AAA and Network Security for Mobile Access (eBook)
318 Seiten
John Wiley & Sons (Verlag)
978-0-470-01745-6 (ISBN)
framework for intelligently controlling access to network
resources, enforcing policies, and providing the information
necessary to bill for services.
AAA and Network Security for Mobile Access is an
invaluable guide to the AAA concepts and framework, including its
protocols Diameter and Radius. The authors give an overview
of established and emerging standards for the provision of secure
network access for mobile users while providing the basic design
concepts and motivations.
AAA and Network Security for Mobile
Access:
* Covers trust, i.e., authentication and security key management
for fixed and mobile users, and various approaches to trust
establishment.
* Discusses public key infrastructures and provides practical
tips on certificates management.
* Introduces Diameter, a state-of-the-art AAA protocol designed
to meet today's reliability, security and robustness
requirements, and examines Diameter-Mobile IP interactions.
* Explains RADIUS (Remote Authentication Dial-In User Services)
and its latest extensions.
* Details EAP (Extensible Authentication Protocol) in-depth,
giving a protocol overview, and covering EAP-XXX authentication
methods as well as use of EAP in 802 networks.
* Describes IP mobility protocols including IP level mobility
management, its security and optimizations, and latest IETF
seamless mobility protocols.
* Includes a chapter describing the details of Mobile IP and AAA
interaction, illustrating Diameter Mobile IP applications and the
process used in CDMA2000.
* Contains a section on security and AAA issues to support
roaming, discussing a variety of options for operator co-existence,
including an overview of Liberty Alliance.
This text will provide researchers in academia and industry,
network security engineers, managers, developers and planners, as
well as graduate students, with an accessible explanation of the
standards fundamental to secure mobile access.
Madjid Nakhjiri is currently a researcher and network architect with Motorola Labs. He has been involved in the wireless communications industry since 1994. Over the years, Madjid has participated in the development of many cellular and public safety mission-critical projects, ranging from cellular location detection receiver design and voice modeling simulations to the design of architecture and protocols for QoS-based admission, call control, mobile VPN access and AAA procedures for emergency response networks. Madjid has been active in the standardization of mobility and security procedures in IETF, 3G and IEEE since 2000 and is a coauthor of a few IETF RFCs. Madjid has also coauthored many IEEE papers, chaired several IEEE conference session and has many patent applications in process. Mahsa Nakhjiri is currently a systems engineer with Motorola Personal Devices and is involved in future cellular technology planning. Mahsa holds degrees in Mathematics and Electrical Engineering and has specialized in mathematical signal processing for antenna arrays. She has been involved in research on cellular capacity planning and modeling, design and simulation of radio and link layer protocols and their interaction with transport protocols in wireless environments. Mahsa has also worked with cellular operators on mobility and AAA issues from an operator perspective.
Foreword.
Preface.
About the Author.
Chapter 1: The 3 "A"s: Authentication,Authorization, Accounting.
1.1 Authentication Concepts.
1.2 Authorization.
1.3 Accounting.
1.4 Generic AAA Architecture.
1.5 Conclusions and Further Resources.
1.6 References.
Chapter 2: Authentication.
2.1 Examples of Authentication Mechanisms.
2.2 Classes of Authentication Mechanisms.
2.3 Further Resources.
2.4 References.
Chapter 3: Key Management Methods.
3.1 Key Management Taxonomy.
3.2 Management of Symmetric Keys.
3.3 Management of Public Keys and PKIs.
3.4 Further Resources.
3.5 References.
Chapter 4: Internet Security and Key Exchange Basics.
4.1 Introduction: Issues with Link Layer-Only Security.
4.2 Internet Protocol Security.
4.3 Internet Key Exchange for IPsec.
4.4 Transport Layer Security.
4.5 Further Resources.
4.6 References.
Chapter 5: Introduction on Internet MobilityProtocols.
5.1 Mobile IP.
5.2 Shortcomings of Mobile IP Base Specification.
5.3 Seamless Mobility Procedures.
5.4 Further Resources.
5.5 References.
Chapter 6: Remote Access Dial-In User Service(RADIUS).
6.1 RADIUS Basics.
6.2 RADIUS Messaging.
6.3 RADIUS Operation Examples.
6.4 RADIUS Support for Roaming and Mobility.
6.5 RADIUS Issues.
6.6 Further Resources.
6.7 References.
Chapter 7: Diameter: Twice the RADIUS?
7.1 Election for the Next AAA Protocol.
7.2 Diameter Protocol.
7.3 Details of Diameter Applications.
7.4 Diameter Versus RADIUS: A Factor 2?
7.5 Further Resources.
7.6 References.
Chapter 8: AAA and Security for Mobile IP.
8.1 Architecture and Trust Model.
8.2 Mobile IPv4 Extensions for Interaction with AAA.
8.3 AAA Extensions for Interaction with Mobile IP.
8.4 Conclusion and Further Resources.
8.5 References.
Chapter 9: PKI: Public Key Infrastructure: Fundamentals andSupport for IPsec and Mobility.
9.1 Public Key Infrastructures: Concepts and Elements.
9.2 PKI for Mobility Support.
9.3 Using Certificates in IKE.
9.4 Further Resources.
9.5 References.
9.6 Appendix A PKCS Documents.
Chapter 10: Latest Authentication Mechanisms, EAPFlavors.
10.1 Introduction.
10.2 Protocol Overview.
10.3 EAP-XXX.
10.4 Use of EAP in 802 Networks.
10.5 Further Resources.
10.6 References.
Chapter 11: AAA and Identity Management for Mobile Access:The World of Operator Co-Existence.
11.1 Operator Co-existence and Agreements.
11.2 A Practical Example: Liberty Alliance.
11.3 IETF Procedures.
11.4 Further Resources.
11.5 References.
Index.
"...serves to provide planners and researchers in both academic and professional capacities a way in which to completely access pertinent data in a logical and clearly defined manner." (Electric Review, September/October 2006)
Erscheint lt. Verlag | 1.11.2005 |
---|---|
Sprache | englisch |
Themenwelt | Informatik ► Netzwerke ► Sicherheit / Firewall |
Technik ► Elektrotechnik / Energietechnik | |
Technik ► Nachrichtentechnik | |
Schlagworte | Communication Technology - Networks • Drahtlose Kommunikation • Electrical & Electronics Engineering • Elektrotechnik u. Elektronik • Kommunikationsnetze • Mobile & Wireless Communications |
ISBN-10 | 0-470-01745-7 / 0470017457 |
ISBN-13 | 978-0-470-01745-6 / 9780470017456 |
Haben Sie eine Frage zum Produkt? |
Größe: 6,9 MB
Kopierschutz: Adobe-DRM
Adobe-DRM ist ein Kopierschutz, der das eBook vor Mißbrauch schützen soll. Dabei wird das eBook bereits beim Download auf Ihre persönliche Adobe-ID autorisiert. Lesen können Sie das eBook dann nur auf den Geräten, welche ebenfalls auf Ihre Adobe-ID registriert sind.
Details zum Adobe-DRM
Dateiformat: PDF (Portable Document Format)
Mit einem festen Seitenlayout eignet sich die PDF besonders für Fachbücher mit Spalten, Tabellen und Abbildungen. Eine PDF kann auf fast allen Geräten angezeigt werden, ist aber für kleine Displays (Smartphone, eReader) nur eingeschränkt geeignet.
Systemvoraussetzungen:
PC/Mac: Mit einem PC oder Mac können Sie dieses eBook lesen. Sie benötigen eine
eReader: Dieses eBook kann mit (fast) allen eBook-Readern gelesen werden. Mit dem amazon-Kindle ist es aber nicht kompatibel.
Smartphone/Tablet: Egal ob Apple oder Android, dieses eBook können Sie lesen. Sie benötigen eine
Geräteliste und zusätzliche Hinweise
Buying eBooks from abroad
For tax law reasons we can sell eBooks just within Germany and Switzerland. Regrettably we cannot fulfill eBook-orders from other countries.
aus dem Bereich