DocumentCode :
599335
Title :
Secure mobile social networks using USIM in a closed environment
Author :
Nawaz, O. ; Gehrmann, Christian ; Fiedler, Markus
Author_Institution :
Sch. of Comput., Blekinge Inst. of Technol., Karlskrona, Sweden
fYear :
2012
fDate :
10-12 Dec. 2012
Firstpage :
439
Lastpage :
446
Abstract :
Online social networking and corresponding mobile based applications are gaining popularity and now considered a well-integrated service within mobile devices. Basic security mechanisms normally based on passwords for the authentication of social-network users are widely deployed and poses a threat for the user security. In particular, for dedicated social groups with high confidentiality and privacy demands, stronger and user friendly principles for the authentication and identification of group members are needed. On the other hand, most of the mobile units already provide strong authentication procedures through the USIM/ISIM module. This paper explores how to build an architectural framework for secure enrolment and identification of group members in dedicated closed social groups using the USIM/SIM authentication and in particular, the 3GPP Generic Authentication Architecture (GAA), which is built upon the USIM/SIM capabilities. One part of the research is to identify the marketable use-cases with corresponding security challenges to fulfil the requirements that extend beyond the online connectivity. This paper proposes a secure identification design to satisfy the security dimensions for both online and offline peers. We have also implemented an initial proof of the concept prototype to simulate the secure identification procedure based on the proposed design. Our implementation has demonstrated the flexibility of the solution to be applied independently for applications requiring secure identification.
Keywords :
authorisation; data privacy; mobile computing; social networking (online); 3GPP generic authentication architecture; USIM-ISIM authentication module; confidentiality demand; group member authentication; group member enrollment; group member identification; mobile device; online social networking; password; peer security dimension; privacy demand; secure mobile social network; security mechanism; social-network user authentication; user security; Authentication; Computer architecture; Mobile communication; Mobile computing; Portals; Social network services; Information Security; Mobile Social Networks; Secure Identification;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Internet Technology And Secured Transactions, 2012 International Conference for
Conference_Location :
London
Print_ISBN :
978-1-4673-5325-0
Type :
conf
Filename :
6470846
Link To Document :
بازگشت