Project

General

Profile

TasksTasksNATBSCAuthentication » History » Version 1

Anonymous, 02/19/2016 10:47 PM

1 1
2
== Make authentication of the BSC (more) secure ==
3
4
||Mentor ||Holger Freyther||
5
||Skills ||C  ||
6
||Length ||5 days  ||
7
8
=== Goal ===
9
10
The nat authenticates a BSC by sending a token in clear text. A challenge and response mechanism should be used instead, e.g. the MILENAGE implementation of libosmocom could be used to implement challenge and response. The code can be found inside the BSC and NAT implementation.
11
12
=== Thoughts ===
13
This does not protect against someone hijacking the TCP connection after the initial connection setup.
Add picture from clipboard (Maximum size: 48.8 MB)