ImageVerifierCode 换一换
格式:PDF , 页数:19 ,大小:1.48MB ,
资源ID:590184      下载积分:10000 积分
快捷下载
登录下载
邮箱/手机:
温馨提示:
如需开发票,请勿充值!快捷下载时,用户名和密码都是您填写的邮箱或者手机号,方便查询和重复下载(系统自动生成)。
如填写123,账号就是123,密码也是123。
特别说明:
请自助下载,系统不会自动发送文件的哦; 如果您已付费,想二次下载,请登录后访问:我的下载记录
支付方式: 支付宝扫码支付 微信扫码支付   
注意:如需开发票,请勿充值!
验证码:   换一换

加入VIP,免费下载
 

温馨提示:由于个人手机设置不同,如果发现不能下载,请复制以下地址【http://www.mydoc123.com/d-590184.html】到电脑端继续下载(重复下载不扣费)。

已注册用户请登录:
账号:
密码:
验证码:   换一换
  忘记密码?
三方登录: 微信登录  

下载须知

1: 本站所有资源如无特殊说明,都需要本地电脑安装OFFICE2007和PDF阅读器。
2: 试题试卷类文档,如果标题没有明确说明有答案则都视为没有答案,请知晓。
3: 文件的所有权益归上传用户所有。
4. 未经权益所有人同意不得将文件中的内容挪作商业或盈利用途。
5. 本站仅提供交流平台,并不能对任何下载内容负责。
6. 下载文件中如有侵权或不适当内容,请与我们联系,我们立即纠正。
7. 本站不保证下载资源的准确性、安全性和完整性, 同时也不承担用户因使用这些下载资源对自己和他人造成任何形式的伤害或损失。

版权提示 | 免责声明

本文(CAN CSA-ISO IEC 10164-7-1995 Information Technology - Open Systems Interconnection - Systems Management Security Alarm Reporting Function.pdf)为本站会员(proposalcash356)主动上传,麦多课文库仅提供信息存储空间,仅对用户上传内容的表现方式做保护处理,对上载内容本身不做任何修改或编辑。 若此文所含内容侵犯了您的版权或隐私,请立即通知麦多课文库(发送邮件至master@mydoc123.com或直接QQ联系客服),我们立即给予删除!

CAN CSA-ISO IEC 10164-7-1995 Information Technology - Open Systems Interconnection - Systems Management Security Alarm Reporting Function.pdf

1、I NTE R N AT1 0 N A L STANDARD without modification, as CAN/CSA-ISO/IEC-10164-7-95, which has been approved as a National Standard of Canada by the Standards Council of Canada. December 1995 ISOIIEC I01 64-7 First edition 1992-05-1 5 Information technology - Open Systems Interconnection - Systems Ma

2、nagement: Security alarm reporting function Technologies de /information - lnterconnexion de sysfemes ouverts - Gestion-systgrne: Foncfion de compte rendu daiarme de securitk National Standard of Canada CA N/CSA-ISO/1EC-lOl64-7-95 (Reaffirmed 2004) Reference number ISO/IEC 10164-7:1992(E) ISOflEC 10

3、164-7 : 1992(3) Contents Page Foreword . iii Introduction . iv 1 scope 1 2 Normative references 2 2.1 Identical CCTT Recommendations 1 International Standards 2 2.2 Paired CCI“ Recommendations I Lnternational Standards equivalent in technical. content . 2 2.3 Additional references 3 3 Definitions 3

4、3.1 Basic reference model definitions . 3 3 3.3 Management framework deftio ns 3 3.4 Systems management overview definitions . 3 3.5 Event report management function definitions 4 3.6 Service conventions definitions . 4 3.7 OS1 conformance testing definitions 4 3.8 Additional definitions 4 3.2 Secur

5、ity architecture definitions 4 Abbreviations . 4 5 Conventions 4 6 Requirements. . 5 7 Model . 5 8 Generic definitions . 5 8.1 Generic notifications . 5 8.2 Managed object . 8 8.3 Imported generic definitions 8 8.4 Compliance . 8 9 Service definition 8 9.1 Introduction 8 9.2 Security alarm reporting

6、 service 8 10 Functional units 9 11 Protocol 9 9 11.1 Elements of procedure 1 1.2 Abstract syntax . 10 11.3 Negotiation of the security alarm reporting functional unit . 12 12 Relationships with other functions 12 13 Conformance 12 13.1 General conformance class requirements 12 13.2 Dependent confor

7、mance class requirements 13 0 ISO/IEC 1992 Ail rights reserved No part of this publication may be reproduced or utilized in any form or by any means. electronic or mechanical. including photocopying and microfilm. without permission in Writing from the publisher . ISOllEC Copyright Office Case posta

8、le 56 CH-1211 Geneclinology - Open Systems Interconnection - Common management information servlce definition; - ISO/1EC 9596 : 1990, Information tecltnolugy - Open Systems Interconnection - Camrnon management information protocol; - ISO/IEC 10040 : 1992, Information technology - Open Systems Interc

9、onnection - Systems management overview; - ISO/KEC 10165 : 1992, Informtion technology - Open Systems Interconnection - Structure of management information. iv CCIT“ Rec. X.736 (1992) ISO/IEC 10164-7 : 1992(E) INTERNATIONAL STANDARD CCLTT RECOMMENDATION Information technology - Open Systems Intercon

10、nection - Systems Management: Security alarm reporting function 1 Scope This Recommendation I International Standard defines the security alarm reporting function. The security alarm reporting function is a systems management function which rnay be used by an application process in a centralized or

11、decentralized management environment to exchange information for the purpose of systems management, as defined by CCIIT Rec. X.700 I ISO/IEC 7498-4. This Recornmendation I International Standard is positioned in tbe application layer of CCIIT Rec. X.200 I IS0 7498 and is defined according to the mod

12、el provided by ISO/IEC 9545. The role of systems management functions is described by CCITT Rec. X.701 I ISO/lEC 10040. The security alarm notifications defined by this systems management function provide information regarding operational condition and quality of service, pertaining to security. Sec

13、urity-related events are of relevance to the provision of security. The security policy determines the actions to be undertaken whenever a security-related event has occured. The security policy rnay, for example, specify that a security alarm report be generated, a record of the event be made in a

14、security audit trail, a threshold counter be incremeoted, the event be ignored, or a combination of these actions be taken. This Recommendation I International Standard is only concerned with security alarm reporting. This Recommendation 1 International Standard - establishes user requirements for t

15、he service definition needed to support the security alarm reporting function; defines the service provided by the security alarm reporting function; specifies the protocol that is necessary in order to provide the service; defines the relationship between the service and management notifications; d

16、efines relationships with other systems management functions; - - - - - specifies conformance requirements. This Recommendation I International Standard does not - - define the nature of any implementation intended to provide the security alarm reporting function; specify the manner in which managem

17、ent is accomplished by the user of the security alarm reporting function; define the nature of any interactions which result in the use of the security alarm reporting function; specify the services necessary for the establishment, normal and abnormal release of a management association; define any

18、other notifications, defined by other Recommendations I International Standards, which may be of interest to a security administrator. - - - CCLTT Rec. X.736 (1992) 1 ISO/XEC 10164-7 : 1992(E) 2 Normative references The following CCITT Recommendations and International Standards contain provisions w

19、hich, through reference in this text, constitute provisions of this Recommendation I International Standard. At the time of publication, the editions indicated were valid All Recommendations and Standards are subject to revision, and parties to agreements based on this Recommendation I International

20、 Standard are encouraged to investigate the possibility of applying the most recent editions of the Recommendations and Standards listed below+ Members of IEC and IS0 maintain registers of currently valid International Standards. The CCTT Secretariat maintains a list of the currently valid CCTT Reco

21、mmendations. 2.1 2.2 Identical CCITT Recommendations I International Standards - CCl“IT Recommendation X.701 (1992) I ISO/lEC 10040 : 1992, Information technology - Open System Interconnection - Systems management overview. CCrrTT Recommendation X.721 (1992) 1 ISO/IEC 10165-2 : 1992, lnfomation tech

22、nology - Open Systems Interconnection - Structure of management information: Dcrfinition of management infomiation. CCTT Recommendation X.722 (1992) 1 ISO/IEC 10165-4 : 1992, lnfomairon technology - Open Systems Interconnection - Structure of management information: Guidelines for the definition of

23、managed objects. CClTT Recommendation X.733 1992) 1 ISO/IEC 10164-4 : 1992, Information technology - Open Systems Interconnection - Systems Management: Alarm reporting function. - - - - CCTT Recommendation X.734l) I ISO/IEC 10164-5 : 1992, Infomation technology - Open Systems Interconnection - Syste

24、ms Management: Event report managementfunction. - CCITT Recommendation X.735l) I ISO/IEC 10164-6 : 1992, Information technology - Upen Systems Interconnection - Systems Management: Log control function. Paired CCITT Recommendations 1 International Standards equivalent in technical con tent - CCIIT R

25、ecommendation X.200 (1988), Reference model of Open Systems Interconnection for CCIlT applications. IS0 7498 : 1984, Infomution processing systems - Open Systems Interconnection - Basic Reference Model. - CCllT Recommendation X.208 (19881, Specification ofabstract syntax notation one (ASN.1). ISO/KJ

26、3C 8824 : 1990, Information technology - Upen Systems Interconnection - Specification of Abstract Syntux Notation One (ASN.1). - CCITT Recommendation X.209 (1988), Specification of Basic Encoding Rules for abstract syntax nota tion ISO/IEC 8825 : 1990, Information technology - Upen Systems Interconn

27、ectian - Specification of Basic Encoding Rules fur Abstract Syntax Notation One (ASN.1). - CCITT Recommendation X.210 1988), Open Systems Interconnection Zuyer service definition conventions. ISQfJX 8509 : 1987, Information processing systems - Open Systems Interconnection - Service conventions. CCm

28、 Recommendation X.290 (1992), US1 coiifomiance testing methodology and framework fur protocol Recommendations for CCKT applications - General concepts. ISO/IEC 9646-1 : 1991, Information technology - Open Systems Interconnection - Confumzance testing methodology and framework - Part I: General conce

29、pts. CCTIT Recommendation X.800 (1991), Security architecture for Open Systems Interconnection for CCKT applications. IS0 7498-2 : 1988, Informution processing systems - Open Systems Interconnection - Basic Reference Model - Part 2: Security Architecture. - - Presently at statt of draft Recommendati

30、on, 2 CCJTT Xec. X.736 (1992) ISOmEC 10164-7 : 1992(E) 2.3 CCIIT Recommendation X.700), Management framework definition for Upen Systems Interconnection for CCITT applications. ISO/IEC 7498-4 : 1989, Information processing systems - Open Systems Interconnection - Basic Reference Model - Part 4: Mana

31、gement framework. CCITT Recommendation X.710 (1991), Common management information service definition for CCLT applications. ISODC 9595 : 1991, Information technology - Open Systems Interconnection - Common management iizfomatian service definition. Additional references - ISO/IEC 9545 : 1989, Infor

32、mation technology - Upen, Systems Interconnection - Application kyer structure. 3 Definitions For the purposes of this Recornmendation I International Standard, the following definitions apply. 3.1 Basic reference model definitions This Recommendation 1 International Standard makes use of the follow

33、ing term defined in CClTT Rec. X.200 I IS0 7498: open system 3.2 Security architecture definitions This Recommendation I International Standard makes use of the following terms defined in CCllT Rec. X.800 I IS0 7498-2: a) authentication; b) confidentiality; c) integrity; d) non-repudiation; e) secur

34、ity policy; f) security service. 3.3 Management framework definitions This Recommendation I International Standard makes use of the following term defined in CCm Rec. X.700 I XSO/IEC 7498-4: managed object 3.4 Systems management overview definitions This Recommendation I International Standard makes

35、 use of the following terms defined in CCITT Rec. X.701 1 ISO/IEC 10040: a agent role; b) dependent conformance; c general conformance; d) manager role; ) Presently at state of draft Rccommcndation. CCITT Rec. X.736 (1992) 3 XSOfiEC 10164-7 : 1992(E) e) notification; f) systems management functional

36、 unit. 3.5 This Recommendation ! International Standard makes use of the following term defined in CCllT Rec. X.734 I ISO/IEC 10164-5: Event report management function definitions discriminator 3.6 Service conventions definitions This Recommendation I International Standard makes use of the followin

37、g terms defined in CCI“ Rec. X.210 I ISO/lX 8509: a) service-user; b) service-provider. 3.7 OS1 conformance testing definitions This Recornmendation I lntemationd Standard makes use of the following term defined in CCITT Rec. X.290 I ISO/EC 9646- 1 system conformance statement 3.8 Additional definit

38、ions 3.8.1 security; security alarm: A security-related event that has been identified by a security policy as a potential breach of security-related event: An event which is considered to have relevance to security. 3.8.2 4 5 Abbreviations ASN. 1 CMJS Common Management Information Services Cod Conf

39、innation hd Indication MAPDU Management Application Protocol Data Unit OS1 Open Systems Interconnection Req Request Rsp Response SMAPM Systems Management Application Protocol Machine Abstract Syntax Notation One Conventions This Recommendation 1 International Standard defines services for the securi

40、ty alarm reporting hnction using the descriptive conventions defined in CCITT Rec. X.210 I ISO/lX 8509. In clause 9, the definition of each service includes a table that lists the parameters of its primitives. For a given primitive, the presence of each parameter is described by one of the following

41、 values M the parameter is mandatory (=) the value of the parameter is equal to the value of the parameter in the column to the left U the use of the parameter is a service-user option - the parameter is not present in the interaction described by the primitive concerned 4 CCITT Rec. X.736 (1992) IS

42、O/IEC 10164-7 1992tE) C the parameter is conditional. The condition(s) are defined by the text which describes the parameter P subject to the constraints imposed on the parameter by CCITI Rec. X.710 I ISO/IEC 9595 NOTE -The parameters that are marked “P“ in Table 2 of this Recommendation I Internati

43、onal Standard are mapped directly onto the correspondiug parameters of the CMIS service primitive, without changing the semantics or syntax of the parameters. The remaining parameters are used to construct an MAPDU. 6 Requirements The security management user needs to be alerted whenever an event in

44、dicating an attack or potential attack on system security has been detected A security attack may be detected by a security service, a security mechanism, or another process. A security alarm notification may be generated by either of the communicating end users, or by any intermediate system or pro

45、cess between the end users. The security alarm report shall identify the cause of the security alarm, the source of the detection of the security-related event, the appropriate end users, and of the perceived severity of any misoperation, attack or breach of security, as specified by the security po

46、licy. This Recommendation I International Standard describes the use of services and techniques to satisfy these requirements. 7 Model The model for security alarm reporthg is defined in CCITT Rec. X.734 1 ISOKEC 10164-5- The information may be logged in accordance with CCITT Rec. X.735 i ISO/IEC 10

47、164-6. 8 Generic definitions 8.1 Generic notifications This Recornmendation I International Standard defines a set of generic security alarm notifications and their applicable parmeters and semantics. The set of generic notifications, parameters and semantics defined by this Recommendation I Interna

48、tional Standard provide the detail for the following parameters of the M-EVENT-REPORT service as defined by CCITI Rec. X.710 I ISO/IEC 9595 - event type; - event information; - event reply. All notifications are potential entries in a systems management log and this Recommendation I International St

49、andard defines a managed object class for this purpose. CCIIT Rec. X.721 I ISO/IEC 10165-2 defines a generic log record object class from which all entries are derived, the additional information being specified by the event information and event reply parameters. 8.1.1 Event type This parameter defines the type of the security alarm report. The following event types are defined in this Recommendation I International Standard - - integrity violation: an indication that information may have been illegally modified, inserted or deleted; operational violation: an indication that

copyright@ 2008-2019 麦多课文库(www.mydoc123.com)网站版权所有
备案/许可证编号:苏ICP备17064731号-1