Private (non-public) 5G networks typically have their own network architecture and security concept. Unlike public 5G networks, where data is transmitted and received by 5G UEs and is typically only connected to the World Wide Web (WWW), private 5G networks may involve different data endpoints. These endpoints can include other 5G devices, the company’s OT and/or IT networks, external servers (e.g., cloud platforms), or the WWW.
This variety of potential data paths requires a dedicated integration concept tailored to each specific deployment scenario. While this subtopic does not provide a standard template, it highlights the most important aspects that should be considered. It also outlines the key stakeholders who need to be involved in the integration process.
Table 1: Important aspects for integration of OT and IT networks with the respective stakeholders
| Integration interface | Explanation | Stakeholders |
| Demilitarized zone (DMZ) | A security-relevant feature of the 5G network using internal IP addresses (e.g., for core, baseband, routers, etc.). These IP addresses should not be accessible from outside the network and therefore must not be modified by the user. | 5G vendor, system integrator |
| Device IP ranges | Can be configured through the 5G network management application. | System integrator |
| User Plane Function (UPF) | The UPF is a core network function that typically serves as the interface for user data, routing it to and from the 5G network to other networks such as OT, IT, external servers, or the internet (WWW). | System integrator |
| UPF Data Routing | This is the most critical aspect when integrating private 5G networks with other networks. The UPF may be connected to the company’s backbone IP, but the 5G network can also include integrated routing functions. It is recommended to use separate routing tables for each APN, either through integrated routing functions or VLAN tagging, to enable flexible routing while meeting network segmentation goals and cybersecurity requirements. | System integrator, IT department, Security administrator |