Table of Contents
1Scope
2NormativeReferences
2.1IdenticalRecommendations/InternationalStandards
2.2PairedRecommendations/InternationalStandards
equivalentintechnicalcontent
3Definitions
3.1BasicReferenceModeldefinitions
3.2Securityarchitecturedefinitions
3.3Managementframeworkdefinitions
3.4Securityframeworkoverviewdefinitions
3.5Additionaldefinitions
4Abbreviations
5Notation
6Generaldiscussionofsecurityauditandalarms
6.1Modelandfunctions
6.2Phasesofsecurityauditandalarmsprocedures
6.3Correlationofauditinformation
7Policyandotheraspectsofsecurityauditandalarms
7.1Policy
7.2Legalaspects
7.3Protectionrequirements
8Securityauditandalarmsinformationandfacilities
8.1Auditandalarmsinformation
8.2Securityauditandalarmsfacilities
9Securityauditandalarmsmechanisms
10Interactionwithothersecurityservicesandmechanisms
10.1Entityauthentication
10.2Dataoriginauthentication
10.3AccessControl
10.4Confidentiality
10.5Integrity
10.6Non-repudiation
AnnexA-Generalsecurityauditandalarmsprinciplesfor
OSI
AnnexB-Realizationofthesecurityauditandalarmmodel
AnnexC-SecurityAuditandAlarmsFacilitiesOutline
AnnexD-TimeRegistrationofAuditEvents Abstract
This framework defines the basic concepts of security audit and alarms, provides a general model for security audit and alarms and identifies the relationship of the Security Audit and Alarms service with other security services. A security audit can only be provided within the context of a defined security policy.