Ciphering, also known as encryption, ensures that intruders cannot read the data and signalling messages that the mobile and network exchange. Ciphering can be applied to both U-Plane Data and C-Plane Data (RRC/NAS Message).
What is integrity and ciphering in LTE?
Confidentiality and Integrity mechanisms in LTE To ensure data security during its transmission over the air interface and through the LTE-SAE system: ciphering of both user plane data and control plane data in the RRC layer, and integrity protection which is used for control plane data only.
What is the difference between ciphering and integrity protection in LTE?
Ciphering is needed when you want that only authorized people can ACCESS TO SEE the data. Integrity is when authorized people can ACCESS TO MODIFY the data.
What is security mode command in LTE?
LTE RRC: Security Mode Command
The SECURITY MODE COMMAND message is used to command the UE for the activation of AS security. … AS security comprises of the integrity protection of RRC signalling (SRBs) as well as the ciphering of RRC signalling (SRBs) and user plane data (DRBs).
What is Guti in LTE?
What is the GUTI? In LTE, the GUTI is the Globally Unique Temporary ID, and identifies the mobile device to the LTE network. … By allocating a temporary ID to the device, the MME maintains the security of the IMSI (International Mobile Subscriber Identification) when transmitting over radio interface.
How does HSS select MME?
During UE attach the MME query the iDNS Server to select the PDN-GW (Packet Data Network Gateway, PGW) where a requested (subscribed) PDN connectivity (APN) is located. … During attach the MME is configured to support the HSS Peer Service and Interface Associations towards the Diameter proxy/edge agent.
Which two entities are involved in mutual authentication in LTE?
The mutual authentication is one of the important features of LTE, which provides security against man in the middle attack, impersonation attack and so forth. The entities involved in the authentication process are Mobility Management Entity (MME) and Home Subscriber Server (HSS) on the SN side.
What is the meaning of integrity protection?
Generally, integrity protection refers to mechanisms that protect the logic and/or data of particular software. Integrity protection is a part of the Software Protection field, which is also known as tamperproofing.
What is NAS Key Set Identifier?
An authentication request message is sent to the UE with authentication parameters e.g. RAND, AUTN and KSIASME(or eKSI referred as NAS Key Set Identifier). The KSIASME is allocated by the MME and uniquely identifies the KASME. It is stored in the UE and serving MME together with the GUTI(if available).