GN3+ SA3T3 / Multi-Domain-VPN service: Collaboration of NREN s NOC

Size: px
Start display at page:

Download "GN3+ SA3T3 / Multi-Domain-VPN service: Collaboration of NREN s NOC"

Transcription

1 GN3+ SA3T3 / Multi-Domain-VPN service: Collaboration of NREN s NOC 10 th TF NOC meeting (Cambridge) Friday, 21 March 2014 Xavier Jeannin / RENATER, SA3T3 Task Leader Miguel Angel Sotos / RedIRIS Bojan Jakovljevic / AMRES

2 Agenda What is MDVPN? Status of MD-VPN deployment Role of the NOCs MD-VPN operation model VPN Provisioning Monitoring Troubleshooting Conclusions on MDVPN operation 2

3 What is MD-VPN? 1/3 A joint service provided by GEANT and NRENs Extending the original IP cooperation between GEANT, NRENs and regional networks to deliver new services Share the same cooperation model used for traditional IP traffic exchange NREN NOC collaboration required MD-VPN creates a baseline transport infrastructure for a bundle of data transmission services Umbrella for P2P or multipoint transmission Multi-domain networking Layer3 or Layer2 VPNs spanned over several domains 3

4 What is MD-VPN? 2/3 VPN1 VPN2 RR ABR SSP ABR RR VPN1 VPN2 Configure only at edge VPN3 NREN A ABR SSP SSP ABR NREN B VPN1 VPN multiplexing - Configure only once SSP GEANT VPN proxy SSP NREN E (non MPLS) VPN2 VPN1 ABR VPN2 VPN3 RR NREN C ABR SSP ABR RR VPN3 Regional Network VPN2 VPN provider VPN provider and VPN transport provider VPN transport provider 4

5 Added value for end-users Safe infrastructure Dedicated virtual network No firewall needed No additional transmission delay (DPI) High performance Safe Inter-university Research and Educational Network (S.I.R.E.N) Site A Site B Site C 5

6 MD-VPN status Deployment phase Multi-domain operation validation (4th quarter 2013 end of 1st quarter 2014) Technical Pilot Phase Setting-up GEANT pilot (1st quarter 2014) Pilot generalization phase (2nd and 3rd quarter 2014) Adding MD-VPN service to GEANT portfolio end of GN3 plus A first scientist project XiFi XIFI is a project of the European Public-Private-Partnership on Future Internet 6

7 MD-VPN status the 20th Febr Current pilot running on production infrastructure NREN currently connected NREN nearly connected DeiC SUnet FUnet Active XiFi L3VPN Future XiFi L3VPN Litnet XiFi TSSG HEAnet NORDUnet PSNC VPN Route reflector FCCN GEANT CESNET XiFi Sevilla RedIRIS XiFi Malaga RENATER XiFi Lannion GARR XiFi Trento DFN AMRES XiFi Berlin 7

8 MD-VPN operation model VPN Provisioning Monitoring Day-to-day monitoring Statistics Monitoring Troubleshooting Ensure OLA commitment are achieved 8

9 MDVPN Provisioning Process workflow * DANTE can play the role of the Initiator NREN Authoritative End user 2 DANTE I want L3VPN ASTRO 1 List creation 2 3 * Initiator NREN 6 6 MD-VPN database 4 Service Order: L3VPN ASTRO RT 2200:001 Central information hosted within DANTE: VPN Name VPN type RT, RENs involved used Technical contact list 5 Service Order validate or not via VPN-ASTROproviders@MDVPN... NREN List VPN-ASTROproviders@MDV PN.dante.net 2 NREN + Users List VPN-ASTROoperation@MDVPN.d ante.net Feedbacks to the user requester VPN implemenation announced via VPN- ASTROoperation@MDVPN NREN NREN NREN Involved NREN End users NREN : Checks with their own users Implements the VPN 9

10 What to monitor? Monitoring is decentralized: s (DANTE and NRENs) SSPs (DANTE and NRENs) VPN Route Reflector (VR) (DANTE) VPN-Proxy (DANTE) Peerings to be monitored 10

11 MD-VPN monitoring plan for NG3plus SSP monitored by GEANT availability MD-VPN Looking Glass Prospective:, User VPN monitoring NREN collaboration on monitoring a L3VN is deployed on all s and ASBRs A loopback is put into this L3VPN and pinged in order to check if ASBR or is alive and the service up 11

12 MD-VPN troubleshooting 1. DANTE will take care of its own MD-VPN features VPN transport service (Carrier of Carrier) VPN Route Reflector VPN Proxy 2. Escalation process will be the same process as for IP service The MDSD coordinates the troubleshooting NRENs NRENs appeals to DANTE if they cannot fix the pb NREN coordinates the troubleshooting of their Regional Network Regional Networks appeals to its NRENs if they cannot fix the pb 12

13 support to NRENs: coordination task Key points Information related to the VPN VPN database (NREN involved in the VPN, Route Target, ) Information channel Between network providers Between network provider and users Make available list tools that allow NREN to set-up their VPN list VPN-ASTRO-providers@dante.net VPN-ASTRO-operation@dante.net Feedback to the end users 13

14 Conclusions on MDVPN operation Next step: Database model and Operation cookbook Collaboration around the operational model Dissemination toward NREN s NOC Prospective Improve MDVPN operation Monitoring Advanced MDVPN 14

15

MPLS multi-domain services MD-VPN service

MPLS multi-domain services MD-VPN service MPLS multi-domain services MD-VPN service Xavier Jeannin, RENATER Tomasz Szewczyk / PSNC Training and Workshops for advancing NRENs 8-11 Sept 2014 Chisinau, Moldova MPLS brief overview Original purpose:

More information

Multi-Domain Virtual Private Network service a seamless infrastructure for NRENs, GEANT and NORDUnet

Multi-Domain Virtual Private Network service a seamless infrastructure for NRENs, GEANT and NORDUnet Multi-Domain Virtual Private Network service a seamless infrastructure for NRENs, GEANT and NORDUnet GN3+ MD-VPN Team authors: Xavier Jeannin (RENATER), Tomasz Szewczyk (PSNC), Bojan Jakovljevic (AMRES),

More information

SA3: Support for Multi-Domain Services Plenary

SA3: Support for Multi-Domain Services Plenary SA3: Support for Multi-Domain Services Plenary Toby Rodwell, DANTE 3 rd GÉANT2 Technical Workshop Cambridge, 9 January 2007 Overview SA3 Reminder Achievements Current Work Tech Workshop sessions What SA3

More information

The New Infrastructure Virtualization Paradigm, What Does it Mean for Campus?

The New Infrastructure Virtualization Paradigm, What Does it Mean for Campus? The New Infrastructure Virtualization Paradigm, What Does it Mean for Campus? Jean-Marc Uzé Juniper Networks juze@juniper.net TNC2008, Brugge, May 19 th, 2008 Copyright 2008 Juniper Networks, Inc. www.juniper.net

More information

GÉANT MD-VPN Service Description High performance IP-VPN connectivity to support European Research and Education

GÉANT MD-VPN Service Description High performance IP-VPN connectivity to support European Research and Education GÉANT MD-VPN Service Description High performance IP-VPN connectivity to support European Research and Education Issue Date: 12 June 2015 1 1 GÉANT MD-VPN service description The

More information

GÉANT for HEAnet clients

GÉANT for HEAnet clients GÉANT for HEAnet clients Guy Roberts GÉANT CTO Office HEAnet National Conference 12 th November 2015 Global R+E connectivity for Ireland HEAnet + GÉANT provide access for Irish R+E users to the world s

More information

Multi-domain VPNs. A practical approach to enable end-to-end services over multiple domains

Multi-domain VPNs. A practical approach to enable end-to-end services over multiple domains Multi-domain VPNs A practical approach to enable end-to-end services over multiple domains DENOG7, Darmstadt Thomas Schmid, schmid@dfn.de The research network landscape GÉANT NRENs are in general interconnected

More information

Introduction to perfsonar

Introduction to perfsonar Introduction to perfsonar Loukik Kudarimoti, DANTE 27 th September, 2006 SEEREN2 Summer School, Heraklion Overview of this talk Answers to some basic questions The need for Multi-domain monitoring What

More information

Service Quality Management for multidomain network services. Pavle Vuletić, AMRES edupert videoconference, 20 July 2015

Service Quality Management for multidomain network services. Pavle Vuletić, AMRES edupert videoconference, 20 July 2015 Service Quality Management for multidomain network services Pavle Vuletić, AMRES edupert videoconference, 20 July 2015 What is Service Quality Management? Resource Performance Management (RPM) provides

More information

GN3plus JRA3 T1 Attribute and Group management in the AAI environment

GN3plus JRA3 T1 Attribute and Group management in the AAI environment GN3plus JRA3 T1 Attribute and Group management in the AAI environment Maarten Kremers, SURFnet Internet2 Technology Exchange 2014, Indianapolis, IN October 29 th 2014 GÉANT (GN3plus) - vital to the EU

More information

Trial of the Infinera PXM. Guy Roberts, Mian Usman

Trial of the Infinera PXM. Guy Roberts, Mian Usman Trial of the Infinera PXM Guy Roberts, Mian Usman LHC Workshop Recap Rather than maintaining distinct networks, the LHC community should aim to unify its network infrastructure Traffic aggregation on few

More information

perfsonar MDM The multi-domain monitoring service for the GÉANT Service Area connect communicate collaborate

perfsonar MDM The multi-domain monitoring service for the GÉANT Service Area connect communicate collaborate DATASHEET Network Performance Services perfsonar MDM The multi-domain monitoring service for the GÉANT Service Area connect communicate collaborate What is perfsonar MDM? perfsonar MDM (Multi-Domain Monitoring)

More information

LHCONE Operational Framework

LHCONE Operational Framework LHCONE Operational Framework Part 1 : principles and ideas for the operational model Part 2 : LHCONE VRF operational handbook Part 3 : Next step Xavier Jeannin RENATER 2013/01/28 Part 1 : principles and

More information

Federation of trouble ticketing systems

Federation of trouble ticketing systems Federation of trouble ticketing systems Pavle Vuletić, AMRES, Jovana Vuleta-Radoičić, University of Belgrade, Dimitrios Kalogeras, GRNET/ NTUA 8th TF-NOC meeting 28 May 2013 Motivation! This work is one

More information

perfsonar MDM release 3.0 - Product Brief

perfsonar MDM release 3.0 - Product Brief perfsonar MDM release 3.0 - Product Brief In order to provide the fast, reliable and uninterrupted network communication that users of the GÉANT 2 research networks rely on, network administrators must

More information

Toward the Clouds, Together!

Toward the Clouds, Together! Toward the Clouds, Together! Collaboration effort of European NRENs in Cloud Computing Branko Radojević, Deputy Director, CARNet/GEANT E-Infrastructure Autumn Workshops Chișinău Where do I come from? NRENs.000

More information

3. The Task Force will be open to any individual who can offer appropriate expertise, manpower, equipment or services.

3. The Task Force will be open to any individual who can offer appropriate expertise, manpower, equipment or services. Task Force on Network Operation Centres Terms of Reference 1. A task force is established under the auspices of the TERENA Technical Programme with the primary aim to offer a forum for leading staff members

More information

Campus Best Practices What s that?

Campus Best Practices What s that? Campus Best Practices What s that? Vidar Faltinsen GÉANT3 Task Leader CTO UNINETT Wireless workshop, Stockholm March 13 2013 The GÉANT projects GN3: 2009-2013 GN3+: 2013-2015! Enable research communities

More information

Agenda. NRENs, GARR and GEANT in a nutshell SDN Activities Conclusion. Mauro Campanella Internet Festival, Pisa 9 Oct 2015 2

Agenda. NRENs, GARR and GEANT in a nutshell SDN Activities Conclusion. Mauro Campanella Internet Festival, Pisa 9 Oct 2015 2 Agenda NRENs, GARR and GEANT in a nutshell SDN Activities Conclusion 2 3 The Campus-NREN-GÉANT ecosystem CAMPUS networks NRENs GÉANT backbone. GÉANT Optical + switching platforms Multi-Domain environment

More information

Testbeds as a Service Building Future Networks A view into a new GEANT Service. Jerry Sobieski (NORDUnet) GLIF Tech Atlanta, Mar 18, 2014

Testbeds as a Service Building Future Networks A view into a new GEANT Service. Jerry Sobieski (NORDUnet) GLIF Tech Atlanta, Mar 18, 2014 Testbeds as a Service Building Future Networks A view into a new GEANT Service Jerry Sobieski (NORDUnet) GLIF Tech Atlanta, Mar 18, 2014 From Innovation to Infrastructure! Network Innovation requires testing

More information

Ethernet over MPLS tests

Ethernet over MPLS tests Ethernet over MPLS tests Marcin Garstka, Poznań Supercomputing and Networking Centre Copenhagen, 20 November 2012 The research leading to these results has received funding from the European Community

More information

A new Service Activity: SA6 In support of European collaboration

A new Service Activity: SA6 In support of European collaboration A new Service Activity: SA6 In support of European collaboration András Kovács (NIIF/HUNGARNET) 5 th GÉANT2 Technical Workshop Rome, 23/01/2008 Addressed Problems No coordination between NREN VoIP/VC support

More information

GN1 (GÉANT) Deliverable D13.2

GN1 (GÉANT) Deliverable D13.2 Contract Number: IST-2000-26417 Project Title: GN1 (GÉANT) Deliverable 13.2 Technology Roadmap for Year 3 Contractual Date: 31 July 2002 Actual Date: 16 August 2002 Work Package: WP8 Nature of Deliverable:

More information

Deliverable D7.2 Performance Monitoring and Verification Framework

Deliverable D7.2 Performance Monitoring and Verification Framework 29-04-16 Deliverable D7.2 Performance Monitoring and Verification Framework Deliverable D7.2 Contractual Date: 30-04-2016 Actual Date: 29-04-2016 Grant Agreement No.: 691567 Activity: 7/SA3 Task Item:

More information

perfsonar MDM updates for LHCONE: VRF monitoring, updated web UI, VM images

perfsonar MDM updates for LHCONE: VRF monitoring, updated web UI, VM images perfsonar MDM updates for LHCONE: VRF monitoring, updated web UI, VM images Domenico Vicinanza DANTE, Cambridge, UK perfsonar MDM Product Manager domenico.vicinanza@dante.net LHCONE Meeting Oslo 20-21

More information

MANTICORE: Virtualisation of the IP Network service. Victor Reijs Dave Wilson

MANTICORE: Virtualisation of the IP Network service. Victor Reijs Dave Wilson MANTICORE: Virtualisation of the IP Network service Victor Reijs Dave Wilson Outline Service from MANTICORE II project Infrastructure as a Service Framework Use cases MANTICORE FP7 proposal Service from

More information

DDOS in academic Networks. Herramientas para la seguridad prevención y mitigación de DDOS. CSUC. 3 de Abril 2014

DDOS in academic Networks. Herramientas para la seguridad prevención y mitigación de DDOS. CSUC. 3 de Abril 2014 DDOS in academic Networks Herramientas para la seguridad prevención y mitigación de DDOS. CSUC. 3 de Abril 2014 Academic networks? Real Target for DDOS? Lesson learned; DDOS @RedIRIS Mitigation Projects

More information

MANTICORE: Providing Users with a Logical IP Network Service

MANTICORE: Providing Users with a Logical IP Network Service MANTICORE: Providing Users with a Logical IP Network Service Victor Reijs (HEAnet) MANTICORE Partners (self funded project): Agenda MANTICORE vision MANTICORE-I implementation Infrastructure as a Service

More information

Introduction Inter-AS L3VPN

Introduction Inter-AS L3VPN Introduction Inter-AS L3VPN 1 Extending VPN services over Inter-AS networks VPN Sites attached to different MPLS VPN Service Providers How do you distribute and share VPN routes between ASs Back- to- Back

More information

The LHC Open Network Environment Kars Ohrenberg DESY Computing Seminar Hamburg, 10.12.2012

The LHC Open Network Environment Kars Ohrenberg DESY Computing Seminar Hamburg, 10.12.2012 The LHC Open Network Environment Kars Ohrenberg DESY Computing Seminar Hamburg, 10.12.2012 LHC Computing Infrastructure > WLCG in brief: 1 Tier-0, 11 Tier-1s, ~ 140 Tier-2s, O(300) Tier-3s worldwide Kars

More information

Network performance monitoring Insight into perfsonar

Network performance monitoring Insight into perfsonar Network performance monitoring Insight into perfsonar Szymon Trocha, Poznań Supercomputing and Networking Center E-infrastructure Autumn Workshops, Chisinau, Moldova 9 September 2014 Agenda! Network performance

More information

Carrier Class Transport Network Technologies: Summary of Initial Research

Carrier Class Transport Network Technologies: Summary of Initial Research Carrier Class Transport Network Technologies: Summary of Initial Research This document is a summary of the JRA1 Task 1 Carrier Class Transport Network Technologies deliverable [DJ1.1.1], which presents

More information

perfsonar MDM Deployment PERT workshop, TNC2012

perfsonar MDM Deployment PERT workshop, TNC2012 perfsonar MDM Deployment PERT workshop, TNC2012 Szymon Trocha, Poznań Supercomputing and Networking Centre Reykjavik, 21 May 2012 The research leading to these results has received funding from the European

More information

SA7 IaaS procurement

SA7 IaaS procurement SA7 IaaS procurement TF-CPR, 17 March 2015, Amsterdam Michel Wets michel.wets@surfnet.nl 1 Collaborate, to enable and facilitate our community STRATEGY STANDARDS to use online services on a large scale,

More information

GN3plus Exit Service Catalogue Review

GN3plus Exit Service Catalogue Review GN3plus Exit Service Catalogue Review Reference https://services.geant.net/plm/pages/service-catalogue.aspx Page 1 of 26 Contents 1 Catalogue Review... 3 1.1 Purpose... 3 1.2 Readership... 3 1.3 Scope...

More information

Performance Monitoring

Performance Monitoring Performance Monitoring TF-NGN meeting, Poznan (Poland), 08/05/03 Nicolas Simar, Network Engineer DANTE Objectives Overview Exchange monitored data between domains to Ease the troubleshooting Give to the

More information

SSVVP SIP School VVoIP Professional Certification

SSVVP SIP School VVoIP Professional Certification SSVVP SIP School VVoIP Professional Certification Exam Objectives The SSVVP exam is designed to test your skills and knowledge on the basics of Networking, Voice over IP and Video over IP. Everything that

More information

WHITE PAPER. Addressing Inter Provider Connections with MPLS-ICI CONTENTS: Introduction. IP/MPLS Forum White Paper. January 2008. Introduction...

WHITE PAPER. Addressing Inter Provider Connections with MPLS-ICI CONTENTS: Introduction. IP/MPLS Forum White Paper. January 2008. Introduction... Introduction WHITE PAPER Addressing Inter Provider Connections with MPLS-ICI The migration away from traditional multiple packet overlay networks towards a converged packet-switched MPLS system is now

More information

VOPaaS Virtual Organisation Platform as a Service

VOPaaS Virtual Organisation Platform as a Service VOPaaS Virtual Organisation Platform as a Service Marina Adomeit Task Leader, AMRES, Serbia Niels Van Dijk Technical Lead, SURFnet, The Netherlands FIM4R meeting Nov 30, 2015, Austria About VOPaaS in GÉANT

More information

A BRAINSTORMING ON SECURITY FIRE DRILLS

A BRAINSTORMING ON SECURITY FIRE DRILLS A BRAINSTORMING ON SECURITY FIRE DRILLS Classification, Feasibility, Usefulness and Implications Maurizio Molina, DANTE Nino Jogun, CARNET on behalf of GÉANT3 project, SA2/T4 TF-CSIRT, Tallin, 25 th Sep.

More information

Rohde & Schwarz R&S SITLine ETH VLAN Encryption Device Functionality & Performance Tests

Rohde & Schwarz R&S SITLine ETH VLAN Encryption Device Functionality & Performance Tests Rohde & Schwarz R&S Encryption Device Functionality & Performance Tests Introduction Following to our test of the Rohde & Schwarz ETH encryption device in April 28 the European Advanced Networking Test

More information

ATRIUM: A testbed of terabit IP routers running MPLS over DWDM

ATRIUM: A testbed of terabit IP routers running MPLS over DWDM ATRIUM: A testbed of terabit IP routers running MPLS over DWDM Main Objective: Develop an advanced testbed for experiments and validation of an Advanced Terabit Router (ATR) : the Research, Design and

More information

The GÉANT Network & GN3

The GÉANT Network & GN3 The GÉANT Network & GN3 Tom Fryer, DANTE CLARA-TEC San José, Costa Rica Tuesday, 11 th August 2009 What is GÉANT? The pan-european research and education backbone network A high-capacity internet reserved

More information

Driving Ethernet Deeper Ethernet Business Services over DOCSIS COX New Orleans (NOLA) Case Study

Driving Ethernet Deeper Ethernet Business Services over DOCSIS COX New Orleans (NOLA) Case Study Driving Ethernet Deeper Ethernet Business Services over DOCSIS COX New Orleans (NOLA) Case Study Kashif Islam, Technical Leader Cisco Carlos Sanchez, Systems Engineer Cisco Edward Kerner, Network Engineering

More information

Application Description

Application Description Application Description Firewall in front of LAN Different Servers located behind Firewall Firewall to be accessible from Internet Load Balancer to be installed in a TRANSPARENT MODE between Firewall and

More information

Networking 4 Voice and Video over IP (VVoIP)

Networking 4 Voice and Video over IP (VVoIP) Networking 4 Voice and Video over IP (VVoIP) Course Objectives This course will give delegates a good understanding of LANs, WANs and VVoIP (Voice and Video over IP). It is aimed at those who want to move

More information

GÉANT2. Otto Kreiter Network Engineering & Planning, DANTE

GÉANT2. Otto Kreiter Network Engineering & Planning, DANTE 2 Otto Kreiter Network Engineering & Planning, DANTE Today Connecting 33 European countries and 29 NRENs Backbone capacities from 10Gb/s to 34Mb/s Backbone based on Juniper M-series routers Services Best

More information

Addressing Inter Provider Connections With MPLS-ICI

Addressing Inter Provider Connections With MPLS-ICI Addressing Inter Provider Connections With MPLS-ICI Introduction Why migrate to packet switched MPLS? The migration away from traditional multiple packet overlay networks towards a converged packet-switched

More information

MPLS VPN Security BRKSEC-2145

MPLS VPN Security BRKSEC-2145 MPLS VPN Security BRKSEC-2145 Session Objective Learn how to secure networks which run MPLS VPNs. 100% network focus! Securing routers & the whole network against DoS and abuse Not discussed: Security

More information

Experiences in Supporting Service Providers and User Communities. Lukas Hämmerle, GÉANT/SWITCH AAI@eduHR Conference 26 November 2014

Experiences in Supporting Service Providers and User Communities. Lukas Hämmerle, GÉANT/SWITCH AAI@eduHR Conference 26 November 2014 Experiences in Supporting Service Providers and User Communities Lukas Hämmerle, GÉANT/SWITCH AAI@eduHR Conference 26 November 2014 Who am I! Work almost 10 years for SWITCH (Swiss NREN)! Mostly involved

More information

SEC-370. 2001, Cisco Systems, Inc. All rights reserved.

SEC-370. 2001, Cisco Systems, Inc. All rights reserved. SEC-370 2001, Cisco Systems, Inc. All rights reserved. 1 Understanding MPLS/VPN Security Issues SEC-370 Michael Behringer SEC-370 2003, Cisco Systems, Inc. All rights reserved. 3

More information

Instructions for Access to Summary Traffic Data by GÉANT Partners and other Organisations

Instructions for Access to Summary Traffic Data by GÉANT Partners and other Organisations Contract Number: IST-2000-26417 Project Title: Deliverable D8 : Instructions for Access to Summary Traffic Data by GÉANT Partners and other Organisations Contractual Date: 31 May 2002 Actual Date: 14 August

More information

QoS Unterstützung in der neuen Generation von Weitverkehrsnetzen und erste Erfahrungen im europaweiten Einsatz

QoS Unterstützung in der neuen Generation von Weitverkehrsnetzen und erste Erfahrungen im europaweiten Einsatz QoS Unterstützung in der neuen Generation von Weitverkehrsnetzen und erste Erfahrungen im europaweiten Einsatz QUASAR Quality-of-Service Architectures 16. DFN-Arbeitstagung über Kommunikationsnetze Düsseldorf

More information

Deliverable D8.4 (DS4.3.1): End-to-end Management Catalogue of Business Processes

Deliverable D8.4 (DS4.3.1): End-to-end Management Catalogue of Business Processes 20-11-13 Deliverable D8.4 (DS4.3.1) Contractual Date: 30-09-2013 Actual Date: 20-11-2013 Grant Agreement No.: 605243 Activity: SA4 Task Item: T3 Nature of Deliverable: R Dissemination Level: PU Lead Partner:

More information

CloudNet: Enterprise. AT&T Labs Research, Joint work with: Timothy Wood, Jacobus van der Merwe, and Prashant Shenoy

CloudNet: Enterprise. AT&T Labs Research, Joint work with: Timothy Wood, Jacobus van der Merwe, and Prashant Shenoy CloudNet: Enterprise Ready Virtual Private Clouds K. K. Ramakrishnan AT&T Labs Research, Florham Park, NJ Joint work with: Timothy Wood, Jacobus van der Merwe, and Prashant Shenoy Vision and Research Direction

More information

CLOUD POWER. NREN collaboration in GÉANT @ STF

CLOUD POWER. NREN collaboration in GÉANT @ STF CLOUD POWER NREN collaboration in GÉANT to enable and facilitate the Research and Education community to use online services on a large scale, with the right conditions @ STF MARCH 24 Andres Steijaert

More information

Strategic approach to cloud computing deployment

Strategic approach to cloud computing deployment Strategic approach to cloud computing deployment Slavko Gajin, (GN3plus, SA7T1) Datacenter IaaS workshop 2014 11-12. September, 2014 Cloud and NRENs Cloud is the latest big thing affecting NREN users Do

More information

Expert Reference Series of White Papers. Cisco Service Provider Next Generation Networks

Expert Reference Series of White Papers. Cisco Service Provider Next Generation Networks Expert Reference Series of White Papers Cisco Service Provider Next Generation Networks 1-800-COURSES www.globalknowledge.com Cisco Service Provider Next Generation Networks Johnny Bass, Senior Global

More information

Operational Model for E2E links in the NREN/GÉANT2 and NREN/Cross-Border-Fibre supplied optical platform

Operational Model for E2E links in the NREN/GÉANT2 and NREN/Cross-Border-Fibre supplied optical platform Operational Model for E2E links in the NREN/GÉANT2 and NREN/Cross-Border-Fibre supplied optical platform 0 Background In the GÉANT2 project plan it is foreseen that end-to-end (E2E) links (essentially

More information

DD2491 p2 2011. MPLS/BGP VPNs. Olof Hagsand KTH CSC

DD2491 p2 2011. MPLS/BGP VPNs. Olof Hagsand KTH CSC DD2491 p2 2011 MPLS/BGP VPNs Olof Hagsand KTH CSC 1 Literature Practical BGP: Chapter 10 MPLS repetition, see for example http://www.csc.kth.se/utbildning/kth/kurser/dd2490/ipro1-11/lectures/mpls.pdf Reference:

More information

70 299 Implementing and Administering Security in a Microsoft Windows Server 2003 Network

70 299 Implementing and Administering Security in a Microsoft Windows Server 2003 Network 70 299 Implementing and Administering Security in a Microsoft Windows Server 2003 Network Course Number: 70 299 Length: 1 Day(s) Course Overview This course is part of the MCSA training.. Prerequisites

More information

Ancero Virtual Private Network (AVPN) Service Guide

Ancero Virtual Private Network (AVPN) Service Guide Ancero Virtual Private Network (AVPN) Service Guide Contents Service Overview... 3 Ancero Virtual Private Network Service (AVPN): Reliable, flexible, any-to-any connectivity... 3 AVPN Benefits... 3 AVPN

More information

Level: 3 Credit value: 9 GLH: 80. QCF unit reference R/507/8351. This unit has 6 learning outcomes.

Level: 3 Credit value: 9 GLH: 80. QCF unit reference R/507/8351. This unit has 6 learning outcomes. This unit has 6 learning outcomes. 1. Know telephony principles. 1.1. Demonstrate application of traffic engineering concepts Prioritization of voice traffic Trunking requirements Traffic shaping. 1.2.

More information

MPLS VPN over mgre. Finding Feature Information. Prerequisites for MPLS VPN over mgre

MPLS VPN over mgre. Finding Feature Information. Prerequisites for MPLS VPN over mgre The feature overcomes the requirement that a carrier support multiprotocol label switching (MPLS) by allowing you to provide MPLS connectivity between networks that are connected by IP-only networks. This

More information

JUNIPER NETWORKS - SERVICE & SUPPORT OVERVIEW CSS CALA

JUNIPER NETWORKS - SERVICE & SUPPORT OVERVIEW CSS CALA JUNIPER NETWORKS - SERVICE & SUPPORT OVERVIEW CSS CALA SUPPORTING THE AGENDA FOR THE NET DECADE AND SUPPORTED JUNIPER SERVICES TRANSFORM THE EPERIENCE AND PROTECT THE ECONOMICS OF THE NETWORK 2 Copyright

More information

Firewall-on-Demand. GRNET s approach to advanced network security services management via bgp flow-spec and NETCONF. Leonidas Poulopoulos

Firewall-on-Demand. GRNET s approach to advanced network security services management via bgp flow-spec and NETCONF. Leonidas Poulopoulos Firewall-on-Demand GRNET s approach to advanced network security services management via bgp flow-spec and NETCONF Leonidas Poulopoulos 1 leopoul@nocgrnetgr 1 NOC/Greek Research and Technology Network

More information

How To Protect Gante From Attack On A Network With A Network Security System

How To Protect Gante From Attack On A Network With A Network Security System NSHaRP: Network Security Handling and Response Process Wayne Routly, DANTE TF-CSIRT Technical Seminar Malahide.ie, 03 June 2011 Contents GEANT : Who What How GEANT : Security Protecting GEANT Users A Security

More information

Firewall on Demand Multidomain

Firewall on Demand Multidomain Firewall on Demand Multidomain S E C U R I T Y V I A B G P F L O W S P E C & A W E B P L A T F O R M Leonidas Poulopoulos GRNET NOC Wayne Routly DANTE Jeffrey Haas JUNIPER Firewall on Demand Multidomain

More information

GRNet. Advanced Network Services Tool

GRNet. Advanced Network Services Tool GRNet Advanced Network Services Tool (and Topology Database) TF-NGN, Paris, July 2005 Aggelos Varvitsiotis, GRnet (avarvit@grnet.gr) Vangelis Haniotakis, UoC (haniotak@uoc.gr) Dimitris Primpas, CTI (primpas@cti.gr)

More information

Ancero Managed Internet Service (MIS) & Private Network Transport (PNT) Service Guide

Ancero Managed Internet Service (MIS) & Private Network Transport (PNT) Service Guide Ancero Managed Internet Service (MIS) & Private Network Transport (PNT) Service Guide Contents Service Overview... 3 Managed Internet Service (MIS): Dedicated Access that Keeps You Connected... 3 Reliable,

More information

DREAMER and GN4-JRA2 on GTS

DREAMER and GN4-JRA2 on GTS GTS Tech+Futures Workshop (Copenhagen) GTS Tech+Futures Workshop (Copenhagen) DREAMER and GN4-JRA2 on GTS CNIT Research Unit of Rome University of Rome Tor Vergata Outline DREAMER (Distributed REsilient

More information

BUY ONLINE AT: http://www.itgovernance.co.uk/products/730

BUY ONLINE AT: http://www.itgovernance.co.uk/products/730 IPSEC VPN DESIGN Introduction Chapter 1: Introduction to VPNs Motivations for Deploying a VPN VPN Technologies Layer 2 VPNs Layer 3 VPNs Remote Access VPNs Chapter 2: IPSec Overview Encryption Terminology

More information

Timeline for MPLS Deployment

Timeline for MPLS Deployment Timeline for MPLS Deployment What to Expect for Design, Implementation, and Support of SMB Customer MPLS Network Services Get Started Now: 877.611.6342 to learn more. www.megapath.com What to Expect for

More information

Corporate Network Services of Tomorrow Business-Aware VPNs

Corporate Network Services of Tomorrow Business-Aware VPNs Corporate Network Services of Tomorrow Business-Aware VPNs Authors: Daniel Kofman, CTO and Yuri Gittik, CSO Content Content...1 Introduction...2 Serving Business Customers: New VPN Requirements... 2 Evolution

More information

Gaining Customer Insight through Big Data Analytics

Gaining Customer Insight through Big Data Analytics inform innovate accelerate optimize Gaining Customer Insight through Big Data Analytics Rob Rich MD TM Forum Insights rrich@tmforum.org January 29, 2014 2013 TM Forum 1 Agenda Most promising areas for

More information

Design and Implementation of Service Level Agreements at HEAnet

Design and Implementation of Service Level Agreements at HEAnet 1st Floor, 5 George's Dock, IFSC, Dublin 1, Ireland. Registered in Ireland, no 275301 tel: +353-1-660 9040 fax: +353-1-660 3666 web: http://www.heanet.ie/ Design and Implementation of Service Level Agreements

More information

MCSE Objectives. Exam 70-236: TS:Exchange Server 2007, Configuring

MCSE Objectives. Exam 70-236: TS:Exchange Server 2007, Configuring MCSE Objectives Exam 70-236: TS:Exchange Server 2007, Configuring Installing and Configuring Microsoft Exchange Servers Prepare the infrastructure for Exchange installation. Prepare the servers for Exchange

More information

Connecting UK Schools to JANET

Connecting UK Schools to JANET Connecting UK Schools to JANET Rob Symberlist Schools Networking Coordinator United Kingdom Education & Research Networking Association r.symberlist@ukerna.ac.uk 22 February 2005 TERENA Workshop on Connecting

More information

SSVP SIP School VoIP Professional Certification

SSVP SIP School VoIP Professional Certification SSVP SIP School VoIP Professional Certification Exam Objectives The SSVP exam is designed to test your skills and knowledge on the basics of Networking and Voice over IP. Everything that you need to cover

More information

Ethernet OAM. Victor Olifer (JANET/GEANT JRA1 Task 1) JRA1/TERENA workshop, Copenhagen, 20 November 2012. connect communicate collaborate

Ethernet OAM. Victor Olifer (JANET/GEANT JRA1 Task 1) JRA1/TERENA workshop, Copenhagen, 20 November 2012. connect communicate collaborate Ethernet OAM Victor Olifer (JANET/GEANT JRA1 Task 1) JRA1/TERENA workshop, Copenhagen, 20 November 2012 1 Agenda Ethernet Service Assurance & Monitoring overview Monitoring standards Service assurance

More information

LHCOPN and LHCONE an introduction

LHCOPN and LHCONE an introduction LHCOPN and LHCONE an introduction APAN workshop Nantou, 13 th August 2014 Edoardo.Martelli@cern.ch CERN IT Department CH-1211 Genève 23 Switzerland www.cern.ch/it 1 Summary - WLCG - LHCOPN - LHCONE - L3VPN

More information

AMRES NOC Bojan Jakovljević. 8 th TF-NOC meeting, Athens 2013.

AMRES NOC Bojan Jakovljević. 8 th TF-NOC meeting, Athens 2013. AMRES NOC Bojan Jakovljević 8 th TF-NOC meeting, Athens 2013. Who are we? AMRES is National Research and Education Network of Serbia Initial development of the AMRES network started in the early 90 s when

More information

MPLS Layer 2 VPNs Functional and Performance Testing Sample Test Plans

MPLS Layer 2 VPNs Functional and Performance Testing Sample Test Plans MPLS Layer 2 VPNs Functional and Performance Testing Sample Test Plans Contents Overview 1 1. L2 VPN Padding Verification Test 1 1.1 Objective 1 1.2 Setup 1 1.3 Input Parameters 2 1.4 Methodology 2 1.5

More information

In this chapter, you learn about the following: How MPLS provides security (VPN separation, robustness against attacks, core hiding, and spoofing

In this chapter, you learn about the following: How MPLS provides security (VPN separation, robustness against attacks, core hiding, and spoofing In this chapter, you learn about the following: How MPLS provides security (VPN separation, robustness against attacks, core hiding, and spoofing protection) How the different Inter-AS and Carrier s Carrier

More information

GN3+ JRA1 Network Architectures for Horizon 2020

GN3+ JRA1 Network Architectures for Horizon 2020 GN3 JRA1 Future Network Task 1 and 2 GN3+ JRA1 Network Architectures for Horizon 2020 Tony Breach, NORDUnet A/S Copenhagen 20 November 2012 Background and Objective Joint Research Activity 1 Future Network

More information

Fireware Essentials Exam Study Guide

Fireware Essentials Exam Study Guide Fireware Essentials Exam Study Guide The Fireware Essentials exam tests your knowledge of how to configure, manage, and monitor a WatchGuard Firebox that runs Fireware OS. This exam is appropriate for

More information

HughesNet Broadband VPN End-to-End Security Using the Cisco 87x

HughesNet Broadband VPN End-to-End Security Using the Cisco 87x HughesNet Broadband VPN End-to-End Security Using the Cisco 87x HughesNet Managed Broadband Services includes a high level of end-to-end security features based on a robust architecture designed to meet

More information

ADDENDUM 9 TO APPENDIX 8 TO SCHEDULE 3.3 TO THE

ADDENDUM 9 TO APPENDIX 8 TO SCHEDULE 3.3 TO THE ADDENDUM 9 TO APPENDIX 8 TO SCHEDULE 3.3 TO THE COMPREHENSIVE INFRASTRUCTURE AGREEMENT 1 1 OVERVIEW Managed Network Services may be provided for customers requiring WAN bandwidth with Managed Router or

More information

LANCOM Software Version 6.00 January 2006. 2006, LANCOM Systems GmbH www.lancom.de

LANCOM Software Version 6.00 January 2006. 2006, LANCOM Systems GmbH www.lancom.de LANCOM Software Version 6.00 January 2006 2006, LANCOM Systems GmbH www.lancom.de LCOS 6.00 - Highlights LCOS 6.0 Enabling new possibilities with VoIP LCOS 6.0 features the two new software options that

More information

Expert Reference Series of White Papers. Cisco Service Provider Next Generation Networks

Expert Reference Series of White Papers. Cisco Service Provider Next Generation Networks Expert Reference Series of White Papers Cisco Service Provider Next Generation Networks 1-800-COURSES www.globalknowledge.com Cisco Service Provider Next Generation Networks Johnny Bass - Senior Global

More information

GÉANT: Delivering Global Real-Time Video Communication Services

GÉANT: Delivering Global Real-Time Video Communication Services GÉANT: Delivering Global Real-Time Video Communication Services Peter Szegedi GÉANT Amsterdam HEAnet Conference 2015 Cork, Ireland Networks Services People www.geant.org Outline Why WebRTC could potentially

More information

Deliverable DS5.1.1: eduroam Service Definition and Implementation Plan

Deliverable DS5.1.1: eduroam Service Definition and Implementation Plan 07.01.08 Deliverable DS5.1.1: eduroam Service Definition and Implementation Plan Deliverable DS5.1.1 Contractual Date: 31/10/07 Actual Date: 07/01/08 Contract Number: 511082 Instrument type: Integrated

More information

McAfee Next Generation Firewall (NGFW) Administration Course

McAfee Next Generation Firewall (NGFW) Administration Course McAfee Product Education McAfee Next Generation Firewall (NGFW) Administration Course The McAfee NGFW Administration course from Education Services provides attendees with hands-on training on the design,

More information

Private Industry Role in Next Generation Internet. Bob Aiken. NGI Project Leader DOE er.doe..doe.gov Large Scale Networking Working Group June 1997

Private Industry Role in Next Generation Internet. Bob Aiken. NGI Project Leader DOE er.doe..doe.gov Large Scale Networking Working Group June 1997 Private Industry Role in Next Generation Internet Bob Aiken NGI Project Leader DOE aiken@er er.doe..doe.gov Large Scale Networking Working Group June 1997 NGI: Foundation for the Future Points to Remember

More information

WHITEPAPER. Bringing MPLS to Data Center Fabrics with Labeled BGP

WHITEPAPER. Bringing MPLS to Data Center Fabrics with Labeled BGP WHITEPAPER Bringing MPLS to Data Center Fabrics with Labeled BGP Bringing MPLS to Data Center Fabrics with Labeled BGP MPLS is a well-known and mature technology typically used in service provider environment.

More information

MPLS VPN Route Target Rewrite

MPLS VPN Route Target Rewrite The feature allows the replacement of route targets on incoming and outgoing Border Gateway Protocol (BGP) updates Typically, Autonomous System Border Routers (ASBRs) perform the replacement of route targets

More information

Carrier/WAN SDN. SDN Optimized MPLS Demo

Carrier/WAN SDN. SDN Optimized MPLS Demo Carrier/WAN SDN SDN Optimized MPLS Demo Problem Statement! Service Providers around the world have large investments in highly sophisticated and feature rich IP/MPLS network infrastructures for providing

More information

SIP Trunking with Microsoft Office Communication Server 2007 R2

SIP Trunking with Microsoft Office Communication Server 2007 R2 SIP Trunking with Microsoft Office Communication Server 2007 R2 A Dell Technical White Paper By Farrukh Noman Dell Product Group - Enterprise THIS WHITE PAPER IS FOR INFORMATIONAL PURPOSES ONLY, AND MAY

More information

perfsonar MDM updates: New interface, new possibilities

perfsonar MDM updates: New interface, new possibilities perfsonar MDM updates: New interface, new possibilities Domenico Vicinanza perfsonar MDM Product Manager domenico.vicinanza@dante.net GÉANT Multi-Domain Service Desk http://mdsd.geant.net perfsonar MDM

More information

How To Load balance traffic of Mail server hosted in the Internal network and redirect traffic over preferred Interface

How To Load balance traffic of Mail server hosted in the Internal network and redirect traffic over preferred Interface How To Load balance traffic of Mail server hosted in the Internal network and redirect traffic over preferred Interface How To Configure load sharing and redirect mail server traffic over preferred Gateway

More information