ITS Security Support Functional Area

Description

'ITS Security Support' provides communications and system security functions to the ITS Object, including privacy protection functions. It may include firewall, intrusion management, authentication, authorization, profile management, identity management, cryptographic key management. It may include a hardware security module and security management information base.

Included In

Fort Campbell CCTV Cameras
Fort Campbell Entry Gate Closure Barriers
CTS Fixed–Route Vehicles
CTS Transit Center CCTV Camera Surveillance
Fort Campbell Directorate of Emergency Services

Functional Requirements

IDRequirement
01The ITS Object shall obtain security policy information from the Cooperative Intelligent Transportation System Credentials Management System (CCMS).
02The ITS Object shall request enrollment credentials from the CCMS.
03The ITS Object shall obtain the CCMS' trust credentials.
04The ITS Object shall provide a mechanism for on–board applications to digitally sign messages using keys secured by the CCMS' trust authority.
05The ITS Object shall provide a mechanism for on–board applications to authenticate messages secured by the CCMS' trust authority.
06The ITS Object shall provide a mechanism for on–board applications to encrypt messages using keys secured by the CCMS' trust authority.
07The ITS Object shall provide a mechanism for on–board applications to decrypt messages using keys secured by the CCMS' trust authority.
08The ITS Object shall obtain a list of revoked credentials from the CCMS.
09The ITS Object shall make the list of revoked credentials available to on–board applications.
10The ITS Object shall maintain cryptographic secret information so that those secrets are accessible only to ITS Security Support, and not to any other Functional Object.
11The ITS Object shall request pseudonymous credentials from the CCMS.
12The ITS Object shall provide messages (that it receives) that indicate potential misbehavior/malfunction to the CCMS.
13The ITS Object shall request permissions from the Center that manages permissions requests.