Revealing the Threat Landscape of Intent-based Management in O-RAN

被引:2
作者
Rebecchi, Filippo [1 ]
Cho, Daniel [2 ]
Abdelrazek, Loay [2 ]
Forssell, Henrik [2 ]
Olsson, Jonathan [2 ]
机构
[1] Ericsson, Stand & Technol, Massy, France
[2] Ericsson, Stand & Technol, Stockholm, Sweden
来源
PROCEEDINGS OF THE 27TH CONFERENCE ON INNOVATION IN CLOUDS, INTERNET AND NETWORKS, ICIN | 2024年
关键词
Intents; O-RAN; Security; Threat Model;
D O I
10.1109/ICIN60470.2024.10494468
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Automation has become one key pillar in managing and orchestrating complex networks. Most of the automation today is achieved through programmatically defined policies. One of the most promising ways to achieve a truly autonomous network and service management framework vision is through intents. Intents provides the system with a formal specification of all expectations, requirements, goals, and constraints that should be met without specifying how to achieve them. It follows that an intent-based architecture introduces new functional assets, increasing the attack surface, possibly providing an adversary with additional entry-points with the potential to disrupt network operations, steal Intellectual Property Rights (IPR), intercept sensitive data, and move laterally to other management domains. In this paper we discuss the potential security implication of an Intent-based Management (IbM) system based on Open RAN (O-RAN) architecture and disclose the potential threat landscape that is inherent to such architecture, detailing countermeasures and recommending implementation guidelines. This analysis is relevant in supporting future implementations and standardization of intent-based management capabilities in O-RAN.
引用
收藏
页码:106 / 113
页数:8
相关论文
共 19 条
[1]  
3GPP SA5, Intent Driven Management
[2]  
3GPP SA5, 2023, TS 28.312: Management and orchestration
[3]  
Intent driven management services for mobile networks (Release 18)
[4]   ZSM Security: Threat Surface and Best Practices [J].
Benzaid, Chafika ;
Taleb, Tarik .
IEEE NETWORK, 2020, 34 (03) :124-133
[5]  
Clemm A., 2022, Tech. Rep.
[6]  
ETSI, 2021, GR ZSM 010: Zero-touch network and service management (ZSM)
[7]  
general security aspects
[8]  
ETSI, 2019, GS ZSM 002 zero-touch network and service management (ZSM)
[9]  
reference architecture v1.1.1
[10]  
Habib Md Arafat, 2023, 2023 IEEE 20th International Conference on Mobile Ad Hoc and Smart Systems (MASS), P55, DOI 10.1109/MASS58611.2023.00015