Non-repudiation
Term · Cybersecurity · MLC-T-CYB-002874
1. A service that is used to provide assurance of the integrity and origin of data in such a way that the integrity and origin can be verified and validated by a third party as having originated from a specific entity in possession of the private key (i.e., the signatory).
2. The capability to protect against an individual falsely denying having performed a particular transaction.
3. Assurance that the sender of information is provided with proof of delivery and the recipient is provided with proof of the sender’s identity, so neither can later deny having processed the information.
4. Assurance the sender of data is provided with proof of delivery and the recipient is provided with proof of the sender’s identity, so neither can later deny having processed the data.
5. Protection against an individual falsely denying having performed a particular action. Provides the capability to determine whether a given individual took a particular action such as creating information, sending a message, approving information, and receiving a message.
6. A service that may be afforded by the appropriate application of a digital signature. Non-repudiation refers to the assurance that the owner of a signature key pair that was capable of generating an existing signature corresponding to certain data cannot convincingly deny having signed the data.
7. A service using a digital signature that is used to support a determination of whether a message was actually signed by a given entity.
8. In a general information security context, assurance that the sender of information is provided with proof of delivery, and the recipient is provided with proof of the sender's identity, so neither can later deny having process the information .
9. A service that is used to provide assurance of the integrity and origin of data in such a way that the integrity and origin can be verified by a third party as having originated from a specific entity in possession of the private key of the claimed signatory. In a general information security context, assurance that the sender of information is provided with proof of delivery and the recipient is provided with proof of the sender’s identity, so neither can later deny having processed the information.
10. A service using a digital signature that is used to support a determination by a third party of whether a message was actually signed by a given entity.
11. Protection against an individual who falsely denies having performed a certain action and provides the capability to determine whether an individual took a certain action, such as creating information, sending a message, approving information, or receiving a message.
12. The inability to deny responsibility for performing a specific act.
13. A service that is used to provide assurance of the integrity and origin of data in such a way that the integrity and origin can be verified by a third party as having originated from a specific entity in possession of the private key of the claimed signatory.
| Identifier | MLC-T-CYB-002874 |
|---|---|
| Field | Cybersecurity |
| References | FIPS 186-5; FIPS 204; FIPS 205 from FIPS 186-5; NIST SP 800-63-4; NIST SP 800-63A-4; NIST SP 800-18 Rev. 1 [Superseded] from CNSSI 4009; NIST SP 800-60 Vol. 1 Rev. 1 from CNSSI 4009 (Adapted); NIST SP 800-60 Vol. 2 Rev. 1 from CNSSI 4009 (Adapted); NIST SP 800-59 from CNSSI 4009; CNSSI 4009-2015 from NIST SP 800-53 Rev. 4; NIST SP 800-53 Rev. 4 [Superseded]; NIST SP 800-133 [Superseded]; NIST SP 800-57 Part 1 Rev. 4 [Superseded]; NIST SP 800-57 Part 2 Rev.1; NIST SP 800-175B Rev. 1; NIST SP 800-57 Part 2 Rev.1; NIST SP 800-57 Part 2 [Superseded] from NIST SP 800-53; NIST SP 800-57 Part 1 Rev. 5; NIST SP 800-53 Rev. 5; NISTIR 4734; NIST SP 800-57 Part 1 Rev. 3 [Superseded]; NIST CSRC Glossary |
| See also | Data origin authentication |
Record as JSON
{
"id": "MLC-T-CYB-002874",
"term": "Non-repudiation",
"field": "Cybersecurity",
"definition": "1. A service that is used to provide assurance of the integrity and origin of data in such a way that the integrity and origin can be verified and validated by a third party as having originated from a specific entity in possession of the private key (i.e., the signatory).\n\n2. The capability to protect against an individual falsely denying having performed a particular transaction.\n\n3. Assurance that the sender of information is provided with proof of delivery and the recipient is provided with proof of the sender’s identity, so neither can later deny having processed the information.\n\n4. Assurance the sender of data is provided with proof of delivery and the recipient is provided with proof of the sender’s identity, so neither can later deny having processed the data.\n\n5. Protection against an individual falsely denying having performed a particular action. Provides the capability to determine whether a given individual took a particular action such as creating information, sending a message, approving information, and receiving a message.\n\n6. A service that may be afforded by the appropriate application of a digital signature. Non-repudiation refers to the assurance that the owner of a signature key pair that was capable of generating an existing signature corresponding to certain data cannot convincingly deny having signed the data.\n\n7. A service using a digital signature that is used to support a determination of whether a message was actually signed by a given entity.\n\n8. In a general information security context, assurance that the sender of information is provided with proof of delivery, and the recipient is provided with proof of the sender's identity, so neither can later deny having process the information .\n\n9. A service that is used to provide assurance of the integrity and origin of data in such a way that the integrity and origin can be verified by a third party as having originated from a specific entity in possession of the private key of the claimed signatory. In a general information security context, assurance that the sender of information is provided with proof of delivery and the recipient is provided with proof of the sender’s identity, so neither can later deny having processed the information.\n\n10. A service using a digital signature that is used to support a determination by a third party of whether a message was actually signed by a given entity.\n\n11. Protection against an individual who falsely denies having performed a certain action and provides the capability to determine whether an individual took a certain action, such as creating information, sending a message, approving information, or receiving a message.\n\n12. The inability to deny responsibility for performing a specific act.\n\n13. A service that is used to provide assurance of the integrity and origin of data in such a way that the integrity and origin can be verified by a third party as having originated from a specific entity in possession of the private key of the claimed signatory.",
"see_also": [
"data origin authentication"
],
"references": [
"FIPS 186-5; FIPS 204; FIPS 205 from FIPS 186-5",
"NIST SP 800-63-4; NIST SP 800-63A-4",
"NIST SP 800-18 Rev. 1 [Superseded] from CNSSI 4009; NIST SP 800-60 Vol. 1 Rev. 1 from CNSSI 4009 (Adapted); NIST SP 800-60 Vol. 2 Rev. 1 from CNSSI 4009 (Adapted)",
"NIST SP 800-59 from CNSSI 4009",
"CNSSI 4009-2015 from NIST SP 800-53 Rev. 4; NIST SP 800-53 Rev. 4 [Superseded]",
"NIST SP 800-133 [Superseded]",
"NIST SP 800-57 Part 1 Rev. 4 [Superseded]; NIST SP 800-57 Part 2 Rev.1; NIST SP 800-175B Rev. 1",
"NIST SP 800-57 Part 2 Rev.1",
"NIST SP 800-57 Part 2 [Superseded] from NIST SP 800-53",
"NIST SP 800-57 Part 1 Rev. 5",
"NIST SP 800-53 Rev. 5",
"NISTIR 4734",
"NIST SP 800-57 Part 1 Rev. 3 [Superseded]",
"NIST CSRC Glossary"
],
"url": "https://mlchart.com/terminology/cybersecurity/non-repudiation/"
}
Record 2,858 of 4,669 in Cybersecurity terminology (MLC-0102). Request the full dataset.