1、Reference number ISO/IEC 15432:1999(E) INTERNATIONAL STANDARD ISO/IEC 15432 First edition 1999-09-15 Information technology Telecommunications and information exchange between systems Private Integrated Services Network Specification, functional model and information flows Wireless Terminal Authenti
2、cation supplementary services (WTAT and WTAN) Technologies de linformation Tlcommunications et change dinformation entre systmes Rseau priv intgration de services Spcification, modle fonctionnel et flux dinformation Services supplmentaires dauthentification de terminal sans fil (WTAT et WTAN)ISO/IEC
3、 15432:1999(E) ISO/IEC 1999 All rights reserved. Unless otherwise specified, no part of this publication may be reproduced or utilized in any form or by any means, electronic or mechanical, including photocopying and microfilm, without permission in writing from the publisher. ISO/IEC Copyright Offi
4、ce Case postale 56 CH-1211 Genve 20 Switzerland Printed in Switzerland ii Contents Foreword iii Introductioniv 1 Scope . 1 2 Conformance 1 3 Normative references. 1 4 Definitions 2 4.1 External definitions. 2 4.2 Other definitions . 2 5 List of acronyms. 2 6 SS-WTAT stage 1 specification 3 6.1 Descr
5、iption 3 6.2 Procedure 3 6.3 Interaction with other supplementary services and ANFs. 3 6.4 Interworking considerations 5 6.5 Overall SDL 6 7 SS-WTAN stage 1 specification 7 7.1 Description 7 7.2 Procedure 7 7.3 Interaction with other supplementary services and ANFs. 7 7.4 Interworking considerations
6、 9 7.5 Overall SDL 9 8 SS-WTAT stage 2 specification 10 8.1 Functional model 10 8.2 Information flows 11 8.3 Functional entity actions . 15 8.4 Functional entity behaviour. 16 8.5 Allocation of functional entities to physical equipment 23 8.6 Interworking considerations 23 9 SS-WTAN stage 2 specific
7、ation 24 9.1 Functional model 24 9.2 Information flows 24 9.3 Functional entity actions . 28 9.4 Functional entity behaviour. 29 9.5 Allocation of functional entities to physical equipment 33 9.6 Interworking considerations 33 Annex A (informative): User identifiers 34 ISO/IEC ISO/IEC 15432:1999(E)
8、iii Foreword ISO (the International Organization for Standardization) and IEC (the International Electrotechnical Commission) form the specialized system for worldwide standardization. National bodies that are members of ISO or IEC participate in the development of International Standards through te
9、chnical committees established by the respective organization to deal with particular fields of technical activity. ISO and IEC technical committees collaborate in fields of mutual interest. Other international organizations, governmental and non-governmental, in liaison with ISO and IEC, also take
10、part in the work. International Standards are drafted in accordance with the rules given in the ISO/IEC Directives, Part 3. In the field of information technology, ISO and IEC have established a joint technical committee, ISO/IEC JTC 1. Draft International Standards adopted by the joint technical co
11、mmittee are circulated to national bodies for voting. Publication as an International Standard requires approval by at least 75 % of the national bodies casting a vote. International Standard ISO/IEC 15432 was prepared by Joint Technical Committee ISO/IEC JTC 1, Information technology, Subcommittee
12、SC 6, Telecommunications and information exchange between systems. Annex A of this International Standard is for information only.ISO/IEC 15432:1999(E) ISO/IEC iv Introduction This International Standard is one of a series of International Standards defining services and signalling protocols applica
13、ble to Private Integrated Services Networks (PISNs). The series uses ISDN concepts as developed by ITU-T and conforms to the framework of International Standards for Open Systems Interconnection as defined by ISO/IEC. This particular International Standard specifies the WTAT and WTAN supplementary s
14、ervices.INTERNATIONAL STANDARD ISO/IEC ISO/IEC 15432:1999(E) 1 Information technology Telecommunications and information exchange between systems Private Integrated Services Network Specification, functional model and information flows Wireless Terminal Authentication supplementary services (WTAT an
15、d WTAN) 1S c o p e This International Standard specifies the Authentication supplementary services, which are applicable to various basic services supported by Private Integrated Services Networks (PISN). Basic services are specified in ISO/IEC 11574. Authentication of a WTM user (SS-WTAT) is a supp
16、lementary service that enables a PISN, as a security measure, to validate the identity provided by the WTM user. Authentication of the PISN (SS-WTAN) is a supplementary service that enables a served WTM user, as a security measure, to validate the identity of the PISN. The mechanisms used in these s
17、upplementary services are based on the challenge and response method of authentication. Authentication algorithms to be used by these two supplementary services (SS-WTAT and SS-WTAN) are outside the scope of this International Standard. This International Standard provides the information flows to c
18、onvey the security parameters. Supplementary service specifications are produced in three stages, according to the method described in CCITT Recommendation I.130. This International Standard contains the stage 1 and stage 2 specifications of SS-WTAT and SS-WTAN. The stage 1 specification (clause 6 a
19、nd 7) specifies the supplementary service as seen by users of PISNs. The stage 2 specification (clause 8 and 9) identifies the functional entities involved in the supplementary service and the information flows between them. 2 Conformance In order to conform to this International Standard, a stage 3
20、 International Standard shall specify signalling protocols and equipment behaviour that are capable of being used in a PISN which supports the supplementary service specified in this International Standard. This means that, to claim conformance, a stage 3 International Standard is required to be ade
21、quate for the support of those aspects of clause 6 and 7 (stage 1) and clause 8 and 9 (stage 2) which are relevant to the interface or equipment to which the stage 3 International Standard applies. 3 Normative references The following normative documents contain provisions which, through reference i
22、n this text, constitute provisions of this International Standard. For dated references, subsequent amendments to, or revisions of, any of these publications do not apply. However, parties to agreements based on this International Standard are encouraged to investigate the possibility of applying th
23、e most recent editions of the normative documents indicated below. For undated references, the latest edition of the normative document referred to applies. Members of ISO and IEC maintain registers of currently valid International Standards. ISO/IEC 11571:1994, Information technology - Telecommunic
24、ations and information exchange between systems - Numbering and sub-addressing in private integrated services networks. ISO/IEC 11574:1994, Information technology - Telecommunications and information exchange between systems - Private Integrated Services Network - Circuit-mode 64 kbit/s bearer servi
25、ces - Service description, functional capabilities and information flows. ISO/IEC 11579-1:1994, Information technology - Telecommunications and information exchange between systems - Private integrated services network - Part 1: Reference configuration for PISN Exchanges (PINX).ISO/IEC 15432:1999(E)
26、 ISO/IEC 2 ITU-T Rec. I.112:1993, Vocabulary of terms for ISDNs. CCITT Rec. I.130:1988, Method for the characterization of telecommunication services supported by an ISDN and network capabilities of an ISDN (Blue Book). ITU-T Rec. I.210:1993, Principles of telecommunication services supported by an
27、ISDN and the means to describe them. ITU-T Rec. Z.100:1993, Specification and Description Language. 4 Definitions For the purposes of this International Standard, the following definitions apply. 4.1 External definitions This International Standard uses the following terms defined in other documents
28、: Additional Network Feature (ANF) (ISO/IEC project 1.06.57.09.02, WTLR) Authentication (ISO/IEC project 1.06.57.09.02, WTLR) Basic service (ITU-T Rec. I.210) Wireless Terminal Mobility (WTM) (ISO/IEC project 1.06.57.09.02, WTLR) Fixed Part (FP) (ISO/IEC project 1.06.57.09.02, WTLR) Home-PINX (ISO/I
29、EC project 1.06.57.09.02, WTLR) PISN authority (ISO/IEC project 1.06.57.09.02, WTLR) PISN user (ISO/IEC project 1.06.57.09.02, WTLR) Private Integrated Services Network (PISN) (ISO/IEC 11579-1) Private Integrated Services Network Exchange (PINX) (ISO/IEC 11579-1) Service (ITU-T Rec. I.112) Signallin
30、g (ITU-T Rec. I.112) Supplementary Service (ITU-T Rec. I.210) User (ISO/IEC 11574) WTM users identity (ISO/IEC 15428, WTLR) Visitor PINX (ISO/IEC project 1.06.57.09.02,WTLR) 4.2 Other definitions Authentication Server: The PINX that contains the functionality to compute a challenge for a WTM user. W
31、ireless Terminal: A physical entity that provides access to the telecommunication services of a PISN via a radio interface. WTAN user: A user of the supplementary service SS-WTAN. WTAT user: A user of the supplementary service SS-WTAT. 5 L i s tofac r on ym s ANF Additional Network Feature CC Call C
32、ontrol (functional entity) CCA Call Control Agent (functional entity) FE Functional Entity FP Fixed Part ISDN Integrated Services Digital Network ISO/IEC ISO/IEC 15432:1999(E) 3 PINX Private Integrated Services Network Exchange PISN Private Integrated Services Network SDL Specification and Descripti
33、on Language SS Supplementary Service SS-WTAT Supplementary Service - Authentication of a WTM user SS-WTAN Supplementary Service - Authentication of a PISN WT Wireless Terminal WTM Wireless Terminal Mobility 6 SS-WTAT stage 1 specification 6.1 Description 6.1.1 General description Authentication of a
34、 Wireless Terminal (SS-WTAT) enables the PISN, as a security measure, to validate the identity provided by the WTM user. This is done by sending specific information to the WTM user and awaiting a response. The received response is compared with the expected response. 6.1.2 Qualifications on applica
35、bility to telecommunication services SS-WTAT is applicable to all basic services defined in ISO/IEC 11574. 6.2 Procedure 6.2.1 Provision/withdrawal SS-WTAT shall be provided and withdrawn by arrangement with the PISN authority. 6.2.2 Normal procedures 6.2.2.1 Activation/deactivation/registration/int
36、errogation SS-WTAT shall be activated on provision and deactivated on withdrawal. Registration and interrogation are not applicable to this supplementary service. 6.2.2.2 Invocation and operation SS-WTAT may be invoked at any time, e.g. when the WTM user requests a basic or supplementary service. Th
37、e operation of SS-WTAT is based on the challenge and response method of authentication. Upon invocation of this service, the PISN sends specific information (challenge) to the WTM user and awaits a response. If the response from the WTM user is the expected one, then authentication has passed succes
38、sfully. If the response is not the expected response, the PISN may take any action as appropriate. 6.2.3 Exceptional procedures 6.2.3.1 Activation/deactivation/registration/interrogation Not applicable 6.2.3.2 Invocation and operation If SS-WTAT cannot be performed, the PISN may reject or limit the
39、service to the WTM user. Possible reasons are: - Incorrect authentication parameters; - WT not accessible. 6.3 Interaction with other supplementary services and ANFs Interactions with other supplementary services and ANFs for which PISN International Standards were available at the time of publicati
40、on of this International Standard are specified below.ISO/IEC 15432:1999(E) ISO/IEC 4 6.3.1 Calling Line Identification Presentation (SS-CLIP) No interaction 6.3.2 Connected Line Identification Presentation (SS-COLP) No interaction 6.3.3 Calling/Connected Line Identification Restriction (SS-CLIR) No
41、 interaction 6.3.4 Calling Name Identification Presentation (SS-CNIP) No interaction 6.3.5 Connected Name Identification Presentation (SS-CONP) No interaction 6.3.6 Calling/Connected Name Identification Restriction (SS-CNIR) No interaction 6.3.7 Completion of Calls to Busy Subscriber (SS-CCBS) No in
42、teraction 6.3.8 Completion of Calls on No Reply (SS-CCNR) No interaction 6.3.9 Call Transfer (SS-CT) No interaction 6.3.10 Call Forwarding Unconditional (SS-CFU) No interaction 6.3.11 Call Forwarding Busy (SS-CFB) No interaction 6.3.12 Call Forwarding No Reply (SS-CFNR) No interaction 6.3.13 Call De
43、flection (SS-CD) No interaction 6.3.14 Path Replacement (ANF-PR) No interaction 6.3.15 Call offer (SS-CO) No interaction 6.3.16 Call intrusion, (SS-CI) No interaction 6.3.17 Do Not Disturb (SS-DND) No interaction 6.3.18 Do Not Disturb Override (SS-DNDO) No interaction 6.3.19 Advice of Charge (SS-AOC
44、) No interaction ISO/IEC ISO/IEC 15432:1999(E) 5 6.3.20 Recall (SS-RE) No interaction 6.3.21 Interaction with Call Interception (ANF-CINT) No interaction 6.3.22 Interaction with Transit Counter (ANF-TC) No interaction 6.3.23 Interaction with Route Restriction Class (ANF-RRC) No interaction 6.3.24 Me
45、ssage waiting indication (SS-MWI) No interaction 6.3.25 Wireless terminal location registration (SS-WTLR) SS-WTLR may cause the invocation of SS-WTAT. 6.3.26 Wireless terminal information exchange (ANF-WTINFO) No interaction 6.3.27 Wireless terminal incoming call (ANF-WTMI) ANF-WTMI may cause the in
46、vocation of SS-WTAT. 6.3.28 Wireless terminal outgoing call (ANF-WTMO) ANF-WTMO may cause the invocation of SS-WTAT. 6.3.29 Authentication of network (SS-WTAN) No interaction 6.4 Interworking considerations Not applicableISO/IEC 15432:1999(E) ISO/IEC 6 6.5 Overall SDL Figure 1 contains the dynamic d
47、escription of SS-WTAT using the Specification and Description Language (SDL) defined in ITU-T Rec. Z.100. The SDL process represents the behaviour of the PISN in providing SS-WTAT. Input signals from the left and output signals to the left represent internal stimuli within the PISN. Input signals fr
48、om the right represent primitives from the WTM user. Output signals to the right represent primitives to the WTM user. Authenticate Request Get security parameters Authentication response valid Authentication Yes No Result correct? Response timeout Authentication service failed SS-WTAT Idle Authenti
49、cate WTM user SS-WTAT Wait for Resp Authentication invalid SS-WTAT Idle Figure 1: SS-WTAT, overall SDL ISO/IEC ISO/IEC 15432:1999(E) 7 7 SS-WTAN stage 1 specification 7.1 Description 7.1.1 General description SS-WTAN enables the WTM user, as a security measure, to validate the identity of the PISN, prior to accepting certain instructions from it. This is done by sending specific information to the PISN and awaiting a response. The received response is compared with the expected r