AKA Digest authentication scheme for VoLTE (IMS)

When a VoLTE client needs to connect to IMS network, it has to authenticate the network while network also needs to make sure that only the correct user is registered to its network. AKA Digest is one of the scheme to authenticate VoLTE client to the IMS server


AKA

AKA stands for "Authentication and key agreement". This scheme comes from the legacy 3gpp networks and has been widely used in LTE, 3G, CDMA and WiMAX technologies. In this mechanism, a secret key is already known to both user device (USIM, iSIM) and authentication servers (HSS, HLR). 

The server will challenge the end user using AKA algorithms and shared key and sends RAND, AUTN values towards UE. UE will authenticate network and prepares result (RES for network to authenticate UE) with the help of shared key in UICC and parameters sent by Server.


HTTP Digest

Http Digest is the popular authentication scheme used for authenticating users to access web servers and other applications which requires security and data integrity. This scheme is much secure than the basic authentication as it applies hash function to the password before sending it [RFC2617]. 

HTTP Digest is username / password based authentication procedure. The authentication server provides one time created " nonce " value to the client. The client uses the nonce value and creates a secure response that contains  the password, username and other parameters to the server. The password which is known both to server and client, is always fixed


Now For IMS

Now since IMS is a part of 3GPP and on the contrary SIP signaling defines http digest for authentication [RFC3261]. Therefore in order to use 3GPP AKA with IMS, the parameters from AKA are mapped onto http digest [RFC3310]. In simple words the parameters / headers used to transport http digest information, will transport AKA information in identical format

With 3GPP AKA digest, the "nonce" now contains RAND, AUTN. The password now contains the one time RESPONSE generated by client with help of UICC (USIM, ISIM). Thus the method is even more secure. 


Authentication in IMS networks

  • VoLTE Client sends SIP register request to IMS Server. The user is not authenticated at this  point. The SIP register request contains IMS related identities (private identity, public identity, URI, etc)
  • The IMS server (S-CSCF) obtains authentication vector and SQN from HSS that contains a random challenge RAND, authentication token AUTN, expected authentication result XRES, a session key for integrity check IK, and a session key for encryption CK
  • The server creates an authentication request, which contains the random challenge RAND, and the network authenticator token AUTN
  • The authentication request is delivered to the client with "401 UNAUTHORIZED" message
  • The client verifies the AUTN with the ISIM. If the verification is successful, the network has been authenticated. The client then produces an authentication response RES, using the shared secret K and the random challenge RAND
3GPP AKA Operation in IMS


  • The authentication response RES is delivered to the server using new regiser sip message
  • The server compares the authentication response RES with the expected response. If the two match, the user has been successfully authenticated
  • Session keys IK and CK can be used for protecting further communications between the client and the server
  • Server sends "200 OK" message to inform the VoLTE client about successful registration
















34 comments:

  1. If i may want to summarize the content of this weblog i might factor out to the vital one - create your personal content material. visit here copying is terrible to your internet site.

    ReplyDelete
    Replies
    1. I am glad that I saw this post. It is informative blog for us and we need this type of blog thanks for share this blog, Keep posting such instructional blogs and I am looking forward for your future posts.
      Cyber Security Projects for Final Year

      JavaScript Training in Chennai

      Project Centers in Chennai

      JavaScript Training in Chennai

      Delete

  2. Thanks for sharing this with all of us.
    doctor strange (2016)

    ReplyDelete
  3. As the world is coming out of the wire and becoming a wireless technology, this post is actually a real help for those who want to discover about it.

    ReplyDelete
  4. That's really a detailed overview of AKA Digest authentication scheme for VoLTE (IMS).This topic is new for me so I took time to understand it properly.

    ReplyDelete
  5. Knowing what you’re getting into and being prepared is half the battle with any type of promotion or coupon. More often than not, the more you know from the get-go, the more you’ll save, especially with rideshare services https://www.ondemandly.com/lyft-promo-code

    ReplyDelete
  6. You made some decent points there. I looked on the internet for the issue and found most individuals will go along with with your website.star news

    ReplyDelete
  7. Hi! You've shared so much value in this post. We're from http://vegassearchandsocial.com/, a charity site for children and disabled people who needs help. We're love to share your content to our community and we'd greatly appreciate you approval to post this comment on your post. Please keep sharing such content. Thanks!

    ReplyDelete
  8. This is nice post which I was awaiting for such an article and I have gained some useful information Tik Tok

    ReplyDelete
  9. Thank you so much for sharing this great blog.Very inspiring and helpful too.

    Best Certified CIMA Course training Hyderabad| ISFS

    ReplyDelete

  10. اعالى الخليج تقدم افضل خدمات نقل العفش الدولى المتميزه باسعار متميزة ومنها :

    شركة شحن عفش من الرياض الى دبي
    نقل عفش من الرياض الى الاردن شحن عفش من الرياض الى الاردن

    ReplyDelete
  11. Great Information sharing .. I am very happy to read this article .. thanks for giving us go through info.Fantastic nice. I appreciate this post. https://whyandhow.net/

    ReplyDelete
  12. Is it okay to post part of this on my website basically post a hyperlink to this webpage?
    Buying Drugs Without Prescription

    ReplyDelete
  13. Exactly, you're very kind of us about comment!.
    hustle castle hack

    ReplyDelete
  14. Finding the best biological science paper writing help and Biological Science Writing Services is not easy unless one is keen to establish a reliable biological science research paper provider & biological science coursework writing services.

    ReplyDelete
  15. Online health & safety essay writing services are very difficult to complete and many students are always searching for Health & Safety Writing Services to help them complete their health & safety research paper writing services and health & safety coursework writing services.

    ReplyDelete
  16. Can I just say what a relief to find someone who actually knows what theyre talking about on the internet. You definitely know how to bring an issue to light and make it important. More people need to read this and understand this side of the story. I cant believe youre not more popular because you definitely have the gift.

    Io.telkomuniversity.ac.id
    Information
    Click Here

    ReplyDelete
  17. Youre so cool! I dont suppose Ive read anything like this before. So nice to find somebody with some original thoughts on this subject. realy thank you for starting this up. this website is something that is needed on the web, someone with a little originality. useful job for bringing something new to the internet!

    Spyropress.com
    Information
    Click Here
    Visit Web

    ReplyDelete
  18. An impressive share, I just given this onto a colleague who was doing a little analysis on this. And he in fact bought me breakfast because I found it for him.. smile. So let me reword that: Thnx for the treat! But yeah Thnkx for spending the time to discuss this, I feel strongly about it and love reading more on this topic. If possible, as you become expertise, would you mind updating your blog with more details? It is highly helpful for me. Big thumb up for this blog post!

    My.desktopnexus.com
    Information
    Click Here

    ReplyDelete
  19. Spot on with this write-up, I truly think this website needs much more consideration. I’ll probably be again to read much more, thanks for that info.


    Redbubble.com
    Saatchiart.com

    ReplyDelete
  20. I was very pleased to find this web-site. I wanted to thanks for your time for this wonderful read!! I definitely enjoying every little bit of it and I have you bookmarked to check out new stuff you blog post.

    Click Here
    Visit Web

    ReplyDelete
  21. Nice post. I learn something more challenging on different blogs everyday. It will always be stimulating to read content from other writers and practice a little something from their store. I’d prefer to use some with the content on my blog whether you don’t mind. Natually I’ll give you a link on your web blog. Thanks for sharing.

    Visit Web
    Binaryoptionrobotinfo.com
    Information

    ReplyDelete
  22. Nice image visibility and well written blog. Thanks for sharing. I have recently come across a new online service provider company which provides Shifting Services .
    Packers and Movers Ahmedabad

    ReplyDelete
  23. Can I just say what a relief to find someone who actually knows what theyre talking about on the internet. You definitely know how to bring an issue to light and make it important. More people need to read this and understand this side of the story. I cant believe youre not more popular because you definitely have the gift.

    Click Here
    Visit Web
    Eac.org.mk

    ReplyDelete
  24. This is the right blog for anyone who wants to find out about this topic. You realize so much its almost hard to argue with you (not that I actually would want…HaHa). You definitely put a new spin on a topic thats been written about for years. Great stuff, just great!

    Click Here
    Visit Web

    ReplyDelete
  25. There are certainly a lot of details like that to take into consideration. That is a great point to bring up. I offer the thoughts above as general inspiration but clearly there are questions like the one you bring up where the most important thing will be working in honest good faith.

    Allaboutcfd-tomersblog.com
    Information
    Click Here

    ReplyDelete
  26. It’s hard to find knowledgeable people on this topic, but you sound like you know what you’re talking about! Thanks

    Click Here
    Visit Web
    Dragonforgepress.com

    ReplyDelete
  27. Nice post. I learn something more challenging on different blogs everyday. It will always be stimulating to read content from other writers and practice a little something from their store. I’d prefer to use some with the content on my blog whether you don’t mind. Natually I’ll give you a link on your web blog. Thanks for sharing.

    Dailyjobglobal.com
    Information
    Click Here
    Visit Web

    ReplyDelete
  28. There is noticeably a bundle to know about this. I assume you made certain nice points in features also.

    Rememberbyron.com
    Information
    Click Here
    Visit Web

    ReplyDelete
  29. Can I just say what a relief to find someone who actually knows what theyre talking about on the internet. You definitely know how to bring an issue to light and make it important. More people need to read this and understand this side of the story. I cant believe youre not more popular because you definitely have the gift.

    9yma.net
    Information
    Click Here
    Visit Web

    ReplyDelete
  30. I discovered your blog site on google and check a few of your early posts. Continue to keep up the very good operate. I just additional up your RSS feed to my MSN News Reader. Seeking forward to reading more from you later on!…

    Adopsclubindia.com
    Information
    Click Here
    Visit Web

    ReplyDelete