GB/T 37941-2019 PDF EnglishUS$599.00 · In stock · Download in 9 seconds
GB/T 37941-2019: Information security technology - Security technical requirements of industrial control system network audit products Delivery: 9 seconds. True-PDF full-copy in English & invoice will be downloaded + auto-delivered via email. See step-by-step procedure Status: Valid
Similar standardsGB/T 37941-2019: Information security technology - Security technical requirements of industrial control system network audit products---This is an excerpt. Full copy of true-PDF in English version (including equations, symbols, images, flow-chart, tables, and figures etc.), auto-downloaded/delivered in 9 seconds, can be purchased online: https://www.ChineseStandard.net/PDF.aspx/GBT37941-2019 (Information Security Technology Industrial Control System Network Audit Product Security Technical Requirements) ICS 35.040 L80 National Standards of People's Republic of China Information Security Technology Industrial Control System Network Audit Product safety technical requirements Informationsecuritytechnology-Securitytechnicalrequirementsofindustrial Controlsystemnetworkauditproducts Published on.2019-08-30 2020-03-01 implementation State market supervision and administration China National Standardization Administration issued Content Foreword III Introduction IV 1 Scope 1 2 Normative references 1 3 Terms and Definitions 2 4 Abbreviations 2 5 Product Description 2 6 Safety technical requirements 2 6.1 Basic level safety technical requirements 2 6.1.1 Security function requirements 2 6.1.2 Self-safety requirements 5 6.1.3 Security requirements 6 6.2 Enhanced Security Technical Requirements 8 6.2.1 Security function requirements 8 6.2.2 Self-safety requirements 12 6.2.3 Security requirements 14 Appendix A (informative) Application of Network Control Products for Industrial Control Systems 17 Appendix B (Normative) Environmental Adaptability Requirements 18 Reference 25 ForewordThis standard was drafted in accordance with the rules given in GB/T 1.1-2009. Please note that some of the contents of this document may involve patents. The issuing organization of this document is not responsible for identifying these patents. This standard is proposed and managed by the National Information Security Standardization Technical Committee (SAC/TC260). This standard was drafted. The Third Institute of the Ministry of Public Security, the Network Security Bureau of the Ministry of Public Security, Zhuhai Hongrui Software Technology Co., Ltd., Beijing Tiandi Hexing Technology Co., Ltd., Shanghai Sanshi Defender Information Security Co., Ltd., Beijing Shenzhou Lvmeng Information Security Technology Co., Ltd. China Information Security Research Institute Co., Ltd., Beijing Tianrongxin Network Security Technology Co., Ltd., China Electronics Technology Standardization Institute, Jinan Huahan Electric Technology Co., Ltd., Beijing Heli System Engineering Co., Ltd., Shanghai Electric Power College. The main drafters of this standard. Zou Chunming, Shen Qingyi, Liu Rui, Lu Yi, Lu Lei, Fan Chunling, Tian Yuan, Meng Shuang, Yu You, Gu Jian, Kang Tianjiao, Wang Yong, Liu Zhiyong, Chen Minchao, Jin Guangyu, Ni Hua, Ye Xiaohu, Wang Xiaopeng, Zhou Wenqi, Lei Xiaofeng, Fan Kefeng, Yao Xiangzhen, Li Lin, Zhou Ruikang, Zhu Yiming, Yang Chen.introductionWith the deep integration of industrialization and informatization, security threats from information networks are gradually causing great security to industrial control systems. Full-threat, general-purpose security audit products appear to be incapable of facing the security protection of industrial control systems, so there is an urgent need for one that can be applied Safety audit products for industrial control environments provide safety protection for industrial control systems. The main differences between security audit products and general security audit products used in industrial control environments are. ---General security audit products are mainly analyzed and recorded for general protocols applied to the Internet. For industrial control environments In addition to being able to analyze some of the Internet's general protocols, security audit products should also have a deep interpretation of industrial control protocols. Ability without the need for a general protocol that will not be used in industrial control systems such as email. --- Security audit products for industrial control environments may have some components deployed in an industrial field environment, so The product needs to have a higher environmental adaptability. ---In industrial control environment, the flow is usually relatively small, the flow type is relatively fixed, and the reliability is higher. It is used in industrial control loops. Security audit products support full traffic auditing and require support for whitelisting of audit information analysis. Information Security Technology Industrial Control System Network Audit Product safety technical requirements1 ScopeThis standard specifies the safety technical requirements for industrial control system network audit products, including safety function requirements, their own safety requirements and safety. Full security requirements. This standard applies to the design, production and testing of network audit products for industrial control systems.2 Normative referencesThe following documents are indispensable for the application of this document. For dated references, only dated versions apply to this article. Pieces. For undated references, the latest edition (including all amendments) applies to this document. GB/T 2423.5-1995 Environmental testing for electric and electronic products - Part 2. Test methods Test Ea and guide. Impact GB/T 2423.8-1995 Environmental testing of electric and electronic products - Part 2. Test method test Ed. Free fall GB/T 2423.10-2008 Environmental testing of electric and electronic products - Part 2. Test method test Fc. Vibration (sinusoidal) GB/T 4208-2017 enclosure protection grade (IP code) GB 4824-2013 Industrial, scientific and medical (ISM) radio frequency equipment disturbance characteristics limits and methods of measurement GB/T 9254-2008 Radio disturbance limits and methods of measurement for information technology equipment GB/T 13729-2002 Telecontrol terminal equipment GB/T 15153.1-1998 Telecontrol equipment and systems - Part 2. Working conditions - Part 1. Power supply and electromagnetic compatibility GB/T 17214.4-2005 Working conditions for measuring and control devices - Part 4. Corrosion and erosion GB/T 17626.2-2018 Electromagnetic compatibility test and measurement technology Electrostatic discharge immunity test GB/T 17626.3-2016 Electromagnetic compatibility test and measurement technology RF electromagnetic field radiation immunity test GB/T 17626.4-2018 Electromagnetic compatibility test and measurement technology Electrical fast transient burst immunity test GB/T 17626.5-2008 Electromagnetic compatibility test and measurement technology Surge (impact) immunity test GB/T 17626.6-2017 Electromagnetic compatibility test and measurement technology Conducted disturbance immunity of RF field induction GB/T 17626.8-2006 Electromagnetic compatibility test and measurement technology Power frequency magnetic field immunity test GB/T 17626.10-2017 Electromagnetic compatibility test and measurement technique Damping oscillating magnetic field immunity test GB/T 17626.11-2008 Electromagnetic compatibility test and measurement techniques Immunity to voltage dips, short interruptions and voltage changes test GB/T 17626.12-2013 Electromagnetic compatibility test and measurement technology ringing wave immunity test GB/T 17626.16-2007 Electromagnetic compatibility test and measurement technology 0Hz~150kHz common mode conducted disturbance immunity test GB/T 17626.17-2005 Electromagnetic compatibility test and measurement technology DC power input port ripple immunity test GB/T 17626.18-2016 Electromagnetic compatibility test and measurement technology Damping oscillator wave immunity test GB/T 17626.29-2006 Electromagnetic compatibility test and measurement technology DC power input port voltage dip, short interruption and Immunity test for voltage changes GB/T 20945-2013 Information security technology information system security audit product technical requirements and test evaluation methods GB/T 25069-2010 Information Security Technology Terminology GB/T 32919-2016 Information Security Technology Industrial Control System Safety Control Application Guide GB/T 37941-2019 (Information Security Technology Industrial Control System Network Audit Product Security Technical Requirements) ICS 35.040 L80 National Standards of People's Republic of China Information Security Technology Industrial Control System Network Audit Product safety technical requirements Informationsecuritytechnology-Securitytechnicalrequirementsofindustrial Controlsystemnetworkauditproducts Published on.2019-08-30 2020-03-01 implementation State market supervision and administration China National Standardization Administration issued Content Foreword III Introduction IV 1 Scope 1 2 Normative references 1 3 Terms and Definitions 2 4 Abbreviations 2 5 Product Description 2 6 Safety technical requirements 2 6.1 Basic level safety technical requirements 2 6.1.1 Security function requirements 2 6.1.2 Self-safety requirements 5 6.1.3 Security requirements 6 6.2 Enhanced Security Technical Requirements 8 6.2.1 Security function requirements 8 6.2.2 Self-safety requirements 12 6.2.3 Security requirements 14 Appendix A (informative) Application of Network Control Products for Industrial Control Systems 17 Appendix B (Normative) Environmental Adaptability Requirements 18 Reference 25ForewordThis standard was drafted in accordance with the rules given in GB/T 1.1-2009. Please note that some of the contents of this document may involve patents. The issuing organization of this document is not responsible for identifying these patents. This standard is proposed and managed by the National Information Security Standardization Technical Committee (SAC/TC260). This standard was drafted. The Third Institute of the Ministry of Public Security, the Network Security Bureau of the Ministry of Public Security, Zhuhai Hongrui Software Technology Co., Ltd., Beijing Tiandi Hexing Technology Co., Ltd., Shanghai Sanshi Defender Information Security Co., Ltd., Beijing Shenzhou Lvmeng Information Security Technology Co., Ltd. China Information Security Research Institute Co., Ltd., Beijing Tianrongxin Network Security Technology Co., Ltd., China Electronics Technology Standardization Institute, Jinan Huahan Electric Technology Co., Ltd., Beijing Heli System Engineering Co., Ltd., Shanghai Electric Power College. The main drafters of this standard. Zou Chunming, Shen Qingyi, Liu Rui, Lu Yi, Lu Lei, Fan Chunling, Tian Yuan, Meng Shuang, Yu You, Gu Jian, Kang Tianjiao, Wang Yong, Liu Zhiyong, Chen Minchao, Jin Guangyu, Ni Hua, Ye Xiaohu, Wang Xiaopeng, Zhou Wenqi, Lei Xiaofeng, Fan Kefeng, Yao Xiangzhen, Li Lin, Zhou Ruikang, Zhu Yiming, Yang Chen.introductionWith the deep integration of industrialization and informatization, security threats from information networks are gradually causing great security to industrial control systems. Full-threat, general-purpose security audit products appear to be incapable of facing the security protection of industrial control systems, so there is an urgent need for one that can be applied Safety audit products for industrial control environments provide safety protection for industrial control systems. The main differences between security audit products and general security audit products used in industrial control environments are. ---General security audit products are mainly analyzed and recorded for general protocols applied to the Internet. For industrial control environments In addition to being able to analyze some of the Internet's general protocols, security audit products should also have a deep interpretation of industrial control protocols. Ability without the need for a general protocol that will not be used in industrial control systems such as email. --- Security audit products for industrial control environments may have some components deployed in an industrial field environment, so The product needs to have a higher environmental adaptability. ---In industrial control environment, the flow is usually relatively small, the flow type is relatively fixed, and the reliability is higher. It is used in industrial control loops. Security audit products support full traffic auditing and require support for whitelisting of audit information analysis. Information Security Technology Industrial Control System Network Audit Product safety technical requirements1 ScopeThis standard specifies the safety technical requirements for industrial control system network audit products, including safety function requirements, their own safety requirements and safety. Full security requirements. This standard applies to the design, production and testing of network audit products for industrial control systems.2 Normative referencesThe following documents are indispensable for the application of this document. For dated references, only dated versions apply to this article. Pieces. For undated references, the latest edition (including all amendments) applies to this document. GB/T 2423.5-1995 Environmental testing for electric and electronic products - Part 2. Test methods Test Ea and guide. Impact GB/T 2423.8-1995 Environmental testing of electric and electronic products - Part 2. Test method test Ed. Free fall GB/T 2423.10-2008 Environmental testing of electric and electronic products - Part 2. Test method test Fc. Vibration (sinusoidal) GB/T 4208-2017 enclosure protection grade (IP code) GB 4824-2013 Industrial, scientific and medical (ISM) radio frequency equipment disturbance characteristics limits and methods of measurement GB/T 9254-2008 Radio disturbance limits and methods of measurement for information technology equipment GB/T 13729-2002 Telecontrol terminal equipment GB/T 15153.1-1998 Telecontrol equipment and systems - Part 2. Working conditions - Part 1. Power supply and electromagnetic compatibility GB/T 17214.4-2005 Working conditions for measuring and control devices - Part 4. Corrosion and erosion GB/T 17626.2-2018 Electromagnetic compatibility test and measurement technology Electrostatic discharge immunity test GB/T 17626.3-2016 Electromagnetic compatibility test and measurement technology RF electromagnetic field radiation immunity test GB/T 17626.4-2018 Electromagnetic compatibility test and measurement technology Electrical fast transient burst immunity test GB/T 17626.5-2008 Electromagnetic compatibility test and measurement technology Surge (impact) immunity test GB/T 17626.6-2017 Electromagnetic compatibility test and measurement technology Conducted disturbance immunity of RF field induction GB/T 17626.8-2006 Electromagnetic compatibility test and measurement technology Power frequency magnetic field immunity test GB/T 17626.10-2017 Electromagnetic compatibility test and measurement technique Damping oscillating magnetic field immunity test GB/T 17626.11-2008 Electromagnetic compatibility test and measurement techniques Immunity to voltage dips, short interruptions and voltage changes test GB/T 17626.12-2013 Electromagnetic compatibility test and measurement technology ringing wave immunity test GB/T 17626.16-2007 Electromagnetic compatibility test and measurement technology 0Hz~150kHz common mode conducted disturbance immunity test GB/T 17626.17-2005 Electromagnetic compatibility test and measurement technology DC power input port ripple immunity test GB/T 17626.18-2016 Electromagnetic compatibility test and measurement technology Damping oscillator wave immunity test GB/T 17626.29-2006 Electromagnetic compatibility test and measurement technology DC power input port voltage dip, short interruption and Immunity test for voltage changes GB/T 20945-2013 Information security technology information system security audit product technical requirements and test evaluation methods GB/T 25069-2010 Information Security Technology Terminology GB/T 32919-2016 Information Security Technology Industrial Control System Safety Control Application Guide ......Source: Above contents are excerpted from the full-copy PDF -- translated/reviewed by: www.ChineseStandard.net / Wayne Zheng et al. Tips & Frequently Asked Questions:Question 1: How long will the true-PDF of English version of GB/T 37941-2019 be delivered?Answer: The full copy PDF of English version of GB/T 37941-2019 can be downloaded in 9 seconds, and it will also be emailed to you in 9 seconds (double mechanisms to ensure the delivery reliably), with PDF-invoice.Question 2: Can I share the purchased PDF of GB/T 37941-2019_English with my colleagues?Answer: Yes. The purchased PDF of GB/T 37941-2019_English will be deemed to be sold to your employer/organization who actually paid for it, including your colleagues and your employer's intranet.Question 3: Does the price include tax/VAT?Answer: Yes. Our tax invoice, downloaded/delivered in 9 seconds, includes all tax/VAT and complies with 100+ countries' tax regulations (tax exempted in 100+ countries) -- See Avoidance of Double Taxation Agreements (DTAs): List of DTAs signed between Singapore and 100+ countriesQuestion 4: Do you accept my currency other than USD?Answer: Yes. www.ChineseStandard.us -- GB/T 37941-2019 -- Click this link and select your country/currency to pay, the exact amount in your currency will be printed on the invoice. Full PDF will also be downloaded/emailed in 9 seconds.How to buy and download a true PDF of English version of GB/T 37941-2019?A step-by-step guide to download PDF of GB/T 37941-2019_EnglishStep 1: Visit website https://www.ChineseStandard.net (Pay in USD), or https://www.ChineseStandard.us (Pay in any currencies such as Euro, KRW, JPY, AUD).Step 2: Search keyword "GB/T 37941-2019". Step 3: Click "Add to Cart". If multiple PDFs are required, repeat steps 2 and 3 to add up to 12 PDFs to cart. Step 4: Select payment option (Via payment agents Stripe or PayPal). Step 5: Customize Tax Invoice -- Fill up your email etc. Step 6: Click "Checkout". Step 7: Make payment by credit card, PayPal, Google Pay etc. After the payment is completed and in 9 seconds, you will receive 2 emails attached with the purchased PDFs and PDF-invoice, respectively. Step 8: Optional -- Go to download PDF. Step 9: Optional -- Click Open/Download PDF to download PDFs and invoice. See screenshots for above steps: Steps 1~3 Steps 4~6 Step 7 Step 8 Step 9 |