You are on page 1of 13

Building a

new world
A guide to evolving
from EPC to 5G Core

October 2020
2 Ericsson  |  Building a new world

Let’s get to the core

We are moving toward a platform economy, where collaboration and agility across
verticals are key. The evolution from Evolved Packet Core (EPC) to 5G Core (5GC) is
central in creating a powerful platform for communications service providers (CSPs)
to extract value and become contributors in existing and emerging ecosystems.

5GC architecture and radio will open We explore the challenges faced in These steps are interlinked and important
up a new universe of possibilities for defining the best possible core evolution in achieving your target 5GC network
differentiation and business. Each CSP path while meeting aggressive time to and a service-based architecture (SBA).
will need to define their comprehensive market (TTM), agility and opex reduction This architecture represents a shift from
strategy, based on current conditions and objectives. We’ll identify how your telecom-type interfaces to web-based
future objectives. New use cases, evolution path can be simplified, even APIs for the control functions, facilitating
for both consumers and enterprises, if your starting point is not from a the creation of new services where
have different requirements and will complete Ericsson 4G core. network functions can register themselves
ultimately define the strategy that and subscribe to other services without
each CSP chooses to follow. Logical steps on the journey to 5GC changing interfaces. Additionally, we
Through collaboration with leading Your journey from EPC to 5GC relies now see that the focus of 3GPP for the
CSPs around the world, we have learned on multiple logical steps, including: development of standards is changing,
the increased importance of working • virtualization of core network where innovation will be concentrated
across traditional silos. As shown functions for Packet Core, IMS toward the new 5GC and very little will
in Figure 1, business, network and and subscription management be done on the old EPC.
operational plans need to be developed • separation of control and user The evolution journey can be completed
in parallel to achieve a successful plane functions in many ways, and the order in which
end-to-end strategy, where network • introduction of network slicing, you approach the building blocks can
evolution and efficient operations enabling multiple logical networks be optimized for your requirements.
support the business goals. to be supported over one However, this high level of flexibility
In this paper, we will closely examine network platform creates both opportunities and challenges,
some key areas, or steps without order, • distribution of cloud infrastructure especially as business drivers call for a
that are more akin to “building blocks”. closer to users strong focus on increased agility and
These are key areas that every CSP will • consolidation of user plane functions opex reductions through automation,
need to address to become successful in for mobile, fixed wireless and which affect network solutions, the
the future business landscape. fixed access transformation of processes and
operations. So, what is the correct way
to approach this challenge?
Figure 1: The interdependence of
We believe in adopting a holistic
business, network and operations
approach to core network evolution to
reduce time, risk and cost in your 5G
program. Follow us on the evolution
journey as we share our ideas, knowledge
and hands-on expertise, to show how we
can make a significant difference to your
journey, even when starting with only a
Business
portion of your core network.

Network Operations
3 Ericsson  |  Building a new world

The journey to 5GC requires full flexibility so CSPs can take their preferred path

The best evolution journey is not • Increased flexibility in serving industry


visible in the rear-view mirror verticals, where the demand can be both One core, endless possibilities
Your target destination will shape the higher and lower when compared to the Across CSPs and markets, the
evolution journey. The 4G core network mobile broadband base, depending on starting points will vary greatly.
has supported a rapid growth in traffic the use case. This calls for innovation We offer a holistic view of the
with declining average revenue per user of network solutions as well as evolution journey with full flexibility
and expansions of capacity and capability, business models. to choose your path, based on your
implemented with well-established • Improved TTM by eliminating specific needs and plans. We hold
routines. While this model has served the unnecessary system integration steps, the capabilities to support you in
current journey well, we see a few changes positively affecting cost and time evolving 4G and 5G into a dual-mode
for the core evolution going forward. budgets. A central theme for the future 5G Core network.
• Increased agility where your core core network is to enable an instant
network will be continuously evolving, economy for a larger ecosystem.
with software upgrades taking place in • Ensuring customer experience during
order of magnitude more frequently. the transition to 5GC with, for example,
• Reduced opex for initial deployment and new challenges for traditional
life cycle management (LCM) of core probing solutions.
network functions, enabled by a higher
degree of automation. These business drivers have shaped our
thinking on how to best architect the
evolution journey.
4 Ericsson  |  Building a new world

The building blocks to 5G

The evolution of the core network to 5G involves a few vital areas to consider
– we call these building blocks. The target is clear, with the launch date for 5G
New Radio (NR) being an important milestone, and the challenge for CSPs is
now to identify the best approach to get from A to B.

There are several paths to reach a 5GC The second alternative is the new
network. Each will include different 5GC architecture supporting option 2, Implementing the new 5GC will give
objectives in terms of new technology NR Standalone (SA), as well as the access to capabilities that address
introduction, use cases and time frames. potential options (4, 5 and 7). During 2020, new use cases.
3GPP has defined two core pioneering CSPs around the world started
network alternatives to support 5G to implement the new 5GC, supporting
NR in Release 15. The first is based option 2 for connecting 5G NR. The
on an enhanced EPC supporting main driver is access to capabilities that
option 3, NR Non-Standalone (NSA), address new use cases, in particular for
which was developed to support the the enterprise segment.This is shown in
early introduction of 5G NR. Figure 2.

Figure 2: 5G architecture overview – the architecture tracks in 3GPP Release 15

5G EPC 5GC
3GPP Q4-17 3GPP target Q2-18

S1 based N2/N3
(new interface)

Option 1 Option 3
Option 5 Option 2

Option 7

Option 4

LTE LTE NR LTE NR NR

LTE/EPC LTE/EPC LTE/5GC


LTE/EPC
NR/EPC NR/EPC NR/5GC
5 Ericsson  |  Building a new world

Evolution from EPC to In this paper, we want to show how we


dual-mode 5G Core can support you in your journey towards
The transformation to a true 5G network 5GC, even if you have a very limited
that serves as a powerful platform in installed Ericsson base today. Based on
the new business landscape is a huge our learnings, we suggest you should
endeavor. This paper focuses on the divide your 5G project into the following
evolution to 5GC and the experiences sub-projects, all of which are important
we have had while working with leading and should be worked on in parallel
CSPs around the world. However, this depending on your specific priorities.
transformation has to be seen in a larger
context, where different building blocks
have to be broken down and managed in Building blocks
order to make your 5G project a success. • Native virtualized cloud native
No journey to 5GC will be the same, • Early 5G NR introduction
depending on the starting point, market with good customer
conditions and strategic goals. experience management
The starting point can differ based • Optimize with distributed cloud
on where you are on the virtualization • Explore network slicing
journey, level of distribution, plans to • Expand automation
introduce 5G, and more. • Explore exposure
• Security

No journey to 5GC will be the same


6 Ericsson  |  Building a new world

A smooth evolution journey

We can support your core network evolution journey, whether you


have a complete Ericsson core today or use only certain elements.
For the latter, there are three ways we can simplify your journey.

Firstly, our global core network presence in business objectives and starting points. into seven key building blocks. Their order
has given us great exposure to different We offer flexibility in the order in which is not chronological, but they are important
evolution challenges, so you can expect the building blocks are introduced, areas to consider in parallel or in a
us to be familiar with your situation. To enabled by a complete suite of core different order, depending on your
approach the evolution scenario from products that are designed to work needs and strategy.
scratch, without the leverage of global well together, with a holistic approach
insights, will increase costs and slow to LCM across network functions. From native, to virtual, to cloud native
down your progress. The target architecture for 5GC networks
Secondly, with a broad core network Cut to the core: the evolution to 5GC is cloud native and fully virtualized.
portfolio, we can suggest suitable In designing our dual-mode 5G Core The degree of EPC virtualization and
evolution steps for your particular platform, we put our customers’ challenges near‑term implementation plans shape
needs. The first wave of core network first and focused on creating the most your options. One or more of the following
virtualization was built around the same value and flexibility. We have redesigned will apply to your current EPC network:
entities as physical network functions. our software, based on microservices, to • virtualization has not started
Our dual-mode 5G Core today also offers be fully cloud native while maintaining • partially virtualized, with virtualized
a fully cloud native platform to support feature parity toward the installed base. and physical core network functions
your journey to the target architecture The aim was to create a platform that in a hybrid model for each network
of a containerized and cloud native supports a smooth migration to 5GC for function
dual‑mode 5G Core, supporting 5G as the different needs of any CSP around • the degree of virtualization varies and
well as previous generations, with one the world (see Figure 3). has reached different penetration levels
common operations and maintenance This includes ensuring a safe and for different network functions
(O&M) platform. For the journey ahead, time-independent path, avoiding service • a centralized cloud infrastructure with
we envision both larger and smaller steps, disruptions and minimizing migration co-located physical and virtualized
where network functions can be grouped costs during the transition period where network functions
to simplify LCM of the network. both 5G EPC and 5GC need to coexist. • partly complete internal process
Thirdly, core evolution journeys will To structure the 5GC evolution journey, transformation, with semi-automated
vary between CSPs, driven by differences we recommend dividing your 5G project continuous delivery and integration

Figure 3: Ericsson dual-mode 5G Core

Quick path to 5G NR NSA Gradual introduction of NFs Domain independent evolution paths

SW upgrade only Subscription Data Management


EPC 5G EPC
Legacy Legacy Policy Control
Example:

Dual-mode 5G Core deployment Packet Core Controller Packet Core Controller Packet Core – User Plane
alternatives – cloud native applications
AMF SMF AMF SMF SMS
Packet Core – Control Plane
EPC 5GC EPC + 5GC
SGW-C PGW-C MME SGW-C PGW-C

Deployment alternatives
Interworking with legacy – including User Plane Gi LAN consolidation PNFs VNFs CNFs
multi-vendor scenarios UPF SF1
CaaS
Interworking
EPC EPC + 5GC UPF SF1 SF2 SFn SF2 SFn IaaS CaaS

Legacy Cloud native Vendor a Vendor b Vendor c Packet Core Gateway HW


7 Ericsson  |  Building a new world

• separate EPC platforms for mass market The evolution toward cloud native 5GC is opportunities with industry use cases
mobile broadband and IoT niches compelling when it comes to improving and dedicated networks.
• limited vertical integration synergies total cost of ownership (TCO) and reducing As 3GPP Release 16 is now frozen
with peer CSPs, where combined TTM for new services. (as of early July 2020) we are working
network functions virtualization (NFV) However, it does not come without with several leading Tier 1 CSPs around
infrastructure and network functions its challenges, and requires new the world to implement a new option in
define the integration efforts processes, skill sets and ways of working. the standard to connect user equipment
For example, it is based on continuous (UE) option 1 and 3 directly to the 5GC.
The nature of your virtualization maturity integration and continuous deployment This would allow for an interim solution,
is an important factor in articulating (CI/CD), where new software is more with gradual introduction of new network
the starting point for your 5GC journey. frequently delivered in order of magnitude functions, where CSPs can introduce
We can offer a mature platform, and in smaller packages, and individual new mobile broadband services to reap
independent of your starting point. microservices can be upgraded without the benefits of cloud native and SBA in
One of our key learnings from working affecting others. Ericsson dual-mode 5GC (as shown with the orange box
with leading CSPs worldwide has been 5G Core fully supports CI/CD including in Figure 4). It will also support the early
the importance of a stable and well-tested In-Service Software Upgrade (ISSU), introduction of SBI offline-based charging
software stack. In hindsight, the journey which allows for the upgrade of software versus the traditional CDR generation in
toward NFV maturity has taken much during normal operations and is not the gateways. It is important to note that
longer than expected. confined to maintenance windows in this solution VoLTE is still managed
Today, actual traffic going over (normally at night or during weekends). over LTE.
virtual networks is still rather limited. Our first experiences of delivering software The service continuity is secured by the
However, we expect this to grow to about packages more frequently to a Tier 1 support of advanced 3GPP interworking
20–30 percent of the total mobile traffic CSP in Europe has reduced cost by up to mechanisms, like UDICOM, in the
by the end of 2020 as we reach new 65 percent. Subscription Management functions
levels of maturity. The core network will, for a long time, present in both EPC and 5G Core
As real maturity around virtualization be a hybrid network. Ericsson dual-mode domains. These help CSPs to support
approaches, there is a clear industry 5G Core will support all deployments, all multi-vendor interworking procedures for
consensus over the next target architecture the way to “bare metal” (see Figure 3) cross-domain authentication, handover,
for the new 5GC, a cloud native system to enable any CSP to choose their IMS and SMS communications. The
based on microservices and running on preferred transformation path. migration efficiency is enabled by a
containers. This is the foundation for Every CSP’s journey to 5GC will be software-embedded mechanism within
achieving new efficiencies and an agile different, depending on the individual Cloud Core Data-Storage Manager (CCDM)
platform for value creation. market conditions and the chosen strategy. for automated migration of subscription
During the second half of 2020, we are There are examples of Tier 1 CSPs that data from legacy databases into the
carrying out the first implementations of have not come so far on their virtualization dual-mode Unified Data Repository
5GC SA with several leading global CSPs. journey, choosing to go directly to cloud (UDR), helping CSPs to avoid complex
Our first experiences have been very native. Other CSPs are accelerating and costly data migration projects.
promising, with real learnings from live plans for 5GC SA as overlays, or
implementations soon to follow. separate networks, to capture new

Figure 4: Evolution paths for EPC and 5GC

EPC 5G EPC 5G EPC 5G EPC

• Native deployments Interworking Mixed mode


(SSR, EBS/BSP) 5G NR NSA 5GC and EPC operation
• Virtual deployments
(NFVI)
Cloud native 5GC handling 5G Core Dual-mode 5GC Dual-mode 5GC
Core platform Opt1/3 UEs (5GC) (EPC+5GC) (EPC+5GC)

5G NR SA 5G NR NSA+SA 5G NR NSA+SA

EPC 5G EPC 5G EPC 5G EPC

• Native deployments Mixed mode Interworking


(SSR, EBS/BSP) 5G NR NSA operation 5GC and EPC
• Virtual deployments
(NFVI)
Cloud native Dual-mode 5GC Dual-mode 5GC
5G EPC
Core platform (EPC+5GC) (EPC+5GC)

5G NR SA 5G NR NSA+SA 5G NR NSA+SA
8 Ericsson  |  Building a new world

Figure 5: Possible migration steps for NR NSA option 3

5G EPC

Enhance EPC with new


Path 1: Upgrade
split gateway, preparing for
existing EPC
5G architecture

EPC EPC

Opt 1 Opt 1

Path 2: Introduce Add 5GC by upgrading 5G EPC 5GC


overlay 5G EPC to dual-mode 5G Core

EPC 5G EPC EPC 5G EPC 5GC

Opt 1 Opt 3

Early introduction of 5G NR and Not only is the new 3GPP standard based Connectivity’s value and importance
managing end-user experience on encryption, but the new required level is clearly becoming a necessity in the
Market and business conditions will of distribution, covered in the next section, digital economy. During the widespread
define how you implement a core network will make it economically impossible to use outbreak of the novel coronavirus
to support 5G NR. Depending on your traditional standalone probing equipment. disease 2019 (COVID-19), we see how
existing EPC solution, this could be an To resolve this, our dual-mode 5G Core connectivity has played a pivotal role in
upgrade of your existing EPC and unified introduces software probes, which supply supporting millions of people working
data management (UDM) elements to the necessary data to any consumer from home instead of their normal offices,
enable it to support NR using option 3. (analytics tool) over standard interfaces allowing society and businesses to
This is what we call the 5G EPC, which without jeopardizing the 3GPP 5GC continue serving their customers.
allows you to quickly deploy 5G NR for a standard architecture’s in-built security. We see it as a golden opportunity for
fast TTM, suited to CSPs that aspire to be In addition, Ericsson Expert Analytics CSPs and the industry to extract further
first movers. We believe this will be the comes with pre-integrated analytics value, on top of the pure connectivity
most common way for CSPs to introduce solutions based on our market-leading business, by capitalizing on other core
5G NR and build coverage, even when algorithms. This combined solution offers assets and capabilities, such as distributed
5GC is available. a very fast TTM for your customer real estate and local support.
Figure 5 shows how we can support experience management needs. It is of utmost importance to develop a
your 5G project, even without a substantial strategy for achieving the desired position
installed base of our equipment today. Optimize with distributed cloud in existing and emerging value chains in
The first path demonstrates this when The distribution of network functions the new digital economy. This will be the
you have an installed Ericsson base, by closer to the user is a natural part of the foundation for investment decisions and
creating a smooth journey to a dual-mode new 5GC. This could be for both cost and network evolution, supporting the overall
5G Core. The second path identifies how performance reasons, as well as achieving business plan.
we can introduce an overlay that can then new capabilities like low latency and If you have not started or are in the early
evolve into a dual-mode 5G Core. If you supporting new use cases. stages of your 5G journey, we recommend
are using our equipment in your radio However, this distribution of capabilities that you start with control and user plane
network, the radios we have supplied is not only related to telecoms and your separation (CUPS) for increased flexibility
during the last couple of years only require 5G project. The move toward placing and improved scaling of capacity. It
a software upgrade to 5G NR. This means capabilities at the network edge is a new will also prepare your network for 5GC,
easy access to new technologies, like “melting pot” for many players across where network functions distribution is
dynamic spectrum sharing, which could different industries. There is a “race to the a key parameter.
play a vital role. edge”, where the convergence between Our CUPS solution offers the most
With the introduction of 5G NR, telecoms and IT is now becoming a reality. flexible relationship between CUPS
customer experience management is Hyperscale players are meeting industry nodes, while a hybrid scaling of UP and CP
important. Customers will initially drop vertical experts, all trying to support their achieves more than two times lower cost,
in and out of 5G coverage and it will be customers and the overall trend of as recognized by a Tier 1 CSP in the US.
critical to manage this. When introducing industry digitalization.
5GC, traditional network probing will
become more difficult.
9 Ericsson  |  Building a new world

Figure 6: The CUPS deployment and scaling evolution

West site East site

EPG EPG EPG EPG Without CUPS

EPG CP EPG CP EPG CP EPG CP

Initial CUPS

EPG UP EPG UP EPG UP EPG UP EPG UP EPG UP EPG UP EPG UP

EPG CP EPG CP

Initial CUPS phase 2

EPG UP EPG UP EPG UP EPGUP

We recognize that distribution is an Expanding automation With dual-mode 5G Core, we can supply
important part of your 5G project and Automation is a key topic for any endeavor the basis for how you achieve a platform
that a journey of exploration will be in the future, where a “zero touch” network for automation. We have built our O&M
required to determine the optimal and instant service activation are the goal. solution to support a hybrid approach
distribution for different use cases. Any human intervention needed must with the support of both MANO and ONAP.
With this in mind, we have designed our be considered a loss if it is not adding The platform also includes tools for
dual-mode 5G Core to support your journey value. The future of O&M is more about automated acceptance testing (AAT) to
and reduce complexities. Distribution means the management of automation, where support CI/CD. Figure 7 shows how our
that the number of points of presence human intervention is based on adding dual-mode 5G Core supplies one common
increases dramatically, and the greater intelligence without contributing to O&M platform.
the distribution, the greater the need to latency in the system.
minimize the footprint. Our common O&M However, there are different levels
system supports flexible and automated of automation, all eventually equally
movement of different capabilities. We important. Your 5G project has to consider
have designed the user plane to support the this and should be built based on gradual
consolidation of Gi LAN and different service improvement, giving priority to the areas
functions to reduce cost and complexity with that are most important at any given time
unified LCM (see Figure 3). in the project.

Figure 7: One unified O&M

Common services components i.e. O&M O&M North Bound Interface (NBI)

Fault Performance Configuration Other common


Logging Prometheus
Management Management Management microservices

Microservice communication (message bus, etc.)

Microservice Microservice Microservice Microservice


Type 1 Type 2 Type 3 Type N

Business logic components for VNF functionality

Container as a Service (CaaS)


10 Ericsson  |  Building a new world

Expanding network slicing At Ericsson, we use a completely The cornerstone of this journey is
Our learnings around the first tools for different road map for network slicing to engage and understand your
network slicing, like e-décor, are that they than for other products, as it covers existing and potential customers’
have not been a huge market success. end-to-end (E2E) capabilities. Our needs. This is a journey of building
Leading CSPs have instead implemented suggested approach is shown in Figure 8. partnerships for business development,
overlay networks that simply address the It is critical to define your goals and where your network and operational
IoT segment. However, we are beginning ambitions when it comes to supporting plans are synchronized.
to receive feedback from our customers customers. This means developing a Dual-mode 5G Core supplies the
about 5GC and how network slicing can network and operational plan to support essential support for your slicing journey.
truly make a difference. your business goals. Truly based on an E2E view, our approach
ranges from advice to a complete solution.
Figure 8: The network slicing journey – some guiding principles

• Define your goal/ambition


• Determine your transformational steps
• Work closely with potential customers/other industries
• Plan, execute and learn as you go

0 1 2 3

Current state Early introduction Grow the business/traffic Optimize business traffic Goal
• 4G/EPC • 5G SA or NSA • Automation to • Advanced services
• Limited orchestration • Adopt automation support growth • TCO optimization CSP for a wide range
of 5G customers
and use cases
Pre-packaged Soft SLA, less critical Monitored mid- Tight SLA,
offerings small scale critical medium scale critical large scale

Automation to drive Automation to Highly scalable


PNF or basic MANO
introduction support growth/scale optimization

Static/appliance Few life cycle Growing number Dynamic,


based managed slices of slices optimized slices

Exploring network exposure Figure 9: Foster business innovation


As mentioned earlier, there is the with network exposure capabilities
potential for new revenues through
exposure of capabilities toward Cloud Core Exposure Server
existing and new customers or new
in-house service development. Portal Security
As with automation, exposure is
Service APIs
a broad area, and can cover from API gateway and management
network exposure to service exposure.
To succeed in this area, it is key to Composition Application
take a stepwise approach based on function
continuous add-ons to address new 4G Ntw DMDC 5G Ntw
and complex B2B or B2B2C use cases. APIs APIs APIs
Ericsson dual-mode 5G Core
Device
supplies a strong platform for
SCEF management and NEF
exploring exposure, starting with 4G communication
and extending to the new capabilities
defined in the 3GPP 5G standard.
Figure 9 shows how our dual-mode Hiding 3G/4G Hiding device Hiding 5G network
network complexity complexity complexity
5G Core solution supports both EPC
and the new 5GC solutions, and the T4, S6t,
Rx T6a SGi Nnef
vital blocks added on around device SMPP S6m
management and control to address
areas of concern and security (this is EPC 5G Core
covered in the next section).

3G/4G 5G
devices devices
LWM2M
CoAP
MQTT
11 Ericsson  |  Building a new world

Security Figure 10: Fusion of UP security


The last, but not least important, building and advanced security functions
block is security. When a network is
transforming into a platform, and more
EPC Network Function
devices are connected to enable new use as specified by 3GPP
cases, the network will be exposed to more 5GC Network Function
security threats. This building block is an Internet
as specified by 3GPP Subscriber threats
overarching one, as security should be SGi-LAN Function Firewall
taken into account throughout the whole
Security Function
journey, ranging from the secure design
Protected
of network functions to dealing with IPv6
actual external threats. NAT Optimization migration
5G use cases will open the core
network to millions of massive and critical UPF
machine-type communication devices RAN
SGW-U PGW-U 3GPP
and non-3GPP networks (for example SEG IPUPS
Wi-Fi), exposing mobile networks to Packet Core Gateway
security threats. Non-3GPP
While 3GPP security mechanisms mainly Access Roaming
Access
Firewall Firewall Roaming
support the control plane and signaling, threats
threats
they do not protect against all possible Packet Core Firewall
threats, for instance distributed denial of
service (DDoS) and radio jamming.
Protecting against these threats
is something that is left for vendor
implementation and deployment,
for example scaling mechanisms and In our Packet Core User Plane Network Packet Core Firewall ensures better
selective dropping/throttling in case of Function, we have integrated leading TCO than any other Packet Core security
DDoS. Therefore, standards will only security technology from A10 Networks solution, with optimized 5G latency and
cover some security issues. (see Figure 10). throughput. At its core is a single CNF
For context, DDoS attacks on mobile New security risks, driven by 5G solution with efficient user session
networks rose by over 500 percent adoption and fragmented solutions in traffic management and no NFVI traffic
between Q4 2019 and Q1 2020. Another the security market, can be solved with steering, giving 50 percent-plus TCO
aggravator is the increase in international Ericsson’s all-in-one security offering savings in NFVI SDN compared to
interconnection roaming agreements. with proactive protection against internet, dedicated security solutions.
With 5G deployment and an average of roaming and access threats.
28 percent year-on-year growth in Packet Core Firewall is a cloud native
roaming subscribers, threats from product, providing a fusion of UP
external networks will increase. security and advanced security functions,
The mobile network security market powered by technology from A10 Networks.
is highly fragmented, with enterprises It addresses security use cases for core
using up to 70 different security vendors network deployments in mobile broadband
in each company. This is likely due to the and IoT segments, and leverages the
challenge of identifying each solution’s following functionalities:
functionality and interoperability. • stateful zone-based firewall
“Dedicated” solutions require a policy enforcement and exposure to
separate NF to operate. This impacts E2E security components
TCO by increasing capex (hardware) (Ericsson Security Manager)
and opex (more NF to orchestrate and • roaming with integrated
maintain). Another consequence is the inter-PLMN UPF security
degradation of 5G latency, which directly • DMZ and non-3GPP access
impacts many low-latency-dependent asset protection with cloud
5G use cases. native deployment
Considering hardware capacity • advanced threat and behavior change
limitations on the edge, scaling of recognition based on machine learning
dedicated edge security solutions • time-to-mitigation closer to 5G bandwidth
to accommodate new 5G use cases demands with inline mitigation
becomes cost-prohibitive. capabilities, and closed-loop automated
We are supporting CSPs in the whole recognition with the most rapid, business
spectrum of security challenges. However, logic-aware decision to mitigate
we are now taking particular actions • effective delegation of mitigation
toward the user plane, which is one of toward transport equipment,
the key elements in the network that with coverage of 80 percent of
will be exposed to security threats as DDoS/DoS attacks toward UP
described above. from internet and access directions
12 Ericsson  |  Building a new world

Building the foundations

Regardless of how you choose to evolve your core


network, there are several building blocks to consider
in order to reach the 5GC target.

Figure 11: The building blocks to evolution

Early 5G NR introduction
with good customer
experience management Optimize with
Native > Virtualized > Cloud native
distributed cloud

Expand Explore
automation exposure
Explore
network slicing

Security

Time

Native > Virtualized > Cloud native Expand automation


NFV is reaching maturity. However, the next step is This is a key building block to reduce cost
available and you need to define the best path based and create new competitive advantages.
on needs and capabilities.

Explore network slicing


Early 5G NR introduction with good One overall network supporting several logical networks
customer experience management is the basis for business development and growth,
Find the best way to introduce 5G NR and manage enabling new use cases.
your customer experience along this journey.

Explore exposure
The exposure of network capabilities is the foundation
Optimize with distributed cloud
for a new service offering or new value extraction from
Emerging 5G and IoT applications are driving demand
ecosystems or partnerships.
for a new kind of programmable infrastructure with an
increased focus on data-centric processing, security,
response time, scalability and resilience. Distributed
cloud creates new possibilities to extract more value Security
from differentiated connectivity as well as the As networks are being exposed to more use cases
capitalization of other core assets. and devices, security is a key element for all parts
of the journey to a 5G Core.

Further resources
One core – the best of two worlds
The guide to capturing the 5G-IoT business potential
5G deployment considerations
Discover the cost reduction opportunities of dual-mode 5G Core
Ericsson enables communications service providers
to capture the full value of connectivity. The company’s
portfolio spans Networks, Digital Services, Managed
Services, and Emerging Business and is designed to
help our customers go digital, increase efficiency and
find new revenue streams. Ericsson’s investments in
innovation have delivered the benefits of telephony
and mobile broadband to billions of people around
the world. The Ericsson stock is listed on Nasdaq
Stockholm and on Nasdaq New York.
www.ericsson.com

Ericsson The content of this document is subject to 15/287 01-FGB 101 256 Rev C
SE-164 80 Stockholm, Sweden revision without notice due to continued © Ericsson 2020
Telephone +46 10 719 0000 progress in methodology, design and
www.ericsson.com manufacturing. Ericsson shall have no
liability for any error or damage of any kind
resulting from the use of this document

You might also like