Tech-invite3GPPspaceIETFspace
21222324252627282931323334353637384‑5x
Top   in Index   Prev   Next

TS 33.528
5G Security Assurance Specification (SCAS)
for the Policy Control Function (PCF)

V18.0.0 (PDF)  2024/03  10 p.
Rapporteur:
Mr. Andreas, Joerg
BSI (DE)

Content for  TS 33.528  Word version:  18.0.0

Here   Top

 

1  Scopep. 6

The present document contains requirements and test cases that are specific to the PCF network product class. It refers to the Catalogue of General Security Assurance Requirements [2] and formulates specific adaptions of the requirements and test cases given there, as well as specifying requirements and test cases unique to the PCF network product class.

2  Referencesp. 6

The following documents contain provisions which, through reference in this text, constitute provisions of the present document.
  • References are either specific (identified by date of publication, edition number, version number, etc.) or non-specific.
  • For a specific reference, subsequent revisions do not apply.
  • For a non-specific reference, the latest version applies. In the case of a reference to a 3GPP document (including a GSM document), a non-specific reference implicitly refers to the latest version of that document in the same Release as the present document.
[1]
TR 21.905: "Vocabulary for 3GPP Specifications".
[2]
TS 33.117: "Catalogue of general security assurance requirements".
[3]
TS 23.501: "System Architecture for 5G System (5GS)".
Up

3  Definitions of terms, symbols and abbreviationsp. 6

3.1  Termsp. 6

For the purposes of the present document, the terms given in TR 21.905 and the following apply. A term defined in the present document takes precedence over the definition of the same term, if any, in TR 21.905.

3.2  Symbolsp. 6

Void.

3.3  Abbreviationsp. 6

For the purposes of the present document, the abbreviations given in TR 21.905 and the following apply. An abbreviation defined in the present document takes precedence over the definition of the same abbreviation, if any, in TR 21.905.
PCF
Policy Control Function

4  PCF-specific security requirements and related test casesp. 7

4.1  Introductionp. 7

The present document contains objectives, requirements and test cases that are specific to the PCF network product class. It refers to the Catalogue of General Security Assurance Requirements and formulates specific adaptions of the requirements and test cases given there, as well as specifying requirements and test cases unique to the PCF network product class.

4.2  PCF-specific adaptations of security functional requirements and related test casesp. 7

There are no PCF-specific additions to clause 4.2 of TS 33.117.

4.3  PCF-specific adaptations of hardening requirements and related test cases.p. 7

There are no PCF-specific additions to clause 4.3 of TS 33.117.

4.4  PCF-specific adaptations of basic vulnerability testing requirements and related test casesp. 7

4.4.1  Introductionp. 7

There are no PCF specific additions to clause 4.4.1 of TS 33.117.

4.4.2  Port Scanningp. 7

There are no PCF specific additions to clause 4.4.2 of TS 33.117.

4.4.3  Vulnerability scanningp. 7

There are no PCF specific additions to clause 4.4.3 of TS 33.117.

4.4.4  Robustness and fuzz testingp. 7

The test cases under clause 4.4.4 of TS 33.117 are applicable to PCF.
According to clause 4.4.4 of TS 33.117, the transport protocols available on the interfaces providing IP-based protocols need to be robustness tested. The interface defined for the PCF in clause 4.2.3 of TS 23.501 is Npcf.
Following TCP/IP layer model and considering all the protocols over transport layer, for PCF, the following interface and protocols are under testing:
  • For Npcf: The TCP, HTTP2 and JSON protocols.
Up

$  Change historyp. 8


Up   Top