ETSI 3G TS 21 133-1999 3rd Generation Partnership Project Technical Specification Group Services and System Aspects 3G Security Security Threats and Requirements《第3代合作伙伴项目 技术规范组业务和_1.pdf
《ETSI 3G TS 21 133-1999 3rd Generation Partnership Project Technical Specification Group Services and System Aspects 3G Security Security Threats and Requirements《第3代合作伙伴项目 技术规范组业务和_1.pdf》由会员分享,可在线阅读,更多相关《ETSI 3G TS 21 133-1999 3rd Generation Partnership Project Technical Specification Group Services and System Aspects 3G Security Security Threats and Requirements《第3代合作伙伴项目 技术规范组业务和_1.pdf(26页珍藏版)》请在麦多课文档分享上搜索。
1、3G TS 21 . I33 V3.0.0 (1999-05) Technical Specification 3rd Generation Partnership Project; Technical Specification Group Services and System Aspects; 3G Security; Security Threats and Requirements (3G TS 21.133 version 3.0.0) The present document has been developed within the 3d Generation Partners
2、hip Project (3GPPm) and may be further elaborated for the purposes of 3GPP. The present document has not been subject to any approval process by the 3GPP Organisational Partners and shall not be implemented. This Specification is provided for future development work within 3GPPonly. The Organisation
3、al Partners accept no liability for any use of this Specification. Specifications and reports for implementation of the 3GPPm system should be obtained via the 3GPP Organisational Partners Publications Offices. 3G TS 21 .I33 version 3.0.0 2 Reference DTS/TSGS0321133U Keywords Security, Threats, Requ
4、irements 3GPP Postal address 3GPP support office address 650 Route des Lucioles - Sophia Antipolis Valbonne - FRANCE Tel.: +33 4 92 94 42 O0 Fax: +33 4 93 65 47 16 internet htp:lhnrww.3gpp.org 3G TS 21.133 V3.0.0 (1999-05) 3G TS 21 . 133 version 3.0.0 3 36 TS 21.133 V3.0.0 (1999-05) Contents Forewor
5、d 5 1 Scope . 6 2 References . 6 3 Definitions and Abbreviations . 7 3.1 Definitions . 7 3.2 Abbreviations . 8 4 General objectives for 3G security features 8 5 Security context . 9 5.1 System assumptions . 9 5.1.1 Type of services and service management . 9 5.1.2 Access to services . 10 5.1.3 Servi
6、ce provision 10 5.1.4 System architecture 10 5.1.5 Security management . 10 5.1.6 Interworking and compatibility 10 5.1.7 Charging and billing . 11 5.1.8 Supplementary services 11 5.2 3G roles 11 5.2.1 5.2.2 5.2.3 5.2.4 5.2.5 5.3 5.4 5.5 5.5.1 5.5.1.1 5.5.1.2 5.5.1.3 5.5.2 5.5.2.1 6 6.1 6.1.1 6.1.2
7、6.1.3 6.1.4 6.2 6.2.1 6.2.2 6.2.3 6.2.4 6.2.5 6.3 User domain . 11 Mastructure domain . 11 Non3G infrastructure domain . 12 Off-line parties . 12 Inuders . 12 3G architecture . 12 3G identities . 13 3G data types and data groups . 13 3G data types 13 User traffic 13 Signalling data 13 Control data 1
8、3 3G data groups . 14 User-related data . 14 Security threats 14 Threats associated with attacks on the radio interface . 15 Unauthorised access to data . 15 Threats to integrity . 15 Denial of service attacks 16 Unauthorised access to services . 16 Threats associated with attacks on other parts of
9、the system . 16 Unauthorised access to data . 16 Threats to integrity . 17 Denial of service attacks 17 Repudiation 17 Unauthorised access to services . 18 Threats associated with attacks on the terminal and UICCUSIM . 18 7 Risk Assessment 19 7.1 Evaluation of threats 19 7.1.1 8 Security Requirement
10、s . 20 8.1 Requirements derived from threat analysis 20 Threats evaluated to be of major or medium value 19 _ - 3G TS 21.133 version 3.0.0 4 36 TS 21.133 V3.0.0 (1999-05) 8.1.1 8.1.1.1 8.1 . 1 . 2 8.1.2 8.1.3 8.1.3.1 8.1.3.2 8.1.4 8.1.4.1 8.1.4.2 8.2 8.2.1 8.2.1.1 Requirements on security of3GPP ser
11、vices . 20 Requirements on secure service access 20 Requirements on system integrity 21 Requirements on protection of personal data . 21 Security of user-related transmitted data 21 Requirements on secure service provision 21 Security of user-related stored data 22 Requirements on the termhal/USIM .
12、 22 USIM Security 22 Terminal Security . 22 External requirements 22 Regulator requirements 22 Lawful interception . 22 Annex A (Informative): Threats linked to active attacks on the radio access link 23 User identity catching 23 A.1 A.2 A.3 A.4 Annex B: Change history 25 History . 26 Suppression of
13、 encryption between target and intruder 23 Compromise of authentication data . 24 Hijacking of services . 24 3G TS 21.133 version 3.0.0 5 36 TS 21.133 V3.0.0 (1999-05) This Technical Specification has been produced by the 3GPP. The contents of the present document are subject to continuing work with
14、in the TSG and may change following foxmal TSG approval. Should the TSG modi the contents of this TS, it will be re-released by the TSG with an identifying change of release date and an increase in version number as follows: Version 3.y.z where: x the first digit: 1 presented to TSG for information;
15、 2 presented to TSG for approval; 3 Indicates TSG approved document under change control. y the second digit is incremented for all changes of substance, i.e. technical enhancements, corrections, updates, etc. z the third digit is incremented when editorial only changes have been incorporated in the
16、 specification; 3G TS 21 .I 33 version 3.0.0 6 - 36 TS 21.133 V3.0.0 (1999-05) A Scope This specification takes notice of the Security Principles and Objectives as set out in l. It contains an evaluation of perceived threats to 3GPP and produces subsequently a list of security requirements to addres
17、s these threats. As teleservices and applications will not, in general, be stanardised, it is difficult to predict their exact nature. Therefore, this specification considers all security threats and aims at listing generic security requirements that shall be applicable irrespective of the actual se
18、rvices offered. The list of threats and requirements may however need to be updated as the 3GPP system evolves. The threat analysis performed relies to a large extent on previous experiences with 2G systems, in particular GSM, and takes into account known problems from that area. The security requir
19、ements listed in this specification shall be used as input for the choice of security features and the design of the 3GPP security architecture as specified in 2. The sructure of this technical specification is as follows: clause 2 iists the references used in this specification; clause 3 lists the
20、definitions and abbreviations used in this specification; clause 4 contains a reference to the general objectives for 3G security; clause 5 contains an overview of the context in which the security architecture of 3G is designed; clause 6 contains a list of identified security threats to 3G, and giv
21、es some results from the threat analyses that have been performed; clause 7 contains an overview of the risk assessment resulting from the threat analyses performed clause 8 contains the resulting list of security requirements for 3G and indicates how these requirements relate to the threats and the
22、 security objectives . Finally, Annex A gives some more detailed information on threats and risks connected to so called false base station attacks. 2 Ref e re n ces The following documents contain provisions which, through reference in this text, constitute provisions of the present document. 0 Ref
23、erences are either specific (identified by date of publication, edition number, version number, etc.) or non-specific. 0 For a specific reference, subsequent revisions do not apply. 0 For a non-specific reference, the latest version applies. A non-specific reference to an ETS shall also be taken to
24、refer to later versions published as an EN with the same number. 111 121 3G TS 33.120: “3G Security; Security Principles and Objectives“. 3G TS 33.102: “3G Security; Security Architecture“. 3G TS 21.133 version 3.0.0 7 36 TS 21.133 V3.0.0 (1999-05) Baseline documents: 3GPP s3-99003: UMTS 33.21, vers
- 1.请仔细阅读文档,确保文档完整性,对于不预览、不比对内容而直接下载带来的问题本站不予受理。
- 2.下载的文档,不会出现我们的网址水印。
- 3、该文档所得收入(下载+内容+预览)归上传者、原创作者;如果您是本文档原作者,请点此认领!既往收益都归您。
下载文档到电脑,查找使用更方便
10000 积分 0人已下载
下载 | 加入VIP,交流精品资源 |
- 配套讲稿:
如PPT文件的首页显示word图标,表示该PPT已包含配套word讲稿。双击word图标可打开word文档。
- 特殊限制:
部分文档作品中含有的国旗、国徽等图片,仅作为作品整体效果示例展示,禁止商用。设计者仅对作品中独创性部分享有著作权。
- 关 键 词:
- ETSI3GTS2113319993RDGENERATIONPARTNERSHIPPROJECTTECHNICALSPECIFICATIONGROUPSERVICESANDSYSTEMASPECTS3GSECURITYSECURITYTHREATSANDREQUIREMENTS

链接地址:http://www.mydoc123.com/p-727392.html