1、 KS X ISO/IEC 95947 KSKSKSKS SKSKSKS KSKSKS SKSKS KSKS SKS KS : KS X ISO/IEC 95947 : 2007 (2012 ) 2007 11 30 http:/www.kats.go.krKS X ISO/IEC 95947:2007 : ( ) ( ) SJ ( ) : (JTC1/SC6) () ( ) SK ( ) KS X ISO/IEC 95947:2007 : (http:/www.standard.go.kr) : :2002 11 27 :2007 11 30 :2012 12 28 : 2012-0798
2、: (JTC1/SC6) ( 02-509-7262) (http:/www.kats.go.kr). 10 5 , . KS X ISO/IEC 95947:2007 i ii 1 1 2 1 3 .2 4 .2 5 .3 6 .4 7 9 A() ASN.1 .13 B() DIT .20 C() .26 .27 KS X ISO/IEC 95947:2007 ii . KS X ISO/IEC 95947:2007 . A() ASN.1 B() DIT C() ISO/IEC 9594 “ ” . 1 : , (KS X 41011) 2 : (KS X 41012) 3 : (KS
3、X 41013) 4 : (KS X 41014) 5 : (KS X 41015) 6 : (KS X 41016) 7 : (KS X ISO/IEC 95947) 8 : (KS X ISO/IEC 95948) 9 : (KS X ISO/IEC 95949) 10 : (KS X ISO/IEC 959410) KS X ISO/IEC 95947 : 2007 (2012 ) : Information technology Open Systems Interconnection The Directory :Selected object classes 2001 4 ISO/
4、IEC 95947, Information technologyOpen Systems InterconnectionThe Directory:Selected object classes . 1 . . . . . . (, , DSA ) . 2 . . ( ) . KS X 41011, 1:, KS X 41012, 2: KS X 41013, 3: KS X 41014, 4: KS X 41015, 5: KS X 41016, 6: KS X ISO/IEC 74981, 1: KS X ISO/IEC 88241, (ASN.1)1: KS X ISO/IEC 882
5、42(A), (ASN.1)2: KS X ISO/IEC 95947:2007 2 KS X ISO/IEC 88243(A), 1(ASN.1)3: KS X ISO/IEC 88244, (ASN.1)4:ASN.1 KS X ISO/IEC 95949, : KS X ISO/IEC 959410, : 3 . 3.1 OSI a) b) 3.2 a) b) c) (DIT) d) (DSA) e) f) g) h) i) j) k) 4 ITUT ISO/IEC JTC1 “ITUT ISO/IEC ” . (“ ”) “ ” ITUT X.500 ISO/IEC 9594 . “
6、” X.500- ISO/IEC 9594 . “1988 ” . , CCITT X.500 1988 ISO/IEC 9594: 1990 . “1993 ” , , ITUT X.500 1993 ISO/IEC 9594:1995 . “1997 ” . “Helvetica” ASN.1 . ASN.1 “Helvetica” . Times KS X ISO/IEC 95947:2007 3 . Times . ITUT X.501 ISO/IEC 95942 OBJECTCLASS NAMEFORM . 5 5.1 . TelecommunicationAttributeSet
7、ATTRIBUTE := facsimileTelephoneNumber| internationallSDNNumber| telephoneNumber| telexNumber| preferredDeliveryMethod| registeredAddress| x121Address 5.2 . PostalAttributeSet ATTRIBUTE := physicalDeliveryOfficeName| postalAddress| postalCode| postOfficeBox| streetAddress 5.3 . LocaleAttributeSet ATT
8、RIBUTE := localityName| stateOrProvinceName| streetAddress 5.4 . OrganizationalAttributeSet ATTRIBUTE := description| LocaleAttributeSet| PostalAttributeSet| TelecommunicationAttributeSet| businessCategory| seeAlso| KS X ISO/IEC 95947:2007 4 searchGuide| userPassword 6 6.1 DIT . country OBJECT-CLASS
9、 := SUBCLASS OF top MUST CONTAIN countryName MAY CONTAIN description|searchGuide ID id-oc-country 6.2 DIT . locality OBJECT-CLASS := SUBCLASS OF top MAY CONTAIN description| searchGuide LocaleAttributeSet| seeAlso ID id-oc-locality , , . 6.3 DIT . organization OBJECT-CLASS := SUBCLASS OF top MUST CO
10、NTAIN organizationName MAY CONTAIN OrganizationalAttributeSet ID id-oc-organization 6.4 . organizationUnit OBJECT-CLASS := SUBCLASS OF top MUST CONTAIN organizationUnitName MAY CONTAIN OrganizationalAttributeSet ID id-oc-organizationalUnit 6.5 . KS X ISO/IEC 95947:2007 5 person OBJECT-CLASS := SUBCL
11、ASS OF top MUST CONTAIN commonName|surname MAY CONTAIN description| telephoneNumber| userPassword| seeAlso ID id-oc-person 6.6 . organizationalPerson OBJECT-CLASS := SUBCLASS OF person MAY CONTAIN LocaleAttributeSet| PostalAttributeSet| TelecommunicationAttributeSet| organizationalUnitName| title ID
12、 id-oc-organizationalUnit 6.7 . , . . . . organizationalRole OBJECT-CLASS := SUBCLASS OF top MUST CONTAIN commonName MAY CONTAIN description| LocaleAttributeSet| organizationalunitName| PostalAttributeSet| preferredDeliveryMethod| roleoccupant| seeAlso| TelecommunicationAttributeSet ID id-oc-organiz
13、ationalRloe 6.8 . . , . . . KS X ISO/IEC 95947:2007 6 groupOfNames OBJECT-CLASS := SUBCLASS OF top MUST CONTAIN commonName|member MAY CONTAIN description| organizationName| organizationalUnitName| owner| seeAlso| businessCategory ID id-oc-organizationalRloe 6.9 . . , . groupOfUniqueNames OBJECT-CLAS
14、S := SUBCLASS OF top MUST CONTAIN commonName|uniqueMember MAY CONTAIN description| organizationName| organizationalUnitName| owner| seeAlso| businessCategory ID id-oc-groupOfUniqueNames 6.10 . residentialPerson OBJECT-CLASS := SUBCLASS OF person MUST CONTAIN localityName MAY CONTAIN localeAttributeS
15、et| PostalAttributeSet| preferredDeliveryMethod| TelecommunicationAttributeSet| businessCategory ID id-oc-residentialPerson 6.11 . (ITUT Rec. X.200 | KS X ISO/IEC 74981 ). applicationProcess OBJECT-CLASS := SUBCLASS OF top MUST CONTAIN commonName MAY CONTAIN description| KS X ISO/IEC 95947:2007 7 lo
16、calityName| organizationalUnitName| seeAlso ID id-oc-applicationProcess 6.12 . OSI . applicationEntity OBJECT-CLASS := SUBCLASS OF top MUST CONTAIN commonName|presentationAddress MAY CONTAIN description| localityName| organizationName| organizationalUnitName| seeAlso| supportedApplicationContext ID
17、id-oc-applicationEntity , commonName Qualifier . 6.13 DSA DSA DSA . DSA ITUT Rec. X.501 | KS X 41012 . dSA OBJECT-CLASS := SUBCLASS OF applicationEntity MAY CONTAIN knowledgelnformation ID id-oc-dSA 6.14 (Device) . . Device OBJECT-CLASS := SUBCLASS OF top MUST CONTAIN commonName MAY CONTAIN descript
18、ion| localityName| organizationName| organizationalUnitName| owner| seeAlso| serialNumber ID id-oc-device LocalityName, serialNumber, owner . KS X ISO/IEC 95947:2007 8 . 6.15 ITU-T Rec. X.509 | ISO/IEC 95948 . strongAuthenticationUser OBJECT-CLASS := SUBCLASS OF top KIND auxiliary MUST CONTAIN userC
19、ertificate ID id-oc-strongAuthenticationuser 6.16 ITUT Rec. X.509 | ISO/IEC 95948 . userSecurityInformation OBJECT-CLASS := SUBCLASS OF top KIND auxiliary MAY CONTAIN supportedAlgorithms ID id-oc-userSecurityInformation 6.17 ITUT Rec. X.509 | ISO/IEC 95948 . certificationAuthority OBJECT-CLASS := SU
20、BCLASS OF top KIND auxiliary MUST CONTAIN cACertificate certificateRevocationList| authorityRevocationList MAY CONTAIN crossCertificatePair ID id-oc-certificationAuthority 6.18 V2 -V2 ITUT Rec. X.509 | ISO/IEC 95948 . certificationAuthority-V2 OBJECT-CLASS := SUBCLASS OF certificationAuthority KIND
21、auxiliary MAY CONTAIN deltaRevocationList ID id-oc-certificationAuthority-V2 6.19 CRL CRL ITUT Rec. X.509 | ISO/IEC 95948 CRL KS X ISO/IEC 95947:2007 9 . cRLDistributionPoint OBJECT-CLASS := SUBCLASS OF top KIND structural MUST CONTAIN commonName MAY CONTAIN certificateRevocationList| authorityRevoc
22、ationList| deltaRevocationList ID id-oc-cRLDistributionPoint 6.20 DMD DMD DIT DMD . dMD OBJECT-CLASS := SUBCLASS OF top MUST CONTAIN dmdName MAY CONTAIN organizationalAttributeSet ID id-oc-dmd 7 7.1 country . countryNameForm NAME-FORM := NAMES country WITH ATTRIBUTES countryName ID id-nf-countryName
23、Form 7.2 locality . locNameForm NAME-FORM := NAMES locality WITH ATTRIBUTES localityName ID id-nf-localityNameForm 7.3 locality . sOPNameForm NAME-FORM := NAMES locality WITH ATTRIBUTES stateOrProvinceName ID id-nf-sOPNameForm 7.4 KS X ISO/IEC 95947:2007 10 organization . orgNameForm NAME-FORM := NA
24、MES organization WITH ATTRIBUTES organizationName ID id-nf-orgNameForm 7.5 organizationUnit . orgunitNameForm NAME-FORM := NAMES organizationalUnit WITH ATTRIBUTES organizationalUnitName ID id-nf-orgUnitNameForm 7.6 person . personNameForm NAME-FORM := NAMES person WITH ATTRIBUTES commonName ID id-n
25、f-personNameForm 7.7 organizationalPerson . orgPersonNameForm NAME-FORM := NAMES organizationalPerson WITH ATTRIBUTES commonName AND OPTIONALLY organizationalunitName ID id-nf-orgPersonNameForm 7.8 organizationalRole . orgRoleNameForm NAME-FORM := NAMES organizationalRole WITH ATTRIBUTES commonName
26、ID id-nf-orgRoleNameForm 7.9 groupOfNames . gONNameForm NAME-FORM := NAMES groupOfNames WITH ATTRIBUTES commonName ID id-nf-gONNameForm KS X ISO/IEC 95947:2007 11 7.10 residentialPerson . resPersonNameForm NAME-FORM := NAMES residentialPerson WITH ATTRIBUTES commonName AND OPTIONALLY streetAddress I
27、D id-nf-resPersonNameForm 7.11 applicationProcess . applPrecesssNameForm NAME-FORM := NAMES applicationProcess WITH ATTRIBUTES commonName ID id-nf-applProcessNameForm 7.12 applicationEntity . applEntityNameForm NAME-FORM := NAMES applicationEntity WITH ATTRIBUTES commonName ID id-nf-applEntityNameFo
28、rm 7.13 DSA DSA dSA . dSANameForm NAME-FORM := NAMES dSA WITH ATTRIBUTES commonName ID id-nf-dSANameForm 7.14 device . deviceNameForm NAME-FORM := NAMES device WITH ATTRIBUTES commonName ID id-nf-deviceNameForm 7.15 CRL CRL cRLDistributionPoint . cRLDistPtNameForm NAME-FORM := NAMES cRLDistributionPoint KS X ISO/IEC 95947:2007 12 WITH ATTRIBUTES commonName ID id-nf-cRLDistPtNameForm 7.16 DMD DMD dMD . dMDNameForm NAME-FORM := NAMES dMD WITH ATTRIBUTES dmdName ID id-nf-dmDNameForm