Overview
ISO/IEC 29192-1:2012 - Information technology - Security techniques - Lightweight cryptography - Part 1: General - defines the foundational terms, requirements and classification rules for lightweight cryptographic mechanisms targeted at constrained environments. This first part of ISO/IEC 29192 sets the security, classification and implementation requirements that subsequent parts (block ciphers, stream ciphers, asymmetric mechanisms) must follow. It is intended to help standardize cryptography for devices with limitations in chip area, energy, memory, bandwidth and execution time.
Key topics and technical requirements
- Terms and definitions: Clear definitions for core concepts such as chip area, energy consumption, program code size, RAM size, latency, security strength, and side-channel attack.
- Categories of constraints: Identifies five constraint categories relevant to lightweight cryptography: chip area, energy consumption, program code size & RAM, communication bandwidth, and execution time.
- Security requirements: Defines security strength in bits and establishes 80-bit security as the minimum for lightweight cryptography within this standard. It emphasizes correct usage limits (e.g., safe data volumes per key) and notes that side-channel countermeasures are important but are outside the standard’s normative scope.
- Classification requirements: Mechanisms must be tailored and evidenced for the specific constraint categories they claim to address. Claims require theoretical justification and, where given, verifiable implementation evidence.
- Implementation requirements: Hardware measurements use gate equivalents (GE) for chip area and provide metrics such as cycles, bits per cycle, power, energy, energy per bit, and target technology. Software constraints focus on program code size and RAM needs.
- Supporting material: Annexes include selection criteria (Annex A), practical metrics and measurement guidance for hardware (Annex B, C) and gate equivalent information (Annex D).
Applications and users
ISO/IEC 29192-1:2012 is intended for practitioners and organizations designing or selecting cryptography for constrained devices, including:
- RFID tags and contactless smart cards
- Embedded/sensor networks and Body Area Networks (healthcare)
- Secure batteries and low-power IoT devices
- Security architects, device manufacturers, cryptographic implementers, and standards bodies comparing lightweight mechanisms
Related standards
ISO/IEC 29192 intersects with and complements existing standards such as ISO/IEC 18033, ISO/IEC 9798, and ISO/IEC 11770. Subsequent parts of ISO/IEC 29192 specify specific lightweight block ciphers, stream ciphers, and asymmetric mechanisms.
Keywords: ISO/IEC 29192-1:2012, lightweight cryptography, constrained environments, chip area, gate equivalents, energy consumption, program code size, RAM, communication bandwidth, security strength, side-channel attacks.