Building a Security Canopy Over O-RAN: The SDP Paradigm
Antony Franklin, Tejas Sameer Deshmukh
Abstract
The Open Radio Access Network (O-RAN) architecture provides flexibility in the deployment of RAN but introduces significant security vulnerabilities due to its open interfaces and disaggregated nature, expanding the attack surface for threats such as DoS, DDoS, MiTM, and unauthorized access. Current security solutions lack comprehensive protection across O-RAN components and interfaces.
This paper proposes an O-RAN-SDP framework integrating Software Defined Perimeter (SDP) principles to establish Zero-Trust security in O-RAN. By deploying an SDP Controller (SDPC) as an xApp within the Near-RT RIC and embedding SDP agents in O-RAN components, the framework leverages Single Packet Authorization (SPA) and secure tunneling mechanisms. The proposed architecture ensures strong authentication, granular authorization, reduced attack surface, and protection against DoS/DDoS, MiTM, and zero-day vulnerabilities across the O-RAN ecosystem. Experimental evaluation on a real O-RAN testbed demonstrates effective attack mitigation with acceptable connection setup overhead.
Keywords
Citation
Publication Info
Type
Conference
Year
2025, October
Conference
International Conference on Modeling, Analysis and Simulation of Wireless and Mobile Systems (MSWiM)
📍 Barcelona, Spain
Metrics
Related Publications
FALCON++: A Semi-Supervised Anomaly Detection and Localization Framework for Resilient …
Yaswanth Kumar LS, Somya Jain, …
HiPer : An XDR Solution for High Performance Compute Clusters …
Maruthi Seshidhar Inukonda ( Systems …