DOI QR코드

DOI QR Code

무선 네트워크 연동을 위한 키 관리

Key Management for Wireless Interworking

  • 조태남 (우석대학교 정보보안학과) ;
  • 한진희 (한국전자통신연구원 무선보안응용연구팀) ;
  • 전성익 (한국전자통신연구원 무선보안응용연구팀)
  • 발행 : 2007.02.28

초록

3G 이동통신, 무선랜은 각기 다른 장단점을 가지고 무선 통신 서비스를 제공하고 있다. 현재 이들 서비스의 단점들을 보완하도록 설계한 WiBro 서비스가 개발되었으며. 3중-모드로 작동하는 단말기를 이용하는 사용자가 세 개 망을 편리하게 사용할 수 있도록 하기 위한 3G-WLAN-WiBro 연동 시스템이 제안되었다. 각 망은 보안과 과금을 위하여 사용자와 네트워크간의 상호 인증 절차를 도입하고 있으나, 서로 다른 인증 프로토콜을 사용하고 있다. 본 논문에서는 3G-WLAN-WiBro 연동 네트워크상에서, 사용자가 동일 사업자의 이종 망으로 이동할 때 이전망에서 사용하던 인증 정보를 활용하면서 새로운 망으로 안전하게 로밍할 수 있도록 지원하기 위한 통합된 인증 및 키 관리 프로토콜을 제안하였다.

3G telecommunication and wireless LAN provide various wireless communication services with their own native advantages and disadvantages. Currently WiBro service was developed to make up for the disadvantages of those services, and 3G-WLAN-WiBro underworking system which enables a user who uses triple-mode terminals to use those three networks was proposed. Even though each network adopts mutual authentication process between users and networks to provide security and accounting, they use different authentication protocols. In this paper, integrated authentication and key management protocol is proposed which makes use of previously used authentication information and supports safe roaming when a user moves from one network to another one under a same service provider on the 3G-WLAN-WiBro interworking network.

키워드

참고문헌

  1. 김종필, 한진희, 전성익, '무선 네트워크 연동에 다른 보안 취약성 및 그 대응 방안', NCS 2005, pp.13-16, 2005. 12
  2. 3GPP TR 22.934, '3rd Generation Partnership Project; Technical Specification Group Services and System Aspects; Feasibility Study on 3GPP System to Wireless Local Area Network(WLAN) Interworking,' 3GPP, Sep., 2003
  3. 3GPP TS 23.934, '3rd Generation Partnership Project; Technical Specification Group Services and System Aspects; 3GPP System to Wireless Local Area Network (WLAN) Interworking; Functional and Architectural Definition,' 3GPP, Jan., 2004
  4. 3GPP TS 23.234, '3rd Generation Partnership Project; Technical Specification Group Services and System Aspects; 3GPP System to Wireless Local Area Network (WLAN) Interworking: System Description,' 3GPP, Oct., 2006
  5. 3GPP TS 33.234, '3rd Generation Partnership Project; Technical Specification Group Services and System Aspects; 3G Security; Wireless Local Area Network (WLAN) Interworking Security,' 3GPP, Jun., 2006
  6. 이정우, 전성익, 'USIM 기반 통합 인증을 위한 USIM Access Gateway System 설계', NCS 2005, pp.17-21, 2005. 12
  7. 3GPP TR 31.900, '3rd Generation Partnership Project; Technical Specification Group Core Network and Terminals; SIM/USIM Internal and External Interworking Aspects,' 3GPP, Mar., 2006
  8. 3GPP TS 33.102, '3rd Generation Partnership Project; Technical Specification Group Services and System Aspects; 3G Security; Security architecture,' Dec., 2005
  9. J. Arkko and H. Hayerinen, 'Extensible Authentication Protocol Method for 3rd Generation Authentication and Key Agreement (EAP-AKA),' IETF RFC 4187, Jan., 2006
  10. P. Calhoun, J. Loughney, E. guttman, G. Zorn and J. Arkko, 'Diameter Base Protocol,' IETF RFC3588, Sep., 2003
  11. 3GPP TS 23.003, '3rd Generation Partnership Project; Technical Specification Group Core Network and Terminals; Numbering Addressing and Identification,' 3GPP, Jun., 2006
  12. 3GPP TS 23.008, '3rd Generation Partnership Project; Technical Specification Group Core Network and Terminals; Organization of subscriber data,' 3GPP, Jun., 2006
  13. 3GPP TS 29.002, '3rd Generation Partnership Project; Technical Specification Group Core etwork and Terminals; Mobile Application Part (MAP) Specification,' Jun., 2006
  14. 3GPP TS 24.008, '3rd Generation Partnership Project; Technical Specification Group Core Network and Terminals; Mobile Radio Interface Layer 3 Specification; Core Network Protocols; Stage 3,' 3GPP, Jun., 2006
  15. B. Aboba, L. Blunk, J. Vollbrecht, J. Carlson and H. Levkowetz, 'Extensible Authentication Protocol (EAP),' IETF RFC3748, 2006. 6
  16. National Institute of Standards and Technology, 'Federal Information Processing Standard (FIPS) Publication 180-1, Secure Hash Standard,' NIST Apr., 1995
  17. National Institute of Standards and Technology, 'Federal Information Processing Standards (FIPS) Publication 186-2 (with change notice); Digital Signature Standard (DSS),' NIST, Jan., 2000