How To Protect Your Data From Being Stolen On An Lte Network (Mumts) From A Cell Phone Or Ipad (Lte) From Being Hacked On A Cell Network (Umts, Lte) On A Network (Lty)

Size: px
Start display at page:

Download "How To Protect Your Data From Being Stolen On An Lte Network (Mumts) From A Cell Phone Or Ipad (Lte) From Being Hacked On A Cell Network (Umts, Lte) On A Network (Lty)"

Transcription

1 3GPP LTE Security Aspects Dionisio Zumerle Technical Officer, 3GPP ETSI 3GPP GPP Workshop, Bangalore, 30 May

2 Contents LTE security architecture Security algorithms Lawful Interception Backhaul Security Relay Node Security 3GPP GPP Workshop, Bangalore, 30 May

3 LTE Security Architecture 3GPP GPP Workshop, Bangalore, 30 May

4 LTE Security: UMTS Security and LTE Architectural impact UMTS security enhancements: Mutual authentication Integrity keys Public algorithms Deeper encryption Longer key length LTE Architecture: Flat architecture Separation of control plane and user plane enodeb instead of NodeB/RNC All-IP network Interworking with legacy and non-3gpp networks Characteristics of LTE Security Re-use of UMTS Authentication and Key Agreement (AKA) Use of USIM required (GSM SIM excluded) Extended key hierarchy Possibility for longer keys Greater protection for backhaul Integrated interworking security for legacy and non-3gpp networks 3GPP GPP Workshop, Bangalore, 30 May

5 AKA and signalling protection UTRAN SGSN GERAN S1-MME S3 MME HSS S6a UE LTE-Uu E-UTRAN S1-U S10 S11 S4 Serving Gateway S12 S5 Confidentiality and integrity for signalling and confidentiality for user plane (RRC & NAS) Confidentiality and integrity for signalling only (NAS) Optional user plane protection (IPsec) 3GPP GPP Workshop, Bangalore, 30 May

6 Authentication and Key Agreement UE enb MME AuC NAS attach request (IMSI) NAS auth request (AUTN, RAND, KSIasme) NAS auth response (RES) NAS SMC (confidentiality and integrity algo) NAS Security Mode Complete RRC SMC (confidentiality and integrity algo) RRC Security Mode Complete S1AP Initial Context Setup AUTH data request (IMSI, SN_id) AUTH data response (AV={AUTN, XRES, RAND, Kasme}) 3GPP GPP Workshop, Bangalore, 30 May

7 Security Algorithms 3GPP GPP Workshop, Bangalore, 30 May

8 LTE Security Algorithms Currently two separate algorithms specified In addition to one NULL algorithm Current keylength 128 bits Possibility to extend to in the future Confidentiality protection of NAS/AS signalling recommended Integrity protection of NAS/AS signalling mandatory User data confidentiality protection recommended Ciphering/Deciphering applied on PDCP and NAS 3GPP GPP Workshop, Bangalore, 30 May

9 COUNT LTE Ciphering and Integrity mechanisms DIRECTION COUNT DIRECTION BEARER LENGTH BEARER LENGTH ciphering KEY EEA KEY EEA KEYSTREAM BLOCK KEYSTREAM BLOCK PLAINTEXT BLOCK CIPHERTEXT BLOCK PLAINTEXT BLOCK Sender Receiver integrity COUNT DIRECTION MESSAGE BEARER COUNT DIRECTION MESSAGE BEARER KEY EIA KEY EIA Sender MAC-I/NAS-MAC XMAC -I/XNAS-MAC Receiver 3GPP GPP Workshop, Bangalore, 30 May

10 128-EEA1/EIA1 Based on SNOW 3G stream cipher keystream produced by Linear Feedback Shift Register (LFSR) and a Finite State Machine (FSM) Different from KASUMI as possible selected during UMTS security design Allows for: low power consumption low gate count implementation in hardware 3GPP GPP Workshop, Bangalore, 30 May

11 128-EEA2/EIA2 AES block cipher Counter (CTM) Mode for ciphering CMAC Mode for MAC-I creation (integrity) Different from SNOW 3G as possible Cracking one would not affect the other Reasons why KASUMI was not re-used: enb already supports AES needs to support AES for NDS/IP Similarity with other non-3gpp accesses (e.g i) Other 3GPP GPP Workshop, Bangalore, 30 May

12 128-EEA3/EIA3 Based on Chinese ZUC stream cipher Three-phase evaluation ongoing Public evaluation ongoing! 2 nd International Workshop on ZUC: June 5-6 in Beijing Network-mandatory/network-optional to be decided 3GPP GPP Workshop, Bangalore, 30 May

13 Deeper Key hierarchy in LTE USIM / AuC UE / HSS UE / ASME K CK, IK K ASME K NASenc UE / MME K NASint K enb K UPint K UPenc K RRCint K RRCenc UE / enb Faster handovers and key changes, independent of AKA Added complexity in handling of security contexts Security breaches local 3GPP GPP Workshop, Bangalore, 30 May

14 Key Derivation HSS SN id, SQN AK CK,IK KDF K ASME MME K enb NH K D F K D F K enb * s KDF NH Physical cell ID, EARFCN-DL K enb RRC-enc-alg, Alg-ID RRC-int-alg, Alg-ID K enb enb enb NAS UPLINK COUNT UP-enc-alg, Alg-ID NAS-enc-alg, Alg-ID NAS-int-alg, Alg-ID UP-int-alg, Alg-ID KDF KDF KDF KDF KDF KDF K NASenc K NASint K UPint K UPenc K RRCint K RRCe nc Trunc Trunc Trunc 128 Trunc Trunc Trunc 128 K NASenc K NASint K UPint K UPenc K RRCint K RRCenc Key distribution and key derivation scheme for EPS (network side), found in Key Derivation Function (KDF) specification can be found in GPP GPP Workshop, Bangalore, 30 May

15 Lawful Interception 3GPP GPP Workshop, Bangalore, 30 May

16 Lawful Interception in 3GPP Cost Political Interception Business Retrieval Handover Analysis Legal process Relations Storage 3GPP GPP Workshop, Bangalore, 30 May

17 Lawful Interception in EPS Context and mechanisms similar to case of UMTS PS Different core entities (ICE, Intercepting Control Elements) ADMF handles requests from Law Enforcement Authorities target identity: IMSI, MSISDN and IMEI X1 interface provisions ICEs and Delivery Functions X2 delivers IRI (Intercept Related Information) X3 delivers CC (Content of Communication) HI1,2,3: Handover Interfaces with law enforcement Convey requests for interception of targets (HI1) Deliver IRI (HI2) and CC (HI3) to LEAs 3GPP GPP Workshop, Bangalore, 30 May

18 EPS LI Architecture UTRAN UE LTE-Uu E-UTRAN GERAN S1-MME S1-U ADMF SGSN MME S10 Mediation Function S3 S11 X1_1 X1_3 X1_2 HSS S6a X2 S4 Serving Gateway Delivery Function 2 Mediation Function S12 X2 Gx PDN Gateway PCRF X3 SGi Delivery Function 3 Mediation Function Rx Operator's IP Services (e.g. IMS, PSS etc.) HI1 HI2 HI3 LEMF 3GPP GPP Workshop, Bangalore, 30 May

19 Backhaul Security 3GPP GPP Workshop, Bangalore, 30 May

20 Backhaul Security Base stations becoming more powerful LTE enode B includes functions of NodeB and RNC Coverage needs grow constantly Infrastructure sharing Not always possible to trust physical security of enb Greater backhaul link protection necessary 3GPP GPP Workshop, Bangalore, 30 May

21 Certificate Enrollment for Base Stations RA/CA SEG Operator root certificate pre-installed. Vendor root certificate pre-installed. CMPv2 IPsec Enrolled base station certificate is used in IKE/IPsec. base station obtains operator-signed certificate on its own public key from RA/CA using CMPv2. base station Vendor-signed certificate of base station public key pre-installed. Picture from 3GPP TS GPP GPP Workshop, Bangalore, 30 May

22 Relay Node Security 3GPP GPP Workshop, Bangalore, 30 May

23 Relay Node Authentication Mutual authentication between Relay Node and network AKA used (RN attach) credentials stored on UICC Binding of Relay Node and USIM: Based on symmetric pre-shared keys, or Based on certificates UE Radio Radio Donor Backhaul Relay enb Core NW 3GPP GPP Workshop, Bangalore, 30 May

24 Relay Node Security Control plane traffic integrity protected User plane traffic optionally integrity protected Relay Node and network connection confidentiality protected Device integrity check Secure environment for storing and processing sensitive data 3GPP GPP Workshop, Bangalore, 30 May

25 Conclusions LTE Security: building on GSM and UMTS Security Newer security algorithms, longer keys Extended key hierarchy New features, addressing new scenarios Backhaul Security Relay Node Security 3GPP GPP Workshop, Bangalore, 30 May

26 Thank You! More Information about 3GPP: 3GPP GPP Workshop, Bangalore, 30 May

27 Backup: Selection of 3GPP Security Standards LTE Security: System Architecture Evolution (SAE); Security architecture System Architecture Evolution (SAE); Security aspects of non-3gpp Lawful Interception: Lawful interception requirements Lawful interception architecture and functions Handover interface for Lawful Interception Key Derivation Function: GAA: Generic Bootstrapping Architecture (GBA) Backhaul Security: Network Domain Security (NDS); Authentication Framework (AF) Relay Node Security Feasibility study on LTE relay node security (also ) Home (e) Node B Security: Home (evolved) Node B Security 3GPP GPP Workshop, Bangalore, 30 May

LTE Security. EventHelix.com. Encryption and Integrity Protection in LTE. telecommunication design systems engineering real-time and embedded systems

LTE Security. EventHelix.com. Encryption and Integrity Protection in LTE. telecommunication design systems engineering real-time and embedded systems LTE Security Encryption and Integrity Protection in LTE 2012 Inc. 1 LTE Security: ey Concepts Authentication The LTE Network verifies the UE s identity by challenging the UT use the keys and report a result.

More information

How to secure an LTE-network: Just applying the 3GPP security standards and that's it?

How to secure an LTE-network: Just applying the 3GPP security standards and that's it? How to secure an LTE-network: Just applying the 3GPP security standards and that's it? Telco Security Day @ Troopers 2012 Peter Schneider Nokia Siemens Networks Research 1 Nokia Siemens Networks 2012 Intro

More information

UMTS security. Helsinki University of Technology S-38.153 Security of Communication Protocols k-p.perttula@hut.fi 15.4.2003

UMTS security. Helsinki University of Technology S-38.153 Security of Communication Protocols k-p.perttula@hut.fi 15.4.2003 UMTS security Helsinki University of Technology S-38.153 Security of Communication Protocols k-p.perttula@hut.fi 15.4.2003 Contents UMTS Security objectives Problems with GSM security UMTS security mechanisms

More information

Network Access Security in Mobile 4G LTE. Huang Zheng Xiong Jiaxi An Sihua 2013.07

Network Access Security in Mobile 4G LTE. Huang Zheng Xiong Jiaxi An Sihua 2013.07 Network Access Security in Mobile 4G LTE Huang Zheng Xiong Jiaxi An Sihua 2013.07 Outline Mobile Evolution About LTE Overview of LTE System LTE Network Access Security Conclusion Mobile Evolution Improvements

More information

LTE Security How Good Is It?

LTE Security How Good Is It? LTE Security How Good Is It? Michael Bartock IT Specialist (Security) National Institute of Standards & Technology Jeffrey Cichonski IT Specialist (Security) National Institute of Standards & Technology

More information

Mobile Devices Security: Evolving Threat Profile of Mobile Networks

Mobile Devices Security: Evolving Threat Profile of Mobile Networks Mobile Devices Security: Evolving Threat Profile of Mobile Networks SESSION ID: MBS-T07 Anand R. Prasad, Dr.,ir., Selim Aissi, PhD Objectives Introduction Mobile Network Security Cybersecurity Implications

More information

3GPP SAE/LTE Security

3GPP SAE/LTE Security 3GPP SAE/LTE Security Anand R. Prasad NEC Corporation Disclaimer: This presentation gives views/opinion of the speaker and not necessarily that of NEC Corporation. NIKSUN WWSMC, 26

More information

LTE and the Evolution to 4G Wireless

LTE and the Evolution to 4G Wireless LTE and the Evolution to 4G Wireless Design and Measurement Challenges Bonus Material: Security in the LTE-SAE Network www.agilent.com/find/lte Introduction Security in the LTE-SAE Network This overview

More information

Diameter in the Evolved Packet Core

Diameter in the Evolved Packet Core Diameter in the Evolved Packet Core A Whitepaper November 2009 Page 2 DIAMETER in the Evolved Packet Core Mobile broadband is becoming a reality, as the Internet generation grows accustomed to having broadband

More information

3GPP Long Term Evolution: Architecture, Protocols and Interfaces

3GPP Long Term Evolution: Architecture, Protocols and Interfaces 3GPP Long Term Evolution: Architecture, Protocols and Interfaces Aderemi A. Atayero, Matthew K. Luka, Martha K. Orya, Juliet O. Iruemi Department of Electrical & Information Engineering Covenant University,

More information

Security Analysis of LTE Access Network

Security Analysis of LTE Access Network Security Analysis of LTE Access Network Cristina-Elena Vintilă, Victor-Valeriu Patriciu, Ion Bica Computer Science Department Military Technical Academy - Bucharest, ROMANIA cristina.vintila@gmail.com,

More information

Mobile Devices Security: Evolving Threat Profile of Mobile Networks

Mobile Devices Security: Evolving Threat Profile of Mobile Networks Mobile Devices Security: Evolving Threat Profile of Mobile Networks MBS-W07 Selim Aissi, PhD Objectives Mobile Security Threat Landscape Mobile Network Security Cybersecurity Implications, Mitigations

More information

LTE Attach and Default Bearer Setup Messaging

LTE Attach and Default Bearer Setup Messaging LTE Attach and Default Bearer Setup Messaging 2012 Inc. All Rights Reserved LTE Attach Message Sequence Chart enodeb MME SGW HSS Initial UE Message Update Location Update Location Answer Create Session

More information

Security in the Evolved Packet System

Security in the Evolved Packet System Vinjett Keeping wireless communication secure 4 Security in the Evolved Packet System Security is a fundamental building block of wireless telecommunications systems. It is also a process new threats are

More information

Long-Term Evolution. Mobile Telecommunications Networks WMNet Lab

Long-Term Evolution. Mobile Telecommunications Networks WMNet Lab Long-Term Evolution Mobile Telecommunications Networks WMNet Lab Background Long-Term Evolution Define a new packet-only wideband radio with flat architecture as part of 3GPP radio technology family 2004:

More information

LTE Overview October 6, 2011

LTE Overview October 6, 2011 LTE Overview October 6, 2011 Robert Barringer Enterprise Architect AT&T Proprietary (Internal Use Only) Not for use or disclosure outside the AT&T companies except under written agreement LTE Long Term

More information

Overview of the Evolved packet core network

Overview of the Evolved packet core network UNIVERSITY OF ALBERTA Overview of the Evolved packet core network Project report submitted to the Faculty of graduate studies and research University of Alberta In partial fulfillment of the requirements

More information

Enhanced Authentication and Key Agreement Procedure of next Generation 3GPP Mobile Networks

Enhanced Authentication and Key Agreement Procedure of next Generation 3GPP Mobile Networks Enhanced Authentication and Key Agreement Procedure of next Generation 3GPP Mobile Networks Masoumeh Purkhiabani and Ahmad Salahi Abstract In the next generation mobile networks, because of fundamental

More information

On the Security of 3GPP Networks

On the Security of 3GPP Networks On the Security of 3GPP Networks Michael Walker Vodafone AirTouch & Royal Holloway, University of London Chairman 3GPP SA3 - Security Eurocrypt 2000 Security of 3GPP networks 1 Acknowledgements This presentation

More information

Mobile IPv6 deployment opportunities in next generation 3GPP networks. I. Guardini E. Demaria M. La Monaca

Mobile IPv6 deployment opportunities in next generation 3GPP networks. I. Guardini E. Demaria M. La Monaca Mobile IPv6 deployment opportunities in next generation 3GPP networks I. Guardini E. Demaria M. La Monaca Overview of SAE/LTE Terminology SAE (System Architecture Evolution): core network/system aspects

More information

SAE and Evolved Packet Core

SAE and Evolved Packet Core SAE and Evolved Packet Core Farooq Bari Seattle Communications (COM-19) Society Chapter Nov. 13, 2008 1 SAE/EPS Background Around 2005, 3GPP RAN groups initiated the LTE work and in parallel the SAE work

More information

Evolutionary Trends towards Beyond 3G Mobile Networks

Evolutionary Trends towards Beyond 3G Mobile Networks Evolutionary Trends towards Beyond 3G Mobile Networks Cornel Pampu, Cornelia Kappler, Morten Schläger / SN MN PG NT MN 4 November 17th, 2006 The new company Nokia Siemens Networks is expected to start

More information

Optimization Handoff in Mobility Management for the Integrated Macrocell - Femtocell LTE Network

Optimization Handoff in Mobility Management for the Integrated Macrocell - Femtocell LTE Network Optimization Handoff in Mobility Management for the Integrated Macrocell - Femtocell LTE Network Ms.Hetal Surti PG Student, Electronics & Communication PIT, Vadodara E-mail Id:surtihetal99@gmail.com Mr.Ketan

More information

Protocol Signaling Procedures in LTE

Protocol Signaling Procedures in LTE White Paper Protocol Signaling Procedures in LTE By: V. Srinivasa Rao, Senior Architect & Rambabu Gajula, Lead Engineer Overview The exploding growth of the internet and associated services has fueled

More information

Nokia Siemens Networks Flexi Network Server

Nokia Siemens Networks Flexi Network Server Nokia Siemens Networks Flexi Network Server Ushering network control into the LTE era 1. Moving towards LTE Rapidly increasing data volumes in mobile networks, pressure to reduce the cost per transmitted

More information

Single Radio Voice Call Continuity. (SRVCC) with LTE. White Paper. Overview. By: Shwetha Vittal, Lead Engineer CONTENTS

Single Radio Voice Call Continuity. (SRVCC) with LTE. White Paper. Overview. By: Shwetha Vittal, Lead Engineer CONTENTS White Paper Single Radio Voice Call Continuity (SRVCC) with LTE By: Shwetha Vittal, Lead Engineer Overview Long Term Evolution (LTE) is heralded as the next big thing for mobile networks. It brings in

More information

Security Evaluation of CDMA2000

Security Evaluation of CDMA2000 Security Evaluation of CDMA2000 L. Ertaul 1, S. Natte 2, and G. Saldamli 3 1 Mathematics and Computer Science, CSU East Bay, Hayward, CA, USA 2 Mathematics and Computer Science, CSU East Bay, Hayward,

More information

3GPP System Architecture Evolution. ATIS LTE Conference January 26, 2009. 3GPP TSG SA Chairman Stephen Hayes

3GPP System Architecture Evolution. ATIS LTE Conference January 26, 2009. 3GPP TSG SA Chairman Stephen Hayes 3GPP System Architecture Evolution ATIS LTE Conference January 26, 2009 3GPP TSG SA Chairman Stephen Hayes 1 3GPP Directions FASTER Faster Data rates Decreased Latency High Cell Edge Throughput Spectrum

More information

Practical Security Testing for LTE Networks BlackHat Abu Dhabi December 2012 Martyn Ruks & Nils

Practical Security Testing for LTE Networks BlackHat Abu Dhabi December 2012 Martyn Ruks & Nils Practical Security Testing for LTE Networks BlackHat Abu Dhabi December 2012 Martyn Ruks & Nils 06/11/2012 1 Today s Talk Intro to LTE Networks Technical Details Attacks and Testing Defences Conclusions

More information

Evolution of the 3GPP Network Architecture, (the Evolved Packet Core)

Evolution of the 3GPP Network Architecture, (the Evolved Packet Core) Evolution of the 3GPP Network Architecture, (the Evolved Packet Core) Dr. Sungho Choi Vice Chairman of 3GPP TSG SA 1 Peak Data Rate (bps) DL/UL Air Interface Technology Evolution OFDMA 300M/75M Rel. 8

More information

LTE X2 Handover Messaging

LTE X2 Handover Messaging LTE X2 Handover Messaging 2013 Inc. All Rights Reserved LTE X2 Handover Sequence Diagram UE Target enodeb Source enodeb MME SGW Handover Confirm X2AP Handover Request X2AP Handover Request Acknowledge

More information

Architecture Overview NCHU CSE LTE - 1

Architecture Overview NCHU CSE LTE - 1 Architecture Overview NCHU CSE LTE - 1 System Architecture Evolution (SAE) Packet core networks are also evolving to the flat System Architecture Evolution (SAE) architecture. This new architecture optimizes

More information

Long Term Evolution - LTE. A short overview

Long Term Evolution - LTE. A short overview Long Term Evolution - LTE A short overview LTE Architecture 2 Conformance Test Suite Specification 3 GPP and ETSI product 3GPP TS 32.523-3 Evolved Universal Terrestrial Radio Access (E-UTRA) User Equipment

More information

Voice over IP over LTE (VoLTE) Impacts on LTE access. EFORT http://www.efort.com

Voice over IP over LTE (VoLTE) Impacts on LTE access. EFORT http://www.efort.com 1 Introduction Voice over IP over LTE (VoLTE) Impacts on LTE access EFORT http://www.efort.com IMS (IP Multimedia Subsystems) has been around for some time, and many infrastructure vendors have invested

More information

Voice over LTE Telephony on the National Public Safety Broadband Network

Voice over LTE Telephony on the National Public Safety Broadband Network Voice over LTE Telephony on the National Public Safety Broadband Network Brian Kassa Head of Technology June 5 th, 2013 1 Nokia Siemens Networks Agenda VoLTE Overview What is VoLTE VoLTE for FirstNet 2

More information

Security Testing 4G (LTE) Networks 44con 6th September 2012 Martyn Ruks & Nils

Security Testing 4G (LTE) Networks 44con 6th September 2012 Martyn Ruks & Nils Security Testing 4G (LTE) Networks 44con 6th September 2012 Martyn Ruks & Nils 11/09/2012 1 Today s Talk Intro to 4G (LTE) Networks Technical Details Attacks and Testing Defences Conclusions 11/09/2012

More information

Telesystem Innovations. LTE in a Nutshell: Protocol Architecture WHITE PAPER

Telesystem Innovations. LTE in a Nutshell: Protocol Architecture WHITE PAPER Telesystem Innovations LTE in a Nutshell: Protocol Architecture WHITE PAPER PROTOCOL OVERVIEW This whitepaper presents an overview of the protocol stack for LTE with the intent to describe where important

More information

Security in cellular-radio access networks

Security in cellular-radio access networks Security in cellular-radio access networks Ravishankar Borgaonkar, Oxford University 5G Security Workshop Stockholm, Sweden 11 May 2016 Outline Radio Access Network Layered Security Emerging low cost attacks

More information

Delivery of Voice and Text Messages over LTE

Delivery of Voice and Text Messages over LTE Delivery of Voice and Text Messages over LTE 1. The Market for Voice and SMS! 2. Third Party Voice over IP! 3. The IP Multimedia Subsystem! 4. Circuit Switched Fallback! 5. VoLGA LTE was designed as a

More information

Study of Long Term Evolution Network, its Architecture along with its Interfaces

Study of Long Term Evolution Network, its Architecture along with its Interfaces International Journal of Current Engineering and Technology E-ISSN 2277 4106, P-ISSN 2347 5161 2015 INPRESSCO, All Rights Reserved Available at http://inpressco.com/category/ijcet Research Article Study

More information

IP Multimedia System: general aspects and migration perspectives

IP Multimedia System: general aspects and migration perspectives IMS TPC EPC IP Multimedia System: general aspects and migration perspectives Dr. Leo Lehmann Federal Office of Communication, Switzerland ITU Workshop on Developments regarding telecommunication network

More information

Priority, Pre-Emption, and Quality of Service

Priority, Pre-Emption, and Quality of Service Priority, Pre-Emption, and Quality of Service http://www.pscr.gov Public Safety Communications Research Program Department of Commerce Boulder Labs Presentation by: Tracy McElvaney Electronics Engineer

More information

Security Architecture Standardization and Services in UMTS

Security Architecture Standardization and Services in UMTS Security Architecture Standardization and Services in UMTS Christos Xenakis and Lazaros Merakos Communication Networks Laboratory Department of Informatics & Telecommunications University of Athens, 15784

More information

A Vulnerability in the UMTS and LTE Authentication and Key Agreement Protocols

A Vulnerability in the UMTS and LTE Authentication and Key Agreement Protocols A Vulnerability in the UMTS and LTE Authentication and Key Agreement Protocols Joe-Kai Tsay and Stig F. Mjølsnes Department of Telematics Norwegian University of Sciences and Technology, NTNU {joe.k.tsay,sfm@item.ntnu.no}

More information

TEPZZ 68575_A_T EP 2 685 751 A1 (19) (11) EP 2 685 751 A1. (12) EUROPEAN PATENT APPLICATION published in accordance with Art.

TEPZZ 68575_A_T EP 2 685 751 A1 (19) (11) EP 2 685 751 A1. (12) EUROPEAN PATENT APPLICATION published in accordance with Art. (19) TEPZZ 687_A_T (11) EP 2 68 71 A1 (12) EUROPEAN PATENT APPLICATION published in accordance with Art. 3(4) EPC (43) Date of publication:.01.14 Bulletin 14/03 (21) Application number: 1278849.6 (22)

More information

LTE transport network security Jason S. Boswell Head of Security Sales, NAM Nokia Siemens Networks

LTE transport network security Jason S. Boswell Head of Security Sales, NAM Nokia Siemens Networks LTE transport network security Jason S. Boswell Head of Security Sales, NAM Nokia Siemens Networks 1 Nokia Siemens Networks New evolved Networks - new security needs Walled Garden Transport & Protocols

More information

LTE CDMA Interworking

LTE CDMA Interworking LTE CDMA Interworking ehrpd - Use of a Common Core and a Stepping Stone to LTE Mike Dolan Consulting Member of Technical Staff Alcatel-Lucent Overview ehrpd (evolved High Rate Packet Data*) ehrpd involves

More information

3GPP Long-Term Evolution / System Architecture Evolution Overview

3GPP Long-Term Evolution / System Architecture Evolution Overview 3GPP Long-Term Evolution / System Architecture Evolution Overview September 2006 Ulrich Barth Outline 2 3G-LTE Introduction Motivation Workplan Requirements LTE air-interface LTE Architecture SAE Architecture

More information

The LTE Network Architecture

The LTE Network Architecture S T R A T E G I C W H I T E P A P E R The LTE Network Architecture A comprehensive tutorial Long Term Evolution (LTE) is the latest buzzword on everyone s lips, but are you as conversant with the LTE architecture

More information

Voice and SMS in LTE White Paper

Voice and SMS in LTE White Paper Voice and SMS in LTE White Paper This white paper summarizes the technology options for supporting voice and short message service (SMS) in LTE, including circuit switched fallback (CSFB), SMS over SGs,

More information

Introduction to Evolved Packet Core

Introduction to Evolved Packet Core S T R A T E G I C W H I T E P A P E R Introduction to Evolved Packet Core This white paper provides a brief introduction to Evolved Packet Core a new mobile core for LTE. Herein, key concepts and functional

More information

GSM and UMTS security

GSM and UMTS security 2007 Levente Buttyán Why is security more of a concern in wireless? no inherent physical protection physical connections between devices are replaced by logical associations sending and receiving messages

More information

4G Mobile Networks At Risk

4G Mobile Networks At Risk 07.05.1203 Consortium Attack analysis and Security concepts for MObile Network infastructures supported by collaborative Information exchange 4G Mobile Networks At Risk The ASMONIA Threat and Risk Analysis

More information

NTT DOCOMO Technical Journal. Core Network Infrastructure and Congestion Control Technology for M2M Communications

NTT DOCOMO Technical Journal. Core Network Infrastructure and Congestion Control Technology for M2M Communications M2M 3GPP Standardization Further Development of LTE/LTE-Advanced LTE Release 10/11 Standardization Trends Core Network Infrastructure and Congestion Control Technology for M2M Communications The number

More information

SOLUTIONS FOR ROAMING AND INTEROPERABILITY PROBLEMS BETWEEN LTE AND 2G OR 3G NETWORKS

SOLUTIONS FOR ROAMING AND INTEROPERABILITY PROBLEMS BETWEEN LTE AND 2G OR 3G NETWORKS Review of the Air Force Academy No 2 (24) 2013 SOLUTIONS FOR ROAMING AND INTEROPERABILITY PROBLEMS BETWEEN LTE AND 2G OR 3G NETWORKS Radu CURPEN, Florin SANDU, Cosmin COSTACHE, Gabriel Mihail DANCIU Transilvania

More information

Security Architecture in UMTS Third Generation Cellular Networks Tomás Balderas-Contreras René A. Cumplido-Parra

Security Architecture in UMTS Third Generation Cellular Networks Tomás Balderas-Contreras René A. Cumplido-Parra Security Architecture in UMTS Third Generation Cellular Networks Tomás Balderas-Contreras René A. Cumplido-Parra Reporte Técnico No. CCC-04-002 27 de febrero de 2004 Coordinación de Ciencias Computacionales

More information

1 Introduction 1 1.1 Services and Applications for HSPA 3 1.2 Organization of the Book 6 References 7

1 Introduction 1 1.1 Services and Applications for HSPA 3 1.2 Organization of the Book 6 References 7 Figures and Tables About the Authors Preface Foreword Acknowledgements xi xix xxi xxiii xxv 1 Introduction 1 1.1 Services and Applications for HSPA 3 1.2 Organization of the Book 6 References 7 2 Overview

More information

Security and Authentication Concepts

Security and Authentication Concepts Security and Authentication Concepts for UMTS/WLAN Convergence F. Fitzek M. Munari V. Pastesini S. Rossi L. Badia Dipartimento di Ingegneria, Università di Ferrara, via Saragat 1, 44100 Ferrara, Italy

More information

Nationwide Interoperability Framework

Nationwide Interoperability Framework Nationwide Interoperability Framework Emergency Response Interoperability Center (ERIC) Public Safety Homeland Security Bureau Federal Communications Commission PSCR, Boulder, CO Dec 2, 2010 7/9/101 1

More information

3GPP Femtocells: Architecture and Protocols. by Gavin Horn

3GPP Femtocells: Architecture and Protocols. by Gavin Horn 3GPP Femtocells: Architecture and Protocols by Gavin Horn QUALCOMM Incorporated 5775 Morehouse Drive San Diego, CA 92121-1714 U.S.A. 3GPP Femtocells: Architecture and Protocols September 2010-2 - Contents

More information

Single Radio Voice Call Continuity (SRVCC) Testing Using Spirent CS8 Interactive Tester

Single Radio Voice Call Continuity (SRVCC) Testing Using Spirent CS8 Interactive Tester Application Note Single Radio Voice Call Continuity (SRVCC) Testing Using Spirent CS8 Interactive Tester September 2013 Rev. A 09/13 Single Radio Voice Call Continuity (SRVCC) Testing Using Spirent CS8

More information

Contents. Preface. Acknowledgement. About the Author. Part I UMTS Networks

Contents. Preface. Acknowledgement. About the Author. Part I UMTS Networks Contents Preface Acknowledgement About the Author Acronyms xv xxi xxiii xxv Part I UMTS Networks 1 Introduction 3 1.1 Mobile Telecommunication Networks and Computer Networks 4 1.2 Network Design Principles

More information

Technical white paper. Enabling mobile broadband growth Evolved Packet Core

Technical white paper. Enabling mobile broadband growth Evolved Packet Core Technical white paper Enabling mobile broadband growth Evolved Packet Core Contents 3 Enabling mobile broadband growth 4 Enabling migration from current networks to LTE 4 Terminology 5 The demand for cost-effective

More information

How To Understand The Gsm And Mts Mobile Network Evolution

How To Understand The Gsm And Mts Mobile Network Evolution Mobile Network Evolution Part 1 GSM and UMTS GSM Cell layout Architecture Call setup Mobility management Security GPRS Architecture Protocols QoS EDGE UMTS Architecture Integrated Communication Systems

More information

EETS 8316 Wireless Networks Fall 2013

EETS 8316 Wireless Networks Fall 2013 EETS 8316 Wireless Networks Fall 2013 Lecture: Cellular Overview: 3G and 4G http://lyle.smu.edu/~skangude/eets8316.html Dr. Shantanu Kangude skangude@lyle.smu.edu Third Generation Systems High-speed wireless

More information

ARIB TR-T12-33.919 V7.2.0. 3G Security; Generic Authentication Architecture (GAA); System Description (Release 7)

ARIB TR-T12-33.919 V7.2.0. 3G Security; Generic Authentication Architecture (GAA); System Description (Release 7) ARIB TR-T12-33.919 V7.2.0 3G Security; Generic Authentication Architecture (GAA); System Description (Release 7) Refer to Notice in the preface of ARIB TR-T12 for Copyrights. TR 33.919 V7.2.0 (2007-03)

More information

The future of mobile networking. David Kessens <david.kessens@nsn.com>

The future of mobile networking. David Kessens <david.kessens@nsn.com> The future of mobile networking David Kessens Introduction Current technologies Some real world measurements LTE New wireless technologies Conclusion 2 The future of mobile networking

More information

Trends in Mobile Network Architectures 3GPP LTE Mobile WiMAX Next Generation Mobile Networks Dr.-Ing. Michael Schopp, Siemens Networks

Trends in Mobile Network Architectures 3GPP LTE Mobile WiMAX Next Generation Mobile Networks Dr.-Ing. Michael Schopp, Siemens Networks Trends in Mobile Network Architectures 3GPP LTE Mobile WiMAX Next Generation Mobile Networks Dr.-Ing. Michael Schopp, Siemens Networks Outline 1 Next Generation Mobile Networks 2 New Radio Access Network

More information

UTRA-UTRAN Long Term Evolution (LTE) and 3GPP System Architecture Evolution (SAE)

UTRA-UTRAN Long Term Evolution (LTE) and 3GPP System Architecture Evolution (SAE) UTRA-UTRAN Long Term Evolution (LTE) and 3GPP System Architecture Evolution (SAE) Long Term Evolution of the 3GPP radio technology 3GPP work on the Evolution of the 3G Mobile System started with the RAN

More information

2G/3G Mobile Communication Systems

2G/3G Mobile Communication Systems 2G/3G Mobile Communication Systems Winter 2012/13 Integrated Communication Systems Group Ilmenau University of Technology Outline 2G Review: GSM Services Architecture Protocols Call setup Mobility management

More information

Kamakshi Sridhar, PhD Distinguished Member of Technical Staff Director Wireless CTO organization

Kamakshi Sridhar, PhD Distinguished Member of Technical Staff Director Wireless CTO organization Introduction to Evolved Packet Core (EPC): EPC Elements, protocols and procedures Kamakshi Sridhar, PhD Distinguished Member of Technical Staff Director Wireless CTO organization August 2012 Agenda 1.

More information

Chapter 2 Network Architecture and Protocols

Chapter 2 Network Architecture and Protocols Chapter 2 Network Architecture and Protocols The Third Generation Partnership Project (3GPP) Long-Term Evolution/System Architecture Evolution (LTE/SAE) seeks to take mobile technology to the next level

More information

Performance validation for the mobile core

Performance validation for the mobile core October 2015 Performance validation for the mobile core Are you ready for Terabits of Traffic? EPC and virtualization, the impact on performance validation Performance validation for the mobile core 1

More information

ETSI TR 133 919 V6.1.0 (2004-12)

ETSI TR 133 919 V6.1.0 (2004-12) TR 133 919 V6.1.0 (2004-12) Technical Report Universal Mobile Telecommunications System (UMTS); Generic Authentication Architecture (GAA); System description (3GPP TR 33.919 version 6.1.0 Release 6) 1

More information

LTE Performance and Analysis using Atoll Simulation

LTE Performance and Analysis using Atoll Simulation IOSR Journal of Electrical and Electronics Engineering (IOSR-JEEE) e-issn: 2278-1676,p-ISSN: 2320-3331, Volume 9, Issue 6 Ver. III (Nov Dec. 2014), PP 68-72 LTE Performance and Analysis using Atoll Simulation

More information

Public Safety Communications Research. LTE Demonstration Network Test Plan. Phase 3 Part 1: Network Interoperability & Drive Test. Version 2.

Public Safety Communications Research. LTE Demonstration Network Test Plan. Phase 3 Part 1: Network Interoperability & Drive Test. Version 2. Public Safety Communications Research LTE Demonstration Network Test Plan Phase 3 Part 1: Network Interoperability & Drive Test Version 2.4 May 7, 2013 1 1 Contents 2 List of Tables... 5 3 List of Figures...

More information

UMTS/GPRS system overview from an IP addressing perspective. David Kessens Jonne Soininen

UMTS/GPRS system overview from an IP addressing perspective. David Kessens Jonne Soininen UMTS/GPRS system overview from an IP addressing perspective David Kessens Jonne Soininen Introduction 1) Introduction to 3GPP networks (GPRS, UMTS) Technical overview and concepts for 3GPP networks Mobility

More information

LTE Control Plane on Intel Architecture

LTE Control Plane on Intel Architecture White Paper Soo Jin Tan Platform Solution Architect Siew See Ang Performance Benchmark Engineer Intel Corporation LTE Control Plane on Intel Architecture Using EEMBC CoreMark* to optimize control plane

More information

Long Term Evolution - LTE L10 Training Programs. Catalog of Course Descriptions

Long Term Evolution - LTE L10 Training Programs. Catalog of Course Descriptions Long Term Evolution - LTE L10 Training Programs Catalog of Course Descriptions Page 2 Catalog of Course Descriptions INTRODUCTION...3 LTE EVOLUTION, ADVANTAGES IN FEATURES AND APPLICATIONS...4 LTE/SAE

More information

Nokia Siemens Networks Flexi Network Gateway. Brochure

Nokia Siemens Networks Flexi Network Gateway. Brochure Nokia Siemens Networks Flexi Network Gateway Prepare for Mobile Broadband Growth Brochure. 2/14 Brochure Table of Content 1. Towards the flat all-ip Network... 3 2. Preparing the Gateway for Mobile Broadband

More information

Design and Implementation of a Distributed Mobility Management Entity (MME) on OpenStack

Design and Implementation of a Distributed Mobility Management Entity (MME) on OpenStack Aalto University School of Science Degree Programme in Computer Science and Engineering Gopika Premsankar Design and Implementation of a Distributed Mobility Management Entity (MME) on OpenStack Master

More information

Mobile network evolution A tutorial presentation

Mobile network evolution A tutorial presentation Mobile network evolution A tutorial presentation Andy Sutton Principal Design Consultant - Transport Networks Avren Events, Time and Sync in Telecoms, Dublin, Ireland Tuesday 2 nd November 2010 hello About

More information

How to deal with a thousand nodes: M2M communication over cellular networks. A. Maeder NEC Laboratories Europe andreas.maeder@neclab.

How to deal with a thousand nodes: M2M communication over cellular networks. A. Maeder NEC Laboratories Europe andreas.maeder@neclab. How to deal with a thousand nodes: M2M communication over cellular networks A. Maeder NEC Laboratories Europe andreas.maeder@neclab.eu Outline Introduction to M2M communications The M2M use case landscape

More information

LTE Perspective. Ericsson Inc. Sridhar vadlamudi LTE HEAD, India

LTE Perspective. Ericsson Inc. Sridhar vadlamudi LTE HEAD, India LTE Perspective Ericsson Inc. Sridhar vadlamudi LTE HEAD, India Topics Mobile Broadband growth Why LTE? Trials/Commercial deployments Public Ericsson AB 2010 2010-05-31 Page 2 A wider vision: Everything

More information

On LTE Security: Closing the Gap Between Standards and Implementation

On LTE Security: Closing the Gap Between Standards and Implementation On LTE Security: Closing the Gap Between Standards and Implementation A Thesis submitted to the Faculty of Worcester Polytechnic Institute In partial fulfillment for the requirements for the Degree of

More information

ETSI TS 133 107 V3.1.0 (2000-12)

ETSI TS 133 107 V3.1.0 (2000-12) TS 133 107 V3.1.0 (2000-12) Technical Specification Universal Mobile Telecommunications System (UMTS); 3G Security; Lawful Interception Architecture and Functions (3GPP TS 33.107 version 3.1.0 Release

More information

ETSI TS 133 102 V3.6.0 (2000-10)

ETSI TS 133 102 V3.6.0 (2000-10) TS 133 102 V3.6.0 (2000-10) Technical Specification Universal Mobile Telecommunications System (UMTS); 3G Security; Security Architecture (3GPP TS 33.102 version 3.6.0 Release 1999) 1 TS 133 102 V3.6.0

More information

3GPP TS 33.220 V6.13.0 (2007-06)

3GPP TS 33.220 V6.13.0 (2007-06) TS 33.220 V6.13.0 (2007-06) Technical Specification The present document has been developed within the 3 rd Generation Partnership Project ( TM ) and may be further elaborated for the purposes of. The

More information

ETSI TS 131 104 V11.1.0 (2012-10)

ETSI TS 131 104 V11.1.0 (2012-10) TS 131 104 V11.1.0 (2012-10) Technical Specification Universal Mobile Telecommunications System (UMTS); LTE; Characteristics of the Hosting Party Subscription Identity Module (HPSIM) application (3GPP

More information

Network Optimization based on performance and capacity criteria

Network Optimization based on performance and capacity criteria Network Optimization based on performance and capacity criteria Kimmo Aaltonen Wireless Development Manager 2011 EXFO Inc. All rights reserved. 1 I fully agree with this guy 2010 2012 EXFO Inc. All rights

More information

Migration to LTE: Infrastructure Impact. Maria E. Palamara Director CDMA-LTE Strategy Alcatel-Lucent January, 2009

Migration to LTE: Infrastructure Impact. Maria E. Palamara Director CDMA-LTE Strategy Alcatel-Lucent January, 2009 Migration to LTE: Infrastructure Impact Maria E. Palamara Director CDMA-LTE Strategy Alcatel-Lucent January, 2009 LTE to ehpd/hpd Interworking ehpd Internet Intranet IMS AT: Access Terminal enc: Enhanced

More information

SIMalliance LTE UICC profile. This document is a collection of requirements for optimal support of LTE/EPS networks by UICC

SIMalliance LTE UICC profile. This document is a collection of requirements for optimal support of LTE/EPS networks by UICC SIMalliance LTE UICC profile This document is a collection of requirements for optimal support of LTE/EPS networks by UICC Secure element architects for today s generation SIMalliance LTE UICC profile

More information

Performance Analysis and Deployment of VoLTE Mechanisms over 3GPP LTE-based Networks

Performance Analysis and Deployment of VoLTE Mechanisms over 3GPP LTE-based Networks International Journal of Computer Science and Telecommunications [Volume 4, Issue 10, October 2013] 1 ISSN 2047-3338 Performance Analysis and Deployment of VoLTE Mechanisms over 3GPP LTE-based Networks

More information

Telecommunication Services Engineering (TSE) Lab. Chapter III 4G Long Term Evolution (LTE) and Evolved Packet Core (EPC)

Telecommunication Services Engineering (TSE) Lab. Chapter III 4G Long Term Evolution (LTE) and Evolved Packet Core (EPC) Chapter III 4G Long Term Evolution (LTE) and Evolved Packet Core (EPC) http://users.encs.concordia.ca/~glitho/ Outline 1. LTE 2. EPC architectures (Basic and advanced) 3. Mobility management in EPC 4.

More information

CS Fallback Function for Combined LTE and 3G Circuit Switched Services

CS Fallback Function for Combined LTE and 3G Circuit Switched Services EPC Voice over Circuit Switched Services Special Articles on SAE Standardization Technology CS Fallback Function for Combined and Circuit Switched Services The PP, an international standardization body

More information

ETSI TS 129 274 V8.0.0 (2009-01) Technical Specification

ETSI TS 129 274 V8.0.0 (2009-01) Technical Specification TS 129 274 V8.0.0 (2009-01) Technical Specification Universal Mobile Telecommunications System (UMTS); LTE; General Packet Radio Service (GPRS); Evolved GPRS Tunnelling Protocol (egtp) for EPS (3GPP TS

More information

Operator-based Over-the-air M2M Wireless Sensor Network Security

Operator-based Over-the-air M2M Wireless Sensor Network Security Operator-based Over-the-air M2M Wireless Sensor Network Security Sachin Agarwal Christoph Peylo Deutsche Telekom A.G., Laboratories Ernst-Reuter-Platz 7 10587 Berlin DE Email: {sachin.agarwal, christoph.peylo}@telekom.de

More information

Alcatel-Lucent LTE Solution. Edgar Velarde Technical Support Manager May 2011

Alcatel-Lucent LTE Solution. Edgar Velarde Technical Support Manager May 2011 Alcatel-Lucent LTE Solution Edgar Velarde Technical Support Manager May 2011 Agenda 1. Drivers for LTE deployment 2. LTE overview 3. LTE architecture & components Drivers for LTE deployment Market Trend:

More information

IP-based Mobility Management for a Distributed Radio Access Network Architecture. helmut.becker@siemens.com

IP-based Mobility Management for a Distributed Radio Access Network Architecture. helmut.becker@siemens.com IP-based Mobility Management for a Distributed Radio Access Network Architecture helmut.becker@siemens.com Outline - Definition IP-based Mobility Management for a Distributed RAN Architecture Page 2 Siemens

More information

EVERYTHING YOU EVER WANTED TO KNOW ABOUT LTE

EVERYTHING YOU EVER WANTED TO KNOW ABOUT LTE EVERYTHING YOU EVER WANTED TO KNOW ABOUT LTE (BUT WERE AFRAID TO ASK) SEMINAR PART 2/2 Jonathan Buschmann Ericsson Italy Rome, April 27, 2011 Objectives of the seminar Answer these questions How have mobile

More information