Security analysis and enhancements of 3GPP authentication and key agreement protocol

被引:123
|
作者
Zhang, MX [1 ]
Fang, YG
机构
[1] Verizon Commun Inc, Waltham, MA 02451 USA
[2] Univ Florida, Dept Elect & Comp Engn, Gainesville, FL 32611 USA
关键词
authentication; privacy; security; third generation (3G); wireless;
D O I
10.1109/TWC.2004.842941
中图分类号
TM [电工技术]; TN [电子技术、通信技术];
学科分类号
0808 ; 0809 ;
摘要
This paper analyzes the authentication and key agreement protocol adopted by Universal Mobile Telecommunication System (UMTS), an emerging standard for third-generation (3G) wireless communications. The protocol, known as 3GPP AKA, is based on the security framework in GSM and provides significant enhancement to address and correct real and perceived weaknesses in GSM and other wireless communication systems. In this paper, we first show that the 3GPP AKA protocol is vulnerable to a variant of the so-called false base station attack. The vulnerability allows an adversary to redirect user traffic from one network to another. It also allows an adversary to use authentication vectors corrupted from one network to impersonate all other networks. Moreover, we demonstrate that the use of synchronization between a mobile station and its home network incurs considerable difficulty for the normal operation of 3GPP AKA. To address such security problems in the current 3GPP AKA, we then present a new authentication and key agreement protocol which defeats redirection attack and drastically lowers the impact of network corruption. The protocol, called AP-AKA, also eliminates the need of synchronization between a mobile station and its home network. AP-AKA specifies a sequence of six flows. Dependent on the execution environment, entities in the protocol have the flexibility of adaptively selecting flows for execution, which helps to optimize the efficiency of AP-AKA both in the home network and in foreign networks.
引用
收藏
页码:734 / 742
页数:9
相关论文
共 50 条
  • [1] Security analysis of 3GPP authentication and key agreement protocol
    Lu, Feng
    Zheng, Kang-Feng
    Niu, Xin-Xin
    Yang, Yi-Xian
    Li, Zhong-Xian
    [J]. Ruan Jian Xue Bao/Journal of Software, 2010, 21 (07): : 1768 - 1782
  • [2] A NOVEL 3GPP SAE AUTHENTICATION AND KEY AGREEMENT PROTOCOL
    Deng, Yaping
    Fu, Hong
    Xie, Xianzhong
    Zhou, Jihua
    Zhang, Yucheng
    Shi, Jinling
    [J]. 2009 IEEE INTERNATIONAL CONFERENCE ON NETWORK INFRASTRUCTURE AND DIGITAL CONTENT, PROCEEDINGS, 2009, : 557 - +
  • [3] Extension of an Efficient 3GPP Authentication and Key Agreement Protocol
    Cheng-Chi Lee
    Chin-Ling Chen
    Hsia-Hung Ou
    Lung Albert Chen
    [J]. Wireless Personal Communications, 2013, 68 : 861 - 872
  • [4] Extension of an Efficient 3GPP Authentication and Key Agreement Protocol
    Lee, Cheng-Chi
    Chen, Chin-Ling
    Ou, Hsia-Hung
    Chen, Lung Albert
    [J]. WIRELESS PERSONAL COMMUNICATIONS, 2013, 68 (03) : 861 - 872
  • [5] Efficient data memory usages of 3GPP authentication and key agreement protocol
    Park, Minha
    Kim, Yeog
    Yi, Okyeon
    [J]. International Journal of Security and its Applications, 2014, 8 (01): : 33 - 44
  • [6] Optimizing PKI for 3GPP Authentication and Key Agreement
    Chen Zemao
    Zhao Junge
    Huang Biyi
    [J]. 2012 FOURTH INTERNATIONAL CONFERENCE ON MULTIMEDIA INFORMATION NETWORKING AND SECURITY (MINES 2012), 2012, : 79 - 82
  • [7] New enhanced 3GPP authentication and key agreement
    Jiang, Rui
    Li, Jianhua
    Pan, Li
    Tie, Ling
    [J]. Jisuanji Gongcheng/Computer Engineering, 2006, 32 (12): : 147 - 149
  • [8] Formal analysis of 3GPP authentication and key agreement based on the strand space model
    Jiang, Rui
    Li, Jian-Hua
    Pan, Li
    [J]. Shanghai Jiaotong Daxue Xuebao/Journal of Shanghai Jiaotong University, 2006, 40 (05): : 791 - 795
  • [9] Enhanced Authentication Protocol for Improving Security in 3GPP LTE Networks
    Franklin, J. Vijay
    Paramasivam, K.
    [J]. INFORMATION AND NETWORK TECHNOLOGY, 2011, 4 : 28 - 33
  • [10] Two protocols for improving security during the authentication and key in the 3GPP networks
    Modiri, M. M.
    Salmasizadeh, M.
    Mohajeri, J.
    Khalaj, B. H.
    [J]. COMPUTER COMMUNICATIONS, 2023, 211 : 286 - 301