Home Cart Quotation About-Us
www.ChineseStandard.net
SEARCH

GA/T 671-2006 PDF English

US$280.00 · In stock · Download in 9 seconds
GA/T 671-2006: Information security technology - Technology requirement for terminal computer system of security classified protection
Delivery: 9 seconds. True-PDF full-copy in English & invoice will be downloaded + auto-delivered via email. See step-by-step procedure
Status: Obsolete
Standard IDUSDBUY PDFDeliveryStandard Title (Description)Status
GA/T 671-2006280 Add to Cart Auto, 9 seconds. Information security technology - Technology requirement for terminal computer system of security classified protection Obsolete

Similar standards

GB/T 37230   GB 13954   GA/T 543.23   

GA/T 671-2006: Information security technology - Technology requirement for terminal computer system of security classified protection


---This is an excerpt. Full copy of true-PDF in English version (including equations, symbols, images, flow-chart, tables, and figures etc.), auto-downloaded/delivered in 9 seconds, can be purchased online: https://www.ChineseStandard.net/PDF.aspx/GAT671-2006
GA ICS 35.040 A 90 Public Security Industry Standard of the People’s Republic of China Information security technology – Technology requirement for terminal computer system of security classified protection Issued on: DECEMBER 28, 2006 Implemented on: FEBRUARY 1, 2007 Issued by. The Ministry of Public Security of the People’s Republic of China.

Table of Contents

Foreword ... 4 Introduction ... 5 1 Scope ... 6 2 Normative references ... 6 3 Terms, definitions and abbreviations ... 6 3.1 Terms and definitions ... 6 3.2 Abbreviations ... 9 4 Technology requirements for security function ... 9 4.1 Physical security ... 9 4.1.1 Equipment security availability ... 9 4.1.2 Equipment protection against theft and destruction ... 9 4.1.3 High reliability of equipment ... 10 4.2 Operational security ... 10 4.2.1 System security detection and analysis ... 10 4.2.2 Security audit ... 11 4.2.3 Trusted chains ... 14 4.2.4 Protection during operation ... 15 4.2.5 Backup and fault recovery ... 16 4.2.6 Trusted time stamp ... 17 4.2.7 I/O interface configuration ... 17 4.3 Data security ... 17 4.3.1 Password support ... 17 4.3.2 Identification and discrimination ... 18 4.3.3 Discretionary access control ... 21 4.3.4 Marks ... 22 4.3.5 Mandatory access control ... 23 4.3.6 Data privacy protection ... 24 4.3.7 Data integrity protection ... 25 4.3.8 Trust service ... 25 4.3.9 Trusted path ... 26 5 Classified requirements for security technology of terminal computer system ... 26 5.1 Level I. User discretionary protection level ... 26 5.1.1 Security functional requirements ... 26 5.1.2 Security assurance requirements ... 29 5.2 Level II. System audit protection level ... 30 5.2.1 Security functional requirements ... 30 5.2.2 Security assurance requirements ... 35 5.3 Level III. Security marking protection level ... 37 5.3.1 Security functional requirements ... 37 5.3.2 Security assurance requirements ... 45 5.4 Level IV. Structured protection level ... 46 5.4.1 Security functional requirements ... 46 5.4.2 Security assurance requirements ... 55 5.5 Level V. Access verification protection level ... 57 5.5.1 Security functional requirements ... 57 5.5.2 Security assurance requirements ... 66 References ... 69 Information security technology – Technology requirement for terminal computer system of security classified protection

1 Scope

This Standard specifies the security technology requirements needed for the security classified protection of terminal computer system, and makes different technology requirements for each security protection level. This Standard applies to the design and realization of terminal computer system conducted according to the requirements for security protection level specified in the GB 17859-1999, and also provides a reference for the testing and management of terminal computer system conducted according to the requirements specified in the GB 17859-1999.

2 Normative references

The provisions in the following documents become the provisions of this Standard through reference in this Standard. For dated references, the subsequent amendments (excluding corrections) or revisions do not apply to this Standard. However, parties who reach an agreement based on this Standard are encouraged to study if the latest versions of these documents are applicable. For undated references, the latest versions apply to this Standard. GB/T 17859-1999 Classified criteria for security protection of computer information system GB/T 20271-2006 Information security technology – Common security techniques requirement for information system GB/T 20272-2006 Information security technology – Security techniques requirement for operating system

3 Terms, definitions and abbreviations

3.1 Terms and definitions The terms and definitions established in the GB 17859-1999, GB/T 20271-2006 and GB/T 20272-2006 AND the following ones apply to this Standard. equipment protection against theft and destruction of the terminal computer system is divided into. a) Equipment identification requirements. The equipment of the terminal computer system shall have obvious and non-removable identifications, so as to prevent the replacement and to facilitate the searching; b) Host physical security. The host of the terminal computer system shall have case encapsulation protection, so as to prevent the system damage caused by dropping and vibration; c) Requirements for equipment protection against theft and self-destruction. The equipment of the terminal computer system shall provide owners with controllable anti-theft alarm and system self-destruction functions. 4.1.3 High reliability of equipment According to the application requirements of special environments, the equipment’s high reliability of the terminal computer system is divided into. a) Waterproof requirement. The terminal computer system shall have high sealing property, so as to prevent water drops from entering; b) Anti-dropping and anti-vibration requirements. The terminal computer system shall have reinforced protection, so as to prevent the system damage caused by dropping and vibration; c) Requirements for the resistance to high and low temperature and pressure. The terminal computer system shall be able to adapt the environments with high and low temperature and pressure; d) Resistance to electromagnetic radiation and interference. The terminal computer system shall be able to resist the system security threats caused by electromagnetic interference and radiation. 4.2 Operational security 4.2.1 System security detection and analysis According to the different requirements of different security levels, the security detection and analysis of the terminal computer system is divided into. a) Security detection and analysis of the operating system. ASSESS the file permission, file host, network service settings, account settings, program authenticity, and general user-related security points and intrusion signs as an administrator from the aspect of terminal computer operating system, so as to detect and analyze the security of the operating system, to discover the existing potential security hazards, and to put forward the remedial measures. b) Security detection and analysis of the hardware system. CONDUCT the security detection to the hardware system supporting the terminal computer system operation. SCAN the specific security vulnerability related to the system operation and data protection in the hardware system, so as to analyze... ......

Source: Above contents are excerpted from the full-copy PDF -- translated/reviewed by: www.ChineseStandard.net / Wayne Zheng et al.
Image 1     Image 2     Image 3     

Tips & Frequently Asked Questions:

Question 1: How long will the true-PDF of English version of GA/T 671-2006 be delivered?Answer: The full copy PDF of English version of GA/T 671-2006 can be downloaded in 9 seconds, and it will also be emailed to you in 9 seconds (double mechanisms to ensure the delivery reliably), with PDF-invoice.

Question 2: Can I share the purchased PDF of GA/T 671-2006_English with my colleagues?Answer: Yes. The purchased PDF of GA/T 671-2006_English will be deemed to be sold to your employer/organization who actually paid for it, including your colleagues and your employer's intranet.

Question 3: Does the price include tax/VAT?Answer: Yes. Our tax invoice, downloaded/delivered in 9 seconds, includes all tax/VAT and complies with 100+ countries' tax regulations (tax exempted in 100+ countries) -- See Avoidance of Double Taxation Agreements (DTAs): List of DTAs signed between Singapore and 100+ countries

Question 4: Do you accept my currency other than USD?Answer: Yes. www.ChineseStandard.us -- GA/T 671-2006 -- Click this link and select your country/currency to pay, the exact amount in your currency will be printed on the invoice. Full PDF will also be downloaded/emailed in 9 seconds.

How to buy and download a true PDF of English version of GA/T 671-2006?

A step-by-step guide to download PDF of GA/T 671-2006_EnglishStep 1: Visit website https://www.ChineseStandard.net (Pay in USD), or https://www.ChineseStandard.us (Pay in any currencies such as Euro, KRW, JPY, AUD).
Step 2: Search keyword "GA/T 671-2006".
Step 3: Click "Add to Cart". If multiple PDFs are required, repeat steps 2 and 3 to add up to 12 PDFs to cart.
Step 4: Select payment option (Via payment agents Stripe or PayPal).
Step 5: Customize Tax Invoice -- Fill up your email etc.
Step 6: Click "Checkout".
Step 7: Make payment by credit card, PayPal, Google Pay etc. After the payment is completed and in 9 seconds, you will receive 2 emails attached with the purchased PDFs and PDF-invoice, respectively.
Step 8: Optional -- Go to download PDF.
Step 9: Optional -- Click Open/Download PDF to download PDFs and invoice.
See screenshots for above steps: Steps 1~3    Steps 4~6    Step 7    Step 8    Step 9