Tech-invite3GPPspaceIETFspace
21222324252627282931323334353637384‑5x
Top   in Index   Prev   Next

TR 33.887
Study on Security aspects for support for
5G Wireless and Wireline Convergence (5WWC)
Phase 2

3GPP‑Page  
V18.0.1 (Wzip)  2023/06  40 p.
Rapporteur:
Mr. Khare, Saurabh
Nokia Germany

full Table of Contents for  TR 33.887  Word version:  18.0.1

Here   Top

 

1  Scopep. 7

The objectives of the present document are to identify key issues, potential security and privacy requirements and solutions with respect to:
  • Whether and how to identify, authenticate and authorize the Authenticable Non-3GPP devices behind the Residential Gateway (RG) connecting to the network.
  • Whether and how to identify, authenticate and authorize the 3GPP devices (UE or N5CW devices) behind the Residential Gateway (RG) connecting to the network.
  • Security aspects of supporting slice in 5WWC.
  • Whether and how the security aspects for UE TNAP mobility can be supported in the 5GS without performing the full authentication.
Up

2  Referencesp. 7

3  Definitions of terms, symbols and abbreviationsp. 7

3.1  Termsp. 7

3.2  Symbolsp. 8

3.3  Abbreviationsp. 8

4  Assumptionsp. 8

5  Key issuesp. 8

6  Proposed solutionsp. 11

6.0  Mapping of solutions to key issuesp. 11

6.1  Solution #1: EAP_AKA prime based authentication for AUN3 devicesp. 11

6.2  Solution #2: EAP base authentication for AUN3 devices behind RG in PLMNp. 14

6.3  Solution #3: EAP base authentication for AUN3 devices behind RG in SNPNp. 15

6.4  Solution #4: EAP base authentication for AUN3 devices behind RG in SNPN by AAA serverp. 17

6.5  Solution #5: TNAP mobility solution with randp. 19

6.6  Solution #6: TNAP mobility solution with countp. 21

6.7  Solution #7: Using Fast BSS Transition for TNAP mobilityp. 24

6.8  Solution #8: Security Establishment for TNAP Mobilityp. 27

6.9  Solution #9: AUN3 device supporting 5G Key hierarchy (i.e. N5CW)p. 29

6.10  Solution #10: TNAP mobility solution without full authenticationp. 31

6.11  Solution #11: Security of N3IWF/TNGF reallocationp. 33

6.12  Solution #12: Authentication of UE connecting to RG by NSWOp. 35

6.13  Solution #13: TNAP mobility using modified ERPp. 35

7  Conclusionsp. 39

$  Change historyp. 40


Up   Top