Black belt consultants is our quality assurance
Black belt consultants is our quality assurance

Security Mechanisms in IMS

Description

1 day covering the details of security within IMS.

The course is based on IMS as specified in 3GPP version 6, 7 and 8, but will also cover known security related additions to the standard roadmap as of today.

The course covers all IMS Security Mechanisms currently standardized up until 3GPP release 8, including e.g. AKA, Digest, NASS Bundled Authentication (NBA), Early IMS Security (EIS) and Bootstrapping (GBA).

Target group

The course is strongly recommended for product managers, system architects, network designers and engineers working with development, test and operation of IMS based systems.

Prerequisites

This course requires as a minimum the knowledge equivalent to the course “IMS Overview”, though participation in “IMS technical” is recommended. Fundamental IT-security knowledge is preferable but not absolutely necessary.

Other

This course is a well-balanced mix of lectures, presentations, discussions and mind-maps.This course is avaible as scheduled training and the presentation is given in English or Swedish. This is a theoretical course. We can also give this course as on-site training. If you are interested in customized education, don´t hesitate to contact us for furher information

Agenda

Introduction

  • IMS Recap
    -Nodes and Protocols
    -NGN Access
    -Identities; the ISIM / USIM
  • Basic Security
    -Intro
    -Digest Authentication
    -IPsec, ESP
    -IKE
    -TLS
  • IMS Security Overview

Access Security

  • Introduction
  • IMS Authentication and Key Agreement, AKA
    -Architecture
    -Message Flows
  • IMS Digest
    -Message Flows
    -Applying TLS
  • Early IMS Security Architecture
    -Message Flows
  • NASS Bundled Authentication
  • NAT and Security
  • Other 3GPP Access Security
    -WLAN
    -GAN

Network Security

  • Topology Hiding
    -Why and Where?
    -Example
  • Security Gateways
    -IPsec ESP
    -TLS
    -Certificate Handling
  • The Inter Connection Border Control Function (IBCF)

Application Security

  • The Generic Authentication Architecture (GAA)
    -The Generic Bootstrapping Architecture (GBA)
    -Message Flows
    -TLS Usage in GAA