BSI PD ISO/TS 15638-4:2020
$142.49
Intelligent transport systems. Framework for cooperative telematics applications for regulated commercial freight vehicles (TARV) – System security requirements
Published By | Publication Date | Number of Pages |
BSI | 2020 | 26 |
Security requirements address both hardware and software aspects.
This document addresses the security requirements for:
-
the transfer of TARV data from an IVS to an application service provider across a wireless communications interface;
-
the receipt of instructions from an application service provider to a TARV IVS;
-
the communications aspects of handling of software updates for the IVS over wireless communications.
This document defines the requirements for telematics applications for regulated commercial vehicles for:
-
threat, vulnerability and risk analysis;
-
security services and architecture;
-
identity management;
-
security architecture and management;
-
identity-trust and privacy management;
-
security-access control;
-
security-confidentiality services.
This document provides:
-
general specifications for the security of TARV;
-
specifications for the security of TARV transactions and data within an ITS-station “bounded secure managed domain” (BSMD);
-
specifications for the security of TARV transactions and data transacted with a predetermined address outside of a BSMD.
IVS security requirements are dealt with by the prime service provider and application service provider (See ISO 15638-1).
Application service provision security is dealt with by the application service provider (and could be the subject of a separate TARV standards deliverable).
PDF Catalog
PDF Pages | PDF Title |
---|---|
2 | National foreword |
6 | Foreword |
7 | Introduction |
9 | 1 Scope |
10 | 2 Normative references 3 Terms and definitions |
13 | 4 Abbreviated terms 5 General overview and framework |
15 | 6 Requirements 6.1 Threat, vulnerability and risk analysis |
16 | 6.2 Functional requirements for security of targets of evaluation (TOEs) 6.2.1 TOE — In-vehicle systems 6.2.2 TOE — Application service provider systems 6.2.3 TOE — TARV data transfer |
17 | 6.2.4 Means of TARV data transfer 6.2.5 TARV data security requirements 6.3 General specifications for the security of TARV 6.3.1 Destined to a predetermined IPv6 address (URI) |
18 | 6.3.2 ASP or jurisdiction determines security requirements 6.4 Low security data transfers via an ITS-station 6.5 TARV Data transfers via an ITS-station with C-ITS security (BSMD) 6.5.1 Within ISO 21217 ITS-station environment 6.5.2 Within ISO 21210 networking environment 6.5.3 Within ISO 17423 selection of communications profile requirements 6.5.4 When accessing specific wireless media 6.6 TARV data transfers including defined security, but outside a BSMD 6.6.1 General |
20 | 6.6.2 Security data 6.6.3 IVS TARV security module 6.7 Identity management 6.8 Trust and privacy management 6.9 Access control 6.10 Confidentiality services 6.11 Data privacy 6.12 Integrity of trailer identification |
21 | 6.13 Exception handling 6.14 Cross-border operations and harmonization 7 Quality of service requirements 8 Test requirements 9 Marking, labelling and packaging |
22 | Annex A (informative) Example TARV security in a regulatory domain |
23 | Bibliography |