(DS) ePDG Solution.pdf
-
Upload
smec-co-ltd -
Category
Documents
-
view
246 -
download
3
description
Transcript of (DS) ePDG Solution.pdf
NewGrid Evolved Packet Data Gateway
Applications●3GPP LTE ePDG●WiMAX ePDG
Features●Enhanced security features●Extensive encryption algorithms ●Mobility and tunneling protocol support●30 Gbps of IPsec throughput per blade●High Scalability up to 180 Gbps●Robust and Resilient Carrier- Grade Solution using Standard ATCA-based Platform delivering five-nines (99.999%) availability
Mobile Data Traffic ExplosionWith the explosive growth in mobile data traffic, driven by smartphones and tablets, operators are scrambling to deploy solutions to meet the growing demand. While the deployment of Long Term Evolution (LTE) networks has relieved some of the pressure, that alone will not be enough to meet the coming tide created by even higher-defini-tion (HD) video streams and voice over LTE (VoLTE) services.
And while there is no single “silver bullet” solution that will solve everything, there are a number of options available for operators to choose from, such as small cell, WLAN integration, etc. The real question is “How can the operator launch these services eco-nomically and without significantly impacting the existing network?”
Introducing NewGrid Evolved Packet Data GatewayThe NewGrid Evolved Packet Data Gateway (ePDG) enables operators to integrate their 4G Long Term Evolution (LTE) or WiMAX core networks and untrusted access net-works that require security, such as WiFi.
Network Configuration
LTEE-UTRAN
Operator’sServiceNetwork
UntrustedAccess
(i.e., WiFi)
EPC
Public IP/Leased Line
RANS11
AAA
PGWP
PCRFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF
MobileWiMAX
Mobile WiMAXCore Network
WiMAXAccess Network
R6
HA
ASN-GWAAA
IPsec
N
d
)iL
SGW
ePDG
NewGrid Evolved Packet Data Gateway
Security and Mobility Protocol SupportThe NewGrid ePDG establishes secure IPsec tunnels to the WiFi access network while using IKE to au-thenticate subscribers through the AAA server connected via Diameter or RADIUS. Using GTP and PMIP connections to the P-GW, the ePDG provides mobility support as the subscriber roams across WiFi net-works.
Board and ChassisWith NewGrid’s purpose-built packet blades, the ePDG is able to process up to 30 Gbps of IPsec encrypted traffic while managing traffic and improving quality of service (QoS) through policy enforcement.
Available in a variety of standards-based AdvancedTCA (ATCA) chassis, the ePDG is a highly scalable solu-tion that can seamless range up to 180 Gbps of throughput.
The NewGrid ePDG is a NEBS3 compliant solution with a fully redundant architecture assuring no single point of failure and enabling five nines (99.999%) high availability. And since every critical component is hot-swappable, operators are guaranteed uninterrupted service.
BenefitsBy allowing operators to seamless integrate their WiFi access networks with their 4G core networks, the NewGrid ePDG enables operators to increase their available bandwidth without deploying additional base stations, improving service quality without additional investments. In addition, with its high performance and compact form factor, the ePDG provides comparable performance to larger solutions available on the market, meaning a significantly reduced early stage initial investments (CAPEX). And its efficient design cuts down on the cost of operation (OPEX).
SummaryThe NewGrid Evolved Packet Data Gateway is the ideal solution for operators seeking to a cost-effective solution to securely integrate their WiFi access and 4G core networks.
www.IPsecuritygateway.com© 2012 SMEC Co., LTD. All rights reserved. The SMEC and NewGrid logo is a registered trademark of SMEC Co., LTD. NewGrid is the Communica-tions Business Division of SMEC Co., LTD. This document and any products or functionality it describes are subject to change without notice. Please contact SMEC for additional information and updates.
Feature Function Description * Optional Feature
Features Internet Key Exchange IKEv1, IKEv2
Encryption DES-CBC, 3DES-CBC, AES-CBC, AES-CTR, NULL
IKE Client Authentication PSK, X.509, EAP-MD5 / AKA / SIM / TTLS
AAA Interworking DIAMETER / RADIUS* support
QoS
DSCP based QoS enforcement5 tuple based QoS enforcement3 level hierarchical priority / bandwidth controlIngress bandwidth control per VLAN
RoutingStatic / OSPF / BGPGraceful Restart
Mobility & TunnelingMOBIKEIPinIP / GRE*PMIPv4 / PMIPv6* / GTP-C & GTP-U*
Management CLI, SNMP(v2/v3), EMS
Performance Throughput (max) 30 Gbps per packet blade
Concurrent IPsec tunnels (max) Up to 300,000 per packet blade