基于身份池和布隆过滤器的改进5G-AKA方案

Shiyang Dong, C. Wan
{"title":"基于身份池和布隆过滤器的改进5G-AKA方案","authors":"Shiyang Dong, C. Wan","doi":"10.1109/ICCCS52626.2021.9449296","DOIUrl":null,"url":null,"abstract":"5G-AKA is an identity authentication protocol for 5G network that ensures communication security, such as the network and subscribers. However, the existing standards simply associate 5G Globally Unique Temporary UE Identity (GUTI) with the Subscription Permanent Identifier (SUPI) in the Home Network (HN) as a temporary identity solution for 5G subscribers, UE cannot quickly change the 5G-GUTI according to its own needs. Moreover, the current Sequence Number (SQN) synchronization mechanism will cause low authentication efficiency in the specific situation. To address the above issues, we use Bloom filter to establish a many-to-one mapping relationship between the identity and the UE, so as to achieve rapid verification of the identifier. Based on this, a mechanism that allows the UE to change the temporary identity and a fast authentication mechanism under the condition of sequence out-of-synchronization are proposed. Security analysis and experimental results demonstrate that the proposed scheme is efficient, secure, and compatible with the existing system.","PeriodicalId":376290,"journal":{"name":"2021 IEEE 6th International Conference on Computer and Communication Systems (ICCCS)","volume":"5 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2021-04-23","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":"{\"title\":\"Improved 5G-AKA Scheme Based on Identity Pool and Bloom Filter\",\"authors\":\"Shiyang Dong, C. Wan\",\"doi\":\"10.1109/ICCCS52626.2021.9449296\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"5G-AKA is an identity authentication protocol for 5G network that ensures communication security, such as the network and subscribers. However, the existing standards simply associate 5G Globally Unique Temporary UE Identity (GUTI) with the Subscription Permanent Identifier (SUPI) in the Home Network (HN) as a temporary identity solution for 5G subscribers, UE cannot quickly change the 5G-GUTI according to its own needs. Moreover, the current Sequence Number (SQN) synchronization mechanism will cause low authentication efficiency in the specific situation. To address the above issues, we use Bloom filter to establish a many-to-one mapping relationship between the identity and the UE, so as to achieve rapid verification of the identifier. Based on this, a mechanism that allows the UE to change the temporary identity and a fast authentication mechanism under the condition of sequence out-of-synchronization are proposed. Security analysis and experimental results demonstrate that the proposed scheme is efficient, secure, and compatible with the existing system.\",\"PeriodicalId\":376290,\"journal\":{\"name\":\"2021 IEEE 6th International Conference on Computer and Communication Systems (ICCCS)\",\"volume\":\"5 1\",\"pages\":\"0\"},\"PeriodicalIF\":0.0000,\"publicationDate\":\"2021-04-23\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"0\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"2021 IEEE 6th International Conference on Computer and Communication Systems (ICCCS)\",\"FirstCategoryId\":\"1085\",\"ListUrlMain\":\"https://doi.org/10.1109/ICCCS52626.2021.9449296\",\"RegionNum\":0,\"RegionCategory\":null,\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"\",\"JCRName\":\"\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"2021 IEEE 6th International Conference on Computer and Communication Systems (ICCCS)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/ICCCS52626.2021.9449296","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 0

摘要

5G- aka是保障网络和用户等通信安全的5G网络身份认证协议。然而,现有标准只是将5G全球唯一临时用户标识(GUTI)与家庭网络(HN)中的订阅永久标识(SUPI)相关联,作为5G用户的临时身份解决方案,UE无法根据自己的需求快速更改5G-GUTI。此外,现有的SQN (Sequence Number)同步机制在特定情况下会导致认证效率较低。为了解决以上问题,我们使用Bloom filter在标识和UE之间建立多对一的映射关系,从而实现标识符的快速验证。在此基础上,提出了一种允许终端更改临时身份的机制和一种序列非同步情况下的快速认证机制。安全性分析和实验结果表明,该方案高效、安全,且与现有系统兼容。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
Improved 5G-AKA Scheme Based on Identity Pool and Bloom Filter
5G-AKA is an identity authentication protocol for 5G network that ensures communication security, such as the network and subscribers. However, the existing standards simply associate 5G Globally Unique Temporary UE Identity (GUTI) with the Subscription Permanent Identifier (SUPI) in the Home Network (HN) as a temporary identity solution for 5G subscribers, UE cannot quickly change the 5G-GUTI according to its own needs. Moreover, the current Sequence Number (SQN) synchronization mechanism will cause low authentication efficiency in the specific situation. To address the above issues, we use Bloom filter to establish a many-to-one mapping relationship between the identity and the UE, so as to achieve rapid verification of the identifier. Based on this, a mechanism that allows the UE to change the temporary identity and a fast authentication mechanism under the condition of sequence out-of-synchronization are proposed. Security analysis and experimental results demonstrate that the proposed scheme is efficient, secure, and compatible with the existing system.
求助全文
通过发布文献求助,成功后即可免费获取论文全文。 去求助
来源期刊
自引率
0.00%
发文量
0
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
确定
请完成安全验证×
copy
已复制链接
快去分享给好友吧!
我知道了
右上角分享
点击右上角分享
0
联系我们:info@booksci.cn Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。 Copyright © 2023 布克学术 All rights reserved.
京ICP备2023020795号-1
ghs 京公网安备 11010802042870号
Book学术文献互助
Book学术文献互助群
群 号:481959085
Book学术官方微信