Performance Evaluation of Transport Layer Security in the 5G Core Control Plane

Oliver Zeidler, Julian Sturm, Daniel Fraunholz, Wolfgang Kellerer

Research output: Chapter in Book/Report/Conference proceedingConference contributionpeer-review

3 Scopus citations

Abstract

As 5G is currently being rolled out, security considerations for this critical infrastructure are getting more into focus. Hereby, the security investigation of the 5G core as the central element plays a pivotal role. The structure of the core is based on a Service-Based Architecture (SBA) consisting of Network Functions (NFs). These NFs communicate via REST/HTTP2 interfaces, that can be secured using Transport Layer Security (TLS) for encryption. However, this enhanced security is not enforced by standardization, but up to the system operator to decide. Therefore, in this work we derive recommendations on when to use TLS. For that, we investigate the overhead of TLS in a simulation, based on the open-source frameworks Open5GS and UERANSIM. To measure a user-relevant overhead, we look into 5G's UE registration and Packet Data Unit (PDU) session establishment procedures. By testing 14 of the most relevant cipher suites, our results show, that TLS adds no more than 1\,% of time overhead in a running system. Further, we show cipher suites using ECDSA keys to be faster than the ones using RSA keys. Surprisingly, TLS 1.3 shows a larger performance overhead than its predecessor TLS 1.2. We demonstrate CPU and memory overhead of TLS to be insignificant in the context of the 5G core.

Original languageEnglish
Title of host publicationWiSec 2024 - Proceedings of the 17th ACM Conference on Security and Privacy in Wireless and Mobile Networks
PublisherAssociation for Computing Machinery, Inc
Pages78-88
Number of pages11
ISBN (Electronic)9798400705823
DOIs
StatePublished - 27 May 2024
Event17th ACM Conference on Security and Privacy in Wireless and Mobile Networks, WiSec 2024 - Seoul, Korea, Republic of
Duration: 27 May 202429 May 2024

Publication series

NameWiSec 2024 - Proceedings of the 17th ACM Conference on Security and Privacy in Wireless and Mobile Networks

Conference

Conference17th ACM Conference on Security and Privacy in Wireless and Mobile Networks, WiSec 2024
Country/TerritoryKorea, Republic of
CitySeoul
Period27/05/2429/05/24

Keywords

  • 5g
  • network security
  • performance measurements
  • tls

Fingerprint

Dive into the research topics of 'Performance Evaluation of Transport Layer Security in the 5G Core Control Plane'. Together they form a unique fingerprint.

Cite this