ANSI ATIS 1000034-2010 Next Generation Network (NGN) Security Mechanisms and Procedures.pdf
《ANSI ATIS 1000034-2010 Next Generation Network (NGN) Security Mechanisms and Procedures.pdf》由会员分享,可在线阅读,更多相关《ANSI ATIS 1000034-2010 Next Generation Network (NGN) Security Mechanisms and Procedures.pdf(58页珍藏版)》请在麦多课文档分享上搜索。
1、 AMERICAN NATIONAL STANDARD FOR TELECOMMUNICATIONS ATIS-1000034.2010 (R2015) NEXT GENERATION NETWORK (NGN): SECURITY MECHANISMS AND PROCEDURES As a leading technology and solutions development organization, ATIS brings together the top global ICT companies to advance the industrys most-pressing busi
2、ness priorities. Through ATIS committees and forums, nearly 200 companies address cloud services, device solutions, emergency services, M2M communications, cyber security, ehealth, network evolution, quality of service, billing support, operations, and more. These priorities follow a fast-track deve
3、lopment lifecycle from design and innovation through solutions that include standards, specifications, requirements, business use cases, software toolkits, and interoperability testing. ATIS is accredited by the American National Standards Institute (ANSI). ATIS is the North American Organizational
4、Partner for the 3rd Generation Partnership Project (3GPP), a founding Partner of oneM2M, a member and major U.S. contributor to the International Telecommunication Union (ITU) Radio and Telecommunications sectors, and a member of the Inter-American Telecommunication Commission (CITEL). For more info
5、rmation, visit . AMERICAN NATIONAL STANDARD Approval of an American National Standard requires review by ANSI that the requirements for due process, consensus, and other criteria for approval have been met by the standards developer. Consensus is established when, in the judgment of the ANSI Board o
6、f Standards Review, substantial agreement has been reached by directly and materially affected interests. Substantial agreement means much more than a simple majority, but not necessarily unanimity. Consensus requires that all views and objections be considered, and that a concerted effort be made t
7、owards their resolution. The use of American National Standards is completely voluntary; their existence does not in any respect preclude anyone, whether he has approved the standards or not, from manufacturing, marketing, purchasing, or using products, processes, or procedures not conforming to the
8、 standards. The American National Standards Institute does not develop standards and will in no circumstances give an interpretation of any American National Standard. Moreover, no person shall have the right or authority to issue an interpretation of an American National Standard in the name of the
9、 American National Standards Institute. Requests for interpretations should be addressed to the secretariat or sponsor whose name appears on the title page of this standard. CAUTION NOTICE: This American National Standard may be revised or withdrawn at any time. The procedures of the American Nation
10、al Standards Institute require that action be taken periodically to reaffirm, revise, or withdraw this standard. Purchasers of American National Standards may receive current information on all standards by calling or writing the American National Standards Institute. Notice of Disclaimer then discu
11、sses transport security for signalling and OAMP, and media security. It then describes audit-trail-related mechanisms and finally describes the provisioning. The security mechanisms described in this standard are based on use of the trust model defined in ATIS 100029.The list of security mechanisms
12、described in this standard is not exhaustive. NGN providers are encouraged to support additional security tools, capabilities and operational measures as needed beyond the mechanisms specified in this standard for NGN security protection. ATIS-1000034.2010 II Foreword The information contained in th
13、is Foreword is not part of this American National Standard (ANS) and has not been processed in accordance with ANSIs requirements for an ANS. As such, this Foreword may contain material that has not been subjected to public review or a consensus process. In addition, it does not contain requirements
14、 necessary for conformance to the Standard. The Alliance for Telecommunication Industry Solutions (ATIS) serves the public through improved understanding between providers, customers, and manufacturers. The Packet Technologies and Systems Committee (PTSC) develops and recommends standards and techni
15、cal reports related to services, architectures, and signaling, in addition to related subjects under consideration in other North American and international standards bodies. PTSC coordinates and develops standards and technical reports relevant to telecommunications networks in the U.S., reviews an
16、d prepares contributions on such matters for submission to U.S. ITU-T and U.S. ITU-R Study Groups or other standards organizations, and reviews for acceptability or per contra the positions of other countries in related standards development and takes or recommends appropriate actions. ANSI guidelin
17、es specify two categories of requirements: mandatory and recommendation. The mandatory requirements are designated by the word shall and recommendations by the word should. Where both a mandatory requirement and a recommendation are specified for the same criterion, the recommendation represents a g
18、oal currently identifiable as having distinct compatibility or performance advantages. Suggestions for improvement of this document are welcome. They should be sent to the Alliance for Telecommunications Industry Solutions, PTSC, 1200 G Street NW, Suite 500, Washington, DC 20005. At the time of cons
19、ensus on this document, PTSC, which was responsible for its development, had the following roster: M. Dolly, PTSC Chair (AT 1. trusted, 2. trusted but vulnerable, 3. un-trusted, that are dependent on operational control, location, and connectivity to other device/network elements. These three zones
20、are illustrated in the security trust model shown in Figure 1. Y2704(09)_F01TrustedzoneUntrusted zone Trusted butvulnerablezoneNetwork elements controlled bythe NGN providerNetwork elements not always controlledby the NGN providerNGNnetworkelementsNetworkborderelements(NBE)TETEProvider-controlledequ
21、ipment TE-BETETETE-BEFigure 1 Security trust model/ATIS-1000029 A “trusted network security zone” or “trusted zone” in short, is a zone where a NGN providers network elements and systems reside and never communicate directly with customer equipment or other domains. The common characteristics of NGN
22、 network elements in this zone are that 1). They are under the full control (for provisioning, maintenance, and operational control) of the NGN provider, 2) They are located in the NGN provider domain, and ATIS-1000034.2010 9 3) They communicate only with other elements in the “trusted” zone and wit
23、h elements in the “trusted-but-vulnerable” zone. It should not be assumed that because a network element is in a trusted zone, it is necessarily secure. The network elements in the “trusted zone” will be protected by a combination of various methods. Some examples are physical security of the NGN ne
24、twork elements, general hardening of the systems, use of secure signalling, security for management messages, and the use of a separate VPN within the (MPLS/)IP network. The same combination of methods is expected to be applied to secure communication within the “trusted” zone and between NGN networ
- 1.请仔细阅读文档,确保文档完整性,对于不预览、不比对内容而直接下载带来的问题本站不予受理。
- 2.下载的文档,不会出现我们的网址水印。
- 3、该文档所得收入(下载+内容+预览)归上传者、原创作者;如果您是本文档原作者,请点此认领!既往收益都归您。
下载文档到电脑,查找使用更方便
10000 积分 0人已下载
下载 | 加入VIP,交流精品资源 |
- 配套讲稿:
如PPT文件的首页显示word图标,表示该PPT已包含配套word讲稿。双击word图标可打开word文档。
- 特殊限制:
部分文档作品中含有的国旗、国徽等图片,仅作为作品整体效果示例展示,禁止商用。设计者仅对作品中独创性部分享有著作权。
- 关 键 词:
- ANSIATIS10000342010NEXTGENERATIONNETWORKNGNSECURITYMECHANISMSANDPROCEDURESPDF

链接地址:http://www.mydoc123.com/p-433532.html