80 likes | 275 Views
Rfc4563 The Key ID Information Type for the General Extension Payload in Multimedia Internet KEYing (MIKEY). Kangsan Lee kslee@contela.com. Introduction (1/2). MBMS 서비스를 위해 새롭게 정의된 General Extension Payload 를 정의하고 있음 MBMS: Multimedia Broadcast/Multicast Service in 3GPP (Rel6)
E N D
Rfc4563The Key ID Information Type for the General Extension Payload in Multimedia Internet KEYing (MIKEY) Kangsan Lee kslee@contela.com
Introduction (1/2) • MBMS 서비스를 위해 새롭게 정의된 General Extension Payload를 정의하고 있음 • MBMS: Multimedia Broadcast/Multicast Service in 3GPP (Rel6) • functional freeze in December 2004 • The Streaming Scenario uses • SRTP for media protection • MIKEY for key mngt protocol • MIKEY 메시지의 Key 타입과 ID를 MBMS에서 식별가능
Introduction (2/2) • MIKEY • 키와 시큐리티 파라미터를 전달 • Group Key와 키 업데이트(re-keying)을 처리 • Requirement: 잦은(주기적인/비주기적인) 키 업데이트 • Subscribers’ inconveniency to publish decryption keys • 3 Level Key Management • The MBMS User Key (MUK) • Point-to-point key • Pre-shared key • Protect delivery of MSK • The MBMS Service Key (MSK) • Group key • Protect delivery of MTK • The MBMS Traffic Key (MTK) • Group traffic key • Protect SRTP data • Regularly updated
A MUKA MIKEYMUKB (MSK) B MIKEYMUKA(MSK) MUKA BSF MUKB BM-SC MUK: User Key, P2P MSK: Service Key, group key MUKB
A MIKEYMSK(MTK) B BSF BM-SC MSK MSK MSK MTK: Traffic Key, group key (eq. TGK/TEK)
General Extension Payload- Key ID Information (1/2) • Key ID Information 전달을 위한 GEP의 구조 • Next payload: 다음 Payload가 존재하는지 나타냄 • Type: General Extension Payload data의 타입을 나타냄 • Key ID(=3): Payload data가 Key ID Information임을 나타냄 • Length • Key ID Information • Variable length • 키의 ID와 타입을 전송하는 general payload data • Key ID Type sub-payload들로 구성됨
General Extension Payload- Key ID Information (2/2) • Key ID Type sub-payload의 구조 • Key ID Type (8 bits) • Key ID의 타입을 나타냄 • Key ID Type • MBMS Key Domain ID (0) • MBMS Service Key ID (1) • MBMS Traffic Key ID (2) • Key ID Length (8 bits): Key ID 필드의 길이를 나타냄 • Key ID • Variable length • Key의 ID를 정의함
Key Delivery 메시지 구조 • MSK 전송을 위한 GPE sub-payload • Key Domain ID, Key Type ID sub-payload • MTK 전송을 위한 GPE sub-payload • Key Domain ID, two Key Type ID sub-payload