ETSI GSM 03 20-1993 European Digital Cellular Telecommunication System (Phase 2) Security Related Network Functions《欧洲数字蜂窝通信系统(第2阶段) 安全相关的网络功能》.pdf
《ETSI GSM 03 20-1993 European Digital Cellular Telecommunication System (Phase 2) Security Related Network Functions《欧洲数字蜂窝通信系统(第2阶段) 安全相关的网络功能》.pdf》由会员分享,可在线阅读,更多相关《ETSI GSM 03 20-1993 European Digital Cellular Telecommunication System (Phase 2) Security Related Network Functions《欧洲数字蜂窝通信系统(第2阶段) 安全相关的网络功能》.pdf(51页珍藏版)》请在麦多课文档分享上搜索。
1、3404583 0078408 I125 Released: 1 July 1993 GSM 03.20 Version: 4.2.1 Date: 25 June 1993 Key words: Work Item No: European digital cellular telecommunication system (phase 2); Security Related Network Functions ETSI European Telecommunications Standards Institute ETSI Secretariat: Route des Lucioles,
2、F-O692 1 Sophia Antipolis Cedex . France TP. + 33 92 94 42 O0 TF. + 33 93 65 47 16 Tx. 47 O0 40 F _ _ *his is an unpublished work the copyright in which vests in the European Telecommunications Standards Institute. All rights reserved. The information contained herein is the property of ETSI and no
3、pan may be reproduced or used except as authorised by contract or other written permission. The copyright and the foregoing restriction on *onmAgv,-*;nm qn.4 ,cc r-rm.4 -II -A:- ;- . h:rh +Ci- :m-+:- -.I hr nmhnA;aA = 3YOY.583 0078407 Ob2 Page 3 GSM 03.20 - version 4.2.1 : June 1993 CONTENTS O. SCOP
4、E 1. GENERAL 2. SUBSCRIBER IDENTITY CONFIDENTIALITY 2.1 Generality 2.2 Identifying method 2.3 Procedures 2.3.1 Location updating in the same MSC area 2.3.2 Location updating in a new MSCs area, within the same VLR area 2.3.3 Location updating in a new VLR; old VLR reachable 2.3.4 Location Updating i
5、n a new VLR; old VLR not reachable 2.3.5 Reallocation of a new TMSI 2.3.6 Local TMSI unknown 2.3.7 Location updating in a new VLR in case of a loss of information 2.3.8 Unsuccessful TMSI allocation 3. SUBSCRIBER IDENTITY AUTHENTICATION 3.1 Generality 3.2 The authentication procedure 3.3 Subscriber A
6、uthentication Key management 3.3.1 General authentication procedure 3.3.2 Authentication at location updating in a new VLR, using TMSI 3.3.3 Authentication at location updating in a new VLR, using IMSI 3.3.4 Authentication at location updating in a new VLR, using TMSI, 3.3.5 Authentication at locati
7、on updating in a new VLR, using TMSI, 3.3.6 Authentication with IMSI if authentication with TMSI fails 3.3.7 Re-use of security related information in failure situations TMSI unknown in old VLR old VLR not reachable 5 5 6 6 7 7 8 9 10 11 12 13 14 14 15 15 15 16 16 18 19 20 21 21 22 4. CONFIDENTIALIT
8、Y OF SIGNALLING INFORMATION ELEMENTS, CONNECTIONLESS DATA AND USER INFORMATION ELEMENTS ON PHYSICAL CONNECTIONS 23 4.1 Generality 23 4.2 The ciphering method 23 4.3 Key setting 24 4.4 Ciphering key sequence number 25 4.5 Starting of the ciphering and deciphering processes 25 4.6 Synchronisation 26 4
9、.7 Handover 26 4.8 Negotiation of A5 algorithm 26 5. SYNTHETIC SUMMARY 27 Previous page is blank 3404583 0078410 883 = Page 4 GSM 03.20 - version 4.2.1 : June 1993 ANNEX A (informative) SECURITY ISSUES RELATED TO SIGNALLING SCHEMES AND KEY MANAGEMENT A. 1 introduction A.2 Short description of the sc
10、hemes A.3 List of abbreviations A.4 Schemes ANNEX B (informative) SECURITY INFORMATION TO BE STORED IN THE ENTITIES OF THE GSM SYSTEM B. 1 Introduction 8.2 Entities and security information ANNEX C (normative) EXTERNAL SPECIFICATIONS OF SECURITY RELATED ALGORITHMS C.0 SCOPE C. 1 SPECIFICATIONS FOR A
11、LGORITHM A5 C. 1 . 1 Purpose C. 1.2 implementation indications C. 1.3 External specifications of Algorithm A5 C. 1.4 Internal specification of Algorithm A5 (2.2 ALGORITHM A3 C.2.1 Purpose C. 2.2 Implementation and operational requirements C.3 ALGORITHM A8 C. 3.1 Purpose C.3.2 Implementation and oper
12、ational requirements 29 29 29 31 32 45 45 45 47 47 47 47 49 50 50 50 50 51 51 51 48 3404583 00784LL 7LT Page 5 GSM 03.20 - version 4.2.1 : June 1993 o. SCOPE This technical specification specifies the network functions needed to provide the security related service and functions specified in technic
13、al specification GSM 02.09. This technical specification does not address the cryptological algorithms that are needed to provide different security related features. This topic is addressed in Annex C. Wherever a cryptological algorithm or mechanism is needed, this is signalled with a reference to
14、Annex C. The references refers only to functionalities, and some algorithms may be identical or use common hardware. 1. GENERAL The different security related services and functions that are listed in technical specification GSM 02.09 are grouped as follows: - Subscriber identity confidentialitv; -
15、Subscriber identity authentication; - Signalling information element and connectionless user data confidentiality and data confidentiality for physical connections (ciphering). It shall be possible to introduce new authentication and ciphering algorithms during the systems lifetime. The fixed networ
16、k may support more than one authentication and ciphering algorithm. The security procedures include mechanisms to enable recovery in event of signalling failures. These recovery procedures are designed to minimize the risk of a breach in the security of the system. General on figures: 1- 2- 3- 4- 5-
17、 In the figures below, signalling exchanges are referred to by functional names. The exact messages and message types are specified in technical specification GSM 04.08 and technical specification GSM 09.02. No assumptions are made for function splitting between MSC (Mobile Switching Centre), VLR (V
18、isitor Location Register) and 6SS (Base Station Subsystem. Signalling is described directly between MS and the local network (.e. BSS, MSC and VLR denoted in the figures by BSS/MSC/VLR). The splitting in Annex A is given only for illustrative purposes. Addressing fields are not given; all informatio
19、n relates to the signalling layer. The TMSI allows addressing schemes without IMSI, but the actual implementation is specified in the GSM 04- series. The term HPLMN in the figures below is used as a general term which should be understood as HLR (Home Location Register) or AuC (Authentication Centre
20、). What is put in a box is not part of the described procedure but it is relevant to the understanding of the figure. 3404583 0078412 656 m Paga 6 GSM 03.20 - version 4.2.1 : June 1993 2. SUBSCRIBER IDENTITY CONFIDENTIALITY 2.1 Generality The purpose of this function is to avoid the possibility for
21、an intruder to identify which subscriber is using a given resource on the radio path (e.9. TCH (Traffic Channel) or signalling resources) by listening to the signalling exchanges on the radio path. This allows both a high level of confidentiality for user data and signalling and protection against t
22、he tracing of a users location. The provision of this function implies that the IMSI (International Mobile Subscriber Identity), or any information allowing a listener to derive the IMSI easily, should not normally be transmitted in clear text in any signaling message on the radio path. Consequently
23、, to obtain the required level of protection, it is necessary that: - A protected identifying method is normally used instead of the IMSI on the radio path; and - The IMSI is not normally used as addressing means on the radio path (see technical specification GSM 02.09); - When the signalling proced
24、ures permit it, signalling information elements that convey information about the mobile subscriber identity must be ciphered for transmission on the radio path. The identifying method is specified in the following section. The ciphering of communication over the radio path is specified in section 4
- 1.请仔细阅读文档,确保文档完整性,对于不预览、不比对内容而直接下载带来的问题本站不予受理。
- 2.下载的文档,不会出现我们的网址水印。
- 3、该文档所得收入(下载+内容+预览)归上传者、原创作者;如果您是本文档原作者,请点此认领!既往收益都归您。
下载文档到电脑,查找使用更方便
10000 积分 0人已下载
下载 | 加入VIP,交流精品资源 |
- 配套讲稿:
如PPT文件的首页显示word图标,表示该PPT已包含配套word讲稿。双击word图标可打开word文档。
- 特殊限制:
部分文档作品中含有的国旗、国徽等图片,仅作为作品整体效果示例展示,禁止商用。设计者仅对作品中独创性部分享有著作权。
- 关 键 词:
- ETSIGSM03201993EUROPEANDIGITALCELLULARTELECOMMUNICATIONSYSTEMPHASE2SECURITYRELATEDNETWORKFUNCTIONS 欧洲

链接地址:http://www.mydoc123.com/p-733646.html