Home fiber connections are largely realized by using passive optical networks, in their most common form today relying on the GPON standard. Among other things, this standard specifies how the first node inside of customers' homes, the so called ONU or ONT, has to behave, and which security features have to be supported. Currently, customers in some European countries, including Germany, have freedom of choice between using terminal equipment provided by the ISP or a self-selected open market device.We analyze the security implications resulting from this freedom of choice and whether or not ISP-mandated hardware would increase the security of the GPON. Our review reveals that there are no differences between an ISP-mandated ONU/ONT and a standard conforming subscriber-selected ONU/ONT that would justify the security based recommendation of an ISP-mandated ONU/ONT.
翻译:家庭光纤连接主要依赖无源光网络实现,当前最常见形式基于GPON标准。该标准要求规范用户住宅内首个节点设备(即ONU或ONT)的行为准则及其必须支持的安全特性。目前,包括德国在内的部分欧洲国家用户有权选择使用互联网服务提供商(ISP)提供的终端设备,或自行选购开放市场设备。我们针对这种选择自由所产生的安全影响,以及ISP强制设备是否会增强GPON安全性展开分析。本综述表明,在ISP强制要求的ONU/ONT与符合标准的用户自主选购ONU/ONT之间,不存在足以支撑"基于安全理由推荐ISP强制设备"的技术差异。