Overview
ISO 9735-7:2002 specifies confidentiality rules for batch EDIFACT (Electronic Data Interchange for Administration, Commerce and Transport). It defines how EDIFACT structures - messages, packages, groups or entire interchanges - are protected by encryption at the application level. The standard is part of the ISO 9735 syntax family (syntax version number 4, release 01) and is intended to be used with other EDIFACT syntax and security parts.
Key topics and technical requirements
- Scope and conformance
- Applies to batch EDI confidentiality (message/package/group/interchange level).
- Conformance requires compatibility with ISO 9735 parts 1, 2, 5 and 10 and use of syntax version number “4” (and release “01” where applicable).
- Encryption and processing order
- Compression (if used) must be applied before encryption.
- The encrypted payload may be filtered for networks with restricted capabilities.
- Security header and trailer structure
- A defined security header segment group (USH, USA, optional USC/USR subgroup) identifies the confidentiality service, algorithms and parameters.
- The data encryption header (USD) and data encryption trailer (USU) enclose the encrypted payload; a security trailer (UST) and security result segment (USR) provide validation information.
- Algorithms and certificates
- The USA segment identifies the encryption/compression algorithm and technical parameters (modes, integrity options).
- Asymmetric algorithms are not specified directly in the primary USA header but are introduced via the USC certificate segment in the certificate segment group when needed.
- Integrity verification (when applied) is calculated over compressed data prior to encryption; location and parameters for integrity values are conveyed in the header.
- Interoperability details
- Standard leaves communications protocols outside its scope; it focuses on application-level syntax and message structuring for confidentiality.
Applications and users
ISO 9735-7 is used by organizations and professionals who need to protect batch EDI exchanges:
- EDI software vendors and system integrators implementing EDIFACT message confidentiality
- Security architects and compliance teams in logistics, retail, finance, and government
- Trading partners exchanging high-value or sensitive batch data over public or semi-trusted networks
- Managed EDI/outsourcing providers offering encrypted interchange services
Practical uses include message-level confidentiality for invoices, shipment manifests, customs declarations and other batch EDIFACT payloads where data privacy and regulatory compliance are required.
Related standards
- ISO 9735-1, -2, -5, -6, -10 (EDIFACT syntax rules and related security parts)
- ISO 9735 series (other parts for packaging, authentication and key management)
- ISO/IEC 10181-5 (Confidentiality framework)
Keywords: ISO 9735-7:2002, EDIFACT confidentiality, batch EDI security, encryption for EDI, security header segments, USH USA USC USD USU UST, UNB syntax version 4, EDI message encryption.