Table of Contents
1Scope
2Normativereferences
2.1IdenticalRecommendations/International
Standards
2.2PairedRecommendations/InternationalStandards
equivalentintechnicalcontent
3Definitions
3.1BasicReferenceModeldefinitions
3.2Securityarchitecturedefinitions
3.3Securityframeworksoverviewdefinitions
3.4Additionaldefinitions
4Abbreviations
5Generaldiscussionofconfidentiality
5.1Basicconcepts
5.1.1Protectionofinformation
5.1.2Hideandrevealoperations
5.2Classesofconfidentialityservices
5.3Typesofconfidentialitymechanisms
5.4Threatstoconfidentiality
5.4.1Threatswhenconfidentialityisprovided
throughaccessprevention
5.4.2Threatswhenconfidentialityisprovided
throughinformationhiding
5.5Typesofconfidentialityattacks
6Confidentialitypolicies
6.1Policyexpression
6.1.1Informationcharacterization
6.1.2Entitycharacterization
7Confidentialityinformation
7.1Hidingconfidentialityinformation
7.1.1Hidingconfidentialityinformation
7.1.2Revealingconfidentialityinformation
7.2Confidentialityfacilities
7.2.1Operationrelatedfacilities
7.2.1.1Hide
7.2.1.2Reveal
7.2.2Managementrelatedfacilities
8Confidentialitymechanisms
8.1Confidentialityprovisionthroughaccess
prevention
8.1.1Confidentialityprotectionthrough
physicalmediaprotection
8.1.2Confidentialityprotectionthrough
routingcontrol
8.2Confidentialityprovisionthroughencipherment
8.2.1Confidentialityprovisionthroughdata
padding
8.2.2Confidentialityprovisionthroughdummy
events
8.2.3ConfidentialityprovisionthroughPDU
headerprotection
8.2.4Confidentialityprovisionthroughtime
varyingfields
8.3Confidentialityprovisionthroughcontextual
location
9Interactionswithothersecurityservicesand
mechanisms
9.1AccessControl
AnnexA-ConfidentialityintheOSIReferenceModel
AnnexB-Exampleofasequenceofmovementsthrough
differentconfidentialityprotectedenvironments
AnnexC-RepresentationofInformation
AnnexD-CovertChannels
AnnexE-ConfidentialityFacilitiesOutline Abstract
Addresses the application of security services in an open systems environment, where the term "Open Systems" is inclusive of areas such as Database, Distributed Applications, Open Distributed Processing and OSI.