Table of Contents
1Scope
2References
2.1IdenticalRecommendations/International
Standards
2.2PairedRecommendations/International
Standardsequivalentintechnicalcontent
2.3Additionalreferences
3Definitions
3.1OSIReferenceModeldefinitions
3.2OpenSystemSecurityFrameworkdefinitions
3.3InternalOrganizationoftheNetworkLayer
definitions
3.4Additionaldefinitions
4Abbreviations
5Securityassociations
5.1Generaloverview
5.2Establishingasecurityassociationforthe
lowerlayers
5.3Securityassociationclose
5.4Modificationofattributesinaconnection
6Influenceonexistingprotocols
6.1Generalprinciple
6.2ConnectionlessSDUsize
6.3ConcatenationofPDUs
6.4Algorithmandmechanismindependence
7CommonsecurityPDUstructure
8Determinationofsecurityservicesandmechanisms
9ProtectionQOS
10Securityrules
11Placementofsecurityinthelowerlayers
12Useof(N-1)layer(s)toenhance(N)-layersecurity
13Securitylabelling
14Securitydomains
15Securityofrouteing
16SecurityManagement
16.1Securitypolicy
16.2Securityassociationmanagement
16.3Keymanagement
16.4SecurityAudit
17Trafficflowconfidentiality
18GuidelinesforthedefinitionofSA-Attributes
19Errorhandling
AnnexAIllustrativeexampleofanAgreedSetof
SecurityRulesa Abstract
Covers cross layer aspects of providing of security services in the lower layers of the OSI Reference Model (Transport, Network, Data Link and Physical layers).