|
Work item:
|
Q.Sup.IGF-CFC
|
|
Subject/title:
|
Implementation guideline framework on combating fraudulent communications using digital public-key certificates
|
|
Status:
|
Under study
|
|
Approval process:
|
Agreement
|
|
Type of work item:
|
Supplement
|
|
Version:
|
New
|
|
Equivalent number:
|
-
|
|
Timing:
|
2028-06 (Medium priority)
|
|
Liaison:
|
ITU-T SG2, SG17
|
|
Supporting members:
|
Ministry of Communications, Department of Telecommunications (India), Centre for Development of Telematics
|
|
Summary:
|
This Supplement is a non-normative document prepared to facilitate consistent planning and deployment of technical solutions on combating fraudulent communications using public-key certificates based on a set of related ITU-T Recommendations.
Recommendation ITU-T Q.3057 specifies the signalling architecture and requirements for interconnection between trustable network entities in support of existing and emerging networks. Based on the architecture, it specifies the interfaces and signalling requirements between the functional entities and signalling procedures to be applied. The goal of Recommendation ITU-T Q.3063 is to identify the signalling requirements of calling line identification authentication including codes and signalling procedures based on the mechanism defined in Recommendation ITU-T Q.3057.
This document defines the architecture and signalling procedures for Calling Line Identification Authentication (CLIA) in existing SS7/ISUP network environments. It is based on the framework specified in ITU-T Q.3057 and the detailed CLIA procedures defined in ITU-T Q.3063.
This document presents an end-to-end design for Calling Line Identification (CLI) authentication using public key certificates, incorporating mechanisms for CLI assertion, cryptographic binding, secure transport within ISUP signalling, and receiving-network verification. It outlines the functional roles of network elements, specifically the Signalling Security Gateway (SSGW), in fostering trust across network domains. Furthermore, it converts these underlying standards into practical implementation guidelines, detailing the overall architecture, SSGW-based trust establishment, CLI signing and verification during call setup. It can also be used for developing a Proof-of-Concept (PoC) framework with associated test scenarios.
|
|
Comment:
|
-
|
|
Reference(s):
|
|
|
Historic references:
|
|
Contact(s):
|
|
| ITU-T A.5 justification(s): |
|
|
|
|
First registration in the WP:
2026-08-18 10:44:15
|
|
Last update:
2026-08-18 12:06:47
|
|