Prototyping and evaluation of TCAPsec

Today, the most frequently used signaling system for telecommunication is called Signaling System No. 7 (SS7). The growing usage of mobile telephones and mobile data communica-tion, and the development of new services mean that the risk of intrusion and exploitation of the SS7 signaling networks inc...

Full description

Bibliographic Details
Main Author: Chung, Kang
Format: Others
Language:English
Published: Karlstads universitet, Institutionen för informationsteknologi 2007
Subjects:
SS7
Online Access:http://urn.kb.se/resolve?urn=urn:nbn:se:kau:diva-826
id ndltd-UPSALLA1-oai-DiVA.org-kau-826
record_format oai_dc
spelling ndltd-UPSALLA1-oai-DiVA.org-kau-8262018-01-12T05:14:20ZPrototyping and evaluation of TCAPsecengChung, KangKarlstads universitet, Institutionen för informationsteknologi2007prototypingevaluationTCAPsecconcepttelecommunicationSS7network securityencryptioncryptographyComputer SciencesDatavetenskap (datalogi)Today, the most frequently used signaling system for telecommunication is called Signaling System No. 7 (SS7). The growing usage of mobile telephones and mobile data communica-tion, and the development of new services mean that the risk of intrusion and exploitation of the SS7 signaling networks increases. The increasing problem with unauthorized access to sensitive information and the operators’ growing demand for security is the origin of our work. This thesis presents a prototype design and implementation of a Security Gateway (SEG), which is a fundamental part of the TCAP user security (TCAPsec) concept. TCAPsec is a security concept for introducing security mechanisms to the signaling system. The proto-type includes three different protection modes that provide security services, ranging from almost no protection to full protection with the use of encryption algorithms. The thesis also contains an evaluation study of the delay penalties caused by the use of these security services. With regards to the restrictions on the prototype, the conclusion drawn from the evaluation results was that the protection mechanisms in the different protection modes did not inflict any significant time penalties. Instead, the results of the study indicate that the routing process of messages in the network is a more significant delaying part in the communication between different nodes. This result implies that the routing process takes longer time than the security services. The thesis also presents a number of discovered features that will require further investigation and development before the TCAPsec concept can be realized. Student thesisinfo:eu-repo/semantics/bachelorThesistexthttp://urn.kb.se/resolve?urn=urn:nbn:se:kau:diva-826application/pdfinfo:eu-repo/semantics/openAccess
collection NDLTD
language English
format Others
sources NDLTD
topic prototyping
evaluation
TCAPsec
concept
telecommunication
SS7
network security
encryption
cryptography
Computer Sciences
Datavetenskap (datalogi)
spellingShingle prototyping
evaluation
TCAPsec
concept
telecommunication
SS7
network security
encryption
cryptography
Computer Sciences
Datavetenskap (datalogi)
Chung, Kang
Prototyping and evaluation of TCAPsec
description Today, the most frequently used signaling system for telecommunication is called Signaling System No. 7 (SS7). The growing usage of mobile telephones and mobile data communica-tion, and the development of new services mean that the risk of intrusion and exploitation of the SS7 signaling networks increases. The increasing problem with unauthorized access to sensitive information and the operators’ growing demand for security is the origin of our work. This thesis presents a prototype design and implementation of a Security Gateway (SEG), which is a fundamental part of the TCAP user security (TCAPsec) concept. TCAPsec is a security concept for introducing security mechanisms to the signaling system. The proto-type includes three different protection modes that provide security services, ranging from almost no protection to full protection with the use of encryption algorithms. The thesis also contains an evaluation study of the delay penalties caused by the use of these security services. With regards to the restrictions on the prototype, the conclusion drawn from the evaluation results was that the protection mechanisms in the different protection modes did not inflict any significant time penalties. Instead, the results of the study indicate that the routing process of messages in the network is a more significant delaying part in the communication between different nodes. This result implies that the routing process takes longer time than the security services. The thesis also presents a number of discovered features that will require further investigation and development before the TCAPsec concept can be realized.
author Chung, Kang
author_facet Chung, Kang
author_sort Chung, Kang
title Prototyping and evaluation of TCAPsec
title_short Prototyping and evaluation of TCAPsec
title_full Prototyping and evaluation of TCAPsec
title_fullStr Prototyping and evaluation of TCAPsec
title_full_unstemmed Prototyping and evaluation of TCAPsec
title_sort prototyping and evaluation of tcapsec
publisher Karlstads universitet, Institutionen för informationsteknologi
publishDate 2007
url http://urn.kb.se/resolve?urn=urn:nbn:se:kau:diva-826
work_keys_str_mv AT chungkang prototypingandevaluationoftcapsec
_version_ 1718607094572122112