5
TELECOMMUNICATIONS AND "INFORMATION SECURITY"
-
# 5A001.
Telecommunications systems, equipment, components and accessories as follows:
-
# a.
Any type of telecommunications equipment having any of the following characteristics, functions or features:
-
# 1.
Specially designed to withstand transitory electronic effects or electromagnetic pulse effects, both arising from a nuclear explosion;
-
# 2.
Specially hardened to withstand gamma, neutron or ion radiation;
-
# 3.
Specially designed to operate below 218 K (-55°C); or
-
# 4.
Specially designed to operate above 397 K (124°C);
-
-
# b.
Telecommunication systems and equipment, and specially designed components and accessories therefor, having any of the following characteristics, functions or features:
-
# 1.
Being underwater untethered communications systems having any of the following:
-
# a.
An acoustic carrier frequency outside the range from 20 kHz to 60 kHz;
-
# b.
Using an electromagnetic carrier frequency below 30 kHz;
-
# c.
Using electronic beam steering techniques; or
-
# d.
Using "lasers" or light-emitting diodes (LEDs) with an output wavelength greater than 400 nm and less than 700 nm, in a "local area network";
-
-
# 2.
Being radio equipment operating in the 1.5 MHz to 87.5 MHz band and having all of the following:
-
# a.
Automatically predicting and selecting frequencies and "total digital transfer rates" per channel to optimise the transmission; and
-
# b.
Incorporating a linear power amplifier configuration having a capability to support multiple signals simultaneously at an output power of 1 kW or more in the frequency range of 1.5 MHz or more but less than 30 MHz, or 250 W or more in the frequency range of 30 MHz or more but not exceeding 87.5 MHz, over an "instantaneous bandwidth" of one octave or more and with an output harmonic and distortion content of less (better) than -80 dB;
-
-
# 3.
Being radio equipment employing "spread spectrum" techniques, including "frequency hopping" techniques, other than those specified in 5A001.b.4. and having any of the following:
-
# 4.
Being radio equipment employing ultra-wideband modulation techniques, having user programmable channelising codes, scrambling codes or network identification codes and having any of the following:
-
# 5.
Being digitally controlled radio receivers having all of the following:
-
# 6.
Employing functions of digital "signal processing" to provide 'voice coding' output at rates of less than 700 bit/s;
-
-
# c.
Optical fibres of more than 500 m in length and specified by the manufacturer as being capable of withstanding a 'proof test' tensile stress of 2 x 109 N/m2 or more;
-
# d.
'Electronically steerable phased array antennae' as follows:
-
# 1.
Rated for operation above 31.8 GHz but not exceeding 57 GHz, and having an Effective Radiated Power (ERP) equal to or greater than +20 dBm (22.15 dBm Effective Isotropic Radiated Power (EIRP));
-
# 2.
Rated for operation above 57 GHz but not exceeding 66 GHz, and having an ERP equal to or greater than +24 dBm (26.15 dBm EIRP);
-
# 3.
Rated for operation above 66 GHz but not exceeding 90 GHz, and having an ERP equal to or greater than +20 dBm (22.15 dBm EIRP);
-
# 4.
Rated for operation above 90 GHz;
-
-
# e.
Radio direction finding equipment operating at frequencies above 30 MHz and having all of the following, and specially designed components therefor:
-
# f.
Mobile telecommunications interception or jamming equipment, and monitoring equipment therefor, as follows, and specially designed components therefor: N.B.1. SEE ALSO MILITARY GOODS CONTROLS. N.B.2. For radio receivers, see 5A001.b.5.
-
# 1.
Interception equipment designed for the extraction of voice or data, transmitted over the air interface;
-
# 2.
Interception equipment not specified in 5A001.f.1., designed for the extraction of client device or subscriber identifiers (e.g., IMSI, TIMSI or IMEI), signalling, or other metadata transmitted over the air interface;
-
# 3.
Jamming equipment specially designed or modified to intentionally and selectively interfere with, deny, inhibit, degrade or seduce mobile telecommunication services and performing any of the following:
-
# 4.
RF monitoring equipment designed or modified to identify the operation of items specified in 5A001.f.1., 5A001.f.2. or 5A001.f.3.;
-
-
# g.
Passive Coherent Location (PCL) systems or equipment, specially designed for detecting and tracking moving objects by measuring reflections of ambient radio frequency emissions, supplied by non-radar transmitters;
-
# 1.
Radio Frequency (RF) transmitting equipment, not specified in 5A001.f., designed or modified for prematurely activating or preventing the initiation of Improvised Explosive Devices (IED);
-
# 2.
Equipment using techniques designed to enable radio communications in the same frequency channels on which co-located equipment specified in 5A001.h.1. is transmitting.
-
-
# i.
Not used;
-
# j.
Internet Protocol (IP) network communications surveillance systems or equipment, and specially designed components therefor, having all of the following:
-
-
# 5A002.
"Information security" systems, equipment and components, as follows:
-
# a.
Designed or modified to use 'cryptography for data confidentiality' having a 'described security algorithm' as follows: encryption where the maximum effective range of unboosted cordless operation (i.e. a single, unrelayed hop between terminal and home base station) is less than 400 metres according to the manufacturer's specifications; devices, designed for civil use, that have been customised for a specific civil industry application, meeting all of the following: Cryptography Note (Note 3 in Category 5 – Part 2); and security algorithm' of the non-customised devices is not affected by the customisation, and implements only published or commercial cryptographic standards; Not used; equipment designed for civil use, which also meet the provisions of paragraphs a.2. to a.4. of the Cryptography Note (Note 3 in Category 5- Part 2), having an RF output power limited to 0.1W (20 dBm) or less, and supporting 32 or fewer concurrent users. for data confidentiality' having a 'described security algorithm' is limited to the tasks of "Operations, Administration or Maintenance" ("OAM") implementing only published or commercial cryptographic standards; or General purpose computing equipment or servers, where the 'cryptography for data confidentiality' having a 'described security algorithm' meets all of the following: standards; and Category 5–Part 2; apply; or Items specially designed for a 'connected civil industry application', meeting all of the following: following: 'described security algorithm' is limited to securing 'non-arbitrary data' or the tasks of "Operations, Administration or Maintenance" ("OAM"); or industry application'; or devices specified in paragraph j.1.a. above; and 'described security algorithm' is limited to supporting the 'connected civil industry application' of devices specified in paragraph j.1.a. above, or the tasks of "OAM" of this networking equipment or of other items specified in paragraph j. of this Note; and 'described security algorithm' implements only published or commercial cryptographic standards, and the cryptographic functionality cannot easily be changed by the user.
-
# 1.
Items having "information security" as a primary function;
-
# 2.
Digital communication or networking systems, equipment or components, not specified in 5A002.a.1.; the following:
-
# a.
A 'symmetric algorithm' employing a key length in excess of 56 bits, not including parity bits;
-
# b.
An "asymmetric algorithm" where the security of the algorithm is based on any of the following:
-
# 1.
Factorisation of integers in excess of 512 bits (e.g., RSA);
-
# 2.
Computation of discrete logarithms in a multiplicative group of a finite field of size greater than 512 bits (e.g., Diffie-Hellman over Z/pZ); or
-
# 3.
Discrete logarithms in a group other than mentioned in paragraph b.2. in excess of 112 bits (e.g., Diffie-Hellman over an elliptic curve).; or
-
-
# c.
An "asymmetric algorithm" where the security of the algorithm is based on any of the following:
-
# 1.
Shortest vector or closest vector problems associated with lattices (e.g., NewHope, Frodo, NTRUEncrypt, Kyber, Titanium);
-
# 2.
Finding isogenies between Supersingular elliptic curves (e.g., Supersingular Isogeny Key Encapsulation); or
-
# 3.
Decoding random codes (e.g., McEliece, Niederreiter). Technical Note An algorithm described by Technical Note 2.c. may be referred to as being post-quantum, quantum-safe or quantum-resistant.
-
-
-
# 3.
Computers, other items having information storage or processing as a primary function, and components therefor, not specified in 5A002.a.1. or 5A002.a.2.;
-
# 4.
Items, not specified in 5A002.a.1. to 5A002.a.3., where the 'cryptography for data confidentiality' having a 'described security algorithm' meets all of the following:
-
-
# b.
Being a 'cryptographic activation token';
-
# c.
Designed or modified to use or perform "quantum cryptography";
-
# d.
Designed or modified to use cryptographic techniques to generate channelising codes, scrambling codes or network identification codes, for systems using ultra-wideband modulation techniques and having any of the following:
-
# e.
Designed or modified to use cryptographic techniques to generate the spreading code for "spread spectrum" systems, other than those specified in 5A002.d., including the hopping code for "frequency hopping" systems.
-
-
# 5A003.
Systems, equipment and components, for non-cryptographic "information security", as follows:
-
# a.
Communications cable systems designed or modified to use mechanical, electrical or electronic means to detect surreptitious intrusion;
-
# b.
Specially designed or modified to reduce the compromising emanations of information-bearing signals beyond what is necessary for health, safety or electromagnetic interference standards.
-
-
# 5A004.
Systems, equipment and components for defeating, weakening or bypassing "information security", as follows:
-
# a.
Designed or modified to perform 'cryptanalytic functions'.
-
# b.
Items, not specified in 4A005 or 5A004.a., designed to perform all of the following:
-
# 1.
'Extract raw data' from a computing or communications device; and
-
# 2.
Circumvent "authentication" or authorisation controls of the device, in order to perform the function described in 5A004.b.1.
-
-
-
# 5A101.
Telemetry and telecontrol equipment, including ground equipment, designed or modified for 'missiles'.
-
# 5B001.
Telecommunications test, inspection and production equipment, components and accessories, as follows:
-
# a.
Equipment and specially designed components or accessories therefor, specially designed for the "development" or "production" of equipment, functions or features, specified in 5A001;
-
# b.
Equipment and specially designed components or accessories therefor, specially designed for the "development" of any of the following telecommunication transmission or switching equipment:
-
-
# 5B002.
"Information security" test, inspection and "production" equipment, as follows:
-
# a.
Equipment specially designed for the "development" or "production" of equipment specified in 5A002, 5A003, 5A004 or 5B002.b.;
-
# b.
Measuring equipment specially designed to evaluate and validate the "information security" functions of the equipment specified in 5A002, 5A003 or 5A004, or of "software" specified in 5D002.a. or 5D002.c. Materials None. Software
-
-
# 5D001.
"Software" as follows:
-
# a.
"Software" specially designed or modified for the "development", "production" or "use" of equipment, functions or features, specified in 5A001;
-
# b.
Not used;
-
# c.
Specific "software" specially designed or modified to provide characteristics, functions or features of equipment, specified in 5A001 or 5B001;
-
# d.
"Software" specially designed or modified for the "development" of any of the following telecommunication transmission or switching equipment:
-
# e.
Software, other than that specified in 5D001.a. or 5D001.c., specially designed or modified for monitoring or analysis for law enforcement purposes, providing all of the following:
-
# 1.
Execution of searches on the basis of "hard selectors" of either the content of communication or metadata acquired from a communications service provider using a 'handover interface'; and
-
# 2.
Mapping of the relational network or tracking the movement or location of targeted individuals based on the results of searches on content of communication or metadata or searches as described in 5D001.e.1.
-
-
-
# 5D002.
"Software" as follows:
-
# a.
"Software" specially designed or modified for the "development", "production" or "use" of any of the following:
-
# 1.
Equipment specified in 5A002 or "software" specified in 5D002.c.1.;
-
# 2.
Equipment specified in 5A003 or "software" specified in 5D002.c.2.; or
-
# 3.
Equipment or "software", as follows:
-
# a.
Equipment specified in 5A004.a. or "software" specified in 5D002.c.3.a.;
-
# b.
Equipment specified in 5A004.b. or "software" specified in 5D002.c.3.b.
-
-
-
# b.
"Software" having the characteristics of a 'cryptographic activation token' specified in 5A002.b.;
-
# c.
"Software" having the characteristics of, or performing or simulating the functions of, any of the following:
-
# d.
Not used. Technology
-
-
# 5D101.
"Software" specially designed or modified for the "use" of equipment specified in 5A101. Technology
-
# 5E001.
"Technology" as follows:
-
# a.
"Technology" according to the General Technology Note for the "development", "production" or "use" (excluding operation) of equipment, functions or features specified in 5A001 or "software" specified in 5D001.a. or 5D001.e.;
-
# b.
Specific "technology" as follows:
-
# 1.
"Technology" "required" for the "development" or "production" of telecommunications equipment specially designed to be used on board "spacecraft";
-
# 2.
"Technology" for the "development" or "use" of "laser" communication techniques with the capability of automatically acquiring and tracking signals and maintaining communications through exoatmosphere or sub-surface (water) media;
-
# 3.
"Technology" for the "development" of digital cellular radio base station receiving equipment whose reception capabilities that allow multi-band, multi-channel, multi-mode, multi-coding algorithm or multi-protocol operation can be modified by changes in "software";
-
# 4.
"Technology" for the "development" of "spread spectrum" techniques, including "frequency hopping" techniques;
-
-
# c.
"Technology" according to the General Technology Note for the "development" or "production" of any of the following:
-
# d.
"Technology" according to the General Technology Note for the "development" or "production" of "Monolithic Microwave Integrated Circuit" ("MMIC") amplifiers specially designed for telecommunications and that are any of the following:
-
# 2.
Rated for operation at frequencies exceeding 6.8 GHz up to and including 16 GHz with a "fractional bandwidth" greater than 10%, and having any of the following:
-
# 3.
Rated for operation with a peak saturated power output greater than 3 W (34.77 dBm) at any frequency exceeding 16 GHz up to and including 31.8 GHz, and with a "fractional bandwidth" of greater than 10%;
-
# 4.
Rated for operation with a peak saturated power output greater than 0.1 nW (-70 dBm) at any frequency exceeding 31.8 GHz up to and including 37 GHz;
-
# 5.
Rated for operation with a peak saturated power output greater than 1 W (30 dBm) at any frequency exceeding 37 GHz up to and including 43.5 GHz, and with a "fractional bandwidth" of greater than 10%;
-
# 6.
Rated for operation with a peak saturated power output greater than 31.62 mW (15 dBm) at any frequency exceeding 43.5 GHz up to and including 75 GHz, and with a "fractional bandwidth" of greater than 10%;
-
# 7.
Rated for operation with a peak saturated power output greater than 10 mW (10 dBm) at any frequency exceeding 75 GHz up to and including 90 GHz, and with a "fractional bandwidth" of greater than 5%; or
-
# 8.
Rated for operation with a peak saturated power output greater than 0.1 nW (-70 dBm) at any frequency exceeding 90 GHz;
-
-
# e.
"Technology" according to the General Technology Note for the "development" or "production" of electronic devices and circuits, specially designed for telecommunications and containing components manufactured from "superconductive" materials, specially designed for operation at temperatures below the "critical temperature" of at least one of the "superconductive" constituents and having any of the following:
-
# 1.
Current switching for digital circuits using "superconductive" gates with a product of delay time per gate (in seconds) and power dissipation per gate (in watts) of less than 10-14 J; or
-
# 2.
Frequency selection at all frequencies using resonant circuits with Q-values exceeding 10 000.
-
-
-
# 5E002.
"Technology" as follows:
-
# a.
"Technology" according to the General Technology Note for the "development", "production" or "use" of equipment specified in 5A002, 5A003, 5A004 or 5B002, or of "software" specified in 5D002.a. or 5D002.c.
-
# b.
"Technology" having the characteristics of a 'cryptographic activation token' specified in 5A002.b.
-
-
# 5E101.
"Technology" according to the General Technology Note for the "development", "production" or "use" of equipment specified in 5A101.