Browse > Article
http://dx.doi.org/10.13089/JKIISC.2014.24.1.75

Building More Secure Femtocell with Improved Proxy Signature  

Choi, Hyoung-Kee (Sungkyunkwan University)
Han, Chan-Kyu (Samsung Electronics)
Kim, Seung-Ryong (Sungkyunkwan University)
Abstract
Demand for the femtocell is largely credited to the surge in a more always best connected communication conscious public. 3GPP defines new architecture and security requirement for Release 9 to deal with femtocell, Home eNode B referred as HeNB. In this paper, we analyze the HeNB security with respect to mutual authentication, access control, and secure key agreement. Our analysis pointed out that a number of security vulnerabilities have still not been addressed and solved by 3GPP technical specification. These include eavesdropping, man-in-the-middle attack, compromising subscriber access list, and masquerading as valid HeNB. To the best of our knowledge, any related research studying HeNB security was not published before. Towards this end, this paper proposes an improved authentication and key agreement mechanism for HeNB which adopts proxy-signature and proxy-signed proxy-signature. Through our elaborate analysis, we conclude that the proposed not only prevents the various security threats but also accomplishes minimum distance from use-tolerable authentication delay.
Keywords
long term evolution(LTE); home eNode B(HeNB); femtocell; mobile network security;
Citations & Related Records
연도 인용수 순위
  • Reference
1 3GPP 3GPP, 3rd Generation Partnership Project; Technical Specification Group Services and System Aspects; Security of H(e)NB (Release 8), 3GPP TR 33.820 v8.3.0, December 2009.
2 3GPP, 3rd Generation Partnership Project; Technical Specification Group Services and System Aspects; Service requirements for Home NodeBs and Home eNodeBs (Release 11), 3GPP TS 22.220 v11.6.0, September 2012.
3 3GPP, 3rd Generation Partnership Project; Technical Specification Group Services and System Aspects; Architecture aspects of Home NodeB and Home eNodeB (Release 9), 3GPP TS 23.830 v9.0.0, October 2009.
4 3GPP, 3rd Generation Partnership
5 Project; Technical Specification Group Services and System Aspects; 3GPP System Architecture Evolution (SAE); Security Architecture (Release 12), 3GPP TS 33.401 v12.8.1, July 2013.
6 Masahiro Mambo, Keisuke Usuda, and Eiji Okamoto, "Proxy signatures: Delegation of the power to sign messages," IEICE Transactions on Fundamentals of Electronics, Communications and Computer Sciences, pp.1338-1354, Vol.E79-A, No.9, 1996.
7 S. Kim, S. Park and D. Won, "Proxy signatures, Revisited," Proceedings of the First International Conference on Information and Communication Security, Lecture Notes In Computer Science, Vol. 1334, pp.223-232, 1997.
8 S.-J. Hwang and C.-H. Shi, "A Simple Multi- Proxy Signature Scheme," Proceedings of the 10th National Conference on Information Security, pp. 134-138, 2000.
9 Lijang Yi, Guoqiang Bai and Guozhen Xiao, "Proxy multi-signature scheme: A new type of proxy signature scheme," IEEE Electronics Letters, pp.527-528, Vol.36, No.6, 2000.   DOI
10 Kaisa Nyberg, Rainer A. Rueppel, "A new signature scheme based on the DSA giving message recovery," Proceedings of the first ACM Conference on Computer and Communications Security, pp. 58-61, 1993.
11 xyssl (PolarSSL), available at http://polarssl. org/