Entity authentication assurance framework |
|
This Recommendation defines four levels of entity authentication assurance (i.e., LoA 1 – LoA 4), and the criteria and threats for each of the four levels of entity authentication assurance. Additionally, it:
• specifies a framework for managing the assurance levels;
• provides guidance concerning control technologies that are to be used to mitigate authentication threats, based on a risk assessment;
• provides guidance for mapping the four levels of assurance to other authentication assurance schemas; and
• provides guidance for exchanging the results of authentication that are based on the four levels of assurance.
|
|
Citation: |
https://handle.itu.int/11.1002/1000/11608 |
Series title: |
X series: Data networks, open system communications and security X.1200-X.1299: Cyberspace security X.1250-X.1299: Identity management (IdM) and Authentication |
Approval date: |
2012-09-07 |
Provisional name: | X.eaa |
Approval process: | TAP |
Status: |
Superseded |
Maintenance responsibility: |
ITU-T Study Group 17 |
Further details: |
Patent statement(s)
Development history
|
|
|
|
ITU-T Supplement
|
Title
|
Status
|
Summary
|
Table of contents
|
Download
|
X Suppl. 7 (02/2009)
|
ITU-T X.1250 series – Supplement on overview of identity management in the context of cybersecurity
|
In force
|
here
|
here
|
here
|
X Suppl. 35 (09/2019)
|
ITU-T X.1254 – Supplement on use cases of entity authentication assurance (EAA) framework
|
In force
|
here
|
here
|
here
|
X Suppl. 41 (09/2024)
|
Supplement to ITU-T X.1254: e-KYC use cases in digital financial services
|
In force
|
here
|
here
|
here
|
X Suppl. 42 (09/2024)
|
Supplement to ITU-T X.1254: Implementation of secure authentication technologies for digital financial services
|
In force
|
here
|
-
|
here
|
Title |
Approved on |
Download |
Guidelines for identity-based cryptosystems used for cross-domain secure communications
|
2023
|
here
|
Overview of hybrid approaches for key exchange with quantum key distribution
|
2022
|
here
|
Guidelines for security management of using artificial intelligence technology
|
2022
|
here
|
Unified Security Model (USM) – A neutral integrated system approach to cybersecurity
|
2020
|
here
|
Successful use of security standards (2nd edition)
|
2020
|
here
|
Description of the incubation mechanism and ways to improve it
|
2020
|
here
|
Strategic approaches to the transformation of security studies
|
2020
|
here
|
|