EN 50600-2-5:2016
(Main)Information technology - Data centre facilities and infrastructures - Part 2-5: Security systems
Information technology - Data centre facilities and infrastructures - Part 2-5: Security systems
This European Standard addresses the physical security of data centres based upon the criteria and classifications for "availability", "security" and "energy efficiency enablement" within EN 50600-1. This European Standard provides designations for the data centres spaces defined in EN 50600-1. This European Standard specifies requirements and recommendations for those data centre spaces, and the systems employed within those spaces, in relation to protection against: a) unauthorized access addressing constructional, organizational and technological solutions; b) fire events igniting within data centres spaces; c) other events within or outside the data centre spaces, which would affect the defined level of protection. Safety and electromagnetic compatibility (EMC) requirements are outside the scope of this European Standard and are covered by other standards and regulations. However, information given in this European Standard may be of assistance in meeting these standards and regulations.
Informationstechnik - Einrichtungen und Infrastrukturen von Rechenzentren - Teil 2-5: Sicherungssysteme
Technologie de l’information - Installation et infrastructures de centres de traitement de données - Partie 2-5: Systèmes de sécurité
Cette Norme européenne s'applique à la sécurité physique des centres de traitement de données selon les critères et classifications de "disponibilité", de "sécurité" et de "validation d'efficacité énergétique" de l'EN 50600 1. Cette Norme européenne fournit des désignations pour les espaces de centre de traitement de données définis dans l'EN 50600 1. Cette Norme européenne spécifie les exigences et recommandations relatives à ces espaces de centre de traitement de données, ainsi que les systèmes qui y sont employés, par rapport à la protection contre: a) les accès non autorisés aux structures, aux solutions organisationnelles et technologiques; b) les incendies au sein d'espaces de centre de traitement de données; c) d'autres événements à l'intérieur ou à l'extérieur des espaces de centre de traitement de données, qui affectent le niveau de protection défini. Les exigences relatives à la sécurité et à la compatibilité électromagnétique (CEM) ne relèvent pas du domaine d'application de cette Norme européenne et sont couvertes par d'autres normes et réglementations. Les informations fournies dans cette Norme européenne peuvent toutefois s'avérer utiles pour satisfaire à ces normes et réglementations.
Informacijska tehnologija - Naprave in infrastruktura podatkovnega centra - 2-5. del: Varnostni sistemi
Ta evropski standard obravnava fizično zaščito podatkovnih centrov na podlagi meril in klasifikacij za »dostopnost«, »varnost« in »omogočanje energetske učinkovitosti« v okviru standarda EN 50600-1. Ta evropski standard podaja oznake za prostore podatkovnih centrov v skladu s standardom EN 50600-1. Ta evropski standard določa zahteve in priporočila za prostore podatkovnih centrov in varnostne sisteme, ki se uporabljajo v teh prostorih, glede zaščite pred:
a) nepooblaščenim dostopom v povezavi s konstrukcijskimi, organizacijskimi in tehnološkimi rešitvami;
b) notranjimi požari v prostorih podatkovnih centrov;
c) drugimi okoljskimi dejavniki (razen požara), vključno s tveganji zaradi elektromagnetnih motenj, vibracij, poplav, plina ali prahu, ki lahko nastanejo
v prostorih podatkovnih centrov;
zunaj prostorov podatkovnih centrov.
Varnostne zahteve in zahteve za elektromagnetno združljivost (EMC) so zunaj področja uporabe tega evropskega standarda ter so zajete v drugih standardih in predpisih. Kljub temu lahko informacije v tem evropskem standardu pripomorejo k izpolnjevanju zahtev teh standardov in predpisov.
General Information
- Status
- Withdrawn
- Publication Date
- 24-Mar-2016
- Withdrawal Date
- 24-Jan-2019
- Technical Committee
- CLC/TC 215 - Electrotechnical aspects of telecommunication equipment
- Drafting Committee
- CLC/TC 215 - Electrotechnical aspects of telecommunication equipment
- Current Stage
- 9960 - Withdrawal effective - Withdrawal
- Start Date
- 22-Mar-2024
- Completion Date
- 22-Mar-2024
Relations
- Effective Date
- 07-Jun-2022
Frequently Asked Questions
EN 50600-2-5:2016 is a standard published by CLC. Its full title is "Information technology - Data centre facilities and infrastructures - Part 2-5: Security systems". This standard covers: This European Standard addresses the physical security of data centres based upon the criteria and classifications for "availability", "security" and "energy efficiency enablement" within EN 50600-1. This European Standard provides designations for the data centres spaces defined in EN 50600-1. This European Standard specifies requirements and recommendations for those data centre spaces, and the systems employed within those spaces, in relation to protection against: a) unauthorized access addressing constructional, organizational and technological solutions; b) fire events igniting within data centres spaces; c) other events within or outside the data centre spaces, which would affect the defined level of protection. Safety and electromagnetic compatibility (EMC) requirements are outside the scope of this European Standard and are covered by other standards and regulations. However, information given in this European Standard may be of assistance in meeting these standards and regulations.
This European Standard addresses the physical security of data centres based upon the criteria and classifications for "availability", "security" and "energy efficiency enablement" within EN 50600-1. This European Standard provides designations for the data centres spaces defined in EN 50600-1. This European Standard specifies requirements and recommendations for those data centre spaces, and the systems employed within those spaces, in relation to protection against: a) unauthorized access addressing constructional, organizational and technological solutions; b) fire events igniting within data centres spaces; c) other events within or outside the data centre spaces, which would affect the defined level of protection. Safety and electromagnetic compatibility (EMC) requirements are outside the scope of this European Standard and are covered by other standards and regulations. However, information given in this European Standard may be of assistance in meeting these standards and regulations.
EN 50600-2-5:2016 is classified under the following ICS (International Classification for Standards) categories: 35.020 - Information technology (IT) in general; 35.110 - Networking; 35.160 - Microprocessor systems. The ICS classification helps identify the subject area and facilitates finding related standards.
EN 50600-2-5:2016 has the following relationships with other standards: It is inter standard links to EN 50600-2-5:2021. Understanding these relationships helps ensure you are using the most current and applicable version of the standard.
EN 50600-2-5:2016 is associated with the following European legislation: Standardization Mandates: M/462. When a standard is cited in the Official Journal of the European Union, products manufactured in conformity with it benefit from a presumption of conformity with the essential requirements of the corresponding EU directive or regulation.
You can purchase EN 50600-2-5:2016 directly from iTeh Standards. The document is available in PDF format and is delivered instantly after payment. Add the standard to your cart and complete the secure checkout process. iTeh Standards is an authorized distributor of CLC standards.
Standards Content (Sample)
2003-01.Slovenski inštitut za standardizacijo. Razmnoževanje celote ali delov tega standarda ni dovoljeno.Informacijska tehnologija - Naprave in infrastruktura podatkovnega centra - 2-5. del: Varnostni sistemiInformationstechnik - Einrichtungen und Infrastrukturen von Rechenzentren - Teil 2-5: SicherungssystemeTechnologie de l’information - Installation et infrastructures de centres de traitement de données - Partie 2-5: Systèmes de sécuritéInformation technology - Data centre facilities and infrastructures - Part 2-5: Security systems35.030Informacijska varnostIT SecurityICS:Ta slovenski standard je istoveten z:EN 50600-2-5:2016SIST EN 50600-2-5:2016en01-maj-2016SIST EN 50600-2-5:2016SLOVENSKI
STANDARD
EUROPEAN STANDARD NORME EUROPÉENNE EUROPÄISCHE NORM
EN 50600-2-5
March 2016 ICS 35.020; 35.110; 35.160
English Version
Information technology - Data centre facilities and infrastructures - Part 2-5: Security systems
Technologie de l'information - Installation et infrastructures de centres de traitement de données - Partie 2-5: Systèmes de sécurité
Informationstechnik - Einrichtungen und Infrastrukturen von Rechenzentren - Teil 2-5: Sicherungssysteme This European Standard was approved by CENELEC on 2016-01-25. CENELEC members are bound to comply with the CEN/CENELEC Internal Regulations which stipulate the conditions for giving this European Standard the status of a national standard without any alteration. Up-to-date lists and bibliographical references concerning such national standards may be obtained on application to the CEN-CENELEC Management Centre or to any CENELEC member.
This European Standard exists in three official versions (English, French, German). A version in any other language made by translation under the responsibility of a CENELEC member into its own language and notified to the CEN-CENELEC Management Centre has the same status as the official versions. CENELEC members are the national electrotechnical committees of Austria, Belgium, Bulgaria, Croatia, Cyprus, the Czech Republic, Denmark, Estonia, Finland, Former Yugoslav Republic of Macedonia, France, Germany, Greece, Hungary, Iceland, Ireland, Italy, Latvia, Lithuania, Luxembourg, Malta, the Netherlands, Norway, Poland, Portugal, Romania, Slovakia, Slovenia, Spain, Sweden, Switzerland, Turkey and the United Kingdom. European Committee for Electrotechnical Standardization
Comité Européen de Normalisation Electrotechnique Europäisches Komitee für Elektrotechnische Normung CEN-CENELEC Management Centre: Avenue Marnix 17,
B-1000 Brussels © 2016 CENELEC All rights of exploitation in any form and by any means reserved worldwide for CENELEC Members.
Ref. No. EN 50600-2-5:2016 E SIST EN 50600-2-5:2016
Pressure relief: Additional information . 36 A.1 General . 36 A.2 Design considerations . 36 Bibliography . 38
Tables Table 1 — Examples of Protection Classes for data centre spaces . 12 Table 2 — Protection Classes against unauthorized access. 13 Table 3 — Protection Classes against internal fire events . 24 Table 4 — Protection Classes against internal environmental events . 29 Table 5 — Protection Classes against external environmental events . 31 Table 6 — Elements of systems for the prevention of unauthorized access . 33
Attention is drawn to the possibility that some of the elements of this document may be the subject of patent rights. CENELEC [and/or CEN] shall not be held responsible for identifying any or all such patent rights. This document has been prepared under a mandate given to CENELEC by the European Commission and the European Free Trade Association. Regarding the various parts in the EN 50600 series, see the Introduction. SIST EN 50600-2-5:2016
Figure 1 — Schematic relationship between the EN 50600 standards EN 50600-2-X standards specify requirements and recommendations for particular facilities and infrastructures to support the relevant classification for “availability”, “physical security” and “energy efficiency enablement” selected from EN 50600-1. EN 50600-3-X documents specify requirements and recommendations for data centre operations, processes and management. This European Standard addresses the physical security of facilities and infrastructure within data centres together with the interfaces for monitoring the performance of those facilities and infrastructures in line EN 50600-3-1 (in accordance with the requirements of EN 50600-1). SIST EN 50600-2-5:2016
Figure 2 — Risk assessment concepts These four items are analyzed during the risk assessment process, to identify the baseline risk posed to the data centre. Management of the identified baseline risk employs appropriate technical, physical and procedural countermeasures or a combination thereof. Following the deployment of baseline countermeasures, further decisions shall be taken relating to the residual risk(s) as follows, driven by the acceptance of risk of the asset owner: 1) toleration - the remaining risk(s) are accepted and no additional countermeasures deployed; 2) treatment - additional measures are deployed to counter the remaining risk(s); 3) transferral - the risk(s) are transferred to another party, for example obtaining additional insurance cover the mitigate the risk(s); 4) termination - the activity posing the risk is terminated. 5.3 Designation of data centre spaces - Protection Classes Each of the data centre spaces, independent of the size or purpose of the data centre, is designated as being of a particular Protection Class. There is no concept of a data centre of a given Protection Class. SIST EN 50600-2-5:2016
This applies to premises entrance facilities which are within the control of the data centre. b
Access restrictions apply to pathways leading to areas of Protection Classes of a lower Protection Class. 6 Protection Class against unauthorized access 6.1 General This standard applies the four Protection Classes in relation to access to spaces accommodating the elements of the different facilities and infrastructures as detailed in Table 2 (in accordance with EN 50600-1). SIST EN 50600-2-5:2016
The Protection Classes feature increasing levels of access control. The areas of the data centre requiring the greatest physical protection against unauthorized access will be accommodated in spaces with the highest Protection Class. Further guidance can be found in the EN 60839-11 series. It should not be assumed that: a) all areas of a given Protection Class are accessible to persons having access to an area of that Protection Class; b) persons having access to an area of that Protection Class have access to all areas of a lower Protection Class. This clause defines the rules for implementing such Classes. The access to spaces and systems shall be limited to the inevitable necessary operative minimum. This applies to the aspects of spaces, time, personnel and knowledge. The implementation of physical security shall be effected according to the philosophy shown schematically in Figure 3, referred to as the “Onion Skin” or “Defence in Depth” approach/model.
Figure 3 — Protection Classes within the 4-layer physical protection model In order to be applicable to more general implementations of data centres, the simplistic model of Figure 3 may be visualized as series Protection Class islands as shown in Figure 4. SIST EN 50600-2-5:2016
Figure 4 — Protection Class islands Subclause 5.3 provides examples of the Protection Classes applied to data centre spaces but the technological solutions to the control of unauthorized access vary across the particular data centre spaces within a Protection Class. All elements of the border/barrier of an area with a given Protection Class shall have the same level of resistance to unauthorized access. Where the data centre infrastructures specified in EN 50600-2-1 to EN 50600-2-5 cross boundaries from one Protection Class to another they shall be provided with protection suitable to the highest Protection Class interconnected as shown in Figure 5. NOTE National or local regulations can prevent security measures being applied to pathways (e.g. maintenance holes, etc.) for infrastructures external to the premises.
Figure 5 — Interconnection between Protection Class islands Access control systems of a given Protection Class shall be managed from areas with the same or higher Protection Class. Pathways of the data centre infrastructures (e.g. power supply, environmental control and telecommunications cabling) shall be designed to prevent unauthorized passage between areas of different Protection Class. Data centres and their complementary functions of technical infrastructure shall be organized in areas which mirror the needs of security, safety and availability of the data centre which match the assumed risks and protection goals. SIST EN 50600-2-5:2016
Figure 6 — Example of Protection Classes applied to data centre premises without external barriers If the premises are provided with an external physical barrier that provides a demarcation of Protection Class 1 then, as shown in the example of Figure 7: 1) the number of penetrations of the boundary of Protection Class 1 for personnel and vehicular access shall be minimized; SIST EN 50600-2-5:2016
Figure 7 — Example of Protection Classes applied to data centre premises with external barriers In Figure 7, the buildings/structures shown may be dedicated to specific spaces serving the various data centre infrastructures e.g. generator space or transformer space. Each building/structure shall apply appropriate barriers to protect the relevant infrastructure element. In addition, the barriers may be required to provide visual and acoustic screening. As described above, roof-tops may be considered Protection Class 1 or 2, depending on the configuration of the premises containing the data centre. Any openings in roof-tops shall be protected in accordance with the Protection Class of the space immediately below the opening. In addition, any roof-top structures dedicated to specific spaces serving the various data centre infrastructures shall apply appropriate barriers to protect the relevant infrastructure element. Any access routes to the roof, for purposes of maintenance and repair of the roof, roof-top structures and, where relevant, to infrastructure elements, shall be within areas of Protection Class equal to or higher than that of the roof-top. The requirements for the barriers between areas of different Protection Class in relation to protection against unauthorized access are not based on their physical construction i.e. they may be fences, exterior or interior walls of buildings together with doors and other penetrations fitted with appropriate systems (see Clause 10). SIST EN 50600-2-5:2016
...
記事タイトル:EN 50600-2-5:2016 - 情報技術 - データセンタ施設とインフラ - 第2-5部:セキュリティシステム 記事内容:この欧州規格は、EN 50600-1の「可用性」「セキュリティ」「エネルギー効率促進」の基準と分類に基づいて、データセンタの物理的なセキュリティに関する取り組みを扱っています。この欧州規格では、EN 50600-1で定義されたデータセンタの空間に対する指示を提供します。この欧州規格では、これらのデータセンタの空間およびそれらの空間内で使用されるシステムに関して、次の保護に対する要件と推奨事項を定めています:a)構築、組織、および技術的な解決策による不正アクセスへの対策、b)データセンタの空間内で発生する火災、c)定義された保護レベルに影響を与えるデータセンタの空間内外の他のイベント。安全性および電磁的適合性(EMC)の要件は、この欧州規格の範囲外であり、他の規格および規制で取り扱われています。ただし、この欧州規格で提供される情報は、これらの規格と規制を満たすための参考になる可能性があります。
기사 제목: EN 50600-2-5:2016 - 정보 기술 - 데이터 센터 시설 및 인프라 - 2-5 파트: 보안 시스템 기사 내용: 이 유럽 표준은 EN 50600-1 내의 "가용성", "보안" 및 "에너지 효율 활성화"에 대한 기준과 분류를 기반으로한 데이터 센터의 물리적 보안을 다루고 있습니다. 이 유럽 표준은 EN 50600-1에서 정의된 데이터 센터 공간에 대한 명칭을 제공합니다. 이 유럽 표준은 이러한 데이터 센터 공간과 그 안에 사용되는 시스템에 대한 요구사항과 권고사항을 명시하며 다음과 같은 보호를 위한 조치를 다룹니다: a) 건설, 조직 및 기술적인 해결책을 다루는 무단 접근; b) 데이터 센터 공간 내에서 발생하는 화재 사건; c) 데이터 센터 공간 내외의 다른 사건으로 인해 정의된 보호 수준에 영향을 미치는 사건. 안전 및 전자기적 호환성(EMC) 요구 사항은 이 유럽 표준의 범위 밖이며 다른 표준 및 규정에서 다루고 있습니다. 그러나 이 유럽 표준에 제공된 정보는 이러한 표준 및 규정을 준수하는 데 도움이 될 수 있습니다.
The article discusses the European Standard EN 50600-2-5:2016, which focuses on the physical security of data centers. It explains that the standard provides designations for different data center spaces and specifies requirements and recommendations for protection against unauthorized access, fire events, and other events that could affect the level of protection. The standard does not cover safety and electromagnetic compatibility requirements, but it may provide useful information in meeting these standards and regulations.










Questions, Comments and Discussion
Ask us and Technical Secretary will try to provide an answer. You can facilitate discussion about the standard in here.
Loading comments...