GB/T 25320.4-2024 Power systems management and associated information exchange—Data and communications security—Part 4:Profiles including MMS and derivatives
GB/T 25320.4-2024 Power systems management and associated information exchange—Data and communications security—Part 4:Profiles including MMS and derivatives
Basic Information
Scope
1.1 Overview
This document extends the scope of GB/Z 25320.4—2010 [1], specifies a compatibility mode—which provides interoperability with implementations based on GB/Z 25320.4—2010—and defines an extended functionality called the native mode.
1) The number in brackets refers to the reference.
This document clarifies the security requirements of the transport layer and the application layer. GB/Z 25320.4—2010 primarily provides limited support for authentication during the handshake of MMS-based applications at the application layer. This document also provides support for extended integrity and authentication during the handshake phase and data transmission phase, manages shared keys and encrypts data transmission at the application layer, and provides end-to-end security (E2E) with zero or multiple intermediate entities. GB/Z 25320.4—2010 only supports MMS-based systems, i.e., systems using the Open Systems Interconnection (OSI) protocol stack. This document also supports application protocols using other protocol stacks, such as the Internet Protocol Suite (see 4.1). This support extends to protecting application protocols encoded in XML. This extended security at the application layer is called E2E security.