ETSI EN 302 878-5-2011 Access Terminals Transmission and Multiplexing (ATTM) Third Generation Transmission Systems for Interactive Cable Television Services - IP Cable Modems Part .pdf
《ETSI EN 302 878-5-2011 Access Terminals Transmission and Multiplexing (ATTM) Third Generation Transmission Systems for Interactive Cable Television Services - IP Cable Modems Part .pdf》由会员分享,可在线阅读,更多相关《ETSI EN 302 878-5-2011 Access Terminals Transmission and Multiplexing (ATTM) Third Generation Transmission Systems for Interactive Cable Television Services - IP Cable Modems Part .pdf(185页珍藏版)》请在麦多课文档分享上搜索。
1、 ETSI EN 302 878-5 V1.1.1 (2011-11) Access, Terminals, Transmission and Multiplexing (ATTM); Third Generation Transmission Systems for Interactive Cable Television Services - IP Cable Modems; Part 5: Security Services; DOCSIS 3.0 European Standard ETSI ETSI EN 302 878-5 V1.1.1 (2011-11) 2Reference D
2、EN/ATTM-003006-5 Keywords access, broadband, cable, data, IP, IPCable, modem ETSI 650 Route des Lucioles F-06921 Sophia Antipolis Cedex - FRANCE Tel.: +33 4 92 94 42 00 Fax: +33 4 93 65 47 16 Siret N 348 623 562 00017 - NAF 742 C Association but non lucratif enregistre la Sous-Prfecture de Grasse (0
3、6) N 7803/88 Important notice Individual copies of the present document can be downloaded from: http:/www.etsi.org The present document may be made available in more than one electronic version or in print. In any case of existing or perceived difference in contents between such versions, the refere
4、nce version is the Portable Document Format (PDF). In case of dispute, the reference shall be the printing on ETSI printers of the PDF version kept on a specific network drive within ETSI Secretariat. Users of the present document should be aware that the document may be subject to revision or chang
5、e of status. Information on the current status of this and other ETSI documents is available at http:/portal.etsi.org/tb/status/status.asp If you find errors in the present document, please send your comment to one of the following services: http:/portal.etsi.org/chaircor/ETSI_support.asp Copyright
6、Notification No part may be reproduced except as authorized by written permission. The copyright and the foregoing restriction extend to reproduction in all media. European Telecommunications Standards Institute 2011. All rights reserved. DECTTM, PLUGTESTSTM, UMTSTMand the ETSI logo are Trade Marks
7、of ETSI registered for the benefit of its Members. 3GPPTM and LTE are Trade Marks of ETSI registered for the benefit of its Members and of the 3GPP Organizational Partners. GSM and the GSM logo are Trade Marks registered and owned by the GSM Association. ETSI ETSI EN 302 878-5 V1.1.1 (2011-11) 3Cont
8、ents Intellectual Property Rights 10g3Foreword . 10g31 Scope 11g31.1 Introduction and Purpose 11g31.2 Requirements 11g31.3 Conventions 11g32 References 11g32.1 Normative references . 12g32.2 Informative references 13g33 Definitions and abbreviations . 14g33.1 Definitions 14g33.2 Abbreviations . 14g3
9、4 Void 16g35 Overview 16g35.1 New DOCSIS 3.0 Security Features. 16g35.2 Technical Overview . 17g35.2.1 BPI+ Architecture. 17g35.2.1.1 Packet Data Encryption . 17g35.2.1.2 Key Management Protocol 17g35.2.1.3 DOCSIS Security Associations . 18g35.2.1.4 QoS SIDs and DOCSIS SAIDs . 19g35.2.1.5 BPI+ Enfor
10、ce. 19g35.2.2 Secure Provisioning 20g35.3 Operation 20g35.3.1 Cable Modem Initialization 20g35.3.1.1 Network Admission Control . 21g35.3.1.2 EAE and Authentication Reuse . 21g35.3.1.3 Configuration Registration Enforcement 21g35.3.2 Cable Modem Key Update Mechanism 22g35.3.3 Cable Modem Secure Softw
11、are Download . 22g36 Encrypted DOCSIS MAC Frame Formats . 22g36.1 CM Requirements. 22g36.2 CMTS Requirements 22g36.3 Variable-Length PDU MAC Frame Format . 23g36.3.1 Baseline Privacy Extended Header Formats . 24g36.4 Fragmentation MAC Frame Format . 25g36.5 Registration Request (REG-REQ-MP) MAC Mana
12、gement Messages. 26g36.6 Use of the Baseline Privacy Extended Header in the MAC Header . 28g37 Baseline Privacy Key Management (BPKM) Protocol 28g37.1 State Models . 28g37.1.1 Introduction. 28g37.1.1.1 Authorization State Machine Overview 28g37.1.1.2 TEK State Machine Overview 30g37.1.2 Encrypted Mu
13、lticast 31g37.1.2.1 Signaling of Dynamic and Static Multicast Session SAs when MDF is Disabled 32g37.1.2.2 Signaling of Dynamic and Static Multicast Session SAs when MDF is Enabled . 32g37.1.2.2.1 Requirements Specific to the Signaling of Dynamic SAs for Dynamic Multicast Sessions . 32g37.1.2.2.2 Re
14、quirements Specific to the Signaling of Dynamic SAs for Static Multicast Sessions . 33g37.1.3 Selecting Cryptographic Suites . 33g37.1.4 Authorization State Machine 34g37.1.4.1 Brief Description of States 35g37.1.4.1.1 Start . 35g3ETSI ETSI EN 302 878-5 V1.1.1 (2011-11) 47.1.4.1.2 Auth Wait 35g37.1.
15、4.1.3 Authorized 35g37.1.4.1.4 Reauth Wait 35g37.1.4.1.5 Auth Reject Wait 35g37.1.4.1.6 Silent . 36g37.1.4.2 Brief Description of Messages 36g37.1.4.2.1 Authorization Request (Auth Request) 36g37.1.4.2.2 Authorization Reply (Auth Reply) 36g37.1.4.2.3 Authorization Reject (Auth Reject) . 36g37.1.4.2.
16、4 Authorization Invalid (Auth Invalid) . 36g37.1.4.2.5 Authentication Information (Auth Info) 36g37.1.4.3 Brief Description of Events . 37g37.1.4.3.1 Initiate Authentication . 37g37.1.4.3.2 Timeout 37g37.1.4.3.3 Auth Grace Timeout 37g37.1.4.3.4 Reauth 37g37.1.4.3.5 Auth Invalid . 37g37.1.4.3.6 Perm
17、Auth Reject . 37g37.1.4.3.7 Auth Reject 37g37.1.4.3.8 EAE Disabled Auth Reject 37g37.1.4.4 Events sent to TEK State Machine 37g37.1.4.4.1 TEK Stop . 38g37.1.4.4.2 TEK Authorized 38g37.1.4.4.3 Auth Pend 38g37.1.4.4.4 Auth Comp 38g37.1.4.5 Brief Description of Timing Parameters . 38g37.1.4.5.1 Authori
18、ze Wait Timeout (Auth Wait Timeout) . 38g37.1.4.5.2 Reauthorize Wait Timeout (Reauth Wait Timeout). 38g37.1.4.5.3 Authorization Grace Time (Auth Grace Timeout). 38g37.1.4.5.4 Authorize Reject Wait Timeout (Auth Reject Wait Timeout) . 38g37.1.4.6 Timers . 38g37.1.4.6.1 Authorization Request . 38g37.1
19、.4.6.2 Authorization Reject 38g37.1.4.6.3 Authorization Grace 38g37.1.4.7 Actions 39g37.1.5 TEK State Machine . 41g37.1.5.1 Brief Description of States 42g37.1.5.1.1 Start . 42g37.1.5.1.2 Op Wait . 42g37.1.5.1.3 Op Reauth Wait 42g37.1.5.1.4 Op . 42g37.1.5.1.5 Rekey Wait . 42g37.1.5.1.6 Rekey Reauth
20、Wait . 42g37.1.5.2 Brief Description of Messages 42g37.1.5.2.1 Key Request 42g37.1.5.2.2 Key Reply 43g37.1.5.2.3 Key Reject . 43g37.1.5.2.4 TEK Invalid . 43g37.1.5.3 Brief Description of Events . 43g37.1.5.3.1 Stop 43g37.1.5.3.2 Authorized . 43g37.1.5.3.3 Auth Pend 43g37.1.5.3.4 Auth Comp 43g37.1.5.
21、3.5 TEK Invalid . 43g37.1.5.3.6 Timeout 43g37.1.5.3.7 TEK Refresh Timeout 43g37.1.5.4 Brief Description of Timing Parameters . 43g37.1.5.4.1 Operational Wait Timeout . 44g37.1.5.4.2 Rekey Wait Timeout 44g37.1.5.4.3 TEK Grace Time . 44g37.1.5.5 Timers . 44g37.1.5.5.1 Key Request Retry . 44g3ETSI ETSI
22、 EN 302 878-5 V1.1.1 (2011-11) 57.1.5.5.2 TEK Refresh 44g37.1.5.6 Actions 44g37.2 Key Management Message Formats. 46g37.2.1 Packet Formats 46g37.2.1.1 Authorization Request (Auth Request) . 48g37.2.1.2 Authorization Reply (Auth Reply) 48g37.2.1.3 Authorization Reject (Auth Reject) . 49g37.2.1.4 Key
23、Request 49g37.2.1.5 Key Reply . 50g37.2.1.6 Key Reject . 50g37.2.1.7 Authorization Invalid 51g37.2.1.8 TEK Invalid. 51g37.2.1.9 Authentication Information (Auth Info) 51g37.2.1.10 SA Map Request (MAP Request) . 52g37.2.1.11 SA Map Reply (Map Reply) . 52g37.2.1.12 SA Map Reject (Map Reject) 52g37.2.2
24、 BPKM Attributes 53g37.2.2.1 Serial-Number. 54g37.2.2.2 Manufacturer-ID . 54g37.2.2.3 MAC-Address . 55g37.2.2.4 RSA-Public-Key . 55g37.2.2.5 CM-Identification 55g37.2.2.6 Display-String . 56g37.2.2.7 Auth-Key . 56g37.2.2.8 TEK . 56g37.2.2.9 Key-Lifetime . 56g37.2.2.10 Key-Sequence-Number . 57g37.2.2
- 1.请仔细阅读文档,确保文档完整性,对于不预览、不比对内容而直接下载带来的问题本站不予受理。
- 2.下载的文档,不会出现我们的网址水印。
- 3、该文档所得收入(下载+内容+预览)归上传者、原创作者;如果您是本文档原作者,请点此认领!既往收益都归您。
下载文档到电脑,查找使用更方便
10000 积分 0人已下载
下载 | 加入VIP,交流精品资源 |
- 配套讲稿:
如PPT文件的首页显示word图标,表示该PPT已包含配套word讲稿。双击word图标可打开word文档。
- 特殊限制:
部分文档作品中含有的国旗、国徽等图片,仅作为作品整体效果示例展示,禁止商用。设计者仅对作品中独创性部分享有著作权。
- 关 键 词:
- ETSIEN30287852011ACCESSTERMINALSTRANSMISSIONANDMULTIPLEXINGATTMTHIRDGENERATIONTRANSMISSIONSYSTEMSFORINTERACTIVECABLETELEVISIONSERVICESIPCABLEMODEMSPARTPDF

链接地址:http://www.mydoc123.com/p-730459.html