|
Technical Committee No |
TC08 |
|
Status |
Active |
|
Category |
Information Sector |
|
Sub Category |
|
|
$Resources:StandardType; |
Kuwaiti Standard |
This part of ISO/IEC 9798 specifies entity authentication mechanisms using symmetric encipherment algorithms.
Four of the mechanisms provide entity authentication between two entities where no trusted third party is involved;
two of these are mechanisms to unilaterally authenticate one entity to another, while the other two are mechanisms
for mutual authentication of two entities. The remaining mechanisms require a trusted third party for the
establishment of a common secret key, and realize mutual or unilateral entity authentication.
The mechanisms specified in this part of ISO/IEC 9798 use time variant parameters such as time stamps, sequence
numbers, or random numbers, to prevent valid authentication information from being accepted at a later time or
more than once.
If no trusted third party is involved and a time stamp or sequence number is used, one pass is needed for unilateral
authentication, while two passes are needed to achieve mutual authentication. If no trusted third party is involved
and a challenge and response method employing random numbers is used, two passes are needed for unilateral
authentication, while three passes are required to achieve mutual authentication. If a trusted third party is involved,
any additional communication between an entity and the trusted third party requires two extra passes in the
communication exchange.
|
|
|
|
Decision No |
37/2010 |
|
|
Decision By |
From Ministers Office |
|
|
Date of Meeting |
17-10-2009 |
|
|
Approval Date |
15-09-2010 |
|
|
Decision Date |
|
|
|
Newspaper Publication Date |
19-10-2010 |
|
|
Newspaper Number |
37/2010 |
|