Deploy, Manage, and Monitor Microservices at Scale
Aspen Mesh enables 5G service-based architecture
Based on CNCF’s Istio project, Aspen Mesh enables service providers migrating from 4G virtualized network functions (VNF) to the service-based architecture (SBA) of 5G, which relies on a microservice infrastructure.
- 5G Standalone (SA) SBA Service Mesh - Deploy cloud-native network functions (CNFs) with security and visibility built-in.
- 4G VNF to 5G CNF Transition Platform - Enables faster transition to a 5G core.
- Service Provider IT Microservices Platform - Leverage microservices for SP back-office IT.
Aspen Mesh Packet Inspector
Security should be ensured at all layers and work together with new clusters when introducing services running on top of a microservices infrastructure. It is paramount for all new points of exposure to be visible, which aids in pin-pointing security threats.
- Enterprise Visibility - Per-user, per-service and per-tenant traffic and service visibility allow traceability for compliance tracking and performance purposes.
- Enhance Cluster Security - Topology obfuscation of internal infrastructure and visibility to traffic enables increased security of deployed clusters and services.
- Service Provider Visibility - Per-subscriber and per-service traffic visibility allows traceability for compliance tracking, trouble shooting, and billing purposes.
Product Overview
Connect microservices and scale Kubernetes with minimal management overhead
Aspen Mesh is deployed by a service provider as an SBA service mesh building block for 5G SA deployments. It may also be deployed by a service provider in conjunction with F5 BIG-IP Next Service Proxy for Kubernetes (SPK) for legacy 4G or 5G non-standalone (NSA) deployments in transition to a standalone 5G deployment.
On-Premises, Private or Hybrid Cloud
For highly regulated businesses where data ownership and security are prioritized, and where legacy services maybe in transition.
Multi-Cluster
A microservice deployment platform for HA and DR. Deploy workloads requiring high availability or disaster recovery capability.
Multi-Cloud
Easily integrate data and services across various cloud-native architectures. Integrate security and visibility for seamless deployments.
Multi-Tenant
Deploy a single cluster, multi-cluster, or multi-cloud deployment to provide services to multiple tenants, each isolated from each other.
Core Capabilities
Aspen Mesh is a full featured Istio-based service mesh with 24/7 support and is secure by default. It also includes several capabilities which are not found in open source Istio, as detailed below.
Open source Istio capabilities
Provides traffic control and policy enforcement.
Robust security by default
Configuration provides strict security capability out of the box.
IPv4/IPv6 dual-stack networking
Supports native, end-to-end dual-stack networking across the service mesh.
Packet Inspector
Enables service-mesh traffic capture and visibility.
Certificate orchestrator
Granular certificate management for service mesh and other products.
Helm 3 support
Makes installations and upgrades easier
DNS Subject Alternative Name (SAN) certificates
FQDN and SPIFFE support. Eases 4G VNF to 5G CNF migration.
Drive traffic to your analytic tools
Industry support of Aspen Mesh traffic format.
Platform Support and Integrations
F5 Partner CNF certification program
Kubernetes Integrations
F5 Aspen Mesh can be flexibly deployed on Kubernetes cloud-native infrastructure.
Resources
Featured

5G Cloud-Native Infrastructure
F5’s 5G infrastructure solutions combine powerful tools for managing and securing traffic into and within containerized networks, providing the tools service providers need to modernize their network infrastructure.
Next Steps
Deliver and Secure Every App
F5 application delivery and security solutions are built to ensure that every app and API deployed anywhere is fast, available, and secure.
we can partner to deliver exceptional experiences every time.