Kusuka kumhumushi kanye no-TL;DR
-
TL; DR:
Kubonakala sengathi i-VoLTE ivikeleke kakhulu kunamakhasimende okuqala e-Wi-Fi ane-WEP. I-miscalculation ye-architectural ekhethekile ekuvumela ukuthi u-XOR ithrafikhi kancane futhi ubuyisele ukhiye. Ukuhlaselwa kungenzeka uma useduze nomuntu ofonayo futhi eshaya izingcingo njalo.
-
Siyabonga ngethiphu kanye ne-TL;DR
Klukonin -
Abacwaningi benze uhlelo lokusebenza ukunquma ukuthi inkampani yakho yenethiwekhi isengozini, funda kabanzi
lapha . Yabelana ngemiphumela kumazwana, i-VoLTE ivaliwe esifundeni sami ku-Megafon.
Mayelana nomlobi
UMathewu Green.
Ngiyi-cryptographer kanye noprofesa e-Johns Hopkins University. Ngiklame futhi ngahlaziya amasistimu e-cryptographic asetshenziswa kumanethiwekhi angenantambo, amasistimu okukhokha, nezinkundla zokuphepha zokuqukethwe kwedijithali. Ocwaningweni lwami, ngibheka izindlela ezahlukene zokusebenzisa i-cryptography ukuthuthukisa ubumfihlo bomsebenzisi.
Sekuyisikhashana ngabhala ifomethi yokuthunyelwe
Kodwa namuhla ngifikile
Ngakho-ke, ubungozi obukhulu be-cryptographic bungasabalala emhlabeni wonke, mhlawumbe buzoxhashazwa ohulumeni kuphela, ngaphambi kokuba noma yimuphi umcwaningi aqaphele. Kodwa ngezikhathi ezithile kukhona okuhlukile, futhi ukuhlasela kwanamuhla kungenye yazo.
Ababhali
Okokuqala, uhambo olufushane lomlando.
Yini i-LTE ne-VoLTE?
Isisekelo sezindinganiso zethu zesimanje zocingo lwamaselula sabekwa e-Europe emuva kuma-80s ngokwezinga
Njengoba ukudluliswa kwedatha kwaba okubaluleke kakhulu ekuxhumaneni kwamaselula, amazinga e-Long Term Evolution (LTE) athuthukiswa ukuze enze lolu hlobo lokuxhumana lube lula. I-LTE isuselwe eqenjini lamazinga amadala afana ne-GSM,
Yebo, umlando usitshela ukuthi uma sekukhona (IP) umkhawulokudonsa owanele otholakalayo, imiqondo efana nethi “izwi” kanye “nedatha” izoqala ukufiphala. Okufanayo kusebenza kumaphrothokholi amaselula wesimanje. Ukwenza lolu shintsho lube bushelelezi, izindinganiso ze-LTE ziyachaza
Njenge-VoIP evamile, i-VoLTE isuselwe kuzivumelwano ezimbili ezidumile ezisekelwe ku-IP: I-Session Initiation Protocol (
Kulungile, lokhu kuhlangene ngani nokubethela?
I-LTE, njenge
(Kodwa-ke, iqiniso lokuthi ukuxhumeka kwe-VoLTE kungenzeka ngokuqondile phakathi kwamakhasimende kumanethiwekhi abahlinzeki ahlukene kusho ukuthi iphrothokholi ye-VoLTE ngokwayo inamaphrothokholi okubethela angeziwe futhi okuzithandela angenzeka ezingqimbeni eziphezulu zenethiwekhi. Lokhu akuhambisani nesihloko samanje, ngaphandle kweqiniso lokuthi bangamosha yonke into (sizokhuluma ngabo kafushane ngokulandelayo).
Ngokomlando, ukubethela ku-GSM bekukade kunjalo
Ake siqale ngokubethela ngokwakho. Uma sicabanga ukuthi ukudalwa kokhiye sekuvele kwenzekile - futhi sizokhuluma ngalokho emzuzwini - bese iphakethe ngalinye ledatha libethelwa kusetshenziswa ukubethela kokusakaza kusetshenziswa into ebizwa ngokuthi "EEA" (okuyinto engenziwa kusetshenziswa izinto ezifana ne-AES ). Empeleni, indlela yokubhala ngemfihlo ilapha
I-algorithm enkulu yokubethela yamaphakethe e-VoLTE (umthombo:
Njengoba i-algorithm yokubethela ngokwayo (EEA) ingasetshenziswa kusetshenziswa i-cipher eqinile njenge-AES, mancane amathuba okuthi kube nokuhlasela okuqondile ku-cipher ngokwayo njengalokhu.
Ikakhulukazi: izinga le-LTE lisebenzisa i-cipher (engagunyaziwe) yokusakaza enemodi ezoba sengozini kakhulu uma isibali - nokunye okokufaka okufana "nomphathi" kanye "nezikhombisi-ndlela" - kusetshenziswa kabusha. Ngolimi lwanamuhla, igama lalo mqondo lithi “ukuhlasela okungakaze kusetshenziswe kabusha,” kodwa ubungozi obungaba khona lapha akuyona into yesimanje. Zidumile futhi zasendulo, kusukela ezinsukwini ze-glam metal ngisho ne-disco.
Ukuhlaselwa kokuphinda kusetshenziswe kumodi ye-CTR kube khona ngisho nalapho Ubuthi sebaziwa
Ukukhuluma iqiniso, izindinganiso ze-LTE zithi, "Sicela ungaphinde uwasebenzise lawa mamitha." Kodwa izindinganiso ze-LTE cishe zingamakhasi angu-7000 ubude, futhi kunoma yikuphi, kufana nokuncenga izingane ukuthi zingadlali ngesibhamu. Bayokwenza nakanjani, futhi kuzokwenzeka izinto ezimbi. Isibhamu esidubulayo kuleli cala siwukuhlasela kokusetshenziswa kabusha kokusakaza kokhiye, lapho imilayezo emibili eyimfihlo ehlukene ithumela u-XOR amabhayithi okhiye okusakaza afanayo. Kuyaziwa ukuthi lokhu
Iyini i-ReVoLTE?
Ukuhlasela kwe-ReVoLTE kukhombisa ukuthi, empeleni, lo mklamo wokubethela osengozini kakhulu usetshenziswa kabi yihardware yomhlaba wangempela. Ngokukhethekile, ababhali bahlaziya izingcingo ze-VoLTE zangempela ezenziwe kusetshenziswa okokusebenza kwezentengiso futhi babonise ukuthi bangasebenzisa into ebizwa ngokuthi "ukuhlasela kokufakwa kabusha kokhiye." (Isikweletu esiningi sokuthola le nkinga siya kuso
Ake ngikubonise kafushane ingqikithi yokuhlasela, nakuba kufanele ubheke futhi
Umuntu angase acabange ukuthi uma i-LTE isisungule uxhumano lwedatha yephakethe, umsebenzi wezwi nge-LTE uba yindaba nje yokuhambisa amaphakethe ezwi phezu kwalolo xhumo kanye nayo yonke enye ithrafikhi yakho. Ngamanye amazwi, i-VoLTE izoba umqondo okhona kuphela
Eqinisweni, isendlalelo sesixhumanisi se-LTE sethula umqondo wokuthi "umphathi". Abathwali yizihlonzi zeseshini ezihlukene ezihlukanisa izinhlobo ezahlukene zethrafikhi yephakethe. Ithrafikhi ye-inthanethi evamile (i-Twitter yakho ne-Snapchat) idlula kumphathi oyedwa. Ukusayinda kwe-SIP kwe-VoIP kudlula kwenye, futhi amaphakethe ethrafikhi yezwi acutshungulwa ngokwesithathu. Anginalo ulwazi oluningi ngomsakazo we-LTE nezindlela zomzila wenethiwekhi, kodwa ngikholwa ukuthi kwenziwa ngale ndlela ngoba amanethiwekhi e-LTE afuna ukuphoqelela izindlela ze-QoS (ikhwalithi yesevisi) ukuze ukusakazwa kwephakethe okuhlukile kucutshungulwe emazingeni ahlukene abalulekile: i.e. eyakho isilinganiso sesibili Ukuxhumana kwe-TCP ku-Facebook kungase kube nokubalulekile okuphansi kunezingcingo zakho zezwi zesikhathi sangempela.
Lokhu ngokuvamile akuyona inkinga, kodwa imiphumela imi kanje. Okhiye bokubethela kwe-LTE badalwa ngokuhlukene ngaso sonke isikhathi lapho kufakwa "isithwali" esisha. Ngokuyisisekelo, lokhu kufanele kwenzeke futhi njalo uma ushaya ucingo olusha. Lokhu kuzophumela ekusetshenzisweni kokhiye wokubethela ohlukile kukholi ngayinye, kususe ithuba lokuphinda kusetshenziswe ukhiye ofanayo ukuze ubethele amasethi amabili ahlukene wamaphakethe ekholi yezwi. Ngempela, izinga le-LTE lisho okuthile okufana nokuthi "kufanele usebenzise ukhiye ohlukile njalo uma ufaka isithwali esisha ukuze ubambe ucingo olusha." Kodwa lokhu akusho ukuthi lokhu kuyenzeka ngempela.
Eqinisweni, ekusetshenzisweni kwangempela kwempilo, izingcingo ezimbili ezihlukene ezenzeka ezindaweni eziseduze zizosebenzisa ukhiye ofanayo - ngaphandle kweqiniso lokuthi abaphathi abasha begama elifanayo bayalungiswa phakathi kwabo. Ushintsho olungokoqobo kuphela olwenzeka phakathi kwalezi zingcingo ukuthi isibali sokubethela sisethwe kabusha sibe uziro. Ezincwadini lokhu kubizwa ngezinye izikhathi
Empeleni, lokhu kuhlasela kuholela ekusetshenzisweni kabusha kokusakaza kokhiye, lapho umhlaseli angathola khona amaphakethe abethelwe angu-$inline$C_1 = M_1 oplus KS$inline$ kanye ne-$inline$C_2 = M_2 oplus KS$inline$, okuvumela ukubalwa kuka-$inline$ C_1 kanye ne-C_2 = M_1 kanye ne-M_2$inline$. Okungcono nakakhulu, uma umhlaseli azi eyodwa kwe-$inline$M_1$inline$ noma $inline$M_2$inline$, angakwazi ukubuyisela enye ngokushesha. Lokhu kumnika isikhuthazo esinamandla thola enye yezingxenye ezimbili ezingabetheliwe.
Lokhu kusiletha esimweni sokuhlasela esiphelele nesisebenza kakhulu. Cabanga ngomhlaseli ongakwazi ukuvimba ukugcwala kwerediyo phakathi kwefoni eqondiwe kanye nombhoshongo weselula, futhi oba nenhlanhla ngandlela thize yokurekhoda amakholi amabili ahlukene, okwesibili kwenzeke ngokushesha ngemva kokokuqala. Manje ake ucabange ukuthi angaqagela ngandlela thize okuqukethwe okungabethelwe kwenye yezingcingo. Ngokunjalo ukuzola umhlaseli wethu angakwazi ukususa ukubhala ngokuphelele ucingo lokuqala esebenzisa i-XOR elula phakathi kwamasethi amabili amaphakethe.
Yebo, inhlanhla ayihlangene nayo. Njengoba amafoni enzelwe ukwamukela amakholi, umhlaseli ongakwazi ukuzwa ikholi yokuqala uzokwazi ukuqalisa ikholi yesibili ngesikhathi esiphuma ngaso eyokuqala. Le kholi yesibili, uma ukhiye wokubethela ofanayo usetshenziswa futhi ngokusethwa kabusha kwekhawunta kube uziro, kuzovumela idatha engabetheliwe ukuthi itholwe. Ngaphezu kwalokho, njengoba umhlaseli wethu empeleni elawula idatha ngesikhathi socingo lwesibili, angakwazi ukubuyisela okuqukethwe ocingweni lokuqala - sibonga eziningi ezenziwe ngokukhethekile. izinto ezincane,edlala ngecele.
Nasi isithombe sohlelo olujwayelekile lokuhlasela oluthathwe kuso
Uhlolojikelele lokuhlasela kusuka
Ngakho ingabe ukuhlasela kuyasebenza ngempela?
Ngakolunye uhlangothi, lona umbuzo oyinhloko wendatshana mayelana ne-ReVoLTE. Yonke le mibono engenhla inhle ngombono, kodwa ishiya imibuzo eminingi. Njenge:
- Kungenzeka (kubacwaningi bezemfundo) ukuthi babambe ukuxhumana kwe-VoLTE?
- Ingabe amasistimu wangempela we-LTE aqala kabusha?
- Ungakwazi yini ukuqalisa ucingo lwesibili ngokushesha nangokuthembekile ngokwanele ukuze ifoni nombhoshongo ziphinde zisebenzise ukhiye?
- Noma ngabe ama-system akhiyeka kabusha, ungakwazi ngempela ukwazi okuqukethwe okungabetheliwe ocingweni lwesibili - uma kubhekwa ukuthi izinto ezifana nama-codec kanye ne-transcoding zingashintsha ngokuphelele (bit-by-bit) okuqukethwe kwalolo cingo lwesibili, noma ngabe uyakwazi ukufinyelela "izingcezu". "iphuma efonini yakho yokuhlasela?
Umsebenzi we-ReVoLTE uphendula eminye yale mibuzo ngokuvuma. Ababhali basebenzisa isofthiwe yezentengiselwano-iphinda ilungiseke i-sniffer yokusakaza yomsakazo ebizwa
Abacwaningi bathola ukuthi ukuze kusetshenziswe kabusha ukhiye kusebenze, ucingo lwesibili kwakufanele lwenzeke ngokushesha ngokwanele ngemva kokuba olokuqala luphelile, kodwa hhayi ngokushesha kakhulu—cishe imizuzwana eyishumi kubaqhubi abazame ngabo. Ngenhlanhla, akunandaba ukuthi umsebenzisi uyaluphendula yini ucingo ngalesi sikhathi - "ring" okungukuthi. Uxhumo lwe-SIP ngokwalo luphoqa opharetha ukuthi asebenzise kabusha ukhiye ofanayo.
Ngakho-ke, izinkinga eziningi ezimbi kakhulu ziphathelene nenkinga (4) - ukuthola izingcezu zokuqukethwe okungabethelwe kocingo oluqalwe umhlaseli. Lokhu kungenxa yokuthi kuningi okungenzeka kokuqukethwe kwakho njengoba kuhamba kusuka ocingweni lomhlaseli kuya ocingweni lomhlukumezi ngenethiwekhi yeselula. Isibonelo, amaqhinga angcolile njengokurekhoda kabusha ukusakaza komsindo ofakwe ikhodi, okushiya umsindo ufana, kodwa kuguqule ngokuphelele ukumelwa kwayo kanambambili. Amanethiwekhi e-LTE aphinde asebenzise ukucindezelwa kwesihloko se-RTP, okungashintsha kakhulu iphakethe le-RTP.
Okokugcina, amaphakethe athunyelwe umhlaseli kufanele ahambisane cishe namaphakethe athunyelwe ngesikhathi socingo lokuqala. Lokhu kungaba yinkinga ngoba ukulungisa ukuthula phakathi nocingo kuphumela emilayezweni emifushane (okubizwa nangokuthi umsindo wokunethezeka) engase ingalingani kahle nekholi yoqobo.
Leli izinga lempumelelo eliphakeme ngokumangalisayo, futhi uma ngingagwegwesi liphakeme kakhulu kunalokho engangikulindele lapho ngiqala ukusebenza kulo mbhalo.
Pho singenzani ukuze sikulungise?
Impendulo esheshayo yalo mbuzo ilula kakhulu: njengoba ingqikithi yokuba sengozini ingukhiye wokusebenzisa kabusha (ukufaka kabusha) ukuhlasela, mane ulungise inkinga. Qinisekisa ukuthi kutholwa ukhiye omusha ocingweni ngalunye, futhi ungalokothi uvumele isibali sephakethe ukuthi sisethe kabusha isibali sibuyele kuqanda usebenzisa ukhiye ofanayo. Inkinga ixazululiwe!
Noma mhlawumbe cha. Lokhu kuzodinga ukuthuthukiswa kwemishini eminingi, futhi, uma sikhuluma iqiniso, ukulungiswa okunjalo ngokwakho akuthembeki kakhulu. Kungaba kuhle uma amazinga angathola indlela evikeleke kakhudlwana yokusebenzisa izindlela zawo zokubethela ezingeyona ingozi ngokuzenzakalelayo ezinkingeni ezinjalo zokuphinda zisetshenziswe.
Enye inketho engenzeka ukusebenzisa
Lolu cwaningo olusha luphinde luphakamise umbuzo ojwayelekile wokuthi kungani
Noma, ngokunye, singenza lokho izinkampani ezifana ne-Facebook ne-Apple eziqhubeka zikwenza: ukwenza ukubethelwa kwekholi yezwi kwenzeke ezingeni eliphezulu lesitaki senethiwekhi ye-OSI, ngaphandle kokuthembela kubakhiqizi bemishini yamaselula. Singase siphushele ukubethelwa kokugcina kwezingcingo zezwi, njengoba kwenza i-WhatsApp nge-Signal ne-FaceTime, sicabanga ukuthi uhulumeni wase-US uvele ame.
Noma singenza lokho izingane zethu esezikwenzile kakade: yeka ukuphendula lezo zingcingo zezwi ezicasulayo.
Source: www.habr.com