| (6.1) |
| (8.1) |
| (8.2) |
| (8.3) |
| (8.4) |
| (8.5) |
| (8.6) |
| (12.1) |
|
| (12.4) |
| 3GPP | Relevant | Ref. | |
| no. | Title | chapter(s) | no. |
| TS 33.102 | Security Architecture | 12 | [160] |
| TS 33.105 | Cryptographic Algorithm Requirements | 4 | [153] |
| TS 35.201 | Specification of the 3GPP Confidentiality and Integrity Algorithms; Document 1: f8 and f9 Specification | 4 | [154] |
| TS 35.202 | Specification of the 3GPP Confidentiality and Integrity Algorithms; Document 2: KASUMI Specification | 4 | [155] |
| TS 35.205 | Specification of the MILENAGE Algorithm Set: An example algorithm set for the 3GPP authentication and key generation functions f1, f1*, f2, f3, f4, f5 and f5*; Document 1: General | 12 | [156] |
| TS 35.206 | Specification of the MILENAGE Algorithm Set: An example algorithm set for the 3GPP authentication and key generation functions f1, f1*, f2, f3, f4, f5 and f5*; Document 2: Algorithm Specification | 12 | [161] |
| TS 35.207 | Specification of the MILENAGE Algorithm Set: An example algorithm set for the 3GPP authentication and key generation functions f1, f1*, f2, f3, f4, f5 and f5*; Document 3: Implementors' Test Data | 12 | [157] |
| TS 35.208 | Specification of the MILENAGE Algorithm Set: An example algorithm set for the 3GPP authentication and key generation functions f1, f1*, f2, f3, f4, f5 and f5*; Document 4: Design Conformance Test Data | 12 | [158] |
| TS 35.909 | Specification of the MILENAGE Algorithm Set: An example algorithm set for the 3GPP authentication and key generation functions f1, f1*, f2, f3, f4, f5 and f5*; Document 5: Summary and results of design and evaluation | 12 | [159] |
| TS 55.216 | Specification of the A5/3 Encryption Algorithm for GSM and ECSD, and the GEA3 Encryption Algorithm for GPRS; Document 1: A5/3 and GEA3 Specifications | 4 | [162] |
| ANSI | Relevant | Ref. | |
| no. | Title | chapter(s) | no. |
| X3.92 | Data Encryption Algorithm | 4 | [34] |
| X3.106 | American National Standard for Information Systems - Data Encryption Algorithm - Modes of Operation | 5 | [33] |
| X9.9 | Financial institution message authentication (wholesale) | 7 | [2] |
| X9.17 | Financial Institution Key Management (Wholesale) | 11 | [3,10] |
| X9.19 | Financial institution retail message authentication | 7 | [1] |
| X9.24 | Retail Financial Services - Symmetric Key Management - Part 1: Using Symmetric Techniques | 11, 12 | [30] |
| X9.30.1 | Public Key Cryptography for the Financial Services Industry - Part 1: The Digital Signature Algorithm (DSA) | 8 | [4] |
| X9.31 | Digital Signatures Using Reversible Public Key Cryptography for the Financial Services Industry (rDSA) | 8, 16 | [7] |
| X9.42 | Public Key Cryptography for the Financial Services Industry: Agreement of Symmetric Keys Using Discrete Logarithm Cryptography | 12, 16 | [12] |
| X9.52 | Triple Data Encryption Algorithm Modes of Operation | 5 | [28] |
| X9.55 | Public Key Cryptography for the Financial Services Industry: Extensions to Public Key Certificates and Certificate Revocation Lists | 13 | [5] |
| X9.57 | Public Key Cryptography for the Financial Services Industry: Certificate Management | 13 | [6] |
| X9.62 | Public Key Cryptography for the Financial Services Industry: The Elliptic Curve Digital Signature Algorithm (ECDSA) | 8 | [8] |
| X9.63 | Public Key Cryptography for the Financial Services Industry, Key Agreement and Key Transport Using Elliptic Curve Cryptography | 12 | [13] |
| X9.69 | Framework for Key Management Extensions | 12 | [9] |
| ANSI | Relevant | Ref. | |
| no. | Title | chapter(s) | no. |
| X9.71 | Keyed Hash Message Authentication Code | 7 | [11] |
| X9.79-1 | Part 1: Public Key Infrastructure - Practices and Policy | 13, 14 | [14] |
| X9.80 | Prime Number Generation, Primality Testing, and Primality Certificates | 16 | [15] |
| X9.82 | Random Number Generation | 16 | [16] |
| X9.84 | Biometric Information Management and Security for the Financial Services Industry | 16 | [17] |
| BSI | Relevant | Ref. | |
| no. | Title | chapter(s) | no. |
| 7799-1 | Information technology. Code of practice for information security management | 16 | [94] |
| 7799-2 | Information security management. Specification with guidance for use | 16 | [95] |
| ETSI | Relevant | Ref. | |
| no. | Title | chapter(s) | no. |
| SR 002176 | Electronic Signatures and Infrastructures (ESI); Algorithms and Parameters for Secure Electronic Signatures | 8 | [163] |
| TS 102023 | Electronic Signatures and Infrastructures (ESI); Policy requirements for time-stamping authorities | 14 | [164] |
| IEEE | Relevant | Ref. | |
| no. | Title | chapter(s) | no. |
| 802.11i | IEEE Draft Supplement to Standard for Telecommunications and Information Ex- change Between Systems LAN/MAN - Specific Requirements - Part 11: Wireless Medium Access Control (MAC) and Physical Layer (PHY) Specifications: Specification for Enhanced Security | 16 | [222] |
| 1363 | IEEE Standard Specifications for Public-Key Cryptography | 4, 8, 12 | [221] |
| 1363a | IEEE Standard Specifications for Public-Key Cryptography - Amendment 1: Additional Techniques | 4, 8, 12 | [223] |
| 1363.1 | IEEE Standard Specification for Public Key Cryptographic Techniques Based on Hard Problems over Lattices | 4 | |
| 1363.2 | IEEE Standard Specification for Password-Based Public Key Cryptographic Techniques | 4, 12 |
| RFC | Relevant | Ref. | |
| no. | Title | chapter(s) | no. |
| 791 | DARPA Internet Program Protocol Specification | 13 | [220] |
| 1035 | Domain Names - Implementation and Specification | 13 | [431] |
| 1118 | The Hitchhikers Guide to the Internet | 2 | [378] |
| 1305 | Network Time Protocol (Version 3): Specification, Implementation and Analysis | 10 | [418] |
| 1319 | The MD2 message-digest algorithm | 6 | [362] |
| 1320 | The MD4 message-digest algorithm | 6 | [484] |
| 1321 | The MD5 message-digest algorithm | 6 | [485] |
| 1422 | Privacy Enhancement for Internet Electronic Mail: Part II: Certificate-Based Key Management | 13 | [369] |
| 1507 | DASS: Distributed Authentication Security Service | 10 | [368] |
| 1508 | Generic Security Service Application Program Interface | 15 | [389] |
| 1509 | Generic Security Service API : C-bindings | 15 | [527] |
| 1510 | The Kerberos Network Authentication Service (V5) | 10, 12, 15 | [374] |
| 1630 | Universal Resource Identifiers in WWW | 13 | [56] |
| 1704 | On Internet authentication | 10 | [201] |
| 1750 | Randomness recommendations for security | 16 | [145] |
| 1760 | The S/KEY one-time password system | 10 | [200] |
| 1777 | Lightweight Directory Access Protocol | 13 | [530] |
| 1778 | The String Representation of Standard Attribute Syntaxes | 13 | [217] |
| 1928 | SOCKS Protocol Version 5 | 15 | [387] |
| 1961 | GSS-API Authentication Method for SOCKS Version 5 | 15 | [406] |
| 1964 | The Kerberos Version 5 GSS-API Mechanism | 15 | [390] |
| 2025 | The Simple Public-Key GSS-API Mechanism (SPKM) | 15 | [18] |
| 2026 | The Internet Standards Process - Revision 3 | 2 | [89] |
| 2030 | Simple Network Time Protocol (SNTP) Version 4 for IPv4, IPv6 and OSI | 10 | [419] |
| 2078 | Generic Security Service Application Program Interface, Version 2 | 15 | [391] |
| RFC | Relevant | Ref. | |
| no. | Title | chapter(s) | no. |
| 2104 | HMAC: Keyed-hashing for message authentication | 7 | [377] |
| 2202 | Test cases for HMAC-MD5 and HMAC-SHA-1 | 7 | [109] |
| 2203 | RPCSEC_GSS Protocol Specification | 15 | [148] |
| 2246 | The TLS Protocol, Version 1.0 | 12 | [137] |
| 2314 | PKCS #10: Certification Request Syntax v1.5 | 13 | [363] |
| 2315 | PKCS #7: Certification Message Syntax v1.5 | 13 | [364] |
| 2409 | The Internet Key Exchange (IKE) | 12 | [203] |
| 2459 | Internet X.509 Public Key Infrastructure: Certificate and CRL Profile | 13 | [212] |
| 2478 | The Simple and Protected GSS-API Negotiation Mechanism | 15 | [41] |
| 2479 | Independent Data Unit Protection Generic Security Service Application Program Interface (IDUP-GSS-API) | 15 | [20] |
| 2510 | Internet X.509 Public Key Infrastructure: Certificate Management Protocols | 13 | [22] |
| 2511 | Internet X.509 Certificate Request Message Format | 13 | [434] |
| 2522 | Photuris: Session-Key Management Protocol | 12 | [366] |
| 2527 | Internet X.509 Public Key Infrastructure: Certificate Policy and Certification Practices Framework | 13 | [113] |
| 2528 | Internet X.509 Public Key Infrastructure: Representation of Key Exchange Algorithm (KEA) Keys in Internet X.509 Public Key Infrastructure Certificates | 13 | [214] |
| 2559 | Internet X.509 Public Key Infrastructure: Operational Protocols - LDAPv2 | 13 | [78] |
| 2560 | X.509 Internet Public Key Infrastructure: Online Certificate Status Protocol - OCSP | 13 | [435] |
| 2585 | Internet X.509 Public Key Infrastructure: Operational Protocols: FTP and HTTP | 13 | [213] |
| 2587 | Internet X.509 Public Key Infrastructure: LDAPv2 Schema | 13 | [79] |
| 2630 | Cryptographic Message Syntax | 13 | [211] |
| 2631 | Diffie-Hellman Key Agreement Method | 12 | [483] |
| RFC | Relevant | Ref. | |
| no. | Title | chapter(s) | no. |
| 2712 | Addition of Kerberos Cipher Suites to Transport Layer Security (TLS) | 12 | [407] |
| 2743 | Generic Security Service Application Program Interface Version 2, Update 1 | 15 | [392] |
| 2744 | Generic Security Service API Version 2: C-bindings | 15 | [528] |
| 2797 | Certificate Management Messages over CMS | 13 | [436] |
| 2853 | Generic Security Service API Version 2: Java Bindings | 15 | [361] |
| 2875 | Diffie-Hellman Proof-of-Possession Algorithms | 13 | [475] |
| 2986 | PKCS #10: Certification Request Syntax Specification Version 1.7 | 13 | [461] |
| 2994 | A Description of the MISTY1 Encryption Algorithm | 4 | [462] |
| 3029 | Internet X.509 Public Key Infrastructure: Data Validation and Certification Server Protocols | 13 | [26] |
| 3039 | Internet X.509 Public Key Infrastructure: Qualified Certificates Profile | 8, 13 | [496] |
| 3075 | XML-Signature Syntax and Processing | 8 | [147] |
| 3161 | Internet X.509 Public Key Infrastructure Time-Stamp Protocol (TSP) | 14 | [21] |
| 3174 | US Secure Hash Algorithm (SHA-1) | 6 | [146] |
| 3279 | Algorithms and Identifiers for the Internet X.509 Public Key Infrastructure Certificate and Certificate Revocation List (CRL) Profile | 13 | [473] |
| 3280 | Internet X.509 Public Key Infrastructure: Certificate and Certificate Revocation List (CRL) Profile | 13 | [215] |
| 3281 | An Internet Attribute Certificate Profile for Authorization | 13 | [165] |
| 3379 | Delegated Path Validation and Delegated Path Discovery Protocol Requirements | 13 | [469] |
| 3394 | Advanced Encryption Standard (AES) Key Wrap Algorithm | 5 | [497] |
| 3610 | Counter with CBC-MAC (CCM) | 5, 16 | [525] |
| RFC | Relevant | Ref. | |
| no. | Title | chapter(s) | no. |
| 3628 | Policy Requirements for Time-Stamping Authorities (TSAs) | 14 | [470] |
| 3647 | Internet X.509 Public Key Infrastructure: Certificate Policy and Certification Practices Framework | 13 | [114] |
| ISO | Relevant | Ref. | |
| no. | Title | chapter(s) | no. |
| 7498-1 | Information technology - Open Systems Interconnection - Basic Reference Model - The Basic Model | 3 | [241] |
| 7498-2 | Information processing systems - Open Systems Interconnection - Basic Reference Model - Part 2: Security Architecture | 3 | [227] |
| 7498-4 | Information processing systems - Open Systems Interconnection - Basic Reference Model - Part 4: Management framework | 3 | [228] |
| 8372 | Information processing - Modes of operation for a 64-bit block cipher algorithm | 5 | [224] |
| 8730 | Banking - Requirements for message authentication (wholesale) | 7 | [230] |
| 8731-1 | Banking - Approved algorithm for message authentication - Part 1: DEA | 7 | [225] |
| 8731-2 | Banking - Approved algorithm for message authentication - Part 2: Message authenticator algorithm | 7 | [235] |
| 8732 | Banking - Key managemant (wholesale) | 11, 12 | [226] |
| 9594-8 | Information technology - Open Systems Interconnection - The Directory: Part 8: Public-key and attribute certificate frameworks | 10, 13 | [268,289] |
| 9796 | Information technology - Security techniques - Digital signature scheme giving message recovery | 8 | [233] |
| 9796-2 | Information technology - Security techniques - Digital signature schemes giving message recovery - Part 2: Integer factorization based mechanisms | 8 | [295] |
| 9796-3 | Information technology - Security techniques - Digital signature schemes giving message recovery - Part 3: Discrete logarithm based mechanisms | 8 | [285,310] |
| 9797-1 | Information technology - Security techniques - Message Authentication Codes (MACs) - Part 1: Mechanisms using a block cipher | 5, 6, 7 | [229,242,276] |
| ISO | Relevant | Ref. | |
| no. | Title | chapter(s) | no. |
| 9797-2 | Information technology - Security techniques - Message Authentication Codes (MACs) - Part 2: Mechanisms using a hash-function | 7 | [286] |
| 9798-1 | Information technology - Security techniques - Entity authentication - Part 1: General | 10 | [234,260] |
| 9798-2 | Information technology - Security techniques - Entity authentication - Part 2: Mechanisms using symmetric encipherment algorithms | 10 | [243,277] |
| 9798-3 | Information technology - Security techniques - Entity authentication - Part 3: Mechanisms using digital signature techniques | 10 | [244,269] |
| 9798-4 | Information technology - Security techniques - Entity authentication - Part 4: Mechanisms using a cryptographic check function | 10 | [246,278] |
| 9798-5 | IT security techniques - Entity authentication - Part 5: Mechanisms using zero knowledge techniques | 10 | [279,318] |
| 9798-6 | IT security techniques - Entity authentication - Part 6: Mechanisms using manual data transfer | 10 | [315] |
| 9807 | Banking and related financial services - Requirements for message authentication (retail) | 7 | [231] |
| 9979 | Information technology - Security techniques - Procedures for the registration of cryptographic algorithms | 4 | [280] |
| 10116 | IT security techniques - Modes of operation for an n-bit block cipher | 5 | [232,256,311] |
| 10118-1 | Information technology - Security techniques - Hash-functions - Part 1: General | 6 | [282] |
| ISO | Relevant | Ref. | |
| no. | Title | chapter(s) | no. |
| 10118-2 | Information technology - Security techniques - Hash-functions - Part 2: Hash-functions using an n-bit block cipher | 6 | [283] |
| 10118-3 | Information technology - Security techniques - Hash-functions - Part 3: Dedicated hash-functions | 6 | [303] |
| 10118-4 | Information technology - Security techniques - Hash-functions - Part 4: Hash-functions using modular arithmetic | 6 | [262] |
| 10181-1 | Information technology - Open Systems Interconnection - Security frameworks for open systems - Part 1: Overview | 3 | [248] |
| 10181-2 | Information technology - Open Systems Interconnection - Security frameworks for open systems - Part 2: Authentication framework | 3 | [249] |
| 10181-3 | Information technology - Open Systems Interconnection - Security frameworks for open systems - Part 3: Access control framework | 3 | [250] |
| 10181-4 | Information technology - Open Systems Interconnection - Security frameworks for open systems - Part 4: Non-repudiation framework | 3 | [257] |
| 10181-5 | Information technology - Open Systems Interconnection - Security frameworks for open systems - Part 5: Confidentiality framework | 3 | [251] |
| 10181-6 | Information technology - Open Systems Interconnection - Security frameworks for open systems - Part 6: Integrity framework | 3 | [252] |
| 10181-7 | Information technology - Open Systems Interconnection - Security frameworks for open systems - Part 7: Security audit and alarms framework | 3 | [253] |
| 10745 | Information technology - Open Systems Interconnection - Upper layers security model | 3 | [245] |
| ISO | Relevant | Ref. | |
| no. | Title | chapter(s) | no. |
| 11166-1 | Banking - Key management by means of asymmetric algorithms - Part 1: Principles, procedures and formats | 12 | [236] |
| 11166-2 | Banking - Key management by means of asymmetric algorithms - Part 2: Approved algorithms using the RSA cryptosystem | 12 | [237] |
| 11568-1 | Banking - Key management (retail) - Part 1: Introduction to key management | 11 | [238] |
| 11568-2 | Banking - Key management (retail) - Part 2: Key management techniques for symmetric ciphers | 11 | [239] |
| 11568-3 | Banking - Key management (retail) - Part 3: Key life cycle for symmetric ciphers | 11 | [240] |
| 11568-4 | Banking - Key management (retail) - Part 4: Key management techniques using public key cryptosystems | 11, 13 | [263] |
| 11568-5 | Banking - Key management (retail) - Part 5: Key life cycle for public key cryptosystems | 11, 13 | [264] |
| 11568-6 | Banking - Key management (retail) - Part 6: Key management schemes | 11 | [270] |
| 11770-1 | Information technology - Security techniques - Key Management - Part 1: Framework | 11 | [254] |
| 11770-2 | Information technology - Security techniques - Key Management - Part 2: Mechanisms using symmetric techniques | 12 | [255] |
| 11770-3 | Information technology - Security techniques - Key Management - Part 3: Mechanisms using asymmetric techniques | 12 | [271] |
| 11770-4 | IT security techniques - Key Management - Part 4: Mechanisms based on weak secrets | 12 | [308] |
| 13491-1 | Banking - Secure cryptographic devices (retail) - Part 1: Concepts, requirements and evaluation methods | 15, 16 | [261] |
| 13491-2 | Banking - Secure cryptographic devices (retail) - Part 2: Security compliance checklists for devices used in magnetic stripe card systems | 15, 16 | [281] |
| ISO | Relevant | Ref. | |
| no. | Title | chapter(s) | no. |
| 13594 | Information technology - Lower layers security | 3 | [247] |
| 13888-1 | IT security techniques - Non-repudiation - Part 1: General | 9 | [258,304] |
| 13888-2 | Information technology - Security techniques - Non-repudiation - Part 2: Mechanisms using symmetric techniques | 9 | [265] |
| 13888-3 | Information technology - Security techniques - Non-repudiation - Part 3: Mechanisms using asymmetric techniques | 9 | [259] |
| 14516 | Information technology - Security techniques - Guidelines for the use and management of Trusted Third Party services | 14 | [296] |
| 14888-1 | IT security techniques - Digital signatures with appendix - Part 1: General | 8 | [266] |
| 14888-2 | IT security techniques - Digital signatures with appendix - Part 2: Identity-based mechanisms | 8 | [272,319] |
| 14888-3 | IT security techniques - Digital signatures with appendix - Part 3: Certificate-based mechanisms | 8 | [267,320] |
| 15408-1 | Information technology - Security techniques - Evaluation criteria for IT security - Part 1: Introduction and general model | 3 | [273] |
| 15408-2 | Information technology - Security techniques - Evaluation criteria for IT security - Part 2: Security functional requirements | 3 | [274] |
| 15408-3 | Information technology - Security techniques - Evaluation criteria for IT security - Part 3: Security assurance requirements | 3 | [275] |
| 15764 | Road vehicles - Extended data link security | 7 | [302] |
| ISO | Relevant | Ref. | |
| no. | Title | chapter(s) | no. |
| 15782-1 | Certificate management for financial services - Part 1: Public key certificates | 13 | [298] |
| 15782-2 | Banking - Certificate management - Certificate extensions | 13 | [287] |
| 15816 | Information technology - Security techniques - Security information objects for access control | 3 | [288] |
| 15945 | Information technology - Security techniques - Specification of TTP services to support the application of digital signatures | 13 | [290] |
| 15946-1 | Information technology - Security techniques - Cryptographic techniques based on elliptic curves - Part 1: General | ||
| 15946-2 | Information technology - Security techniques - Cryptographic techniques based on elliptic curves - Part 2: Digital signatures | 8 | [291] |
| 15946-3 | Information technology - Security techniques - Cryptographic techniques based on elliptic curves - Part 3: Key establishment | 12 | |
| 15946-4 | Information technology - Security techniques - Cryptographic techniques based on elliptic curves - Part 4: Digital signatures giving message recovery | 8 | [305] |
| 15947 | Information technology - Security techniques - IT intrusion detection framework | 3 | [297] |
| 17799 | Information technology - Code of practice for information security management | 14, 16 | [284] |
| 18014-1 | Information technology - Security techniques - Time-stamping services - Part 1: Framework | 14 | [293] |
| 18014-2 | Information technology - Security techniques - Time-stamping services - Part 2: Mechanisms producing independent tokens | 14 | [294] |
| 18014-3 | Information technology - Security techniques - Time-stamping services - Part 3: Mechanisms producing linked tokens | 14 | [306] |
| 18031 | IT security techniques - Random bit generation | 16 | [307] |
| 18032 | IT security techniques - Prime number generation | 16 | [316] |
| 18033-1 | IT security techniques - Encryption algorithms - Part 1: General | 4 | [317] |
| ISO | Relevant | Ref. | |
| no. | Title | chapter(s) | no. |
| 18033-2 | IT security techniques - Encryption algorithms - Part 2: Asymmetric ciphers | 4 | [312] |
| 18033-3 | IT security techniques - Encryption algorithms - Part 3: Block ciphers | 4 | [313] |
| 18033-4 | IT security techniques - Encryption algorithms - Part 4: Stream ciphers | 4 | [314] |
| 19772 | IT security techniques - Authenticated encryption mechanisms | 5, 16 | [321] |
| 19790 | Information technology - Security techniques - Security requirements for cryptographic modules | 16 | [322] |
| 19792 | Information technology - Security techniques - A framework for security evaluation and testing of biometric technology | 16 | [301] |
| ITU-T | Relevant | Ref. | |
| no. | Title | chapter(s) | no. |
| X.509 | The directory - Public-key and attribute certificate frameworks | 10, 13 | [117,324,335,336] |
| X.680 | Information technology - Abstract Syntax Notation One ASN.1: Specification of basic notation | 13 | [341] |
| X.681 | Information technology - Abstract Syntax Notation One ASN.1: Information object specification | 13 | [342] |
| X.682 | Information technology - Abstract Syntax Notation One ASN.1: Constraint specification | 13 | [343] |
| X.683 | Information technology - Abstract Syntax Notation One ASN.1: Parameterization of ASN.1 specifications | 13 | [344] |
| X.690 | Information technology - ASN.1 encoding rules: Specification of Basic Encoding Rules (BER), Canonical Encoding Rules (CER) and Distinguished Encoding Rules (DER) | 13 | [345] |
| X.691 | Information technology - ASN.1 encoding rules: Specification of Packed Encoding Rules (PER) | 13 | [346] |
| X.800 | Data Communication Networks: Open Systems Interconnection (OSI); Security, Structure and Applications - Security Architecture for Open Systems Interconnection for CCITT Applications | 3 | [323,333] |
| X.802 | Data Networks and Open System Communications - Security - Information Technology - Lower Layers Security Model | 3 | [326] |
| X.803 | Data Networks and Open System Communications - Security - Information Technology - Open Systems Interconnection - Upper Layers Security Model | 3 | [325] |
| ITU-T | Relevant | Ref. | |
| no. | Title | chapter(s) | no. |
| X.805 | Security - Security architecture for systems providing end-to-end communications | 3 | [347] |
| X.810 | Data Networks and Open System Communications - Security - Information Technology - Open Systems Interconnection - Security Frameworks for Open Systems: Overview | 3 | [327] |
| X.811 | Data Networks and Open System Communications - Security - Information Technology - Open Systems Interconnection - Security Frameworks for Open Systems: Authentication Framework | 3 | [328] |
| X.812 | Data Networks and Open System Communications - Security - Information Technology - Open Systems Interconnection - Security Frameworks for Open Systems: Access Control Framework | 3 | [329] |
| X.813 | Data Networks and Open System Communications - Security - Information Technology - Open Systems Interconnection - Security Frameworks for Open Systems: Non-repudiation Framework | 3 | [334] |
| X.814 | Data Networks and Open System Communications - Security - Information Technology - Open Systems Interconnection - Security Frameworks for Open Systems: Confidentiality Framework | 3 | [330] |
| X.815 | Data Networks and Open System Communications - Security - Information Technology - Open Systems Interconnection - Security Frameworks for Open Systems: Integrity Framework | 3 | [331] |
| X.816 | Data Networks and Open System Communications - Security - Information Technology - Open Systems Interconnection - Security Frameworks for Open Systems: Security Audit and Alarms Framework | 3 | [332] |
| ITU-T | Relevant | Ref. | |
| no. | Title | chapter(s) | no. |
| X.841 | Security - Information technology - Security techniques - Security information objects for access control | 3 | [337] |
| X.842 | Information technology - Security techniques - Guidelines for the use and management of Trusted Third Party services | 14 | [338] |
| X.843 | Security - Information technology - Security techniques - Specification of TTP services to support the application of digital signatures | 13 | [339] |
| NIST FIPS | Relevant | Ref. | |
| no. | Title | chapter(s) | no. |
| 46-3 | Data Encryption Standard | 4 | [442] |
| 81 | DES Modes of Operation | 5 | [438] |
| 140-2 | Security Requirements for Cryptographic Modules | 16 | [446] |
| 180-2 | Secure Hash Standard | 6 | [449] |
| 186-2 | Digital Signature Standard | 8 | [443] |
| 196 | Entity Authentication Using Public Key Cryptography | 10 | [441] |
| 197 | Specification for the Advanced Encryption Standard (AES) | 4 | [445] |
| 198 | The Keyed-Hash Message Authentication Code (HMAC) | 7 | [450] |
| NIST SP | Relevant | Ref. | |
| no. | Title | chapter(s) | no. |
| 800-22 | A statistical test suite for random and pseudorandom number generation for cryptographic applications | 16 | [447] |
| 800-38A | Recommendation for Block Cipher Modes of Operation: Methods and Techniques | 5 | [448] |
| 800-38B | Draft Recommendation for Block Cipher Modes of Operation: The RMAC Authentication Mode | 7 | [451] |
| 800-38C | Draft Recommendation for Block Cipher Modes of Operation: The CCM Mode for Authentication and Confidentiality | 5, 16 | [452] |
| PKCS | Relevant | Ref. | |
| no. | Title | chapter(s) | no. |
| 1 | RSA Cryptography Standard | 4 | |
| 3 | Diffie-Hellman Key Agreement Standard | 4, 12 | |
| 5 | Password-Based Cryptography Standard | 4 | |
| 7 | Cryptographic Message Syntax Standard | 13 | |
| 8 | Private-Key Information Syntax Standard | 4 | |
| 10 | Certification Request Syntax Standard | 13 | |
| 11 | Cryptographic Token Interface Standard | 15 | [494] |
| 13 | Elliptic Curve Cryptography Standard | 4 |
| SECG | Relevant | Ref. | |
| no. | Title | chapter(s) | no. |
| SEC 1 | Elliptic curve cryptography | 4 | [512] |
| SEC 2 | Recommended elliptic curve domain parameters | 4 | [513] |