Page 507 - 5G Basics - Core Network Aspects
P. 507

Core network aspects                                            1


            T8      UE can be unauthorized to get information from HDC-FE or NID-FE.

            T9      HDC-FE or NID-FE can be impersonated to push false information to UE.
            T10     The signalling between UE and HDC-FE or NID-FE can be modified or eavesdropped.
            T11     The user plane data can be eavesdropped or modified.

            8.2     Security requirements
            R1      UE and NID-FE are required to be mutually authenticated.
            R2      Signalling between UE and MLM-FE is required to be integrity and confidentiality protected.

            R3      Signalling between UE and MLM-FE is required to be protected against replay attacks.
            R4      The location privacy of UE is required to be provided.
            R5      UE and HDC-FE are required to be mutually authenticated.
            R6      Signalling between UE and HDC-FE is required to be integrity and confidentiality protected.
            R7      Signalling between UE and HDC-FE is required to be protected against replay attacks.
            R8      Low-latency authentication and signalling protection is required to be provided.

            R9      Security context transfer is required to be optimized.
            R10     The mobility security solution is required to be media independent.
            R11     Mechanisms are required to be available to protect user plane traffic between the UE and the EN-
                    FE when the user profile so indicates.











































                                                                                                         497
   502   503   504   505   506   507   508   509   510   511   512