If you have difficulty in submitting comments on draft standards you can use a commenting template and email it to admin.start@bsigroup.com. The commenting template can be found here.

ISO/IEC JTC 1/SC 27 N 20273, ISO/IEC NP 4922-1 Information security - Secure multiparty computation - Part 1: General

Scope

The proposed International Standard specifies cryptographic mechanisms to compute a function on data while the data is kept secret, and their properties. The part 1 contains definitions and symbols common to all parts of this international standard. In particular, it defines the processes involved in those mechanisms, the participating parties, and the cryptographic properties.

Purpose

Secure multiparty computation is mechanisms to compute a function on encrypted data in a distributed setting where two or more parties are involved. Here, encryption means not only ordinary encryption specified in ISO/IEC 18033 but also sharing specified in ISO/IEC 19592. More precisely, data holders encrypt their data into multiple fragments, and several servers compute a function on the encrypted data while the data is kept encrypted, and a user can finally decrypt the computed data and obtain the result, such as statistics, without knowing the original data.

Secure multiparty computation has a wide range of applications since this mechanism is useful to utilize secret data. For example, consider the case in which a server aggregates data from several data holders. Without secure multiparty computation, the server can easily access the data itself, and the data risks being disclosed. If secure multiparty computation is used, the server aggregates encrypted data, and it therefore cannot access the data. Application examples are secure auction systems, secure analytics systems, secure infrastructure for data exchange, privacy preservingate machine learning, and virtual HSM.

The goal of this standard on secure multiparty computation is to remedy existing incompatibilities or inconsistently defined properties found in the academic literature, and to ease the real-world adoption of this technology. Specifically, the goal of “Part 1: General” is to lay the foundations for subsequent parts, such as security models by specifying and defining the common terminology and properties of such schemes.

Comment on proposal

Required form fields are indicated by an asterisk (*) character.


Please email further comments to: admin.start@bsigroup.com

Follow standard

You are now following this standard. Weekly digest emails will be sent to update you on the following activities:

You can manage your follow preferences from your Account. Please check your mailbox junk folder if you don't receive the weekly email.

Unfollow standard

You have successfully unsubscribed from weekly updates for this standard.

Error