期刊文献+

UMTS系统空中接口接入协议的安全缺陷分析 被引量:5

Analysis of security flaw in access protocol of UMTS radio interface
下载PDF
导出
摘要 UMTS系统(Universal Mobile Telecommunication System,通用移动通信系统)采用了双向鉴权、信令完整性保护和数据加密等多种机制来保证用户通信的安全性。研究从挖掘协议安全缺陷出发,指出现有的UMTS系统通信协议中安全机制仍存在安全缺陷,以此为基础描述了一种能够有效通过系统的身份认证并阻止加密算法启动的中间人攻击方法,验证隐患的存在性。详细分析了导致现有安全缺陷的原因,给出了协议修改建议。 Mutual authentication,signaling integrity protection and encryption are used in the UMTS(Universal Mobile Telecommunication System)to promote the security level of users'communication through radio interface,which makes traditional interception means used in the 2nd generation system ineffective.But by studying the protocol from 3GPP(3rd Generation Partner Project),the leaks of radio interface still exist.Based on analyzing the security fault in the protocol used in the radio interface of UMTS,a kind of Man-in-the-Middle attack which can be successfully verified in the mutual authentication and prevent the start of encryption algorithm is proposed.The feasibility of this kind of attack is analyzed.
出处 《计算机工程与应用》 CSCD 北大核心 2011年第21期90-94,共5页 Computer Engineering and Applications
关键词 通用移动通信系统(UMTS) 空中接口 中间人攻击 身份认证 安全缺陷 Universal Mobile Telecommunication System(UMTS) radio interface Man-in-the-Middle attack authentication security flaw
  • 相关文献

参考文献9

  • 1Mitchell C J.The security of the GSM air interface protocol, Technical Report RHUL-MA-2001-3[R].Royal Holloway, Univer-sity of London,2001.
  • 2Niemi V,Nyberg K.UMTS security[M].England:John Wiley & Sons, Ltd, 2003.
  • 3Golie J.Cryptllnalysis of alleged A5 stream cipher[C]//Lecture Notes in Computer Science 1233:Advances in Cryptology,Proceedings of Eurocrypt'97.[S.1.] : Springer-Verlag, 1997:239-255,.
  • 4Goldberg I,Wagner D,Green L.The(real-time) cryptanalysis of A5/2[C]//The Rump Session of Crypto' 99,1999.
  • 5Barkan E, Biham E, Keller N.Instant ciphertext-only cryptanalysis of GSM encrypted communication[J].Journal of Cryptology, 2007, 21 (3) : 392-429.
  • 63GPP Technical Specification.3GPP TS 33.102,V9.3.0,third gen-eration partnership project; technical specifications group servicesand system aspects; 3G security; security architecture[R/OL].[2010-10]. http : //www.3gpp.org/frp/Specs/arehive/3 3_series/3 3.102/3 3102-930. zip.
  • 73GPP Technical Report.3GPP TR 31.900, V9.0.0, third generation partnership project; SIM/USIM internal and external interworking aspects[R/OL]. ( 2009-12 ).http://www. 3gpp.org/flp/Specs/archive/31 _se-ries/31.900/31900-900.zip.
  • 83GPP Technical Specification.3GPP TS 23.009 , V9.1.0, third gen-eration partnership project[R/OL].[2OlO-O3].http://www.3gpp.org/ftp/ Specs/archive/23_series/23.009/23009-910.zip.
  • 9Horn G,Howard P.Review of third generation mobile system se-curity arehitecture[C]//ISSE 2000,2000.

同被引文献21

  • 1林雪红,吴伟陵.GSM向3G演进系统安全的改进[J].电讯技术,2004,44(5):50-52. 被引量:7
  • 2林海波.关于3G移动通信系统的网络安全分析[J].移动通信,2006,30(5):46-49. 被引量:11
  • 3刘国刚.3G网络安全分析[J].通信管理与技术,2006(3):11-12. 被引量:3
  • 4中国联通网站.4G移动通信关键技术及特征[EB/OL].[2010-06-18].http://www.cnii.com.cn/20080308/ca460948.htm.
  • 53GPP TS 33.102, 3G Security: Security architecture[S].
  • 63GPP TS 03.20, 3G Security related network functions[S].
  • 73GPP TS 23. 003 ( V10. 1. 0),Technical SpecificationGroup Core Network and Terminals : Numbering,ad-dressing and identification [ S].
  • 83GPP TS 23. 401 ( V10. 0. 0),General Packet Radio Serv-ice ( GPRS) enhancements for Evolved Universal Terres-trial Radio Access Network( E-UTRAN) access[ S].
  • 9裴胜鲁.3G-WLAN融合网络鉴权与密钥协商机制研究[D].兰州:兰州大学,2011.
  • 10中国互联网络发展状况统计报告[EB/OL].新华网.http://news.xinhuanet.com/tech/2014-01/16/c_126015636.htm.2014-1-16.

引证文献5

二级引证文献16

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部