Security Executive Summary. Securing LTE Radio Access Networks Effectively



Similar documents
Nokia Networks. security you can rely on

Security MWC Nokia Solutions and Networks. All rights reserved.

Simplified network architecture delivers superior mobile broadband

Nokia NetAct. Virtualized OSS that goes beyond network management

LTE transport network security Jason S. Boswell Head of Security Sales, NAM Nokia Siemens Networks

Nokia Siemens Networks mobile softswitching Taking voice to the next level

Signaling is growing 50% faster than data traffic

Business aware traffic steering

White paper. Mobile broadband with HSPA and LTE capacity and cost aspects

Nokia Networks. Performance Manager. Helping operators extract relevant network insights from mountains of data

LTE-Advanced Carrier Aggregation Optimization

Oracle s Secure HetNet Backhaul Solution. A Solution Based on Oracle s Network Session Delivery and Control Infrastructure

Authentication as a Service for LTE Base Stations

Nokia Networks. Nokia Service Quality Manager

What is going on in Mobile Broadband Networks?

Our story EION s WOrldWIdE headquarters IN OttAWA, canada EION leadership

1 Introduction Services and Applications for HSPA Organization of the Book 6 References 7

The LTE Challenge. for the Small-to- Midsize Mobile Network Operator

Nokia Siemens Networks Total Expertise for Customer Experience driven OSS Transformation

T-Mobile revolutionizes U.S. 4G market aided by Nokia s super-fast project to roll out LTE

Securing Next Generation Mobile Networks

Nokia Siemens Networks Flexi Network Server

NSN White paper February Nokia Solutions and Networks Smart Scheduler

Nokia Networks. Nokia Networks. telco cloud is on the brink of live deployment

Nokia Siemens Networks Service Operations and Management Solution

Cisco Wireless Security Gateway R2

Nokia Networks. FutureWorks Network architecture for the 5G era. Nokia Networks white paper Network architecture for the 5G era

Nokia Datacenter Services

Alcatel-Lucent Ultimate Wireless Broadband Solution. Re-define the wireless experience with the industry s most comprehensive end-to-end LTE solution

FutureWorks Nokia technology vision 2020: personalize the network experience. Executive Summary. Nokia Networks

Core network virtualization: a proof-of-concept

Nokia Networks. Voice over Wi-Fi. White paper. Nokia Networks white paper Voice over Wi-Fi

Nokia Networks. Best onboard experience

A compelling Multiservice IP Backbone use case

NSN Liquid Core Management for Telco Cloud: Paving the way for reinventing telcos for the cloud

Wi-Fi integration with cellular networks enhances the customer experience. White paper

Technical white paper. Enabling mobile broadband growth Evolved Packet Core

Nokia Siemens Networks Mobile WiMAX

MAKING THE RIGHT CONNECTIONS

Alcatel-Lucent 9360 Small Cell Solution for the Home. Delivering big gains all around

Nokia Siemens Networks LTE 1800 MHz Introducing LTE with maximum reuse of GSM assets

Specialized services and net neutrality

ALTERNATIVE BACKHAUL AND DATA OFFLOAD SOLUTIONS FOR GSM AND UMTS OPERATORS

Integrating Lawful Intercept into the Next Generation 4G LTE Network

THE EVOLUTION OF EDGE

Nokia Siemens Networks Cumulocity The key to the world of machine-to-machine opportunity

4G Mobile Networks At Risk

Clavister Small Cell Site Security Solution

Nokia Networks. Voice over LTE (VoLTE) Optimization

5 th generation (5G) of communication networks

HSPA, LTE and beyond. HSPA going strong. PRESS INFORMATION February 11, 2011

Managed 4G LTE WAN: Provide Cost-Effective Wireless Broadband Service

SytemsInsight QUICK REFERENCE GUIDE. Going further in critical communications

Seamless Mobile Security for Network Operators. Build a secure foundation for winning new wireless services revenue.

Intel Network Builders Solution Brief. Intel and ASTRI* Help Mobile Network Operators Support Small Cell Networks

The HetNet Bible (Small Cells and Carrier WiFi) - Opportunities, Challenges, Strategies and Forecasts: With an Evaluation of DAS & Cloud

ABOUT AT&T GLOBAL CLEARINGHOUSE

Timing over Packet. Technical Brief

Mobile broadband for all

Security Requirements for Wireless Networking

CYBER SECURITY FOR LONG TERM EVOLUTION

Leveraging innovative security solutions for government. Helping to protect government IT infrastructure, meet compliance demands and reduce costs

2013 Acquisition & Retention Study Report. Key trends show that quality drives loyalty

Use of MPLS in Mobile Backhaul Networks

Ultimate Wireless Broadband End-to-end Solution for LTE Public Safety

Nokia Networks. Serve atonce Device Manager. Stay ahead of what s really happening

Business Case for Juniper Networks Virtualized Mobile Control Gateway

Most Innovative LTE Commercial Launch Best Solution for Spectrum Optimization Cell Site Innovation

HIPAA Security Considerations for Broadband Fixed Wireless Access Systems White Paper

Reaping the Full Benefits of a Hybrid Network

Innovative satellite services support successful and efficient deployment of regional broadband networks

How To Improve Your Cell Phone Battery Life

5 th generation (5G) of communication networks

8000 Intelligent Network Manager

SafeNet Network Encryption Solutions Safenet High-Speed Network Encryptors Combine the Highest Performance With the Easiest Integration and

4Motion. End-to-end 4G Wireless Broadband

Secure Network Access Solutions for Banks and Financial Institutions. Secure. Easy. Protected. Access.

PCI Solution for Retail: Addressing Compliance and Security Best Practices

Scalable Mobile Networks For Emerging Operators & Rapid Deployment

NEWT Managed PBX A Secure VoIP Architecture Providing Carrier Grade Service

WHITE PAPER. Centrally Monitoring Set-tops and Implementing Whole-Home Video Assurance

The solution for rural mobile networks

Cellular Data Offload. And Extending Wi-Fi Coverage. With Devicescape Easy WiFi

An Oracle White Paper December The Value of Diameter Signaling in Security and Interworking Between 3G and LTE Networks

App coverage. ericsson White paper Uen Rev B August 2015

Wi-Fi calling for business: ROGERS WHITE PAPER. An Executive Overview

Long Term Evolution (LTE) for Public Safety

alcatel-lucent converged network solution The cost-effective, application fluent approach to network convergence

Cloud communication and collaboration with Rapport on CloudBand

Mobile Network Security

Threat-Centric Security for Service Providers

Transcription:

Security Executive Summary Securing LTE Radio Access Networks Effectively

LTE networks require a dedicated security solution As an all-ip technology, LTE brings new capabilities to improve the customer experience, but also demands new security measures to protect those same customers, as well as the operator. A vital part of moving LTE networks from pilot deployments to full commercial roll outs is the implementation of solid security measures to protect the network and its users from hacking and other cyber-attacks. It s an increasingly important issue because the effects of a security breach could be financially devastating for an operator. In one instance, a European operator suffered losses of around 25 million due to increased churn following an attack on a gateway that led to poor browsing service for several days. LTE is fully IP, creating vulnerabilities not seen in 2G and 3G networks. In GSM and WCDMA networks, traffic is protected by encrypting it between the user equipment and the radio network controller, typically installed in a building and trusted environment. LTE architecture is different because it is all-ip within the core and all the way to the base station. Encryption is typically applied only between the LTE base station and the end-user device, leaving traffic on the transport network unencrypted. The business impact of any disruptive event can be dramatic. As an example, any attempt to illegally track voice and data can damage the sensitive relationship between operator and customer, which could ultimately lead to subscriber churn. Unauthorized access to the core network can also cause denial of service or even corrupt the operator s management systems, for example, operations support system (OSS). Page 2

Small cells set further demands for protection The use of IP/Ethernet connectivity for the backhaul, which by nature is more open than traditional circuit-based networks, means that customer data needs to be protected against eavesdropping. Furthermore, operator systems must be secured against misuse and other threats between the base station and packet core. The risks are increased by the deployment of small cells, an important aspect of LTE networks that are designed to provide virtually unlimited capacity and coverage. Increasingly, LTE base stations will be installed in areas more easily accessible to the public - in shopping malls, airports and on the street. The potential for people to physically access a base station, or even steal it and try to use it on another network, is very real. The importance of being 3GPP-compliant 3GPP has long recognized the issues of mobile network security. With the help of Nokia Networks long history in IP, its forward looking approach to stringent LTE security, its industry leading contributions and leading role in standards body leadership, 3GPP has developed today s specifications for LTE security. Yet, Nokia Networks contribution does not stop there. Nokia Networks continues to implement LTE innovation security in its commercial products where gaps exist between commercial reality and conformance to standards. Nokia Networks offers a 3GPP-compliant end-to-end security solution built for LTE. The solution secures data between the base station and the core network with IP security (IPSec). In addition, strong certificate authority using Public Key Infrastructure (PKI) ensures only operator-authorized base stations can access the network. Efficient operation is provided through fully automated certificate life cycle management for both the LTE base station and security gateway. When base stations are deployed they need an authentication certificate to allow them to connect to the network. In the Nokia Networks solution, the certificates are issued automatically, resulting in up to 25% faster roll out with 25% cost savings. Adopting a 3GPP-compliant solution has important advantages for operators. Not only is compliance mandatory in some countries, but Nokia Networks has a full understanding of mobile operators strict dual source procurement requirements. Standards-based product deployments have many benefits, including operational efficiencies which are not available with proprietary security solutions. With Nokia Networks end-to-end, 3GPP-compliant security solution built for LTE, operators can protect their customers to the same high levels as in 2G and 3G networks. It s a cost-effective way to avoid security breaches that can lead to costly increases in churn, potentially damaging the operator s investment in LTE. Strong security will therefore play a vital role in protecting the brand reputation of any operator moving into an all-ip environment such as LTE. Page 3

Carrier Grade Security - a must-have to take full advantage of LTE LTE is normally associated with delivering an enhanced user experience through high speed, fast reaction and extended broadband coverage in rural areas. Moreover, it also stands for higher efficiency provided by simplified and flattened architecture, all IP transport and highly efficient radio technology providing higher data rates at reduced cost. It also opens up a host of opportunities for generating revenue through new services, business models and partners. However, just as data throughput and administrative access can be affected across a network, so can the areas responsible for robust security. It is for this reason that Nokia Networks uses a carrier-class development approach and a 3GPP based security eco-system to ensure critical components are never compromised as a network grows. Combining forward looking LTE security innovation with its strong security partnerships, Nokia Networks employs specialized carrier-grade security offerings for LTE radio access, packet core, and network access management. Each solution is pre-validated and supported, providing customers with turnkey solutions that will work in their environments out of the box. Nokia Networks continues to receive positive feedback from mobile operators who have expressed their confidence and trust in Nokia Networks approach to securing their networks. Today, Nokia Networks is the market leader in providing 3GPP compliant automated security for LTE networks. It s security solution offers high availability and redundancy allowing operators to achieve carrier grade (99,999%) availability and support seamless growth of their LTE networks. Page 4

Nokia Networks Radio Access security solution offers comprehensive protection combined with high performance and availability Our 3GPP-compliant solution secures data between the base station and the core network with IP security (IPSec). In addition, strong certificate authority using Public Key Infrastructure (PKI) ensures only operator-authorized base stations can access the network. The solution includes Certificate Authority and Security Gateway as hardware/software components as well as services covering the solution s full life cycle, from architecture and design, to implementation and support. Nokia Networks uses its experience to provide operators with the best-in-class security solution available on the market: Complete end-to-end security solution for LTE networks with live deployment experience Built-in IPSec in our enodebs with high throughput ensuring highest performance. Pre-validated LTE RAN solutions Efficient operation through fully automated certificate life cycle management for both enodeb and Security Gateway. Page 5

Why Nokia Networks? As an early adopter of IP technology in mobile networks, Nokia Networks is passionate about securing LTE networks. This unwavering focus has allowed many operators to transition from legacy technologies to LTE with confidence. In addition, Nokia Networks has received global recognition for uniquely securing these LTE networks. Evidence of this includes best-in-class security practices as acknowledged by its customers and competitors and active leadership in the 3GPP standards body. It has also built a reputation for telco-grade solutions through its commitment to continually validating performance and stability with the help of its strong eco-system of partners. Nokia Networks expertise is based on a worldwide network of highly skilled and experienced security specialists who hold more than 350+ security certifications (e.g. CISSP, CCSA, CISA, CISM). Nokia Networks has successfully delivered over 500 security projects worldwide, ranging from consulting engagements to complete turnkey solutions and support. Page 6

Public Nokia is a registered trademark of Nokia Corporation. Other product and company names mentioned herein may be trademarks or trade names of their respective owners. Nokia Nokia Solutions and Networks Oy P.O. Box 1 FI-02022 Finland Visiting address: Karaportti 3, ESPOO, Finland Switchboard +358 71 400 4000 Product code C401-01146-ES-201412-1-EN Nokia Solutions and Networks 2014