论文标题
超越PS-LTE:PPDR操作环境的安全模型设计框架
Beyond PS-LTE: Security Model Design Framework for PPDR Operational Environment
论文作者
论文摘要
国家灾难可能威胁到国家安全,并要求几个组织将功能整合到与事件相对应的功能。许多国家正在构建全国移动通信网络基础架构,以共享信息并迅速与相应的组织进行沟通。公共安全长期进化(PS-LTE)是许多国家通过实现此类目的的通信机制。组织可以通过将其传统网络上的服务与PS-LTE基础架构安全地连接到PS-LTE基础架构,从而提高公共保护和救灾(PPDR)运营的效率。这种环境使组织能够继续促进传统网络提供的信息和系统功能。与商业LTE不同的环境中的漏洞需要解决与网络的安全连接。在这项研究中,我们提出了一个安全模型设计框架,以得出系统体系结构以及针对某些技术用于特定目的的限制环境的安全要求。在PS-LTE基础架构下分析了PPDR操作环境的特征之后,我们应用了该框架来通过此基础架构在其传统网络中运行的PPDR服务为组织提供安全模型。尽管提出的安全模型设计框架应用于本研究的特定情况,但通常可以在应用环境中采用它。
National disasters can threaten national security and require several organizations to integrate the functionalities to correspond to the event. Many countries are constructing a nationwide mobile communication network infrastructure to share information and promptly communicate with corresponding organizations. Public Safety Long-Term Evolution (PS-LTE) is a communication mechanism adopted in many countries to achieve such a purpose. Organizations can increase the efficiency of public protection and disaster relief (PPDR) operations by securely connecting the services run on their legacy networks to the PS-LTE infrastructure. This environment allows the organizations to continue facilitating the information and system functionalities provided by the legacy network. The vulnerabilities in the environment, which differ from commercial LTE, need to be resolved to connect the network securely. In this study, we propose a security model design framework to derive the system architecture and the security requirements targeting the restricted environment applied by certain technologies for a particular purpose. After analyzing the PPDR operation environment's characteristics under the PS-LTE infrastructure, we applied the framework to derive the security model for organizations using PPDR services operated in their legacy networks through this infrastructure. Although the proposed security model design framework is applied to the specific circumstance in this research, it can be generally adopted for the application environment.