Computers (Dec 2022)

Privacy-Enhanced AKMA for Multi-Access Edge Computing Mobility

  • Gizem Akman,
  • Philip Ginzboorg,
  • Mohamed Taoufiq Damir,
  • Valtteri Niemi

DOI
https://doi.org/10.3390/computers12010002
Journal volume & issue
Vol. 12, no. 1
p. 2

Abstract

Read online

Multi-access edge computing (MEC) is an emerging technology of 5G that brings cloud computing benefits closer to the user. The current specifications of MEC describe the connectivity of mobile users and the MEC host, but they have issues with application-level security and privacy. We consider how to provide secure and privacy-preserving communication channels between a mobile user and a MEC application in the non-roaming case. It includes protocols for registration of the user to the main server of the MEC application, renewal of the shared key, and usage of the MEC application in the MEC host when the user is stationary or mobile. For these protocols, we designed a privacy-enhanced version of the 5G authentication and key management for applications (AKMA) service. We formally verified the current specification of AKMA using ProVerif and found a new spoofing attack as well as other security and privacy vulnerabilities. Then we propose a fix against the spoofing attack. The privacy-enhanced AKMA is designed considering these shortcomings. We formally verified the privacy-enhanced AKMA and adapted it to our solution.

Keywords