A Study Implementation of PKI in 3G Security Architecture
Chunxiao Fan · Zhongguo tiedao kexue · 2005
In 3G,system implementation Authentication and Key Agreement(AKA),mobile platform and service network are authenticated in two-way.The encryption key(CK) and integrity key(IK) is produced after their identities are affirmed.The stage of security authentication of 3G is its defects. A authentication mechanism implementing PKI based SSL is put forward(to be pertinent to the defects mentioned above).In this project,PKI components—Certificates Authority(CA) and Register Authority(RA) is added into the current network of 3G which will be responsible for verifying,issuing and recovery the certification.Due to the weaker computing ability of the wireless device,a new certificate format—WTLS is defined and the Short Lived Certificate(SLC) as the method of verify certification period of validity.The project can run parallel with 3G current security model.It can be attached to the current security scheme as a choice module to enhance 3G security.A program on mobile communication device with complete function of encrypting,de-encrypting and keeping integrity of data is realized.In summary,the project of authentication mechanism implementing PKI based SSL is feasible.