Overview
ISO/IEC 30118-11:2021 - "Information technology - Open Connectivity Foundation (OCF) Specification - Part 11: Device to cloud services specification" defines the device‑to‑cloud extensions of the OCF Core. It extends ISO/IEC 30118-1 to meet OCF Cloud requirements by specifying new Resource Types and any necessary extensions to core capabilities. The standard aligns OCF Cloud architecture with cloud reference models and provides detailed interaction and operational flows for secure device registration, connectivity, and resource publication.
Key topics and requirements
- OCF Cloud architecture & alignment with ISO/IEC 17789 (cloud reference architecture) and 17788 (cloud vocabulary).
- Operational flows covering user account creation, mediator registration, device provisioning, device registration, connection lifecycle (connect, refresh, close), publishing links to the OCF Cloud Resource Directory (RD), and deregistration.
- Resource model including the OCF Cloud Resource Directory and CoAPCloudConf resource: definitions, CRUDN behaviours and state machine considerations.
- Functional interactions for onboarding, provisioning, resource publication, client registration, discovery, device management, and deregistration.
- Network & connectivity guidance, including CoAP-based interactions and references to CoAP over TCP/TLS/WebSockets (IETF RFC 8323).
- Security integration, cross-referenced with ISO/IEC 30118-2 (OCF Security) and OCF Cloud Security; OAuth 2.0 and Bearer token usage (RFC 6749, RFC 6750) are normative references.
- API documentation expectations: Annex A supplies OpenAPI/Swagger 2.0 definitions for resource types and RD behaviour.
Applications
ISO/IEC 30118-11:2021 is intended for practical IoT scenarios where devices require reliable, standardized cloud connectivity:
- Secure device-to-cloud connections for smart home devices (appliances, locks, cameras, sensors).
- Cloud-mediated device discovery and resource publication via a Resource Directory for remote control and monitoring.
- Mediator-based onboarding/provisioning workflows for constrained or legacy devices to register with an OCF Cloud.
- Interoperability across platforms and cloud providers using standardized Resource Types and OpenAPI specs.
Who should use this standard
- Device manufacturers implementing OCF-compliant cloud features.
- Cloud providers hosting OCF Cloud services and RD implementations.
- IoT platform developers and system integrators designing device onboarding, provisioning, and cloud APIs.
- Security architects ensuring OAuth and OCF Cloud security alignment.
- Standards bodies and implementers needing OpenAPI/Swagger definitions for interoperability testing.
Related standards
- ISO/IEC 30118-1 (Core specification)
- ISO/IEC 30118-2 (Security specification)
- ISO/IEC 17788, 17789 (Cloud vocabulary & reference architecture)
- IETF RFC 6749, 6750 (OAuth 2.0)
- IETF RFC 8323 (CoAP over TCP/TLS/WebSockets)
- OpenAPI / Swagger 2.0 (API definitions)
Keywords: ISO/IEC 30118-11:2021, OCF, device to cloud, IoT, Resource Directory, CoAPCloudConf, Resource Types, OAuth, OpenAPI, cloud interoperability.