5G UDM安全威胁分析及安全增强机制研究

5G UDM SECURITY THREAT ANALYSIS AND SECURITY ENHANCEMENT MECHANISM RESEARCH

  • 摘要: UDM作为5G核心网中的重要网络功能,在核心网中有较高的安全意义。而5G核心网网络功能间的相互访问流程存在的一些安全缺陷,会给UDM带来较大的安全隐患。文中分析了服务访问流程中存在的安全问题以及对UDM产生的安全威胁,在此基础上提出增强UDM安全性的方案,将零信任安全应用到5G核心网中,设计一个UDM安全增强方案,包括监控访问UDM和NRF的信令流量、对访问UDM的网络功能进行动态信任评估,以及在严格认证的基础上对NF的访问权限进行细粒度控制。

     

    Abstract: As an important network function in the 5G core network, UDM has a high security level within the core network. However, the security of UDM is under the jeopardies of certain security threats exist in the mutual access process between 5G core network function. This paper analyzes the security problems in service access process and the security threats to UDM, and further proposes a scheme to improve UDM security on this basis. The given scheme applied the zero-trust security to the core network and designed an UDM security enhancement scheme including monitoring the flow of access to UDM and NRF, performing dynamic trust evaluation on the network function of accessing UDM, and performing a fine-grained control of NF access permission on the basis of strict authentication.

     

/

返回文章
返回