针对基于SIM卡安全机制的家庭基站平台完整性无法保护,容易产生通过家庭基站的恶意攻击等安全威胁,提出了基于TPM的家庭基站保护机制,采用TPM的安全计算、安全存储和认证机制,实现了核心网对家庭基站的设备认证、家庭基站软硬件完整性验证、家庭基站身份认证、家庭基站位置认证与锁定、用户接入家庭基站的认证.
This paper analyzed the security threats and attack of femtocell based on SIM card, which is unable to verify platform integrity; femtocell can attack end user and core network, etc. It proposed a femtocell security architecture based on TPM, which use TPM's security calculation, safety storage and the authentication mechanism. The core network can authenticate femtocell equipment, verify its hardware and software integrity, authenticate its identity, verify its location, and verify its access end user.