论文标题:移动通信软交换网络安全机制研究 The Research of Mobile Communication Soft Switching Network Security Mechanism 论文作者 论文导师 范磊,论文学位 硕士,论文专业 电子与通信工程 论文单位 上海交通大学,点击次数 157,论文页数 75页File Size543K 2007-09-01论文网 http://www.lw23.com/lunwen_39586617/ soft switching;; IP bearer network;; security mechanism;; risk value;; risk evaluation 随着移动通信的快速增长和3G时代的到来,移动通信网络建设也正由传统交换机所构成的2G网络逐步向软交换网络迈进。软交换网络的MSC SERVER和MGW之间通信是基于IP承载网进行信令交互,通信协议和媒体信息主要采用IP数据包的形式进行传送。 与传统移动通信网络面临的安全威胁相比,3G网络面临的新的安全威胁包括IP技术本身固有的安全问题以及软交换技术作为一个新的技术而存在的未知因素。软交换设备的引入使移动通信网络安全的理念有了很大的改变,也使网络安全显得更加重要、复杂和迫切。目前在国内由于软交换无论是标准还是设备都处在一个逐渐成熟的过程中,在软交换网络中涉及的许多问题特别是网络安全问题还有待深入探讨和研究。 本文研究了移动软交换网络组成和使用的网络协议,明确移动软交换安全问题可分为移动软交换网络设备安全和IP承载网安全两类问题。通过确立这两类问题的研究范围,借鉴计算机网络和电信网的成功经验、中国移动软交换容灾备份建设的策略和MSC Server、MGW容灾备份方案,提出完善软交换网络的安全问题解决方案,并研究系统容灾、单节点备份、网络级备份和系统恢复等各项安全技术。 本文提出了移动软交换网络及IP承载网络风险评估方法,分析了移动软交换网络风险值计算的各项因素,并建立业务赋值、威胁分析、弱点分析、风险值各项因素的分析模型。通过应用移动软交换网络及IP承载网络风险评估方法,对上海移动现网软交换网络和IP承载网络安全进行了风险评估,提出存在的风险,并对比安全措施加固后安全系数。部分改进建议目前已在现网设备上实施,降低了网络风险。同时对于已入网设备,通过建立软交换网络安全维护体制和应急措施来进一步保障移动软交换网络日常运行正常。 With the mobile communication rapidly developing and 3G times coming, the construction of mobile communication network is striding from 2G network to soft switching network. The communication between MSS and MGW is based on the signaling of IP network. Communication protocol and media information are transmitted with IP data packets. Different from traditionally mobile communication, 3G network is facing new security threaten include the inherent problems of IP technology and unknown factors of soft switching network, as a new technology.Importing soft switching equipments changes the conception of security problems of mobile communication network. And security of network appears more important, more complex and more imminent. Now the interior research of standardization and equipment of soft switching is in the course of maturation. Many problems about soft switching network, particularly the network security problems, need to be deep discussed and researched. The article first described the constitution of mobile soft switching network and the network protocols. The security problems of mobile soft switching is divided into security problems of mobile soft switching equipment and IP bearer network. With defining the scope of researching the two problems, using the successful experience of computer network and telecommunication network for reference, the construction strategy of soft switching network of China mobile communication and project of MSS/MGW redundant, I bring forward the solution of security problems of soft switching network. And I researched the security technologies, such as system redundant、backup and restore. The article founded the means of evaluating the risk of mobile soft switching network and IP bearer network, analyzed all factors of calculating risk value of mobile soft switching network, founded the analyzing models of service evaluating、threaten analyzing、weakness analyzing and risk value. Depending on network risk value and the models, the main threaten factor of soft switching equipment are network node fault、interface data abnormal、exhausting the system resources、system NoRevert and instability of important equipment. The main threaten factor of IP bearer network are routing strategy error、network flux impingement、node faulty and link faulty. With the methods of evaluating the risk of mobile soft switching network and IP bearer network, I evaluated the risk of mobile soft switching network and IP bearer network of Shanghai Mobile communication network, found the existing risk, compared the security value of using the safety precautions or not, in order to improve the security of soft switching network. Some safety precautions are used in the network equipments in order to decreasing the risk of network. At the same time, I founded the system of soft switching network O&M and emergency measures to ensure the normalization of daily operation of mobile soft switching network .
|