Tech-
invite
3GPP
space
IETF
space
21
22
23
24
25
26
27
28
29
31
32
33
34
35
36
37
38
4‑5x
Content for
TS 33.179
Word version: 13.12.0
1…
4…
7…
A…
B…
E…
4
Overview of MCPTT security
4.1
General
4.2
Signalling plane security architecture
4.3
Application plane security architecture
5
Authentication and authorization
5.1
General
5.2
LTE access authentication and security mechanism
5.3
Authentication for SIP core access
5.4
Authentication for HTTP-1
5.5
User authentication
5.6
MCPTT user authorization
6
Signalling plane protection
6.1
SIP-1 interface security
6.2
HTTP-1 interface security
...
4
Overview of MCPTT security
p. 10
4.1
General
p. 10
4.2
Signalling plane security architecture
p. 11
4.3
Application plane security architecture
p. 11
4.3.1
General
p. 11
4.3.2
User authentication and authorisation
p. 12
4.3.3
Identity keying of users and services
p. 12
4.3.4
Protection of application plane signalling
p. 13
4.3.5
Media security
p. 14
4.3.5.1
General
p. 14
4.3.5.2
Media security for group communications.
p. 14
4.3.5.3
Media security for private calls
p. 15
5
Authentication and authorization
p. 16
5.1
General
p. 16
5.2
LTE access authentication and security mechanism
p. 17
5.3
Authentication for SIP core access
p. 17
5.4
Authentication for HTTP-1
p. 17
5.5
User authentication
p. 17
5.5.1
Identity management functional model
p. 17
5.5.2
User authentication framework
p. 19
5.5.3
OpenID Connect (OIDC)
p. 19
5.5.3.1
General
p. 19
5.5.3.2
User authentication example using Username/Password
p. 21
5.6
MCPTT user authorization
p. 21
5.6.1
General
p. 21
5.6.2
MCPTT user service authorization with MCPTT Server
p. 23
5.6.2.0
General
p. 23
5.6.2.1
Using SIP REGISTER
p. 23
5.6.2.2
Using SIP PUBLISH
p. 24
6
Signalling plane protection
p. 25
6.1
SIP-1 interface security
p. 25
6.2
HTTP-1 interface security
p. 25