ISO/IEC 9797-1:2011/Amd 1:2023
(Amendment)Information technology - Security techniques - Message Authentication Codes (MACs) - Part 1: Mechanisms using a block cipher - Amendment 1
Information technology - Security techniques - Message Authentication Codes (MACs) - Part 1: Mechanisms using a block cipher - Amendment 1
Technologies de l'information — Techniques de sécurité — Codes d'authentification de message (MAC) — Partie 1: Mécanismes utilisant un chiffrement par blocs — Amendement 1
General Information
- Status
- Published
- Publication Date
- 24-Aug-2023
- Drafting Committee
- ISO/IEC JTC 1/SC 27/WG 2 - Cryptography and security mechanisms
- Current Stage
- 6060 - International Standard published
- Start Date
- 25-Aug-2023
- Due Date
- 11-Mar-2024
- Completion Date
- 25-Aug-2023
Relations
- Effective Date
- 14-Aug-2021
Overview
ISO/IEC 9797-1:2011/Amd 1:2023 is an important amendment to the international standard on Information technology security techniques specifically addressing Message Authentication Codes (MACs). This standard focuses on Part 1 of the series, which covers mechanisms that use a block cipher to generate and verify MACs. Developed jointly by ISO and IEC under the Subcommittee SC 27, this amendment enhances the original 2011 edition by refining definitions, updating guidance on cryptographic primitives, and ensuring stronger security practices for message authentication.
This document is essential for professionals and organizations implementing secure communication protocols, cryptographic systems, and data integrity solutions in IT infrastructures.
Key Topics
Block Cipher-based MAC Mechanisms
The standard details algorithms that utilize block ciphers as the core primitive for generating MACs, establishing a trusted approach for validating message authenticity and integrity.Updated Cryptographic Guidance
This amendment highlights the deprecation of MAC Algorithm 3 for use in new applications due to its foundation on outdated cryptographic primitives, promoting migration to more secure options.Notation and Definitions
Clarifications are made to the symbolic representations used in the standard, such as the introduction ofKespecifically denoting the block cipher key in MAC algorithms for clarity.Security Considerations
Changes address the overestimated security benefits of certain algorithm enhancements, with specific removals and warnings aimed at preventing insecure implementations.Standardization and Compliance Procedures
The amendment reiterates the alignment with ISO/IEC Directives and provides guidance concerning intellectual property and patent considerations in MAC algorithm use.
Applications
Data Integrity and Authentication
ISO/IEC 9797-1:2011/Amd 1:2023 is widely applied in ensuring reliable message authentication across secure communication protocols, including banking transactions, telecommunications, and data storage.Cryptographic Module Development
Hardware and software developers use this standard to design and certify MAC modules that comply with international security benchmarks, crucial for cryptographic libraries and embedded security devices.Secure Network Protocols
Network security standards and protocols integrate block cipher-based MAC algorithms standardized here to verify the authenticity of data packets and prevent tampering.Government and Regulatory Compliance
Entities requiring adherence to international information security standards employ this document to meet compliance with cybersecurity policies and frameworks.
Related Standards
For comprehensive security implementation, ISO/IEC 9797-1:2011/Amd 1:2023 should be used alongside related standards in the ISO/IEC 9797 series and other cybersecurity standards:
- ISO/IEC 9797-2 - Mechanisms using dedicated hash functions for MACs
- ISO/IEC 9797-3 - Mechanisms based on universal hash functions
- ISO/IEC 27001 - Information security management systems
- ISO/IEC 19790 - Security requirements for cryptographic modules
- ISO/IEC Directives, Part 1 and Part 2 - Standard development and editorial rules for consistency in documentation
These linked standards support a layered approach to message authentication and broader cybersecurity practices.
By following ISO/IEC 9797-1:2011/Amd 1:2023, organizations and developers ensure robust message authentication systems that leverage secure block cipher techniques, aligning with the latest international security protocols and advancing the integrity of digital communications.
Frequently Asked Questions
ISO/IEC 9797-1:2011/Amd 1:2023 is a standard published by the International Organization for Standardization (ISO). Its full title is "Information technology - Security techniques - Message Authentication Codes (MACs) - Part 1: Mechanisms using a block cipher - Amendment 1". This standard covers: Information technology - Security techniques - Message Authentication Codes (MACs) - Part 1: Mechanisms using a block cipher - Amendment 1
Information technology - Security techniques - Message Authentication Codes (MACs) - Part 1: Mechanisms using a block cipher - Amendment 1
ISO/IEC 9797-1:2011/Amd 1:2023 is classified under the following ICS (International Classification for Standards) categories: 35.030 - IT Security. The ICS classification helps identify the subject area and facilitates finding related standards.
ISO/IEC 9797-1:2011/Amd 1:2023 has the following relationships with other standards: It is inter standard links to ISO/IEC 9797-1:2011. Understanding these relationships helps ensure you are using the most current and applicable version of the standard.
ISO/IEC 9797-1:2011/Amd 1:2023 is available in PDF format for immediate download after purchase. The document can be added to your cart and obtained through the secure checkout process. Digital delivery ensures instant access to the complete standard document.
Standards Content (Sample)
INTERNATIONAL ISO/IEC
STANDARD 9797-1
Second edition
2011-03-01
AMENDMENT 1
2023-08
Information technology — Security
techniques — Message Authentication
Codes (MACs) —
Part 1:
Mechanisms using a block cipher
AMENDMENT 1
Technologies de l'information — Techniques de sécurité — Codes
d'authentification de message (MAC) —
Partie 1: Mécanismes utilisant un chiffrement par blocs
AMENDEMENT 1
Reference number
ISO/IEC 9797-1:2011/Amd. 1:2023(E)
© ISO/IEC 2023
ISO/IEC 9797-1:2011/Amd. 1:2023(E)
© ISO/IEC 2023
All rights reserved. Unless otherwise specified, or required in the context of its implementation, no part of this publication may
be reproduced or utilized otherwise in any form or by any means, electronic or mechanical, including photocopying, or posting on
the internet or an intranet, without prior written permission. Permission can be requested from either ISO at the address below
or ISO’s member body in the country of the requester.
ISO copyright office
CP 401 • Ch. de Blandonnet 8
CH-1214 Vernier, Geneva
Phone: +41 22 749 01 11
Email: copyright@iso.org
Website: www.iso.org
Published in Switzerland
ii
© ISO/IEC 2023 – All rights reserved
ISO/IEC 9797-1:2011/Amd. 1:2023(E)
Foreword
ISO (the International Organization for Standardization) and IEC (the International Electrotechnical
Commission) form the specialized system for worldwide standardization. National bodies that are
members of ISO or IEC participate in the development of International Standards through technical
committees established by the respective organization to deal with particular fields of technical
activity. ISO and IEC technical committees collaborate in fields of mutual interest. Other international
organizations, governmental and non-governmental, in liaison with ISO and IEC, also take part in the
work.
The procedures used to develop this document and those intended for its further maintenance
are described in the ISO/IEC Directives, Part 1. In particular, the different approval criteria
needed for the different types of document should be noted. This document was drafted in
accordance with the editorial rules of the ISO/IEC Directives, Part 2 (see www.iso.org/directives or
www.iec.ch/members_experts/refdocs).
ISO and IEC draw attention to the possibility that the implementation of this document may involve the
use of (a) patent(s). ISO and IEC
...










Questions, Comments and Discussion
Ask us and Technical Secretary will try to provide an answer. You can facilitate discussion about the standard in here.
Loading comments...