IPsec Security Gateway
Keep your customers’ IP traffic quantum-safe in the quantum era
Overview
Our IPsec Security Gateway solution helps you deliver quantum-safe trusted and secure network connectivity to support our digital economies and societies.
This quantum-safe and 3GPP-compliant solution also provides competitive service differentiation and meets the security requirements of sensitive mission-critical applications.
Three functions to secure IP traffic
We exist in a world of rapid digital transformation of our societies, and the continued growth of the global digital economy. This transformation has been underpinned by our telecommunications networks, being business and societal critical infrastructure, providing secure and trusted connectivity.
We need to rapidly move to a quantum-safe economy. Our telecommunications networks now need to provide quantum-safe secure and trusted connectivity to support continued economic growth and continued digital transformation.
The Nokia 7750 Service Router (SR)-based IPsec Security Gateway, can be combined with a certificate authority, such as the Nokia NetGuard Certificate Manager (NCM), to provide IP security (IPsec) protection with three essential functions:
- Authentication, which ensures that the sender and receiver are who they say they are
- Integrity, which ensures that the data that is received matches the data that was sent
- Confidentiality, which ensures that no one can read the data as it is being transmitted
Security Gateway
The Security Gateway lets you set up secure tunnels between network endpoints and encrypts traffic so that it can pass securely across these tunnels. It is a feature of the Nokia Service Router Operating System (SR OS) and runs on the 7750 SR platforms.
The Security Gateway is also available as a virtualized network function on the Nokia Virtualized Service Router (VSR) for implementation in a cloud architecture. Both options provide the industry’s highest capacity and throughput.
Certificate management
IPsec can use digital certificates for authentication. Based on a trusted certification authority, such as NCM which manages the entire lifecycle of a digital identity in a standardized and secure way. It simplifies and secures this process by setting up a public key infrastructure (PKI) according to the 3GPP TS 33.501, TS 33.210 and TS 33.310 standards.
With NCM, you can ensure the safe authentication of users, devices, applications and systems without the need for tokens, passwords or other non-standardized authentication schemes. Its distributed architecture supports over 100 million active certificate deployments.
Benefits and features
Long in-service lifetime
- High capacity and throughput
- Up to 500,000 IPsec tunnels per 7750 SR chassis
- Up to 3.2 Tbp/s IPsec throughput
- Over 100M certificates supported
Cost effective deployment options
- Runs on virtual or physical hardware platforms
- A variety of form factors to address different business requirements
- Supports centralized and distributed deployments
- High scalability and forward compatibility, which ensure a long, stable lifetime in your network
Carrier-grade features
- 7750 SR platform is widely deployed in global IP networks
- Full suite of advanced routing features
- IPv4 and IPv6 support for deployment flexibility
- Reduced equipment sparing costs and a common management platform when used in a Nokia IP network
High reliability
- Inter-chassis 1:1 or N:M stateful redundancy
- Geo-redundant backup
- Redundant control, switching, power, fans
- Non-stop routing, non-stop services
- Fast convergence
- Load balancing
Versatility
- Works with RAN, core and transport networks
- Works with multi generation RAN (3G, 4G, 5G)
- Works with macro and small cells, femtocells,
carrier Wi-Fi
Resources
Application notes
Related solutions and products
Solution
Protect your network with multi-layered embedded IP network security.
Solution
Network security ensures safe, secure and reliable data exchange across networks - every time, all the time.
Product
High-performance IP edge and core routers
Product
Automate the lifecycle management of your security certificates
Product
Digital identity management with secured and standardized PK
Learn more about network security
Blog
Blog
White paper
Customer success
Topic
Blog
Blog
Blog
Latest news
Ready to talk?
Please complete the form below.
The form is loading, please wait...
Thank you. We have received your inquiry. Please continue browsing.