EU: NeTEx - Secure Wireless Internet (EU)

Description:

This solution is used within the E.U.. It combines standards associated with EU: NeTEx with those for I-M: Secure Wireless Internet (EU). The EU: NeTEx standards include upper-layer standards required to implement C2C information flows for network, timetable, and fare information. The I-M: Secure Wireless Internet (EU) standards include lower-layer standards that support secure communications between two entities, either or both of which may be mobile devices, but they must be stationary or only moving within wireless range of a single wireless access point (e.g., a parked car). Security is based on X.509 certificates. A non-mobile (if any) endpoint may connect to the service provider using any Internet connection method.

Relevant Regions:

Comm Profile: I-M: Secure Wireless Internet (EU)

Comm Class: WAN - Wide Area Network

Standards in Profile:
LevelStandard
AccessWireless Internet Alternatives (EU)
MgmtBundle: SNMPv3 MIB
SecuritySecure Session Alternatives
TransNetInternet Transport Alternatives
TransNetIP Alternatives

Data Profile: EU: NeTEx

Standards in Profile:
LevelStandard
FacilitiesCEN 16614-1 PublicTrans - NeTEx - Net Topology Xchange
ITS Application EntityCEN 12896-1: Transmodel Common Concepts
ITS Application EntityCEN 12896-2: Transmodel Public Transport Network
ITS Application EntityCEN 12896-3: Transmodel Timing Information
ITS Application EntityCEN 12896-5: Transmodel Fare Management
ITS Application EntityCEN 12896-6: Transmodel Passenger Information
ITS Application EntityCEN 16614-2 PublicTrans - NeTEx - Timetables Xchange
ITS Application EntityCEN 16614-3 PublicTrans - NeTEx - Fares Xchange

Solution Issues Severity: 6

The severity issue score calculation only includes issues associated with standards that are included by default.

Solution Issues:

DefaultSeverityNameTypeDescription
FalseMediumOption not standardizedStandardization GapThe option set includes at least one option that is not (yet) defined in a standard.
FalseMediumUncertainty about trust revocation mechanismSecurity GapThe mechanisms used to prevent bad actors from sending authorized messages is unproven.
TrueMediumOutdated security referenceSecurity GapThe standard solution includes an outdated security reference.
TrueMediumSecure data access not providedSecurity GapThe solution does not define rules on how the application entity authenticates requests to accept or provide data.

Solution to Triples

SourceFlowDestination
Transit Management Center transit schedule information Transit Vehicle OBE