SCP (Service Communication Proxy)

In telecommunications, the SCP is a 5G Service-Based Architecture function that mediates HTTP/2 traffic between Network Functions, providing indirect communication, message routing, load balancing, and OAuth2 token handling. Because the SCP sits in the middle of all SBA flows, its hardening (mutual TLS, strict authorization, isolation) is critical to overall 5G security.

Categories: Core NetworkSecurity ControlsInternet and Routing

SCP in context

The mobile core carries subscriber sessions, mobility and policy. In 4G it is the EPC (MME, HSS, S/PGW); in 5G it is the Service-Based Architecture with AMF, SMF, UPF, AUSF, UDM and the NRF.

Security controls span signaling firewalls (SS7/Diameter/GTP screening), transport encryption (IPsec, TLS, PRINS), identity and access on OSS/BSS, and monitoring at both packet and log level. Controls are audited against GSMA FS.11/FS.19/FS.20/FS.36.

To place SCP in the wider telecom-security picture, review Authorization, Decryption, DNN, 3G, 5G SBA and ACL — each entry cross-references back to this page so you can walk the topic in either direction.

Related terms

More from the TelcoSec Glossary

Browse the full TelcoSec Glossary, the Ultimate Guide to Mobile Network Security, or the P1 Arsenal of telecom-security tools.