ECMA 206 : 1ED 93
Current
The latest, up-to-date edition.
ASSOCIATION CONTEXT MANAGEMENT INCLUDING SECURITY CONTEXT MANAGEMENT
12-01-2013
1 Scope
2 Conformance
3 References
4 Definitions
4.1 Imported definitions
4.2 New definitions
5 Notational Conventions
6 Acronyms and Abbreviations
7 General Description
7.1 Background
7.2 Introduction to ACM
8 Requirements
8.1 General Requirements
8.2 Identification Requirements
8.3 Security Requirements
8.4 Management Requirements
8.5 User Access Requirements
8.6 Communications Requirements
8.7 Storage Requirements
8.8 Process Requirements
9 Relationship to Other Standards and Recommendations
9.1 Communications Standards
9.2 Security Standards
9.3 Management Standards
9.4 Operating Systems and API Standards
9.5 Architecture Standards
10 Models
10.1 Associations and Contexts
10.2 Levels of Context
10.3 Operations on the Context
10.4 Abstract-Association Negotiation Model
10.5 Nested Association-contexts
10.6 Mapping of ACM to communication standards
10.7 Management of Association Context Management
11 Service Description
11.1 Model of Multiple Exchanges
11.2 Parameters for negotiating the association-context
11.3 How to design and implement context parameters
11.4 Key to parameter tables
11.5 ACM-Initiate
11.6 ACM-Initiate-Continue
11.7 ACM-Initiate-Complete
11.8 ACM-Release
11.9 ACM-Abort
11.10 ACM-Modify
11.11 ACM-Modify-Continue
11.12 ACM-Modify-Complete
12 Protocol Abstract Syntax
13 Protocol Mappings
13.1 Introduction and Principles
13.2 Application Contexts
13.3 ACSE mapping
13.4 ROSE mapping
13.5 Mappings to OSI RPC
14 Protocol State Tables
14.1 States
14.2 Events
14.3 Actions
Annex A (Informative) ACM negotiation protocol example
A.1 Requirements
A.2 Data structure specification
A.3 Example: Association requiring a signed PAC
Annex B (Informative) Relationship to Kerberos version 5
B.1 Introduction
B.2 Kerberos Version 5 Client-Server Protocol
B.3 Mapping of KRB_AP_REQ and KRB_AP_REP
B.4 Mapping of KRB_ERROR
Annex C (Informative) Relationship to GSS-API
C.1 Introduction
C.2 Security Context Establishment
C.3 Security Context Deletion
C.4 Security Context Modification
C.5 GSS-API Output Token
Annex D (Informative) Relationship to OSI-TP
Annex E (Informative) Managed objects
E.1 Introduction
E.2 acmService Class
E.3 abstractAssociation Class
Defines a model for management of the characteristics of associations between applications in a distributed system. The associations can be for interactive (e.g. VT) and non-interactive (e.g. FTAM) applications. Provides framework for achievement of availability, integrity and confidentiality of an association.
DocumentType |
Standard
|
PublisherName |
European Computer Manufacturers Association
|
Status |
Current
|
ECMA 205 : 1ED 93 | COMMERCIALLY ORIENTED FUNCTIONALITY CLASS FOR SECURITY EVALUATION (COFC) |
ECMA 219 : 2ED 96 | AUTHENTICATION AND PRIVILEGE ATTRIBUTE SECURITY APPLICATION WITH RELATED KEY DISTRIBUTION FUNCTIONS - PART 1, 2 AND 3 |
ECMA/TR 46 : 1ED 88 | SECURITY IN OPEN SYSTEMS - A SECURITY FRAMEWORK |
ISO 8650:1988 | Information processing systems — Open Systems Interconnection — Protocol specification for the Association Control Service Element |
ISO/IEC 8825-1:2015 | Information technology ASN.1 encoding rules: Specification of Basic Encoding Rules (BER), Canonical Encoding Rules (CER) and Distinguished Encoding Rules (DER) Part 1: |
ECMA 138 : 1989 | SECURITY IN OPEN SYSTEMS - DATA ELEMENTS AND SERVICE DEFINITIONS |
ISO/IEC 9595:1998 | Information technology Open Systems Interconnection Common management information service |
ISO/IEC 8824-2:2015 | Information technology Abstract Syntax Notation One (ASN.1): Information object specification Part 2: |
ISO/IEC 9545:1994 | Information technology Open Systems Interconnection Application Layer structure |
ISO/IEC 9594-8:2017 | Information technology Open Systems Interconnection The Directory Part 8: Public-key and attribute certificate frameworks |
ISO/IEC 11578:1996 | Information technology — Open Systems Interconnection — Remote Procedure Call (RPC) |
ISO/IEC 11586-2:1996 | Information technology Open Systems Interconnection Generic upper layers security: Security Exchange Service Element (SESE) service definition |
ISO/IEC 10165-4:1992 | Information technology Open Systems Interconnection Structure of management information Part 4: Guidelines for the definition of managed objects |
ISO/IEC 10746-1:1998 | Information technology — Open Distributed Processing — Reference model: Overview — Part 1: |
Access your standards online with a subscription
Features
-
Simple online access to standards, technical information and regulations.
-
Critical updates of standards and customisable alerts and notifications.
-
Multi-user online standards collection: secure, flexible and cost effective.