通信技术
通信技術
통신기술
COMMUNICATIONS TECHNOLOGY
2014年
8期
935-940
,共6页
赵越%马晓旭%伍淼%孙夏声
趙越%馬曉旭%伍淼%孫夏聲
조월%마효욱%오묘%손하성
移动互联网%无线接入网%演进分组核心网%EAP-SIM%EAP-AKA
移動互聯網%無線接入網%縯進分組覈心網%EAP-SIM%EAP-AKA
이동호련망%무선접입망%연진분조핵심망%EAP-SIM%EAP-AKA
mobile Internet%wireless access network%evolved packet core%EAP-SIM%EAP-AKA
文中关注移动互联网网络接入安全性,介绍移动互联网面临的安全威胁,研究移动互联网的网络结构和接口协议,提出跨网系的统一认证与授权管理技术,阐述网络接入安全需求,针对EAP-SIM和EAP-AKA两种安全机制,分析网络接入鉴权与密钥协商流程,以及演进分组核心网络各网元设备功能,实现用户和网络之间的认证性、机密性和完整性的安全防护,为移动互联网网络安全体制建设提供理论依据与技术支撑。
文中關註移動互聯網網絡接入安全性,介紹移動互聯網麵臨的安全威脅,研究移動互聯網的網絡結構和接口協議,提齣跨網繫的統一認證與授權管理技術,闡述網絡接入安全需求,針對EAP-SIM和EAP-AKA兩種安全機製,分析網絡接入鑒權與密鑰協商流程,以及縯進分組覈心網絡各網元設備功能,實現用戶和網絡之間的認證性、機密性和完整性的安全防護,為移動互聯網網絡安全體製建設提供理論依據與技術支撐。
문중관주이동호련망망락접입안전성,개소이동호련망면림적안전위협,연구이동호련망적망락결구화접구협의,제출과망계적통일인증여수권관리기술,천술망락접입안전수구,침대EAP-SIM화EAP-AKA량충안전궤제,분석망락접입감권여밀약협상류정,이급연진분조핵심망락각망원설비공능,실현용호화망락지간적인증성、궤밀성화완정성적안전방호,위이동호련망망락안전체제건설제공이론의거여기술지탱。
This paper focuses on network access security of mobile Internet, introduces security threats and challenges with which mobile Internet is confronted, analyzes its network architectures and interface proto-cols, presents cross-network unified authentication and authorization technique, and then describes net-work access security requirements. Regarding to EAP-SIM and EAP-AKA security mechanisms, this pa-per investigates the processes of network access authentication and key agreement, as well as every network element and equipment's function in the evolved packet core networks. It is hoped that this study will give protection for authentication, confidentiality, and integrality between user equipment and access network. It also provides available references to building security protection mechanism of mobile Internet.