Phone: (011) 7541-421, 3409-301, 3409-335, 6547-293, 3409-310
E-mail: Standards sales: prodaja@iss.rs Education: iss-edukacija@iss.rs Information about standards: infocentar@iss.rs
Stevana Brakusa 2, 11030 Beograd
Main menu

SRPS CEN ISO/TS 19299:2016

Electronic fee collection - Security framework (ISO/TS 19299:2015)

Nov 28, 2016
95.99   Withdrawal of Standard   Dec 31, 2020

General information

95.99     Dec 31, 2020

ISS

Z204

Technical Specification

03.220.20     35.240.60  

English  

Van plana 2016

Buying

Withdrawn

Language in which you want to receive the document.

Scope

The overall scope of ISO/TS 19299:2015 is an information security framework for all organizational and technical entities of an EFC scheme and in detail for the interfaces between them, based on the system architecture defined in ISO 17573. The security framework describes a set of requirements and associated security measures for stakeholders to implement and thus ensure a secure operation of their part of an EFC system as required for a trustworthy environment according to its security policy.
The scope of ISO/TS 19299:2015 comprises the following:
definition of a trust model;
Basic assumptions and principles for establishing trust between the stakeholders.
security requirements;
security measures - countermeasures;
Security requirements to support actual EFC system implementations.
security specifications for interface implementation;
These specifications represent an add-on for security to the corresponding standards.
key management;
Covering the (initial) setup of key exchange between stakeholders and several operational procedures like key renewal, certificate revocation, etc.
security profiles;
implementation conformance statement provides a checklist to be used by an equipment supplier, a system implementation, or an actor of a role declaring his conformity to ISO/TS 19299:2015;
general information security objectives of the stakeholders which provide a basic motivation for the security requirements;
threat analysis on the EFC system model and its assets using two different complementary methods, an attack-based analysis, and an asset-based analysis;
security policy examples;
recommendations for privacy-focused implementation;
proposal for end-entity certificates.

Related directives

NOTE: If the word "harmonized" (marked in green) is not found in the field with the name of the directive, it means that the European standard is not cited in the OJEU.

2004/52/EC

Directive 2004/52/EC of the European Parliament and of the Council of 29 April 2004 on the interoperability of electronic road toll systems in the Community (Text with EEA relevance)

Life cycle

PREVIOUSLY

WITHDRAWN
SRPS CEN/TS 16439:2013

NOW

WITHDRAWN
SRPS CEN ISO/TS 19299:2016
95.99 Withdrawal of Standard
Dec 31, 2020

REVISED BY

PUBLISHED
SRPS EN ISO 19299:2020

Related project

Adopted from CEN ISO/TS 19299:2015

Adopted from ISO/TS 19299:2015