A Security Assessment of HTTP/2 Usage in 5G Service-Based Architecture

被引:5
|
作者
Wehbe, Nathalie [1 ]
Alameddine, Hyame Assem [2 ]
Pourzandi, Makan [2 ]
Bou-Harb, Elias [3 ]
Assi, Chadi [1 ]
机构
[1] Concordia Univ, Montreal, PQ, Canada
[2] Ericsson Res, Montreal, PQ, Canada
[3] Univ Texas San Antonio, Cyber Ctr Secur & Analyt, San Antonio, TX USA
关键词
5G mobile communication; Security; Servers; Protocols; Noise measurement; Authorization; Multiplexing;
D O I
10.1109/MCOM.001.2200183
中图分类号
TM [电工技术]; TN [电子技术、通信技术];
学科分类号
0808 ; 0809 ;
摘要
Fifth generation (5G) networks are designed to bring enhanced network operational efficiency to serve a wide range of emerging services. Toward this purpose, 5G adopts a service-based architecture (SBA) that features web-based technologies such as Hypertext Transfer Protocol version 2 (HTTP/2) used for signaling and application programming interfaces (APIs) for service delivery. Several works in the literature have reported that the shift toward the aforementioned technologies brings potential cybersecurity challenges to the 5G network. In this article, we discuss different security features introduced by 5G SBA and explore these security challenges and their solutions in this new architecture. We carefully examine HTTP/2 features, standards, and custom headers, and discuss their security implications in 5G SBA. We comment on the applicability of some known HTTP/2 attacks in 5G SBA in light of the standardized APIs, and discuss the security opportunities and research directions brought by this protocol and its related technologies.
引用
收藏
页码:48 / 54
页数:7
相关论文
共 50 条
  • [31] Performance Evaluation of Candidate Protocol Stack for Service-based Interfaces in 5G Core Network
    Zhang, Cheng
    Wen, Xiangming
    Wang, Luhan
    Lu, Zhaoming
    Ma, Lu
    2018 IEEE INTERNATIONAL CONFERENCE ON COMMUNICATIONS WORKSHOPS (ICC WORKSHOPS), 2018,
  • [32] Network Function Mapping: From 3G Entities to 5G Service-Based Functions Decomposition
    Coelho W.D.S.
    Benhamiche A.
    Perrot N.
    Secci S.
    2020, Institute of Electrical and Electronics Engineers Inc. (04): : 46 - 52
  • [33] A SOFTWARE DEFINED SECURITY ARCHITECTURE FOR SDN-BASED 5G NETWORK
    Liang, Xiaodong
    Qiu, Xiaofeng
    PROCEEDINGS OF 2016 5TH IEEE INTERNATIONAL CONFERENCE ON NETWORK INFRASTRUCTURE AND DIGITAL CONTENT (IEEE IC-NIDC 2016), 2016, : 17 - 21
  • [34] 5G Service Architecture Automatic Code Generation
    Zhang, Ying
    Xu, Zhan
    Tian, Zhigang
    Zhi, Ruxin
    Tian, Lu
    2021 3RD IEEE MIDDLE EAST AND NORTH AFRICA COMMUNICATIONS CONFERENCE (MENACOMM), 2021, : 115 - 119
  • [35] A Preliminary Security Assessment of 5G V2X
    Lautenbach, Aljoscha
    Nowdehi, Nasser
    Olovsson, Tomas
    Zaragatzky, Romi
    2019 IEEE 89TH VEHICULAR TECHNOLOGY CONFERENCE (VTC2019-SPRING), 2019,
  • [36] An Architecture for the 5G Control Plane based on SDN and Data Distribution Service
    Llorens-Carrodeguas, Alejandro
    Cervello-Pastor, Cristina
    Leyva-Pupo, Irian
    Manuel Lopez-Soler, Juan
    Navarro-Ortiz, Jorge
    Angel Exposito-Arenas, Jose
    2018 FIFTH INTERNATIONAL CONFERENCE ON SOFTWARE DEFINED SYSTEMS (SDS), 2018, : 105 - 111
  • [37] Service-Based Simulator for Security Robot
    Hung, Wei-Han
    Liu, Peter
    Kang, Shih-Chung
    2008 IEEE WORKSHOP ON ADVANCED ROBOTICS AND ITS SOCIAL IMPACTS, 2008, : 122 - 124
  • [38] Novel Core Network Architecture for 5G Based on Mobile Service Chaining
    Roeland, Dinand
    Fu, Zhang
    MOBILE NETWORKS AND MANAGEMENT (MONAMI 2016), 2017, 191 : 44 - 57
  • [39] Security architecture for authorized anonymous communication in 5G MEC
    Niewolski, Wojciech
    Nowak, Tomasz W.
    Sepczuk, Mariusz
    Kotulski, Zbigniew
    JOURNAL OF NETWORK AND COMPUTER APPLICATIONS, 2023, 218
  • [40] SDN VANETs in 5G: An Architecture for Resilient Security Services
    Hussein, Ali
    Elhajj, Imad H.
    Chehab, Ali
    Kayssi, Ayman
    2017 FOURTH INTERNATIONAL CONFERENCE ON SOFTWARE DEFINED SYSTEMS (SDS), 2017, : 67 - 74