Tech-invite3GPPspaceIETFspace
21222324252627282931323334353637384‑5x
Top   in Index   Prev   Next

TR 33.737
Study on Authentication and Key Management for Applications (AKMA)
Phase 2

3GPP‑Page  
V18.1.0 (Wzip)  2023/09  48 p.
Rapporteur:
Miss Huang, Xiaoting
China Mobile Com. Corporation

full Table of Contents for  TR 33.737  Word version:  18.1.0

Here   Top

 

1  Scopep. 7

The present document studies key issues and potential solutions to support roaming aspects and the Authentication Proxy in AKMA, which is specified in TS 33.535. Specifically, the present document:
  • Investigates AKMA roaming architecture and requirements by taking regulatory compliance into account;
  • Studies the architecture impact and procedures of introducing the Authentication Proxy (similar as the AP specified in GBA) into AKMA.

2  Referencesp. 7

3  Definitions of terms, symbols and abbreviationsp. 7

3.1  Termsp. 7

3.2  Symbolsp. 7

3.3  Abbreviationsp. 8

4  Architectural assumptionsp. 8

5  Key issuesp. 9

6  Solutionsp. 10

6.1  Solution #1: AKMA roaming solution for Ua* encryption keyp. 10

6.2  Solution #2: New solution for AKMA roaming when both UE and AF are in VPLMNp. 14

6.3  Solution #3: Roaming AKMA architecture of the AF in the HPLMNp. 15

6.4  Solution #4: Roaming AKMA architecture of the AF in the VPLMNp. 18

6.5  Solution #5: AKMA anchor key registration to the AAnF in VPLMN after primary authenticationp. 19

6.6  Solution #6: AKMA roaming with VAAnF for LIp. 22

6.7  Solution #7: Introducing AP into AKMAp. 25

6.8  Solution#8: AAnF discovery and selection for internal AF in AKMA roamingp. 27

6.9  Solution #9: Roaming AKMA architecture of the AF in Data Network (Internet)p. 29

6.10  Solution #10: Support of AKMA roaming with K_SEAFp. 31

6.11  Solution #11: AKMA Authentication in roaming scenariop. 32

6.12  Solution #12: AKMA anchor key forwarding to the VPLMN during primary authentication procedurep. 35

6.13  Solution #13: AKMA support in roamingp. 38

6.14  Solution #14: AKMA roaming with AF outside VPLMNp. 41

6.15  Solution #15: AKMA roaming for external AF in Data Networkp. 43

6.16  Solution #16: AKMA roaming with VPLMN AKMA Support NF for inbound roamersp. 44

7  Conclusionsp. 47

$  Change historyp. 48


Up   Top