Privacy preserving AKMA in 5G

Mohsin Khan*, Philip Ginzboorg, Valtteri Niemi

    3GPP is currently studying AKMA (Authentication and Key Agreement for Applications): a mobile network service intended to support authentication and key management based on 3GPP credentials in 5G system, for third-party applications and 3GPP services. AKMA extends and evolves two earlier services that 3GPP specified for previous generations of mobile systems. Those are GBA (Generic Bootstrapping Architecture) and BEST (Battery Efficient Security for very low Throughput Machine Type Communication (MTC) devices), In this paper, we have first analyzed potential AKMA requirements in the 3GPP study of AKMA vs. GBA and BEST. We have identified two new privacy requirements that could be useful to protect the privacy of user transactions with AKMA application function against, e.g., an insider attacker in the home network of that user. Second, we have developed a privacy-mode for AKMA that fulfills those new requirements.

