Overview
ISO/TS 21719-1:2018 - "Electronic fee collection - Personalization of on‑board equipment (OBE) - Part 1: Framework" defines a media‑independent framework for personalizing EFC (electronic fee collection) on‑board equipment. The technical specification describes the overall personalization process, the types of personalization assets (application data, application keys, vehicle data), and the functional primitives used between Personalization Equipment (PE), a Central System and the OBE. It is focused on the interface and functional behaviour needed to populate and secure application data inside in‑vehicle devices used for tolling, charging, localization augmentation and compliance checking.
Key topics and technical requirements
- Personalization overview: Process for transferring user and vehicle related data into EFC application structures that already exist in the OBE. Assumes initial security keys are present in the OBE prior to personalization.
- Personalization assets: Defines three asset classes - application data (service and contract info), application keys (access and authentication keys), and vehicle data (vehicle characteristics).
- System architecture: Roles and interfaces among Central System, Personalization Equipment (PE) and OBE; security functions and key storage considerations.
- EFC personalization functions: Functional primitives that support media‑independent personalization. Central primitive is the Write operation (Write_request / Write_response) used to write assets into addressed data elements.
- Security functions:
- Access protection: OBE accepts writes only when valid access credentials accompany the personalization data.
- Application data encryption: Personalization payloads may be encrypted by PE/Central System and decrypted by the OBE to protect confidentiality and privacy.
- Authenticators and key usage: Security calculations use keys present before the Write_request; the spec allows random numbers and key diversifiers to strengthen security.
- Scope limits: Does not define exact message encodings per media, conformance/test procedures, legal/organizational arrangements, or how personalization is split between PE and central systems.
Applications and users
ISO/TS 21719-1 is intended for stakeholders in intelligent transport systems and tolling ecosystems:
- Toll service providers and road charging operators planning secure personalization workflows
- OBE and PE manufacturers designing devices and interfaces for personalization
- System integrators and personalization agents outsourcing or implementing personalization services
- Security architects and ITS standardization teams defining key management and access control
- Regulators and procurement teams evaluating interoperability and vendor compliance
Practical uses include secure provisioning of contract IDs, payment credentials, vehicle binding, and keying material into in‑vehicle tolling devices across different communication media.
Related standards
Relevant standards and references mentioned in the specification:
- ISO 14906 (EFC application data model)
- ISO 12855, ISO 12813, ISO 13141 (EFC application definitions)
- EN 15509 (Interoperable Application Profile)
- CEN/TR 16152 (personalization assessment)
- ISO/TC 204 (Intelligent transport systems)