D.1 General

3GPP43.020Release 17Security related network functionsTS

This annex gives an overview of the different security related services and functions for General Packet Radio Service (GPRS) which is described in 3GPP TS 22.060 and 3GPP TS 23.060. They are grouped as follows:

– Subscriber identity confidentiality;

– Subscriber identity authentication;

– Confidentiality of user information and signalling between MS and SGSN;

– Security of the GPRS backbone.

It shall be possible to introduce new authentication and ciphering algorithms during the systems lifetime. The fixed part of the network may support more than one authentication and ciphering algorithm.

The security procedures include mechanisms to enable recovery in the event of signalling failures. These recovery procedures are designed to minimise the risk of a breach in the security of the system.

In this annex, the terms GPRS-Kc and GPRS-CKSN are introduced to provide a clear distinction from the ciphering parameters (Kc and CKSN) used for circuit switched. The GPRS-Kc is the ciphering key used for GPRS, and GPRS-CKSN is the corresponding Ciphering Key Sequence Number used for GPRS. GPRS-Kc128 is introduced in correspondence with Kc128. The use of these parameters is described in clause D.4.