ISO/IEC TR 24485:2022
p
ISO/IEC TR 24485:2022
78890
Indisponible en français

État actuel : Publiée

fr
Format Langue
std 1 63 PDF + ePub
std 2 63 Papier
  • CHF63
Convertir les francs suisses (CHF) dans une autre devise

Résumé

This document introduces security properties and provides best practices on the test and evaluation of white box cryptography (WBC). WBC is a cryptographic algorithm specialized for a key or secret, but where the said key cannot be extracted.

The WBC implementation can consist of plain source code for the cryptographic algorithm and/or of a device implementing the algorithm. In both cases, security functions are implemented to deter an attacker from uncovering the key or secret.

Security properties consist in the secrecy of security parameters concealed within the implementation of the white box cryptography. Best practices for the test and evaluation includes mathematical and practical analyses, static and dynamic analyses, non-invasive and invasive analyses.

This document is related to ISO/IEC 19790 which specifies security requirements for cryptographic modules. In those modules, critical security parameters (CSPs) and public security parameters (PSPs) are the assets to protect. WBC is one solution to conceal CSPs inside of the implementation.

Prévisualiser 

Prévisualiser cette norme sur notre Plateforme de consultation en ligne (OBP)

Informations générales

  •  : Publiée
     : 2022-10
    : Norme internationale publiée [60.60]
  •  : 1
  • ISO/IEC JTC 1/SC 27
    35.030 
  • RSS mises à jour

Cycle de vie

Vous avez une question?

Consulter notre FAQ

Service à la clientèle
+41 22 749 08 88

Horaires d’ouverture:
De lundi à vendredi - 09:00-12:00, 14:00-17:00 (UTC+1)