Presentation is loading. Please wait.

Presentation is loading. Please wait.

Mark Cataldo / Louis Finkelstein 1 st March, 2001 Slide 1 MExE +44 (0) 777 55 8 22 88

Similar presentations


Presentation on theme: "Mark Cataldo / Louis Finkelstein 1 st March, 2001 Slide 1 MExE +44 (0) 777 55 8 22 88"— Presentation transcript:

1 Mark Cataldo / Louis Finkelstein 1 st March, 2001 Slide 1 MExE mcatald1@motorola.commcatald1@motorola.com +44 (0) 777 55 8 22 88 louisf@labs.mot.comlouisf@labs.mot.com +1 847 576 4441 MExE Mobile Execution Environment …making the multimedia internet mobile… MExE Mobile Execution Environment …making the multimedia internet mobile…

2 Mark Cataldo / Louis Finkelstein 1 st March, 2001 Slide 2 MExE Agenda MExE timetable 2G and 3G Services MExE overview MExE functionality MExE domains and security MExE Release 4 issues MExE Release 5

3 Mark Cataldo / Louis Finkelstein 1 st March, 2001 Slide 3 MExE MExE Timetable  MExE (Release 98)  WAP and PersonalJava classmarks  approved 2Q99  MExE (Release 99)  SIM security enhancements  Quality of Service management  approved 4Q99  MExE (Release 4)  Java CLDC/MIDP classmark  other updates/additions  approved 4Q00

4 Mark Cataldo / Louis Finkelstein 1 st March, 2001 Slide 4 MExE Agenda MExE timetable 2G and 3G Services MExE overview MExE functionality MExE domains and security MExE Release 4 issues MExE Release 5

5 Mark Cataldo / Louis Finkelstein 1 st March, 2001 Slide 5 MExE 2G mobile services Service creation before Release 99Service creation before Release 99 Supplementary servicesSupplementary services limited, expensive to develop, difficult to deploy, limited uselimited, expensive to develop, difficult to deploy, limited use isolated from 3 rd party services developers, no internetisolated from 3 rd party services developers, no internet offered operators same bland services and no differentiationoffered operators same bland services and no differentiation Service creation since Release 99Service creation since Release 99 services as a general principle not standardisedservices as a general principle not standardised instead toolkits standardised, and services created using the toolkitsinstead toolkits standardised, and services created using the toolkits Seamless internet and intranet accessSeamless internet and intranet access compatibility with internet multimedia communicationscompatibility with internet multimedia communications

6 Mark Cataldo / Louis Finkelstein 1 st March, 2001 Slide 6 MExE 3G mobile multimedia services mobile phones fully internet integrated mobile phones fully internet integrated new operator/3 rd party IP multimedia services new operator/3 rd party IP multimedia services new personalised IP multimedia services rapidly developed to differentiate operators, reduce “churn” new personalised IP multimedia services rapidly developed to differentiate operators, reduce “churn” generally no services standardised, but enabled using 3GPP services toolkits (MExE, OSA, CAMEL, (U)SAT) and IP/IT toolkits generally no services standardised, but enabled using 3GPP services toolkits (MExE, OSA, CAMEL, (U)SAT) and IP/IT toolkits consistent “look’n’feel” of services within the VHE consistent “look’n’feel” of services within the VHE

7 Mark Cataldo / Louis Finkelstein 1 st March, 2001 Slide 7 MExE Agenda MExE timetable 2G and 3G Services MExE overview MExE functionality MExE domains and security MExE Release 4 issues MExE Release 5

8 Mark Cataldo / Louis Finkelstein 1 st March, 2001 Slide 8 MExE MExE Overview  standardised execution environments in mobile phone  WAP  PersonalJava  CLDC/MIDP Java  applicable to 3G, non-3G, cordless and fixed environments  IT/IP multimedia services on mobile phones/servers  write once, execute on many mobile phones  transfer of multimedia services  up/downloading, network/3rd party, MExE-to-MExE services  standardised negotiation of capabilities with servers

9 Mark Cataldo / Louis Finkelstein 1 st March, 2001 Slide 9 MExE MExE Overview  Manufacturer’s mobile phone unit Firmware  Manufacturer’s firmware OS  Mobile phone OS Telecomms  GMS/UMTS software APIs  APIs: manufacturer  MExE framework (MExE classmark 1, 2, 3) APIs, MExE classmark MExE  MExE executables, data and content AppContent DataApp ContentData Content The MExE framework sits in mobile phone architecture…  HTTP/WSP (with capability exchange)

10 Mark Cataldo / Louis Finkelstein 1 st March, 2001 Slide 10 MExE Agenda MExE timetable 2G and 3G Services MExE overview MExE functionality MExE domains and security MExE Release 4 issues MExE Release 5

11 Mark Cataldo / Louis Finkelstein 1 st March, 2001 Slide 11 MExE MExE functionality  standardised set of MExE classmarks  WAP, WAP/PersonalJava, CLDC/MIDP multimedia services  wide variety of multimedia services  with no standardised 3G services, MExE enables operator/3 rd party multimedia service delivery to users  multimedia services supported by all devices of a given classmark (CM)  CM1 devices support CM1 applications, CM2 devices support CM2 applications, CM3 devices support CM3 applications  sophisticated user interface  advanced services presentation  Graphical User Interface (GUI)

12 Mark Cataldo / Louis Finkelstein 1 st March, 2001 Slide 12 MExE MExE functionality  customisation and personalisation  services “look and feel” (user interface and services personalisation)  services communication with network/non-network nodes  operator branding and differentiation  enables the Virtual Home Environment  user services management  services download  services/data management  determine active services

13 Mark Cataldo / Louis Finkelstein 1 st March, 2001 Slide 13 MExE MExE functionality  re-use of existing technologies  software industry expertise, development tools  WAP, Internet and Intranet  existing APIs, (i.e. WAP, PersonalJava, Java MIDP/CLDC...)  capability negotiation  allows servers and MExE mobiles to determine the most suitable content format for the device (e.g. depending on screen size, memory, colour capabilities etc.)

14 Mark Cataldo / Louis Finkelstein 1 st March, 2001 Slide 14 MExE Agenda MExE timetable 2G and 3G Services MExE overview MExE functionality MExE domains and security MExE Release 4 issues MExE Release 5

15 Mark Cataldo / Louis Finkelstein 1 st March, 2001 Slide 15 MExE MExE Security Domains  secure environment for multimedia services  multiple Third Party domains permitted Third Party OperatorManufacturerThird Party  3 optional security domains (PKI certificates) optional Untrusted  1 “untrusted” area mandatory

16 Mark Cataldo / Louis Finkelstein 1 st March, 2001 Slide 16 MExE Operator’s Domain  only operator PKI authenticated multimedia services permitted  operators provide existing services and new multimedia services  branded services  franchised services  customer support  service personalisation  defined set of mandatory security restrictions on downloaded applications

17 Mark Cataldo / Louis Finkelstein 1 st March, 2001 Slide 17 MExE Handset Manufacturer’s Domain  permits mobile phone upgrades  “provisioned applications” upgrade  user interface upgrades  software updates  manufacturer’s multimedia services  defined set of mandatory security restrictions on downloaded applications  only manufacturer’s PKI authenticated multimedia services permitted

18 Mark Cataldo / Louis Finkelstein 1 st March, 2001 Slide 18 MExE Third Party Domain  “Administrator” determines whether Third Party domain is controlled by the operator or user  Operator controlled:  Operator controlled: operator decides which (if any) PKI authenticated third party services  User controlled:  User controlled: user decides which PKI authenticated third party services  defined set of mandatory security restrictions on downloaded applications

19 Mark Cataldo / Louis Finkelstein 1 st March, 2001 Slide 19 MExE Untrusted Area  user in control of the untrusted area  user downloads any multimedia service as desired  call origination  screen access  sending DTMF  add phonebook entry  downloaded multimedia services have limited permissions (only with explicit user authorisation)  defined set of mandatory security restrictions on downloaded applications

20 Mark Cataldo / Louis Finkelstein 1 st March, 2001 Slide 20 MExE Agenda MExE timetable 2G and 3G Services MExE overview MExE functionality MExE domains and security MExE Release 4 issues MExE Release 5

21 Mark Cataldo / Louis Finkelstein 1 st March, 2001 Slide 21 MExE Release 4 issues  explicitly defining the certificate verification process  need to clearly identify the process  need to define demotion of signed content to Untrusted Area  only in specifically defined cases  demoted content restricted to same basic functionality as untrusted applications  pre-launch verification of executables  applications require to be verified before being launched  clarify rules on operator applications

22 Mark Cataldo / Louis Finkelstein 1 st March, 2001 Slide 22 MExE Release 4 issues  administrator designation process  tidying up terminology  handling of operator applications on (U)SIM activity  operator executables currently have special handling  should operator executables be permitted to execute even if the (U)SIM is not available?  should operator executables also require pre-launch verification?  (U)SIM terminology  Replace terminology of “(U)SIM removal/insertion” with “accessing valid (U)SIM application”

23 Mark Cataldo / Louis Finkelstein 1 st March, 2001 Slide 23 MExE Agenda MExE timetable 2G and 3G Services MExE overview MExE functionality MExE domains and security MExE Release 4 issues MExE Release 5

24 Mark Cataldo / Louis Finkelstein 1 st March, 2001 Slide 24 MExE R5 Enhancements and Improvements WID  General enhancements and improvements  Investigate/identify VHE User Profile support  Investigate/identify USAT/OSA/CAMEL interaction  Investigate/identify new CLI classmark  Investigate/identify terminal management support  Investigate/identify AT commands support  Investigate/identify Push services support  Investigate/identify service provisioning support

25 Mark Cataldo / Louis Finkelstein 1 st March, 2001 Slide 25 MExE R5 Security Analysis Activity WID  Conduct a threat analysis of MExE to review the security features for effectiveness in countering those threats.  Perform a security analysis for the different releases of MExE and the associated classmarks  Identify issues in terms of security concepts and mechanisms for MExE  Identify potential threats, weaknesses and security shortfalls  Create policy as countermeasures for identifiable weaknesses  To map policies to the requirements within the specification  The output TR will be used as a basis to potentially agree CRs to S1's 22.057, T2's 23.057, and S3's 21.133 and 23.102.


Download ppt "Mark Cataldo / Louis Finkelstein 1 st March, 2001 Slide 1 MExE +44 (0) 777 55 8 22 88"

Similar presentations


Ads by Google