首页> 外文期刊>Ericsson review >Security architectures for mobile networks
【24h】

Security architectures for mobile networks

机译:移动网络的安全架构

获取原文
获取原文并翻译 | 示例
           

摘要

Security is a growing issue for carriers and operators. In particular, they are concerned about protecting network infrastructure. Ericsson shares these concerns and is putting great emphasis on secure products and security features. A holistic perspective is needed for planning the security services and functionality to be implemented in nodes, subnetworks, and at the network level. Decisions affecting security services and functionality need to based on a coherent, well-defined security architecture. The day is gone when vendors and standards could dictate the environment for deploying the mobile network infrastructure and associated products. Today's solutions and products must be flexible enough for use outside a reference network and resilient and extensible enough for use without external security appliances. Simple security checkpoints, such as firewalls, no longer suffice. As applications become more complex, general vulnerability to attacks also increases. A defense-in-depth strategy is thus needed, putting security features in each and every node. These features can be complemented with security functionality at site and network levels. While we acknowledge the importance of physical security, fraud detection, and management, the focus of this article is on logical network security. In addition, although this article primarily deals with GSM and WCDMA, the principles of security architecture presented here apply equally well to other cellular networks, such as CDMA. The authors describe Ericsson's security architecture for GSM and WCDMA mobile networks. This architecture is based on security principles mandated by standards and experience. Moreover, it is influenced by policies that regulate security, and by vulnerability audits of the mobile infrastructure. The authors also describe security services and functionality, and how low-level mechanisms can be applied to make the mobile network infrastructure more secure. They cite examples from Ericsson's product portfolio, including the security solution designed in the Mobile-PBN reference network.
机译:对于运营商和运营商来说,安全性是一个日益严重的问题。他们尤其关注保护网络基础架构。爱立信对此表示关注,并高度重视安全产品和安全功能。需要整体的观点来计划要在节点,子网和网络级别上实施的安全服务和功能。影响安全服务和功能的决策需要基于一致的,定义明确的安全体系结构。供应商和标准可以规定用于部署移动网络基础架构和相关产品的环境的日子已经一去不复返了。当今的解决方案和产品必须足够灵活,可以在参考网络外部使用,并且必须具有足够的弹性和可扩展性,以在没有外部安全设备的情况下使用。简单的安全检查点(例如防火墙)已不再足够。随着应用程序变得越来越复杂,攻击的一般脆弱性也增加了。因此,需要深度防御策略,将安全功能置于每个节点中。这些功能可以通过站点和网络级别的安全功能进行补充。尽管我们承认物理安全性,欺诈检测和管理的重要性,但本文的重点是逻辑网络安全性。此外,尽管本文主要涉及GSM和WCDMA,但此处介绍的安全体系结构原理同样适用于其他蜂窝网络,例如CDMA。作者介绍了爱立信针对GSM和WCDMA移动网络的安全架构。该体系结构基于标准和经验要求的安全性原则。此外,它受到规范安全性的策略以及移动基础结构的漏洞审核的影响。作者还描述了安全服务和功能,以及如何应用低级机制使移动网络基础结构更安全。他们列举了爱立信产品组合中的示例,包括在Mobile-PBN参考网络中设计的安全解决方案。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号