier registration authorities — Part 1: General procedures and top arcs of the international object identifier tree |
| ISO/IEC 18033-2:2006 | Information technology — Security techniques — Encryption algorithms — Part 2: Asymmetric ciphers |
| ISO 13491-1:2016 | Financial services — Secure cryptographic devices (retail) — Part 1: Concepts, requirements and evaluation methods |
| ISO/IEC 8824-2:2015 | Information technology — Abstract Syntax Notation One (ASN.1): Information object specification — Part 2: |
| ISO 16609:2012 | Financial services — Requirements for message authentication using symmetric techniques |
| ISO/IEC 9594-8:2017 | Information technology — Open Systems Interconnection — The Directory — Part 8: Public-key and attribute certificate frameworks |
| ISO 15782-2:2001 | Banking — Certificate management — Part 2: Certificate extensions |
| ISO/IEC 9594-6:2017 | Information technology — Open Systems Interconnection — The Directory — Part 6: Selected attribute types |
| ISO/IEC 8824-4:2015 | Information technology — Abstract Syntax Notation One (ASN.1): Parameterization of ASN.1 specifications — Part 4: |
| ISO/IEC 10118-3:2004 | Information technology — Security techniques — Hash-functions — Part 3: Dedicated hash-functions |
| ANSI X9.79-1 : 2001 | FINANCIAL SERVICES PUBLIC KEY INFRASTRUCTURE - PART 1: PKI PRACTICES AND POLICY FRAMEWORK |
| ISO/IEC 8824-1:2015 | Information technology — Abstract Syntax Notation One (ASN.1): Specification of basic notation — Part 1: |
| ISO 21188:2006 | Public key infrastructure for financial services — Practices and policy framework |
| ISO/IEC 9594-2:2017 | Information technology — Open Systems Interconnection — The Directory — Part 2: Models |
| ISO/IEC 9594-1:2017 | Information technology — Open Systems Interconnection — The Directory — Part 1: Overview of concepts, models and services |
| ISO/IEC 8824-3:2015 | Information technology — Abstract Syntax Notation One (ASN.1): Constraint specification — Part 3: |
| ANSI X9.31 : 1998 | DIGITAL SIGNATURES USING REVERSIBLE PUBLIC KEY CRYPTOGRAPHY FOR THE FINANCIAL SERVICES INDUSTRY (RDSA) |