{"id":103877,"date":"2021-05-22T14:30:51","date_gmt":"2021-05-22T06:30:51","guid":{"rendered":"https:\/\/www.mediaintel.asia\/?p=386777"},"modified":"2021-05-22T14:30:51","modified_gmt":"2021-05-22T06:30:51","slug":"quantum-key-distribution-could-seal-the-5g-rift-with-china-say-engineers","status":"publish","type":"post","link":"https:\/\/www.chinalegalblog.com\/en\/2021\/05\/22\/quantum-key-distribution-could-seal-the-5g-rift-with-china-say-engineers\/","title":{"rendered":"Quantum Key Distribution could seal the 5G rift with China, say engineers"},"content":{"rendered":"<div align=\"center\"><a href=\"https:\/\/www.mediaintel.asia\/\" title=\"MediaIntel.Asia provides Media Intelligence and Media Monitoring in Asia\" ><img src=\"https:\/\/www.mediaintel.asia\/wp-content\/uploads\/mediaintelasia-logo-blackyellow-400x300-1.png\" border=\"0\" width=\"200\" height=\"150\" alt=\"MediaIntel.Asia\"><\/a><\/div>\n<p>The expulsion of Huawei-made equipment from countries\u2019 4G and 5G Wireless networks resumes in earnest, with projects such as BT\u2019s $701 million effort to rip and replace it all with Nokia and Ericsson equipment by 2027. The reason originally cited was the danger of a security threat, where China\u2019s government could one day exploit Huawei equipment\u2019s already documented vulnerabilities to clandestinely gather data, for example, on its own citizens abroad. What a quantum computer is, and why it needs to be more It would be the harbinger of an entirely new medium of calculation, harnessing the powers of subatomic particles to obliterate the barriers of time in solving incalculable problems. Read More That couldn\u2019t happen, say scientists and engineers in the emerging field of quantum key distribution, if the world\u2019s telcos were to install QKD equipment in 5G Wireless base stations. These facilities are linked to one another by fiber optic cable. This same cable, the engineers say, could be leveraged to provide impenetrable communications, from which neither China nor anyone else could glean information. \u201cAlthough we think of 5G and 4G and cellular and wireless technology, underpinning all of that is a very large fiber optic network. And that fiber optic network needs securing,\u201d remarked Dr. Duncan Earl, currently president and CTO of California-based QKD firm Qubitekk Inc., and an 18-year veteran scientist at Oak Ridge National Laboratories. Dr. Earl told the Inside Quantum Technology New York virtual conference on Wednesday that existing technology \u2014 not tomorrow\u2019s quantum discoveries \u2014 could provide a long-term security solution for all 5G equipment, including but not limited to Huawei\u2019s. He characterized this solution as \u201cobvious.\u201d \u201cThere\u2019s a big concern over foreign equipment being located or used on a 5G network,\u201d stated Earl, using very diplomatic language. \u201cIn these base stations. . . you may be installing equipment that actually is tapping into those communications.\u201d But that \u201cforeign equipment\u201d may have a cost advantage over alternatives from other manufacturers, he went on, especially in building out 5G networks in rural areas. (Huawei\u2019s and ZTE\u2019s price advantages are so well-documented, that this topic alone has become a discussion point in national security circles.) \u201cYou could use quantum technology to essentially hop over these base stations,\u201d Earl said. Fronthaul fiber is what the telecom industry calls the fiber optic connections leading from antennas to baseband units (BBU) located in telco central offices. On the other end, backhaul connections lead from central offices to the transmitters throughout the wireless network \u2014 which happen to share tower space with antennas. In fact, the overlapping connections themselves have come to be known as crosshaul. At the antenna end, a QKD transceiver could encrypt all fronthaul data flowing into the BBU, Earl suggested. That encryption would be bonded by physics rather than cryptography \u2014 an encryption so strong that the very act of intrusion would break the connection (which may instantly be re-established using a new quantum key). \u201cSo the base station only would see encrypted payloads,\u201d he said. \u201cOnce those were sorted and routed, as they left the base station, they would be decrypted by another quantum system.\u201d This would allow the Radio Access Network (RAN) to continue to operate exactly as it does now, without retrofitting or re-engineering. Last year, Earl\u2019s Qubitekk purchased the complete QKD patent portfolio of Hampshire, UK-based defense contractor QinetiQ Ltd. In a cellular network, data may traverse a variety of base stations. But one of the curious, even bewildering, phenomena of quantum networks is that the entanglement between qubits at the source and the eventual destination, establishes a kind of ethereal link between them, even in the absence of a direct fiber connection. Thus any quantum bond from point to point would be just as secure as if the network solely had those two points. This phenomenon, says Dr. Earl, referring to recent experiments that provide incontrovertible evidence to his point, means that encryption effectively \u201chops over the base stations.\u201d Testing this principle in a real-world scenario today is the UK\u2019s largest telco, BT. Last November, at the height of the pandemic, BT announced it would be leading a handful of startup quantum firms in building demonstrations of a key distribution system called AIRQKD, with backing from the UK Government\u2019s Industrial Strategy Challenge Fund (ISCF). Explaining the demonstration was BT\u2019s senior manager of optical networks research and 36-year veteran of the company, Prof. Andrew Lord of the University of Bristol. In one real-world demonstration, QKD linked two buildings, one whose data center hosted architectural designs of the sort a firm would want to keep secret, and the second sporting a 3D printer. The intellectual property of such designs, remarked Prof. Lord, would be of the variety whose encryption would need to last 20 years or longer \u2014 well past the date when engineers believe current Public Key Infrastructure (PKI) would have been rendered pointless by quantum encryption. Those two buildings were linked by way of nearby base stations, whose quantum keys were secured over BT\u2019s existing fiber infrastructure. As the above diagram depicts, QKD transceivers would be installed at BT\u2019s existing large 5G base stations, shown above as macro cells. Each macro cell would backhaul encrypted data to the smaller exchange cells, many of which are installed atop buildings. Theoretically, said Lord, the same encryption principle could be deployed for the 5G network\u2019s control plane, safeguarding it from any malicious influence. When the system comes to full fruition, it could distribute quantum encryption keys literally over the air \u2014 perhaps via low-Earth orbit (LEO) satellite, or over line-of-sight distances (\u201cfree space\u201d) as short as 150 meters. For deploying such a system on existing 5G networks, \u201cI can\u2019t see any intrinsic problem,\u201d reported Prof. Lord. \u201cThe backhaul distances would be 20 km, maybe a bit more. QKD is more than capable of doing that. So I don\u2019t see a physical limit. In terms of data throughput, again, not a problem, because you transmit a key, and you use that key to protect a lot of data \u2014 [perhaps] a terabit of data. Then you need to refresh the key. QKD key rates are obviously quite low, but they\u2019re certainly plenty enough to protect 5G backhaul links.\u201d For America\u2019s part, Verizon Distinguished Engineer Lee Sattler presented news of his company\u2019s similar trials with line-of-sight QKD in the Washington, DC area, conducted in partnership with key distribution system provider Quantum Xchange. The diagram above shows the setup: a communication between the company\u2019s 5G technology labs, and down the street about 4.5 km at its its Technology Policy Center. The two locations are linked by Verizon-owned dark fiber. Using wave division multiplexing, Sattler told the IQT audience, his team created one optical channel at 1310 nm, and two encrypted data channels at 1330 and 1350 nm. Key management points in this diagram are called Phio Trusted Exchange points, named for Quantum Xchange\u2019s Phio system. Its key selling point is the ability to exchange encryption keys out-of-band \u2014 that is, outside the network being encrypted, enabling any number of possible key exchange media, perhaps simultaneously. Those keys, in this case, are capable of securing Layer 2 communication, at the deep end of the network. \u201cWe have an encryptor which can make requests to the PTX, to get the keys for a symmetric encryption session between the two locations,\u201d explained Sattler. \u201cWhen one encryptor at the 5G Lab site requests a key from its PTX, the PTXes have a conversation, agree upon a key pair, and provide that to the two encryptors at both ends. Then we have a nice, safe, secure data exchange between the two locations.\u201d By adding the Ashburn, Virginia location, and securing all PTX points with firewalls, a separate PTX network comes into existence \u2014 performing one of the key functions of a quantum network, without a quantum network. In this case, using PQC methods, all the PTX points can exchange keys over a 4G link \u2014 not even 5G. Alternately, the team could have used Verizon\u2019s FiOS network. The PTX system is designed to enable other key distributions as well, most notably QKD. \u201cThis concept is so simple,\u201d said Sattler, \u201cI could\u2019ve done the same thing at my home. The PTX is a small form factor. I could easily have a PTX at my house and a firewall at my house, connect into this network, and have it be secured over IPsec, if I so desire.\u201d In both 4G and 5G, the radio access network (RAN) is separated from the network control plane of SDN, confining it to the user plane. An analysts\u2019 report produced in 2019 by Ovum and distributed by Ericsson entitled \u201cThe Facts on 5G\u201d [PDF] made the case that this confinement is for the protection of user data, which can then be encrypted (using classical technology), passing through the core network without exposure. Famously, in the act of publishing this paper, Ericsson declared, \u201cTechnically however, this is wrong.\u201d The 5G base station, wrote Ericsson security engineers Patrik Teppo and Karl Norrman, \u201cis the termination point for encryption and integrity protection and, potentially, the user plane can be accessed in clear text (in case over the top end-to-end encryption is not used). Therefore, the user plane traffic is, in this case, accessible to anyone controlling the [base station] or its implementation.\u201d Norrman and Teppo made the case that securing the RAN, therefore, is just as important a goal as securing the core. In so doing, they implied that chaining base stations together with what quantum engineers call \u201cclassical encryption\u201d creates any number of weak points in the network \u2014 weak points that 3GPP, the industry consortium that formalizes 5G standards, may have left unaddressed. Dr. Earl\u2019s explanation and Prof. Lord\u2019s demonstrations may shine a bright, photon-filled light on a permanent solution to this situation. At least theoretically for now, the types of security vulnerabilities cited by the UK\u2019s National Cyber Security Centre could actually become impossible. Standing in the way of such an outcome, however, in easily the utmost of ironies, may be the US National Security Agency. Beginning in 2015, the NSA took the stance that quantum encryption was a threat to national security, and tasked the National Institute of Standards and Technology (NIST) with choosing \u201cpost-quantum\u201d cryptography methods (PQC) that could replace current-day PKI. In 2019, the NSA\u2019s research director suggested the very search for PQC solutions, if made too public and shared with too many folks, could itself be a threat to security. In April, NIST published guidance on its PQC efforts to date [PDF]. In it, the agency characterized the still-forthcoming date when a quantum algorithm (specifically, Shor\u2019s Algorithm) breaks PKI as \u201ca particularly disruptive cryptographic transition.\u201d That transition, the report goes on, can only be met by rapid and fundamental improvements to classical cryptography methods. The report does not even mention the existence of QKD. \u201cToday, the NSA has a very blunt perspective,\u201d remarked Qubitekk Vice President of Engineering K. Karunaratne, speaking at the IQT conference. \u201cReally, the intent we want is, persuade them \u2014 and I agree that\u2019s a very hard task \u2014 that QKD does have a place, for its specific use cases.\u201d Why does the NSA take such an antagonistic position, asked IQT Research\u2019s Lawrence Gasman. \u201cI think a fair amount of their attitude,\u201d responded Karunaratne, \u201cis based on a lack of knowledge of what QKD really is, and how QKD has been implemented.\u201d In his communications with government officials, including with NIST, Karunaratne said, some believe their policy toward \u201cresponding\u201d to QKD has already been finalized. \u201cA lot of these challenges, I think, are dated,\u201d he went on, \u201cand they\u2019re based in a lack of knowledge on the NSA\u2019s part, about what modern QKD is, and how it\u2019s implemented.\u201d China may actually be working toward the same goal \u2014 not so much a quantum internet with interlinked QKDs, that\u2019s the dream of engineers worldwide. Rather, a PQC initiative that ostentatiously, perhaps with photographic evidence, demonstrates China\u2019s willingness to build its own quantum wall. In January, students from the University of Science and Technology of China (USTC) reported in the journal Nature that they had already built a fiber optic network spanning 4,600 kilometers, incorporating more than 700 QKD links, including two satellite-to-ground transceivers. Those transceivers are apparently capable of generating entangled photon pairs, and transmitting them to any point in the network \u2014 space providing the shortest, least disruptive path between two points. \u201cThe entire network is not completely quantum secure,\u201d reported Tom Stefanick, visiting fellow at the Brookings Institution, \u201cin the sense that they [USTC] have some 32 intermediate stops that are what they call \u2018trusted nodes.\u2019 They\u2019re not quantum secure, but they\u2019re secure enough that they\u2019re considered intermediate routes for passing on the information.\u201d In a way, the USTC network may suffer from the same class of problem that Ericsson pointed out in encrypted 4G\/5G: every stopover point may introduce a point of weakness. Theoretically at least, QKD promises a permanent solution to this problem, if that curious phenomenon can be successfully exploited. Perhaps China\u2019s researchers would care for some help. \u201cThere\u2019s kind of a theme in the China\/US confrontation,\u201d remarked Stefanick. \u201cChina has a history of doing anti-satellite tests, and has an anti-satellite program. But as the same time, as they develop quantum and global communications, they\u2019re going to need space. They\u2019re going to start approaching the United States, in terms of their need and reliance on a stable regime in space. There aren\u2019t lots of opportunities; that\u2019s an opportunity to have discussions about stabilizing the domain of potential conflict.\u201d Article source: https:\/\/www.zdnet.com\/article\/quantum-key-distribution-could-seal-the-5g-rift-with-china-say-engineers\/#ftag=RSSbaffb68<\/p>\n<p>This data comes from <a href=\"https:\/\/www.mediaintel.asia\/\" title=\"MediaIntel.Asia provides Media Intelligence and Media Monitoring in Asia\" >MediaIntel.Asia's Media Intelligence and Media Monitoring Platform<\/a>.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>The expulsion of Huawei-made equipment from countries\u2019 4G and 5G Wireless networks resumes in earnest, with projects such as BT\u2019s $701 million effort to rip and replace it all with Nokia and Ericsson equipment by 2027. The reason originally cited was &#8230;<\/p>\n","protected":false},"author":253,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[639,144,325,979,4,785,194,483,1542,484,334,36],"tags":[2470,7662,6601,1804,3610,3773,5895,7516,2172,2002,10344,10328,3402,10336],"class_list":["post-103877","post","type-post","status-publish","format-standard","hentry","category-california","category-china","category-education","category-huawei","category-internet","category-new-york","category-news-chinese-law","category-patent","category-technology","category-united-states","category-university","category-wireless","tag-4g","tag-5g","tag-china-technology","tag-computer","tag-diplomacy","tag-distribution","tag-encryption","tag-firewall","tag-national-security","tag-nokia","tag-outer-space","tag-pandemic","tag-united-kingdom","tag-washington"],"_links":{"self":[{"href":"https:\/\/www.chinalegalblog.com\/en\/wp-json\/wp\/v2\/posts\/103877","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.chinalegalblog.com\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.chinalegalblog.com\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.chinalegalblog.com\/en\/wp-json\/wp\/v2\/users\/253"}],"replies":[{"embeddable":true,"href":"https:\/\/www.chinalegalblog.com\/en\/wp-json\/wp\/v2\/comments?post=103877"}],"version-history":[{"count":1,"href":"https:\/\/www.chinalegalblog.com\/en\/wp-json\/wp\/v2\/posts\/103877\/revisions"}],"predecessor-version":[{"id":103878,"href":"https:\/\/www.chinalegalblog.com\/en\/wp-json\/wp\/v2\/posts\/103877\/revisions\/103878"}],"wp:attachment":[{"href":"https:\/\/www.chinalegalblog.com\/en\/wp-json\/wp\/v2\/media?parent=103877"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.chinalegalblog.com\/en\/wp-json\/wp\/v2\/categories?post=103877"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.chinalegalblog.com\/en\/wp-json\/wp\/v2\/tags?post=103877"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}