ATIS 1000024-2008 US Standard for Signaling Security C Security Roadmap.pdf
《ATIS 1000024-2008 US Standard for Signaling Security C Security Roadmap.pdf》由会员分享,可在线阅读,更多相关《ATIS 1000024-2008 US Standard for Signaling Security C Security Roadmap.pdf(17页珍藏版)》请在麦多课文档分享上搜索。
1、 TECHNICAL REPORT ATIS-1000024 US STANDARD FOR SIGNALING SECURITY SECURITY ROADMAP ATIS is the leading technical planning and standards development organization committed to the rapid development of global, market-driven standards for the information, entertainment and communications industry. More
2、than 250 companies actively formulate standards in ATIS 18 Committees, covering issues including: IPTV, Service Oriented Networks, Energy Efficiency, IP-Based and Wireless Technologies, Quality of Service, and Billing and Operational Support. In addition, numerous Incubators, Focus and Exploratory G
3、roups address emerging industry priorities including “Green”, IP Downloadable Security, Next Generation Carrier Interconnect, IPv6 and Convergence. ATIS is the North American Organizational Partner for the 3rd Generation Partnership Project (3GPP), a member and major U.S. contributor to the Internat
4、ional Telecommunication Union (ITU) Radio and Telecommunications Sectors, and a member of the Inter-American Telecommunication Commission (CITEL). For more information, please visit . Notice of Disclaimer 2) the management plane; and 3) the control plane, as illustrated in Figure 1 and as described
5、in ATIS-1000007.2006, Generic Signaling and Control Plane Security for Evolving Networks 1. AccessManagementInfrastructure SecurityApplication SecurityService SecurityEnd User PlaneControl PlaneManagement PlaneTHREATSVULNERABILITIESSecurity DimensionsATTACKSDataSecurityCommunicationSecurityIntegrity
6、AvailabilityPrivacyInterruptionFabricationInterceptionModificationAuthenticationNon-repudiationFigure 1 - Security Reference Model The standards included in this series focus on signaling and control plane security for evolving networks including the Next Generation Network (NGN). The requirements p
7、rovided in this series of standards should be treated as a minimum set of security requirements for signaling and control plane interconnection interfaces. Network providers and security administers are encouraged to take additional measures beyond those specified in these standards. Security of the
8、 user (bearer) and management planes are not within the scope of this series of standards. It is important that security measures be supported and implemented to protect all network assets including the signaling and control, user (bearer), and management planes. These signaling and control plane se
9、curity standards are intended to be used together with the other security standards and best practices specified by other ATIS committee (e.g., TMOC and PRQC) and other relevant standards development organizations (e.g., ITU-T and IETF) as applicable. It should be noted that there is the possibility
10、 of interrelationships between the various planes. Additional non-normative information on this and other security topics can be found in ATIS-0100014, Information and Communications Security for NGN Converged Services IP Networks and Infrastructure. ATIS-1000024 3 2 REFERENCES 1 ATIS-1000007.2006,
11、Generic Signaling and Control Plane Security for Evolving Networks.12 ATIS-1000019.2007, Network to Network (NNI) Standard for Signaling and Control Security for Evolving VoP Multimedia Networks.13 ATIS-1000012.2006, Signaling Systems No. 7 (SS7) - SS7 - Network and NNI Interconnection Security Requ
12、irements and Guidelines.14 ATIS-1000025.2008, US Standard for Signaling Security UNI Access and Signaling Standard.13 DEFINITIONS 3.1 Security: The process of minimizing the vulnerabilities of assets and resources, or the result of this process. 3.2 Security Administrator: An authority (a person or
13、a group of people) responsible for enforcing the security policy for a security domain. 4 ABBREVIATIONS, ACRONYMS, & SYMBOLS ATIS Alliance for Telecommunications Industry Solutions ITU-T International Telecommunications Union Telecommunications Sector IETF Internet Engineering Task Force IP Internet
14、 Protocol IPsec IP Security IKE Internet Key Exchange NRIC Network Reliability Interoperability Council NGN Next Generation Network NNI Network to Network Interface PRQC Network Performance, Reliability, and Quality of Service Committee PSTN Public Switched Telephone Network PTSC Packet Technologies
15、 and Systems Committee TMOC Telecom Management and Operations Committee TLS Transport Layer Security SIP Session Initiation Protocol SG Signaling Gateway SS7 Signaling Systems No. 7 _ 1This document is available from the Alliance for Telecommunications Industry Solutions (ATIS), 1200 G Street N.W.,
16、Suite 500, Washington, DC 20005. ATIS-1000024 4 UNI User to Network Interface VOP Voice Over Packet 5 GENERAL METHODOLOGY The general methodology is to specify requirements, conditional requirements, and objectives for security of the control and signaling network. In addition, best practices and gu
17、idelines to minimize security risks are specified. Requirements, Conditional Requirements, and Objectives are testable. Recommendations and best practices that are not testable are considered as guidelines and are not numbered. Requirements, Conditional Requirements, and Objectives are numbered in i
18、ncrements of 100. The Requirements, Conditional Requirements, and Objectives are highlighted in “tags” to facilitate requirements traceability. Each tag in the series of the security related documents has a label containing a unique number (e.g., ) where the alpha characters (e.g., REQ-SEC) identify
19、 the type of requirement (e.g., REQ) and the document (e.g., SEC), and the numeric characters (e.g., 00900) identify the specific requirement. The following terminology is used in this series of signaling and control plane security standards: Requirement: Feature or function that is necessary to mee
20、t the needs of a service provider. Failure to meet a requirement may cause application or service restrictions, result in improper functioning of the product, or hinder operations. A requirement is identified by the letters “REQ-SEC”. Conditional Requirement: Feature or function that is needed by so
21、me, but not all, service providers and, as such, is left for the individual service providers to choose. A conditional requirement is identified by the letters “CR-SEC”. Objective: Feature or function that is desirable and may be required by a service provider. An Objective represents a goal to be a
22、chieved. An Objective may be reclassified as a Requirement at some future date. An objective is identified by the letters “O-SEC” and includes the words it is desirable or it is an objective. 6 SIGNALING AND CONTROL PLANE SECURITY ROADMAP Figure 2 shows a high level organization of the signaling and
23、 control plane security standards described in this document. ATIS-1000024 5 ATIS-10000XX Signaling and Control Plane Security Roadmap ATIS-1000007: Generic Signaling and Control Plane Security for Evolving Networks ATIS-PP-1000012: Signaling Systems No. 7 (SS7) - SS7 - Network and NNI Interconnecti
24、on Security ATIS-10000XX: User to Network Interface (UNI) Standard for Signaling and Control Security Requirements for Evolving VoP/Multimedia Networks ATIS-1000019: Network to Network (NNI) Standard for Signaling and Control Security for Evolving VoP/Multimedia Networks This document Figure 2 - Sig
- 1.请仔细阅读文档,确保文档完整性,对于不预览、不比对内容而直接下载带来的问题本站不予受理。
- 2.下载的文档,不会出现我们的网址水印。
- 3、该文档所得收入(下载+内容+预览)归上传者、原创作者;如果您是本文档原作者,请点此认领!既往收益都归您。
下载文档到电脑,查找使用更方便
10000 积分 0人已下载
下载 | 加入VIP,交流精品资源 |
- 配套讲稿:
如PPT文件的首页显示word图标,表示该PPT已包含配套word讲稿。双击word图标可打开word文档。
- 特殊限制:
部分文档作品中含有的国旗、国徽等图片,仅作为作品整体效果示例展示,禁止商用。设计者仅对作品中独创性部分享有著作权。
- 关 键 词:
- ATIS10000242008USSTANDARDFORSIGNALINGSECURITYCSECURITYROADMAPPDF

链接地址:http://www.mydoc123.com/p-541436.html