2025
Conference

Building a Security Canopy Over O-RAN: The SDP Paradigm

Antony Franklin, Tejas Sameer Deshmukh

Abstract

The Open Radio Access Network (O-RAN) architecture provides flexibility in the deployment of RAN but introduces significant security vulnerabilities due to its open interfaces and disaggregated nature, expanding the attack surface for threats such as DoS, DDoS, MiTM, and unauthorized access. Current security solutions lack comprehensive protection across O-RAN components and interfaces.

This paper proposes an O-RAN-SDP framework integrating Software Defined Perimeter (SDP) principles to establish Zero-Trust security in O-RAN. By deploying an SDP Controller (SDPC) as an xApp within the Near-RT RIC and embedding SDP agents in O-RAN components, the framework leverages Single Packet Authorization (SPA) and secure tunneling mechanisms. The proposed architecture ensures strong authentication, granular authorization, reduced attack surface, and protection against DoS/DDoS, MiTM, and zero-day vulnerabilities across the O-RAN ecosystem. Experimental evaluation on a real O-RAN testbed demonstrates effective attack mitigation with acceptable connection setup overhead.

Keywords

O-RAN Software Defined Perimeter (SDP) Zero Trust Architecture DoS DDoS RIC Security xApp Security Network Security

Citation

Tejas Sameer Deshmukh, Antony Franklin A, "Building a Security Canopy Over O-RAN: The SDP Paradigm", International Conference on Modeling, Analysis and Simulation of Wireless and Mobile Systems (MSWiM), October 2025, doi: 10.1109/MSWiM67937.2025.11308758.

Publication Info

Type

Conference

Year

2025, October

Conference

International Conference on Modeling, Analysis and Simulation of Wireless and Mobile Systems (MSWiM)

📍 Barcelona, Spain

Metrics

Downloads
28
← Back to Publications