Overview
ISO/IEC 29167-12:2015 specifies a crypto suite for ECC-DH (Elliptic Curve Diffie-Hellman) tailored to RFID air interface communications. Intended for use with the ISO/IEC 18000 family of air interfaces, this standard defines how elliptic curve cryptography over binary fields is applied to provide tag authentication and secure session establishment between an RFID Tag and an Interrogator (reader). The document focuses on low-power, low-footprint implementations commonly used in HF/UHF passive RFID systems.
Key Topics and Technical Requirements
- Crypto suite definition: A common ECC-DH crypto suite aligned with existing RFID air interfaces, enabling secure Diffie-Hellman–based authentication.
- Elliptic curve parameters: Specification of curve parameter usage for ECC over binary fields suitable for constrained RFID devices.
- Authentication methods: Multiple Tag Authentication Methods (TAM1.0, TAM1.1, TAM1.2, TAM1.3) and message/response formats are defined, allowing devices to support one or more methods and declare supported subsets.
- Protocol elements: State diagrams, initialization/reset procedures, message parsing and transmission order to ensure consistent air interface behavior.
- Certificate handling: Certificate memory model, compressed and X.509 certificate formats, and procedures for certificate read/write and reconstruction.
- Random number generation & key management: Guidance for RNG, key tables, and secure key update mechanisms appropriate for RFID constraints.
- Error handling and conformance: Normative annexes covering state transitions, error conditions, and conformance claims for Tags and Interrogators.
- Air interface specifics: Integration notes for applying the crypto suite over various ISO/IEC 18000 air interfaces.
Practical Applications and Who Uses This Standard
- RFID Tag manufacturers designing secure passive HF/UHF tags that require low-power public-key authentication.
- Reader/interrogator vendors implementing interoperable ECC-DH authentication and secure session setup.
- System integrators and solution architects deploying asset tracking, supply-chain, access control, or anti-counterfeiting systems that require cryptographic tag authentication.
- Test labs and certification bodies evaluating conformance to RFID security requirements and interoperability across air interfaces.
- Standards committees and security researchers referencing consistent ECC-DH mechanisms for air interface security.
Related Standards
- ISO/IEC 29167 (other parts) - e.g., Part 10 (AES-128), Part 11 (PRESENT-80), Part 16 (ECDSA-ECDH)
- ISO/IEC 18000 series - RFID air interface standards
- X.509 - certificate formats referenced for certificate reconstruction and storage
ISO/IEC 29167-12:2015 helps ensure interoperable, standardized ECC-DH authentication for RFID air interfaces, enabling stronger tag security while accounting for the power and size constraints of passive RFID devices. Keywords: ISO/IEC 29167-12:2015, RFID security, ECC-DH, elliptic curve cryptography, air interface, tag authentication, ISO/IEC 18000.