Privacy |
Provides encryption between eNodeB (LTE base station) and mobile station, on the radio path |
Provides all privacy methods of the existing predecessor technologies |
Provides ciphering of control plane between user equipment and mobility management entity |
Prevent unauthorized modification in user data to maintain integrity |
Support 128 bit algorithms. |
Support 256 bit algorithms |
Authentication Key Agreement |
The key is shared between authentication server function (AUSF) and universal integrated circuit card (UICC) |
In addition to LTE it preserves the confidentiality of the initial NAS (non-access spectrum) message between the network and devices |
By this, mutual authentication is assured between the network and user equipment (UE) |
It provides Access-agnostic authentication which supports both 3GPP and non-3GPP access technologies |
Security Anchor Function (SEAF) |
Not Applicable |
It allows re-authentication of user devices using SEAF when they travel between distinguished access networks or serving the network without performing the full authentication |
Subscriber Permanent Identifier |
Prior to network authentication the identifier is sent in the form of plaintext |
Subscription Concealed Identifier (SUCI) is designated to provide the use of home network public key mechanism to encrypt the MSIN part of the subscriber identifier |
It protect the confidentiality of the initial NAS messages between the UE and the network |
Home Control |
Not Applicable |
The presence and service request by UE from visited public mobile network (VPMN) is verified by home public mobile network (HPMN), which is useful in roaming and fraud prevention scenarios |
Network Exposure Function (NEF) |
Not Applicable |
Allows secure provisioning of information in 3GPP network along with authorized and authenticated network functions |
Uses certificate based mutual authentication |
Being authenticated, NEF analyses, if the application function is authorized to send the service request to 3GPP networks |
Security Edge Privacy Protection |
Not Applicable |
Acts as security gateway on interconnections of HPMN and VPMN, and thus, protecting the home network edge |