Tech-
invite
3GPP
space
IETF
space
21
22
23
24
25
26
27
28
29
31
32
33
34
35
36
37
38
4‑5x
Content for
TR 33.862
Word version: 17.1.0
1…
5…
5
Key issues
6
Proposed solutions
7
Conclusions
$
Change history
5
Key issues
p. 8
5.1
Key issue #1: Transport security for the MSGin5G interfaces
p. 8
5.1.1
Key issue details
p. 8
5.1.2
Threats
p. 10
5.1.3
Potential security requirements
p. 10
5.2
Key issue #2: Authentication and Authorization between 5GMSGS client and MSGin5G Server
p. 10
5.2.1
Key Issue Details
p. 10
5.2.2
Security Threats
p. 10
5.2.3
Potential Security Requirements
p. 10
5.3
Key issue #3: Authentication and Authorization between Application Server and MSGin5G Server
p. 10
5.3.1
Key Issue Details
p. 10
5.3.2
Security Threats
p. 11
5.3.3
Potential Security Requirements
p. 11
5.4
Key issue #4: Authentication and Authorization between message Gateway and MSGin5G Server
p. 11
5.4.1
Key Issue Details
p. 11
5.4.2
Security Threats
p. 11
5.4.3
Potential Security Requirements
p. 11
6
Proposed solutions
p. 12
6.0
Mapping of Solutions to Key Issues
p. 12
6.1
Solution #1: Authentication and authorization between 5GMSGS client and MSGin5G server
p. 12
6.1.1
Solution overview
p. 12
6.1.2
Solution details
p. 13
6.1.3
Solution evaluation
p. 14
6.2
Solution #2: Authentication and authorization between 5GMSGS UE client and MSGin5G server using secondary authentication
p. 14
6.2.1
Solution overview
p. 14
6.2.2
Solution details
p. 15
6.2.3
Solution evaluation
p. 15
6.3
Solution #3: Transport security protection for MSGin5G-1 interfaces
p. 15
6.3.1
Solution overview
p. 15
6.3.2
Solution details
p. 16
6.3.3
Solution evaluation
p. 16
6.4
Solution #4: Authentication and Authorization between 5GMSGS Client and MSGin5G server based on AKMA
p. 16
6.4.1
Introduction
p. 16
6.4.2
Solution details
p. 16
6.4.3
Evaluation
p. 17
6.5
Solution #5: Authentication and authorization for 5GMSGS UE
p. 17
6.5.1
Introduction
p. 17
6.5.2
Solution details
p. 17
6.5.3
Evaluation
p. 18
6.6
Solution #6: Authentication and authorization for legacy UE
p. 18
6.6.1
Introduction
p. 18
6.6.2
Solution details
p. 19
6.6.3
Evaluation
p. 20
6.7
Solution #7: Authentication and authorization for Non-3GPP UE
p. 20
6.7.1
Introduction
p. 20
6.7.2
Solution details
p. 20
6.7.3
Evaluation
p. 21
6.8
Solution #8: Transport security protection for MSGin5G-3 interface
p. 21
6.8.1
Solution overview
p. 21
6.8.2
Solution details
p. 21
6.8.3
Solution evaluation
p. 22
6.9
Solution #9: Transport security protection for MSGin5G-1 interface based on AKMA
p. 22
6.9.1
Solution overview
p. 22
6.9.2
Solution details
p. 22
6.9.3
Solution evaluation
p. 23
6.10
Solution #10: Transport security of MSGin5G-2 and MSGin5G-4
p. 23
6.10.1
Solution overview
p. 23
6.10.2
Solution details
p. 23
6.10.3
Solution evaluation
p. 23
6.11
Solution #11: Authentication and Authorization between Application Server and MSGin5GServer
p. 23
6.11.1
Solution overview
p. 23
6.11.2
Solution details
p. 23
6.11.3
Solution evaluation
p. 24
6.12
Solution #12: Authentication and Authorization between Message Gateway and MSGin5GServer
p. 24
6.12.1
Solution overview
p. 24
6.12.2
Solution details
p. 24
6.12.3
Solution evaluation
p. 24
7
Conclusions
p. 24
7.1
Conclusions on Key Issue #1
p. 24
7.2
Conclusions on Key Issue #2
p. 25
7.3
Conclusions on Key Issue #3
p. 25
7.4
Conclusions on Key Issue #4
p. 25
$
Change history
p. 26