The reason why you see paging by IMSI in real-world GSM networks

This is merely a historical archive of years 2008-2021, before the migration to mailman3.

A maintained and still updated list archive can be found at https://lists.osmocom.org/hyperkitty/list/OpenBSC@lists.osmocom.org/.

loay abdelrazek loay.razek at gmail.com
Sun May 20 07:52:55 UTC 2018


Hello All

I wanted to ask your about something regarding user privacy leakage in the
broadcast channels.  As i have been sniffing and testing myself and i found
that on the paging requests type 1 IMSI along with TMSI is sent.

I have came to understand that first sending two identifications is the
norm, but what i dont understand the high rate of sending IMSI as mobile
identification, and as per specification its noted that either TMSI OR IMSI
are sent,  so does that by any mean could be a configuration issues from
the MSC/VLR side that should be changed, is this the norm? if its the norm,
then why using TMSI.

>From your experience what are the countermeasures you think that should be
taken from the operator side to protect against such information leaks, or
there is nothing that an operator can do much for this ?What could be the
different cases where the IMSI could be sent ?

Thanks
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.osmocom.org/pipermail/openbsc/attachments/20180520/4853d7c8/attachment.htm>


More information about the OpenBSC mailing list