y.3101

📋 Audit Checklist: itu-t Y.3101 (5G Core)

Field Security Audit // Node_Operational
Completion_Index0%

Global IMT-2020 Compliance

item_em-0

Network Slicing Isolation: Confirm that each network slice (eMMB, URLLC, mMTC) is logically isolated at the NSSF (Network Slice Selection Function) level. Verify that no unauthorized inter-slice data leakage occurs.

item_em-1

Service-Based Architecture (SBA) Security: Mutual TLS (mTLS): Are all HTTP/2 interfaces (Nnrf, Namf, Nsmf) protected via certificate-based mutual authentication? OAuth2 Authorization: Is access to service-based interfaces (SBI) controlled via NRF (Network Repository Function) access tokens?

item_em-2

User Plane Security (UPF): Verify that GTP-U traffic is encapsulated correctly and integrity-protected. Confirm that the UPF (User Plane Function) performs packet-level filtering (DPI).

Interconnect & Roaming (SEPP)

item_em-3

SEPP Authentication: Verify that the Security Edge Protection Proxy (SEPP) is active and requires strong authentication for N32 roaming interfaces.

item_em-4

Cross-Operator Trust: Does the network use the itu-t Y.3101 trust model for foreign PLMN (Public Land Mobile Network) interconnection?

item_em-5

Message Sanitization: Are non-standard information elements (IEs) from visited networks stripped at the border?

5G Performance & Reliability

item_em-6

Latency Verification: Does the URLLC (Ultra-Reliable Low-Latency Communication) slice meet the latency targets (<1ms)?

item_em-7

Massive IoT (mMTC): Confirm that the control plane can handle 10^6 devices per km^2 without degradation.

item_em-8

Failover & Resilience: Verify that the network functions (NFs) are stateless and support rapid scale-out/failover.

Restricted Mission
You are in Read-Only mode. Sign in to save progress and synchronize audit results across your devices.
TELCOSEC INITIATIVEEST. 2026 // GLOBAL STANDARDS RESEARCH

Independent, non-affiliated security research project dedicated to hardening global telecommunications infrastructure through data-driven auditing.