2 References

33.2033G Security3GPPAccess security for IP-based servicesTS

The following documents contain provisions which, through reference in this text, constitute provisions of the present document.

– References are either specific (identified by date of publication, edition number, version number, etc.) or non‑specific.

– For a specific reference, subsequent revisions do not apply.

– For a non-specific reference, the latest version applies. In the case of a reference to a 3GPP document (including a GSM document), a non-specific reference implicitly refers to the latest version of that document in the same Release as the present document.

[1] 3GPP TS 33.102: "3rd Generation Partnership Project; Technical Specification Group Services and System Aspects; 3G Security; Security Architecture".

[2] Void.

[3] 3GPP TS 23.228: "3rd Generation Partnership Project; Technical Specification Group Services and System Aspects; IP Multimedia (IM) Subsystem".

[4] Void.

[5] 3GPP TS 33.210: "3rd Generation Partnership Project; Technical Specification Group Services and System Aspects; 3G Security; Network domain security; IP network layer security".

[6] IETF RFC 3261 "SIP: Session Initiation Protocol".

[7] 3GPP TS 21.905: "3rd Generation Partnership Project: Technical Specification Group Services and System Aspects; Vocabulary for 3GPP specifications".

[8] 3GPP TS 24.229: "3rd Generation Partnership Project: Technical Specification Group Core Network; IP Multimedia Call Control Protocol based on SIP and SDP".

[9] 3GPP TS 23.002: "3rd Generation Partnership Project: Technical Specification Group Services and System Aspects, Network Architecture".

[10] 3GPP TS 23.060: "3rd Generation Partnership Project: Technical Specification Group Services and System Aspects, General Packet Radio Service (GPRS); Service Description".

[11] 3GPP TS 24.228: "3rd Generation Partnership Project: Technical Specification Group Core Network; Signalling flows for the IP multimedia call control based on SIP and SDP".

[12]-[16] Void.

[17] IETF RFC 3310 (2002): "HTTP Digest Authentication Using AKA". April, 2002.

[18] Void

[19] Void.

[20] Void

[21] IETF RFC 3329 (2003): "Security Mechanism Agreement for the Session Initiation Protocol (SIP)".

[22] Void

[23] IETF RFC 3263 (2002): "Session Initiation Protocol (SIP): Locating SIP Servers".

[24] 3GPP TS 33.310: "3rd Generation Partnership Project; Technical Specification Group Services and System Aspects; Network Domain Security (NDS); Authentication Framework (AF)".

[25] Void.

[26] ETSI ES 282 001: "TISPAN – Telecommunications and Internet converged Services and Protocols for Advanced Networking (TISPAN); NGN Functional Architecture for NGN Release 1".

[27] IETF RFC 3947 (2005): "Negotiation of NAT-Traversal in the IKE".

[28] IETF RFC 3948 (2005): "UDP Encapsulation of IPsec ESP Packets".

[29] IETF RFC 3323 (2002): "A Privacy Mechanism for the Session Initiation Protocol (SIP)".

[30] IETF RFC 3325 (2002): "Private Extensions to the Session Initiation Protocol (SIP) for Asserted Identity within Trusted Network".

[31] 3GPP TS 23.167: "3rd Generation Partnership Project; Technical Specification Group Services and System Aspects; IP Multimedia Subsystem (IMS) emergency sessions”.

[32] IETF RFC 5626 (2009): "Managing Client Initiated Connections in the Session Initiation Protocol (SIP)".

[33] Void.

[34] Void

[35] Void.

[36] ETSI ES 282 004: “NGN Functional Architecture; Network Attachment Sub-System (NASS)”

[37] ETSI TS 187 001: " Telecommunications and Internet converged Services and Protocols for Advanced Networking (TISPAN); NGN SECurity (SEC); Requirements"

[38] Void.

[39] 3GPP TS 29.228: "3rd Generation Partnership Project; Technical Specification Group Core Network and Terminals; IP Multimedia (IM) Subsystem Cx and Dx interfaces; Signalling flows and message contents".

[40] 3GPP2 X.S0011: "cdma2000 Wireless IP Network Standard".

[41] 3GPP2 C.S0023: "Removable User Identity Module for Spread Spectrum Systems".

[42] Void.

[43] 3GPP2 S.S0055: "Enhanced Cryptographic Algorithms".

[44] 3GPP2 S.S0078: "Common Security Algorithms".

[45] 3GPP2 C.S0065: "cdma2000 Application on UICC for Spread Spectrum Systems".

[46] 3GPP TS 23.003: "3rd Generation Partnership Project; Technical Specification Group Core Network and Terminals; Numbering, addressing and identification".

[47] Void

[48] Void

[49] Void

[50] 3GPP TS 23.292: "IP Multimedia Subsystem (IMS) Centralized Services; Stage 2".

[51] 3GPP TS 31.103: "3rd Generation Partnership Project: Technical Specification Group Core Network and Terminals; Characteristics of the IP Multimedia Services Identity Module (ISIM) application".

[52] IETF RFC 5280: "Internet X.509 Public Key Infrastructure Certificate and Certificate Revocation List (CRL) Profile".

[53] IETF RFC 4301: "Security Architecture for the Internet Protocol".

[54] IETF RFC 4303: "IP Encapsulating Security Payload (ESP)".

[55] Void

[56] 3GPP TS 23.401: "General Packet Radio Service (GPRS) enhancements for Evolved Universal Terrestrial Radio Access Network (E-UTRAN) access".

[57] ETSI TS 187 003 v3.4.1: "Telecommunications and Internet converged Services and Protocols for Advanced Networking (TISPAN); NGN Security; Security Architecture".

[58] Void.

[59] Void

[60] IETF RFC 6544: "TCP Candidates with Interactive Connectivity Establishment (ICE) ".

[61] Void

[62] IETF RFC 6062: "Traversal Using Relays around NAT (TURN) Extensions for TCP Allocations".

[63] IETF RFC 2817: "Upgrading to TLS Within HTTP/1.1".

[64] IETF RFC 6623: "Indication of Support for Keep-Alive".

[65] IETF RFC 4169: "Hypertext Transfer Protocol (HTTP) Digest Authentication Using Authentication and Key Agreement (AKA) Version-2”.

[66] 3GPP TS 33.220: "Generic Authentication Architecture (GAA); Generic Bootstrapping Architecture (GBA)".

[67] IETF RFC 6750: "The OAuth 2.0 Authorization Framework: Bearer Token Usage".

[68] IETF RFC 7376: "Problems with Session Traversal Utilities for NAT (STUN) Long-Term Authentication for Traversal Using Relays around NAT (TURN)".

[69] Void

[70] IETF RFC 7635: "Session Traversal Utilities for NAT (STUN) Extension for Third Party Authorization".

[71] Void

[72] IETF RFC 6749: "The OAuth 2.0 Authorization framework".

[73] IETF RFC 4106: "The Use of Galois/Counter Mode (GCM) in IPsec Encapsulating Security Payload (ESP)".

[74] IETF RFC 4543: "The Use of Galois Message Authentication Code (GMAC) in IPsec ESP and AH".

[75] IETF RFC 7800: "Proof-of-Possession Key Semantics for JSON Web Tokens (JWTs)".

[76] IETF RFC 7616: " HTTP Digest Access Authentication ".

[77] IETF RFC 8489: "Session Traversal Utilities for NAT (STUN)".

[78] IETF RFC 8656: " Traversal Using Relays around NAT (TURN): Relay Extensions to Session Traversal Utilities for NAT (STUN)".

[79] IETF RFC 8445: "Interactive Connectivity Establishment (ICE): A Protocol for Network Address Translator (NAT) Traversal".

[80] IETF RFC 8839: "Session Description Protocol (SDP) Offer/Answer Procedures for Interactive Connectivity Establishment (ICE)".

[81] IETF RFC 8981: "Temporary Address Extensions for Stateless Address Autoconfiguration in IPv6".

[82] IETF RFC 7296: "Internet Key Exchange Protocol Version 2 (IKEv2)".

[83] IETF RFC 7235: "Hypertext Transfer Protocol (HTTP/1.1): Authentication".