4th International ICST Conference on Heterogeneous Networking for Quality, Reliability, Security and Robustness

Research Article

Secured fast link-layer handover protocols for 3G-WLAN Interworking architecture

  • @INPROCEEDINGS{10.1145/1577222.1577284,
        author={Ali Al Shidhani and Victor C. M. Leung},
        title={Secured fast link-layer handover protocols for 3G-WLAN Interworking architecture},
        proceedings={4th International ICST Conference on Heterogeneous Networking for Quality, Reliability, Security and  Robustness},
        publisher={ACM},
        proceedings_a={QSHINE},
        year={2007},
        month={8},
        keywords={Authentication EAP-AKA EMSK Handover Key Management MSK Design Security Standardization},
        doi={10.1145/1577222.1577284}
    }
    
  • Ali Al Shidhani
    Victor C. M. Leung
    Year: 2007
    Secured fast link-layer handover protocols for 3G-WLAN Interworking architecture
    QSHINE
    ACM
    DOI: 10.1145/1577222.1577284
Ali Al Shidhani1,*, Victor C. M. Leung1,*
  • 1: The University of British Columbia Department of Electrical and Computer Engineering Vancouver, BC, Canada V6T 1Z4
*Contact email: alia@ece.ubc.ca, vleung@ece.ubc.ca

Abstract

Interworking 3rd generation (3G) mobile systems and IEEE 802.11 wireless local area networks (WLANs) introduces new challenges including the design of secured fast handover protocols. Handover operations must not compromise the security of the network. In addition, handovers must be instantaneous to sustain the quality of service (QoS) of the applications running on the WLAN-User Equipment (WLAN-UE). Existing handover protocols are not suitable for 3G-WLAN interworking because they are limited to Intra Extended Service Set (ESS) roaming and lack the support of mutual authentication between the WLAN-UE and the authentication server. This paper proposes novel secured fast handover protocols for 3G-WLAN interworking architectures, which overcome the limitations of existing handover protocols. The functionality of Extensible Authentication Protocol with Authentication and Key Agreement (EAP-AKA) is extended to support Intra and Inter ESS secured handover messaging. Modifications to the standard EAP-AKA authentication and the standard EAP-AKA key hierarchy are proposed to achieve the security goals of the proposed protocols. The proposed protocols are more suitable for 3G-WLAN interworking handovers than existing handover protocols because they support Inter ESS handover, achieve mutual authentication service and adopts an efficient key management scheme.