The security requirements on PC8* interface between ProSe capable UE and SLPKMF are derived based on the definition of the SLPKMF described in
clause 4.2.1.1 and the definition of PC8* interface described in
clause 4.2.2.
The 5G System shall support mutual authentication between the ProSe capable UE and the SLPKMF.
The 5G System shall support integrity protection for the transmission between the ProSe capable UE and the SLPKMF.
The 5G System shall support confidentiality protection for the transmission between the ProSe capable UE and the SLPKMF.
The 5G System shall support anti-replay protection for the transmission between the ProSe capable UE and the SLPKMF.
When using GBA for the security procedures on PC8* interface, the use of either TLS v1.2 or TLS v. 1.3 as described in
clause 5.3.3.2 of TS 33.303 applies with the following changes:
-
The SLPKMF takes the role of ProSe function.
-
Confidentiality protection shall be enabled.
When using AKMA for the security procedures on PC8* interface, the specification in
clause B.1.3.2 of TS 33.535 applies with the following changes:
-
The SLPKMF takes the role of AF.
-
Confidentiality protection shall be enabled.