6 Security

29.5223GPP5G SystemNetwork Exposure Function Northbound APIsRelease 18Stage 3TS

TLS shall be used to support the security communication between the NEF and the AF over NEF Northbound interface as defined in clause 12 of 3GPP TS 33.501 [6]. The access to the NEFnorthbound APIs shall be authorized by means of OAuth2 protocol (see IETF RFC 6749 [13]), based on local configuration, using the "Client Credentials" authorization grant. If OAuth2 is used, a client, prior to consuming services offered by the NEF Northbound APIs, shall obtain a "token" from the authorization server.