SlideShare a Scribd company logo
Diameter overview
                                                    TWG joint meeting
                                                       Xiamen, China
                                                       June 29, 2004


                                                       John Loughney
                                                     Research Manager
                                                    Nokia Research Center
                                                  john.loughney@nokia.com



1   © NOKIA 2003 diameter.ppt / John A. Loghney
AAA & Diameter
              • Next generation Authentication, Authorization &
                Accounting protocol
              • Consists of base specification and applications
                         • MIP
                         • Network Access Server (Dial-up / PPP / SLIP environment)
                         • SIP Services
                         • Accounting Extensions




2   © NOKIA 2003 diameter.ppt / John A. Loghney
RADIUS Standard Model




                                                  Diameter Roaming




3   © NOKIA 2003 diameter.ppt / John A. Loghney
Short comings of RADIUS
              • Backoff unspecified
              • Failover unspecified
              • Application layer acknowledgement missing
              • Undefined proxy behavior
              • No error messages prevent intelligent failure response
              • Transport security has no confidentiality, known attacks
              • Replay protection only in post-processing
              • No object security, subject to man-in-the-middle attacks.




4   © NOKIA 2003 diameter.ppt / John A. Loghney
Diameter Examples
                                                   Diameter Connections and Sessions

                                      Server                       relay                  Server


                                                   Peer connection A       Peer connection B


                                                               User session X

                                                  Translation of RADIUS to Diameter

                                                  RADIUS Req                       Diameter Req
                                                                  Translation                      Home
                       NAS
                                                  RADIUS Ans        Agent          Diameter Ans    Server



5   © NOKIA 2003 diameter.ppt / John A. Loghney
Diameter Proxy Example
                                                  local service   home service
                                                    provider        provider


                                                   Primary         Primary
                                                    Proxy           Home
                                                   Server          Server
                  Network
                  Access
                   Server

                                                    Backup         Backup
                                                     Proxy         Home
                                                    Server         Server




6   © NOKIA 2003 diameter.ppt / John A. Loghney
AAA-SIP in 3GPP Rel. 5
                                                                                                          Diameter
                                                                             SLF                    HSS                    AS
                                                                                                                Sh
                                                                                        Diameter                     ISC
                                                                                   Dx          Cx              Cx
                                                                                                    Diameter
                                      Gm                                                                                        Mr
                                                                   Mw                          Mw
             UE                                   P-CSCF                     I-CSCF                       S-CSCF                      MRFC

                                                                                                                                         Megaco
                              Compression                                                       Mi
                                                              COPS for
                                                  Go                                                      SIP                         MRFP
                                                          Policy Control

                                                       GGSN
                                                                                                          Mj

                                                                                        BGCF                               MGCF              SGW
                                                                                                          SIP                                SIP-ISUP

                                                                                                                Megaco           Mc
                                                              Visited      Home
                                                              Domain       Domain
                                                                                                                           MGW




7   © NOKIA 2003 diameter.ppt / John A. Loghney
Stardards Work to Do
              • Diameter Base Specification just submitted.
              • Diameter Mobile IPv4 Application nearly ready (needed
                by 3GPP2).
              • Diameter NASREQ Application nearly ready.
              • CMS Security Application, needed for e2e security
              • AAA Key Distribution
              • SIP-AAA Requirements
              • Diameter Mobile IPv6 Application
              • Diameter Multimedia Application (3GPP rel. 6)
              • Diameter Credit Control Application (3GPP rel. 6)
              • May need extensions to support session mobility.


8   © NOKIA 2003 diameter.ppt / John A. Loghney
Vision
                                                           GSM/GPRS
                                                                                 Multi-radio
                                                                                 mobile
                                                              DSL                access

                                                                                 Session
                                                             WLAN                mobility

                                                                                 Access to
                                                            WCDMA                SIP services


                                                  For phones, laptops and PDAs
                                                       Same authentication
                                                    Same end-to-end security
                                                        Same applications
                                                      Same service provider
9   © NOKIA 2003 diameter.ppt / John A. Loghney
                                                            Same bill
Operator Services
                                                                              GSM
                                                                            roaming

            Corporate
             intranet                                                                   SS7
                                                                                                    Billing system
                                                     Internet                     SMSC               Diameter and
     VPN Gateway                                                                                     DNS servers

                                                                                AAA Server
                                                                                                    Charging
                                                                                                    Gateway
                                                                                Access Controller



                                                                      Router/firewall                   Operator site

                                                                Any WLAN card




10    © NOKIA 2003 diameter.ppt / John A. Loghney
GPRS-WLAN Service Mobility
Service/Access selection based on common:                          GPRS-WLAN          Common connectivity to corporate:
                                                                   common             • Existing L2/L3 connections
• Subscription (GPRS ”access points”)                              subscriber data
• Terminal configuration (opt.)                                                       • Corporate IP address (security)
                                                                                      • Optional authentication
                                                                                                            Diameter Server
                                                              Auth. Server                                  DHCP
                                            Internet
                                                                                                              Corporate
              AP         Access Zone                         Operator IP
                                                                                                             Operator
                       LAN, VLAN,                  AC       IP tunnel with   Home
                                                            IETF protocol    AC
                                                                                                          services incl.
                       or IP tunnel                (opt.)
                                                                                                       intelligent content

 Managed IP flow enables common:
 • Control of direct Internet access                          Common service awareness:
 • Support of existing terminals                              • Differentiated and pre-paid charging
                                                                for corporate and intelligent Web content
 • Service guarantee and QoS
 • Roaming through GRX


11   © NOKIA 2003 diameter.ppt / John A. Loghney
SIP enables service convergence
                                                                         Telephony conversational
                                                                               connectivity
                                                                                        Separate,
                                                                                     telecom-driven
                                                          Telephone
                               Mobile                                                   standards


                     Wireless PDA
                                                           (SIP) phone                    Common,
                                                                                          IP-driven
                                                                                     call/session set-up
                                                                         SIP conversational
                                                                            connectivity
                                                           Laptop with       plus more:
                                                             WLAN
                                                                          Presence, instant
                                                   PC
                                                                       messaging, file sharing,
                                        Mobile
12   © NOKIA 2003 diameter.ppt / John A. Loghney
                                                                              video …
Multi-Access to IP Multimedia Core
                                                                           CPS
                                                   rich call               session control         presence, messaging,
                            Internet               streaming                                       group services
                                                   etc.             IP Multimedia
                                                                   Core & Services

                                                                                                         Device mobility (Mobile IP)
                                                                                                         Service mobility (SIP + presence)
           browsing,     messaging,
         downloading,      video
       VPN remote access                                                                    all
                                                                                        multimedia                          local services
                                                                        Cellular         services                         supplemented by
                                                                                                                          operator services
                                                                   wide-area network
                 Operator WLAN
                public access zones                                                                      DSL Broadband
                                                                                                          offices, homes
                                                           voice

                                                                                             end-user
                                                                                             control


13   © NOKIA 2003 diameter.ppt / John A. Loghney
Operator Services
              • Provide Authorization Services.
              • Provide Authentication Services.
              • Sell branded content networks.
              • Provide roaming brokers.
              • PKI services.




14   © NOKIA 2003 diameter.ppt / John A. Loghney
Summary
              • Integrating different access technologies (3G, WLAN, DSL,
                Dial-up):
                        • increases the potential for increasing subscribers.
                        • increases accesses to services.
              • Integrating/harmonizing signaling:
                        • harmonizes network infrastructure.
                        • simplifies network management.
                        • simplifies charging/billing.
                        • simplifies the user experience.




15   © NOKIA 2003 diameter.ppt / John A. Loghney

More Related Content

What's hot (20)

PDF
Mobile signaling threats and vulnerabilities - real cases and statistics from...
DefCamp
 
PPT
Ss7 Introduction Li In
mhaviv
 
PDF
VoLTE Flows and CS network
Karel Berkovec
 
PDF
11 palo alto user-id concepts
Mostafa El Lathy
 
PDF
17 palo alto threat prevention concept
Mostafa El Lathy
 
PDF
16 palo alto ssl decryption policy concept
Mostafa El Lathy
 
PPT
3 g call flow
Ashish Aggarwal
 
PPTX
Session Initiation Protocol
Matt Bynum
 
PPT
SS7 & SIGTRAN
Stephanie Galloway-Williams
 
PDF
6LoWPAN: An Open IoT Networking Protocol
Samsung Open Source Group
 
PPTX
VoLTE Charging and Clearing Explained
Syniverse
 
PPT
Secure Socket Layer
Naveen Kumar
 
PPT
Initial LTE call Setup Flow
assinha
 
PPTX
Diameter Capabilities Exchange
Arpit Prajapati
 
PDF
Attacking GRX - GPRS Roaming eXchange
P1Security
 
PPT
Multicast Routing Protocols
Ram Dutt Shukla
 
PPTX
Diameter Presentation
Beny Haddad
 
PPT
Ipsec
Rupesh Mishra
 
PDF
Analysis of attacks / vulnerabilities SS7 / Sigtran using Wireshark (and / or...
Alejandro Corletti Estrada
 
PPTX
IMS ENUM and DNS Mechanism
Kent Loh
 
Mobile signaling threats and vulnerabilities - real cases and statistics from...
DefCamp
 
Ss7 Introduction Li In
mhaviv
 
VoLTE Flows and CS network
Karel Berkovec
 
11 palo alto user-id concepts
Mostafa El Lathy
 
17 palo alto threat prevention concept
Mostafa El Lathy
 
16 palo alto ssl decryption policy concept
Mostafa El Lathy
 
3 g call flow
Ashish Aggarwal
 
Session Initiation Protocol
Matt Bynum
 
6LoWPAN: An Open IoT Networking Protocol
Samsung Open Source Group
 
VoLTE Charging and Clearing Explained
Syniverse
 
Secure Socket Layer
Naveen Kumar
 
Initial LTE call Setup Flow
assinha
 
Diameter Capabilities Exchange
Arpit Prajapati
 
Attacking GRX - GPRS Roaming eXchange
P1Security
 
Multicast Routing Protocols
Ram Dutt Shukla
 
Diameter Presentation
Beny Haddad
 
Analysis of attacks / vulnerabilities SS7 / Sigtran using Wireshark (and / or...
Alejandro Corletti Estrada
 
IMS ENUM and DNS Mechanism
Kent Loh
 

Viewers also liked (8)

PDF
PCRF-Policy Charging System-Functional Analysis
Biju M R
 
PPTX
What is PCRF? – Detailed PCRF architecture and functioning
Mahindra Comviva
 
PDF
OCS – Online Charging System - I Workshop CPqD de Inovação Tecnológica em VoI...
CPqD
 
PPT
Gsm (Part 2)
Ali Usman
 
PPTX
Install dev stack
Basim Aly (JNCIP-SP, JNCIP-ENT)
 
PPTX
Introduction to Diameter Protocol - Part1
Basim Aly (JNCIP-SP, JNCIP-ENT)
 
PPTX
Vandyke SecureCRT tips and tricks
Basim Aly (JNCIP-SP, JNCIP-ENT)
 
PPTX
Introduction to SDN and NFV
Basim Aly (JNCIP-SP, JNCIP-ENT)
 
PCRF-Policy Charging System-Functional Analysis
Biju M R
 
What is PCRF? – Detailed PCRF architecture and functioning
Mahindra Comviva
 
OCS – Online Charging System - I Workshop CPqD de Inovação Tecnológica em VoI...
CPqD
 
Gsm (Part 2)
Ali Usman
 
Introduction to Diameter Protocol - Part1
Basim Aly (JNCIP-SP, JNCIP-ENT)
 
Vandyke SecureCRT tips and tricks
Basim Aly (JNCIP-SP, JNCIP-ENT)
 
Introduction to SDN and NFV
Basim Aly (JNCIP-SP, JNCIP-ENT)
 
Ad

Similar to Diameter Overview (20)

PDF
Diameter and Diameter Roaming
John Loughney
 
PDF
Mobile video using SOA / SDP and IMS
Claude Florin
 
PDF
SOA and SDP mobile 2.0 deployment with OpenCall
Claude Florin
 
PDF
Lte network chart_poster
DipeshHShah
 
PDF
Introduction to Diameter: The Evolution of Signaling
PT
 
PDF
Diameter Penetration Test Lab
frcarlson
 
PDF
Uit Presentation of IN/NGIN for Cosmote 2010
michael_mountrakis
 
PPT
Chester County Interlink
booomer1265
 
PDF
Matrix sapex vs grandstream gxe502 x series
Gateway Business Solutions
 
PDF
响应性设计和开发
Kejun Zhang
 
PPTX
Ready for the Evolution: LTE Session delivery requirements
AcmePacket
 
DOC
الباب الخامس
tahsal99
 
PDF
NetAccess W1000 WAN transaction router GHL Systems
Alex Tan
 
PPT
Gardenia company profile
Hasan Natur
 
PDF
Rs automation solutions june
RSComponentsTCC
 
PPS
Cabling 03 25
skullcandy648
 
PDF
20121105 acme packet diameter rev4 (mt)
Rafael Junquera
 
PDF
Mobile 2G/3G Workshop
Johnson Liu
 
PPTX
San Diego Super Computer
laurabeckcahoon
 
PDF
Matrix setu ata vs_linksys_pap2_t
Gateway Business Solutions
 
Diameter and Diameter Roaming
John Loughney
 
Mobile video using SOA / SDP and IMS
Claude Florin
 
SOA and SDP mobile 2.0 deployment with OpenCall
Claude Florin
 
Lte network chart_poster
DipeshHShah
 
Introduction to Diameter: The Evolution of Signaling
PT
 
Diameter Penetration Test Lab
frcarlson
 
Uit Presentation of IN/NGIN for Cosmote 2010
michael_mountrakis
 
Chester County Interlink
booomer1265
 
Matrix sapex vs grandstream gxe502 x series
Gateway Business Solutions
 
响应性设计和开发
Kejun Zhang
 
Ready for the Evolution: LTE Session delivery requirements
AcmePacket
 
الباب الخامس
tahsal99
 
NetAccess W1000 WAN transaction router GHL Systems
Alex Tan
 
Gardenia company profile
Hasan Natur
 
Rs automation solutions june
RSComponentsTCC
 
Cabling 03 25
skullcandy648
 
20121105 acme packet diameter rev4 (mt)
Rafael Junquera
 
Mobile 2G/3G Workshop
Johnson Liu
 
San Diego Super Computer
laurabeckcahoon
 
Matrix setu ata vs_linksys_pap2_t
Gateway Business Solutions
 
Ad

More from John Loughney (19)

PDF
Advances in IPv6 in Mobile Networks Globecom 2011
John Loughney
 
PDF
Advances in IPv6 Mobile Access
John Loughney
 
PDF
LBS: Where are we? Where are we going? And how do we get there?
John Loughney
 
PDF
Converged Communication and IPv6, afrinic-8
John Loughney
 
PDF
IPv6 in 2G and 3G Networks
John Loughney
 
PDF
"Converged Communications -- Impact and Requirements on future handsets
John Loughney
 
PDF
Converged Communications and IPv6
John Loughney
 
PDF
Quality of Service at the Internet Engineering Task Force
John Loughney
 
PDF
SCTP Overview
John Loughney
 
PDF
Future Signaling Protocols What’s New in IETF
John Loughney
 
PDF
Converged Communications
John Loughney
 
PDF
IP QoS signaling in the IETF:Past, Present and Future
John Loughney
 
PDF
End-to-End and IPv6
John Loughney
 
PDF
Mobile Terminals as a Driver for IPv6 Deployment
John Loughney
 
PDF
A Framework for the QoS Based Integration of IP and ATM
John Loughney
 
PDF
"End-to-end Interoperability and Mobile Services"
John Loughney
 
PDF
DIANA: Scenarios for QoS based integration of IP and ATM
John Loughney
 
PDF
The State of 3G/GPRS IPv6 Deployment
John Loughney
 
PDF
IPv6 in 3G Core Networks
John Loughney
 
Advances in IPv6 in Mobile Networks Globecom 2011
John Loughney
 
Advances in IPv6 Mobile Access
John Loughney
 
LBS: Where are we? Where are we going? And how do we get there?
John Loughney
 
Converged Communication and IPv6, afrinic-8
John Loughney
 
IPv6 in 2G and 3G Networks
John Loughney
 
"Converged Communications -- Impact and Requirements on future handsets
John Loughney
 
Converged Communications and IPv6
John Loughney
 
Quality of Service at the Internet Engineering Task Force
John Loughney
 
SCTP Overview
John Loughney
 
Future Signaling Protocols What’s New in IETF
John Loughney
 
Converged Communications
John Loughney
 
IP QoS signaling in the IETF:Past, Present and Future
John Loughney
 
End-to-End and IPv6
John Loughney
 
Mobile Terminals as a Driver for IPv6 Deployment
John Loughney
 
A Framework for the QoS Based Integration of IP and ATM
John Loughney
 
"End-to-end Interoperability and Mobile Services"
John Loughney
 
DIANA: Scenarios for QoS based integration of IP and ATM
John Loughney
 
The State of 3G/GPRS IPv6 Deployment
John Loughney
 
IPv6 in 3G Core Networks
John Loughney
 

Diameter Overview

  • 1. Diameter overview TWG joint meeting Xiamen, China June 29, 2004 John Loughney Research Manager Nokia Research Center [email protected] 1 © NOKIA 2003 diameter.ppt / John A. Loghney
  • 2. AAA & Diameter • Next generation Authentication, Authorization & Accounting protocol • Consists of base specification and applications • MIP • Network Access Server (Dial-up / PPP / SLIP environment) • SIP Services • Accounting Extensions 2 © NOKIA 2003 diameter.ppt / John A. Loghney
  • 3. RADIUS Standard Model Diameter Roaming 3 © NOKIA 2003 diameter.ppt / John A. Loghney
  • 4. Short comings of RADIUS • Backoff unspecified • Failover unspecified • Application layer acknowledgement missing • Undefined proxy behavior • No error messages prevent intelligent failure response • Transport security has no confidentiality, known attacks • Replay protection only in post-processing • No object security, subject to man-in-the-middle attacks. 4 © NOKIA 2003 diameter.ppt / John A. Loghney
  • 5. Diameter Examples Diameter Connections and Sessions Server relay Server Peer connection A Peer connection B User session X Translation of RADIUS to Diameter RADIUS Req Diameter Req Translation Home NAS RADIUS Ans Agent Diameter Ans Server 5 © NOKIA 2003 diameter.ppt / John A. Loghney
  • 6. Diameter Proxy Example local service home service provider provider Primary Primary Proxy Home Server Server Network Access Server Backup Backup Proxy Home Server Server 6 © NOKIA 2003 diameter.ppt / John A. Loghney
  • 7. AAA-SIP in 3GPP Rel. 5 Diameter SLF HSS AS Sh Diameter ISC Dx Cx Cx Diameter Gm Mr Mw Mw UE P-CSCF I-CSCF S-CSCF MRFC Megaco Compression Mi COPS for Go SIP MRFP Policy Control GGSN Mj BGCF MGCF SGW SIP SIP-ISUP Megaco Mc Visited Home Domain Domain MGW 7 © NOKIA 2003 diameter.ppt / John A. Loghney
  • 8. Stardards Work to Do • Diameter Base Specification just submitted. • Diameter Mobile IPv4 Application nearly ready (needed by 3GPP2). • Diameter NASREQ Application nearly ready. • CMS Security Application, needed for e2e security • AAA Key Distribution • SIP-AAA Requirements • Diameter Mobile IPv6 Application • Diameter Multimedia Application (3GPP rel. 6) • Diameter Credit Control Application (3GPP rel. 6) • May need extensions to support session mobility. 8 © NOKIA 2003 diameter.ppt / John A. Loghney
  • 9. Vision GSM/GPRS Multi-radio mobile DSL access Session WLAN mobility Access to WCDMA SIP services For phones, laptops and PDAs Same authentication Same end-to-end security Same applications Same service provider 9 © NOKIA 2003 diameter.ppt / John A. Loghney Same bill
  • 10. Operator Services GSM roaming Corporate intranet SS7 Billing system Internet SMSC Diameter and VPN Gateway DNS servers AAA Server Charging Gateway Access Controller Router/firewall Operator site Any WLAN card 10 © NOKIA 2003 diameter.ppt / John A. Loghney
  • 11. GPRS-WLAN Service Mobility Service/Access selection based on common: GPRS-WLAN Common connectivity to corporate: common • Existing L2/L3 connections • Subscription (GPRS ”access points”) subscriber data • Terminal configuration (opt.) • Corporate IP address (security) • Optional authentication Diameter Server Auth. Server DHCP Internet Corporate AP Access Zone Operator IP Operator LAN, VLAN, AC IP tunnel with Home IETF protocol AC services incl. or IP tunnel (opt.) intelligent content Managed IP flow enables common: • Control of direct Internet access Common service awareness: • Support of existing terminals • Differentiated and pre-paid charging for corporate and intelligent Web content • Service guarantee and QoS • Roaming through GRX 11 © NOKIA 2003 diameter.ppt / John A. Loghney
  • 12. SIP enables service convergence Telephony conversational connectivity Separate, telecom-driven Telephone Mobile standards Wireless PDA (SIP) phone Common, IP-driven call/session set-up SIP conversational connectivity Laptop with plus more: WLAN Presence, instant PC messaging, file sharing, Mobile 12 © NOKIA 2003 diameter.ppt / John A. Loghney video …
  • 13. Multi-Access to IP Multimedia Core CPS rich call session control presence, messaging, Internet streaming group services etc. IP Multimedia Core & Services Device mobility (Mobile IP) Service mobility (SIP + presence) browsing, messaging, downloading, video VPN remote access all multimedia local services Cellular services supplemented by operator services wide-area network Operator WLAN public access zones DSL Broadband offices, homes voice end-user control 13 © NOKIA 2003 diameter.ppt / John A. Loghney
  • 14. Operator Services • Provide Authorization Services. • Provide Authentication Services. • Sell branded content networks. • Provide roaming brokers. • PKI services. 14 © NOKIA 2003 diameter.ppt / John A. Loghney
  • 15. Summary • Integrating different access technologies (3G, WLAN, DSL, Dial-up): • increases the potential for increasing subscribers. • increases accesses to services. • Integrating/harmonizing signaling: • harmonizes network infrastructure. • simplifies network management. • simplifies charging/billing. • simplifies the user experience. 15 © NOKIA 2003 diameter.ppt / John A. Loghney