Briefly explain the purpose of the autn message

Assignment Help Computer Networking
Reference no: EM132103928

Problem : 3G/4G

While GSM is ubiquitously deployed, 3rd and 4th generation technologies such as UMTS and LTS are wide spread today. This question explores some of the security aspects of 3G/4G systems, especially as they relate to GSM.

Universal Mobile Telecommunications System (UMTS) is a 3G system based on the GSM standard. The authentication and key agreement procedure in UMTS is similar to GSM, with some notable differences:

•The security algorithms and protocols used are negotiated between the operator and the mobile station during authentication.

•Both a cipher key and an integrity key are derived during authentication.

•In addition to the RAND challenge, the mobile network sends an AUTN message that contains a Message Authentication Code (MAC).

Research the UMTS authentication and key agreement (AKA) to answer the following questions:

(a) Briefly explain the purpose of the AUTN message.

(b) Assume Eve observes a < RAND, AUTN > pair for a particular IMSI during the device's authentication. What prevents an attacker from replaying this same < RAND, AUTN > pair? Explain your answer; you may need to examine the 3GPP UMTS spec and AUTN messages in more detail to answer.

(c) Xavier Breath believes that both the AUTN and the integrity-protected protocol negotiation messages are required to ensure mutual authentication and prevent Manin-the-Middle attacks. Explain why, or argue why not.

(d) Xavier further argues that the UMTS authentication protocol prevents downgrade attacks (for instance where the mobile station is instructed to use no encryption). Explain why Xavier is correct or incorrect.

Long Term Evolution (LTE) is a popular 4G system enjoying increased deployment.

(e) Briefly describe at least two differences between EPS-AKA (LTE's authentication and key agreement) and UMTS's AKA.

Reference no: EM132103928

Questions Cloud

What system of linear equations should be used to solve : With this problem what system of linear equations should be used to solve for with this function we create?
Outline the steps needed to solve the problem : Outline the steps needed to solve the following problem, then do the calculations. Ether, , which was originally used as an anesthetic
Draw arrows in the cells to store traceback information : Draw arrows in the cells to store traceback information. What is the score of the optimal global alignment and what alignment(s) achieves this score?
How can an attacker find the three keys with effort : How can an attacker find the three keys with effort in the order of 2112 instead of 2168? Describe the attack in detail.
Briefly explain the purpose of the autn message : The security algorithms and protocols used are negotiated between the operator and the mobile station during authentication.
Calculate and display the total retail price of an item : Write pseudocode for a program that calculates and displays the total retail price of an item sold at a store.
Write an matlab function to solve a second-order polynomial : Write an MATLAB function (M-file) to solve a second-order polynomial. Solve mathematically and store the solutions in variables x1 and x2.
Write the pseudo-code for a good reduction function r : Write the pseudo-code for a good reduction function R() in this problem scenario. Explain any relevant details of your function R().
Design and simulate and verify a 16-bit ripple-carry adder : Design, simulate and verify a 16-bit ripple-carry adder by performing the following additions/subtractions (the values of a and b are given in decimal).

Reviews

Write a Review

Computer Networking Questions & Answers

  How do cloud threats differ from traditional threats

How do cloud threats differ from traditional threats? Against which threats are cloud services typically more effective compared to local ones?

  Identify problems with maintaining legacy systems

COIT20246 - ICT Services Management - cq university - Find and summarise ONE resource that describes ONEother commercial IaaS provider that is NOT Google

  What are possible issues based on the information provided

What are possible issues based on the information provided? What kind of information would a network administrator look for in the trace file that was captured from the IP Host to the local router

  Why is a practical knowledge of the law

Why is a practical knowledge of the law important to the security officer and the security manager?

  The cto informed you that the board of executives showed

the cto informed you that the board of executives showed great interest in building a new network based on the work you

  Describe what is meant by cybersecurity architecture

Describe what is meant by Cybersecurity Architecture. List and describe the principles that must be supported.

  Outline the steps required to complete a risk assessment

What factors have brought increased emphasis on network security?- Briefly outline the steps required to complete a risk assessment.

  Similarities between each osi layer and the secret letter

Describe any similarities between each OSI layer and the secret letter being sent to your fellow agent. A hint for several of the layers: Think about the address on an envelope. What part(s) are similar to the idea of a data frame? What parts are ..

  How decrypt the message to get the original plaintext

Encrypt the message "this is an exercise" using additive cipher with key=20. Ignore the space between words. Decrypt the message to get the original plaintext.

  Analysis of the current network configurations

MN503 - Network design with configuration - devices, an analysis of the current network configurations as per requirements given below, and a demonstration

  Review of the current market for online education

Your task is to provide a critical review of the current market for online education as well as providing an overview and definition of what online education is and how it works.

  Create a network architecture diagram

Create a Network Architecture diagram depicting the layers of security controls to mitigate security threats in in a large corporate environment through the use of graphical tools in Microsoft Word or Visio, or an open source alternative such as D..

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd