ملزومات امنیتی پیاده‌سازی IMS SIP سرور امن

Authors

Abstract:

IMS (IP Multimedia Subsystem) network is considered as an NGN (Next Generation Network) core networks by ETSI. Decomposition of IMS core network has resulted in a rapid increase of control and signaling message that makes security a required capability for IMS commercialization. The control messages are transmitted using SIP (Session Initiation Protocol) which is an application layer protocol. IMS networks are more secure than typical networks like VoIP according to mandatory of user authentication in registration time and added SIP signaling headers. Also different vulnerabilities have been occurred that lead to SIP servers attacks. This paper studies the main SIP servers of IMS (x-CSCF) based on ETSI Threat, Vulnerability and Risk Analysis (TVRA) method. This method is used as a tool to identify potential risks to a system based upon the likelihood of an attack and the impact that such an attack would have on the system. After identifying the assets and weaknesses of IMS SIP servers and finding out the vulnerabilities of these hardware and software components, some security hints that can be used for secure deployment of IMS SIP servers are proposed. Modeling shows the effects of server weaknesses and threats that reduces availability. Any designed system has some assets with weaknesses. When threats have accrued based on weaknesses, the system will vulnerable. Vulnerability analysis optimizes costs and improves security.

Upgrade to premium to download articles

Sign up to access the full text

Already have an account?login

similar resources

ملزومات امنیتی پیاده سازی ims sip سرور امن

شبکهims به عنوان هسته شبکه های نسل آینده توسطetsiدر نظر گرفته شده است. ساختار هسته شبکه ims از دید پیام های کنترلی و پروتکل های ارتباطی باعث شده است امنیت به عنوان یک قابلیت ضروری برای نیازمندی های ims درآید.پیام های کنترلی توسط پروتکلsip منتقل می شود که یک پروتکل لایه کاربرد است. به دلیل اجباری بودن احراز هویت کاربر به شبکه در زمان ثبت نام و به دلیل اضافه شدن سرآیند های سیگنالینگ، این شبکه امن...

full text

Policy Based SIP Signaling Management in IMS

Manageability, the theme for IMS to compete with existing heterogeneous Voice over IP (VoIP) applications, runs over every network element in NGN for security and quality of experience (QoE). Further decomposition of IMS Core Network (CN) has resulted in a rapid increase of signaling traffic. At the same time, the ever rising of applications over signaling, the needs of message validation and s...

full text

SIP-Based Context-Aware Mobility for IPTV IMS Services

In this paper we propose a solution to support mobility in terminals using IMS services. The solution is based on SIP signalling and makes mobility transparent for service providers. Two types of mobility are supported: a terminal changing of access network and a communication being moved from one terminal to another. The system uses context information to enhance the mobility experience, adapt...

full text

Medical Sensor Application Framework Based on IMS/SIP Platform

Development of miniature measuring equipment and sensors led to increasing number of applications that use them. Huge number of such applications can be found in medicine, such as distance monitoring of vital medical parameters. It is very important to provide communication without human control (machine–to-machine) and real-time medical data transfer (telemedicine). Telecommunication network c...

full text

Loosely Coupled Heterogeneous Networks Convergence using IMS-SIP-AAA

In this paper a heterogeneous network model based on the IMS-SIP (session Initiation protocol) with the help of Authentication, Authorization, and Accounting (AAA) protocol that integrates the Worldwide Interoperability for Microwave Access (WiMAX), Universal Mobile Telecommunications System (UMTS) and Wireless Local Area Network (WLAN) technologies is proposed to improve QoS. The proposed Loos...

full text

A Solution for Secure SIP Conferencing over IMS and SAE

Over the latest few years, most of the major telephony and services providers have got their attention on the LTE/SAE solution, in the attempt of getting the most bandwidth and features at the least implementation and operating price. One of the major challenges that 3GPP, the creator of LTE/SAE architecture, has faced is the IMS integration with SAE. The latest standard version available at th...

full text

My Resources

Save resource for easier access later

Save to my library Already added to my library

{@ msg_add @}


Journal title

volume 12  issue 1

pages  17- 32

publication date 2015-06

By following a journal you will be notified via email when a new issue of this journal is published.

Keywords

No Keywords

Hosted on Doprax cloud platform doprax.com

copyright © 2015-2023