m.2012

📋 Audit Checklist: itu-r M.2012 (4G LTE-Advanced) Radio Security

Field Security Audit // Node_Operational
Completion_Index0%

Radio Resource Control (RRC) & NAS Security

item_em-0

Ciphering and Integrity Enforcement: Is RRC control-plane traffic protected using EEA1/EEA2/EEA3 algorithms? Is NAS (Non-Access Stratum) signaling integrity-protected (EIA1/EIA2/EIA3)?

item_em-1

AS Security Context: Audit the Key Derivation Function (KDF) for KeNB generation. Is a fresh AS (Access Stratum) key set generated upon every handover?

item_em-2

UE Capability Integrity: Verify that UE capability exchange is protected to prevent "Bidding Down" attacks.

Physical Layer & RRC Vulnerabilities

item_em-3

RRC-Connection Rejection Handling: Does the eNodeB mitigate "RRC Redirection" attacks (Fake Base Station)? Is there a mechanism to detect and block "IMSI Catchers" (False eNodeBs)?

item_em-4

Interference & Jamming Resilience: Audit the noise floor at the eNodeB for potential pilot signal jamming. Is there frequency monitoring to detect selective PSS/SSS (Primary/Secondary Sync Signal) jamming?

Backhaul & Handover Security (X2/S1)

item_em-5

IPsec/DTLS Tunneling: Is all S1/X2 control-plane traffic encapsulated in an IPsec tunnel between the eNodeB and MME/PGW?

item_em-6

Handover Key Handling: Verify the "Next Hop" (NH) and Chaining Counter (NCC) forward-security mechanism during X2/S1 handovers.

item_em-7

Security Gateway (SeGW) Integrity: Audit the SeGW for certificate-based authentication (X.509) of the eNodeB.

Restricted Mission
You are in Read-Only mode. Sign in to save progress and synchronize audit results across your devices.
TELCOSEC INITIATIVEEST. 2026 // GLOBAL STANDARDS RESEARCH

Independent, non-affiliated security research project dedicated to hardening global telecommunications infrastructure through data-driven auditing.