Routing Issues in deploying MPLS VPNs. Mukhtiar Shaikh Moiz Moizuddin
|
|
|
- Marilynn Randall
- 10 years ago
- Views:
Transcription
1 Routing Issues in deploying MPLS VPNs Mukhtiar Shaikh Moiz Moizuddin 1
2 Agenda Introduction Physical Migration to MPLS VPN Backbone Routing considerations using BGP as PE-CE protocol OSPF as PE-CE protocol EIGRP as PE-CE protocol Default route handling in MPLS VPN Preventing routing Loops with SOO Limiting vrf routes and potential black holing Multi-homing Scenarios Summary 2
3 Introduction Many enterprises are migrating to VPN services based on Layer 3 infrastructure (aka RFC 2547 based VPNs) In the traditional Layer 2 VPN Frame or ATM-based networks, Service provider network does not participate in the enterprise routing. Change in routing policies may result in network either sub-optimally utilized or even could lead to routing loops Enterprise network operators need to fully understand various factors that determine the overall complexity during and after migration such as Internal Site routing protocols Choice of PE-CE protocols Multi-homing, Redundancy and load balancing options Existence of backdoor links Network size (large number of sites) Number of Hub sites etc. Various network scenarios are discussed to highlight the issues and possible solutions. 3
4 Agenda Introduction Physical Migration to MPLS VPN Backbone Routing considerations using BGP as PE-CE protocol OSPF as PE-CE protocol EIGRP as PE-CE protocol Default route handling in MPLS VPN Preventing routing Loops with SOO Limiting vrf routes and potential black holing Multi-homing Scenarios Summary 4
5 Migration Considerations Minimize impact on customer connectivity and traffic forwarding as well as avoid potential Site isolation during migration. Routing interaction of PE-CE routing protocols with the Site local IGP Customers may not use their existing internal routing protocol to exchange routing information with the provider. Need to make sure internal as well internet routing works as desired Migration of a large enterprise to MPLS VPN needs phased approach Site1 Sample overlay VPN Network Site 2 ATM/FR migrating Site3 Site 1 PE MPLS/VPN PE Site3 Site 2 Migrated VPN Network 5
6 Migration steps: Hub Site Migration Site1 1. Site3 is a hub Site and is selected to act as transit Site for traffic between Site1 and Site2 Site 2 ATM/FR Site3 PE MPLS/VPN PE 2. Connect PE and CE routers via a new physical or a logic PVC 3. Establish connectivity and PE-CE routing protocol between hub Site and MPLS VPN backbone 6
7 Migration steps: Individual Sites Migration Traffic between non-migrated and Migrated Sites transits through hub Site Site1 Traffic between non-migrated Sites flows over the ATM/FR cloud as before 4. Disconnect the old pvc Site 2 x ATM/FR 3. Configure PE-CE routing protocol between Site and MPLS VPN backbone Site3 PE MPLS/VPN PE 1. Establish a new physical or FR/ATM PVC between Site under migration and MPLS VPN backbone 2. Keep the existing connection Depending on the routing protocol and the corresponding Admin distance and metrics, traffic will start flowing over MPLS VPN backbone 7
8 Agenda Introduction Physical Migration to MPLS VPN Backbone Routing considerations using BGP as PE-CE protocol BGP interaction with local Site IGPs AS Considerations and VPN Topologies OSPF as PE-CE protocol EIGRP as PE-CE protocol Default route handling in MPLS VPN Preventing routing Loops with SOO Limiting vrf routes and potential black holing Multi-homing Scenarios Summary 8
9 Redistributing BGP into local Site IGP Problem - Backdoor being preferred BGP route redistributed in local Site IGP (such as OSPF, EIGRP) becomes external Backdoor link is part of the same IGP Site 2 for example also learns the same prefix via backdoor link as internal route At Site 2, internal route is preferred over external. Traffic is sent over backdoor link instead of VPN provider backbone making VPN service useless ASN: 100 PE-1 MP-iBGP update: PE-2 ebgp4 update: BGP ebgp4 update: ebgp4 update: /0 BGP route redistributed into IGP making it an external route CE-1 Site 1 C1 IGP update: Internal route C2 CE-2 IGP /32 Site 2 Site routers use backdoor link causing potential congestion 9
10 Redistributing BGP into local Site IGP Solution Advertise a Summary route Simplest solution is to remove the backdoor link Other possible solution is to send a summarized route from Site 1 to Site 2 and vice versa over the backdoor link In normal conditions, at each Site more specific route learnt from the SP would be preferred over the summary route. This solution won t work for default route. ASN: 100 PE-1 MPiBGP update: PE-2 ebgp4 update: x BGP ebgp4 update: BGP route redistributed into IGP making it an external route CE-1 Site 1 IGP update: Summarized Route /24 Internal route CE-2 IGP /32 Backdoor link used only when the more specific VPN route disappears C1 C2 Site 2 10
11 Redistributing BGP into OSPF local Site IGP Make backdoor part of area 0 The summary route solution will not work if OSPF is the local IGP Summary generated only if C1 and C2 routers are OSPF ABRs or (ASBRs if routes are external) ASN: 100 PE-1 MPiBGP update: PE-2 ebgp4 update: ebgp4 update: CE-1 Site 1 C1 IGP update: Summarized Route /24 Internal route ABR Area 0 C2 BGP OSPF /32 ABR CE-2 Site 2 C1 and C2 need to be an ABR in order to do summarization 11
12 Redistributing BGP into OSPF local Site IGP Make backdoor part of a different Routing Protocol Run a different routing protocol or different IGP instance on the backdoor link Redistribute Site local IGP routes into the backdoor routing protocol instance Now routes from SP cloud learnt via BGP and the route learnt over back door are both external Change the external route type or tweak the metric to prefer the SP cloud. ASN: 100 PE-1 MPiBGP update: PE-2 ebgp4 update: ebgp4 update: CE-1 BGP OSPF CE-2 Site 1 Redistribute Site local routes into backdoor routing instance on both C1 and C2 C1 Different RP /32 C2 Site 2 C1 and C2 run a different routing instance on backdoor link 12
13 Redistributing BGP into local Site IGP Filtering considerations Because of mutual redistribution on CE routers at each Site, routing loops are possible Need to apply filters to advertise only locally sourced routes from each Site and block Site local routes being received from the SP cloud. ASN: 100 PE-1 MPiBGP update: PE-2 ebgp4 update: Put filters on C1 to filter routes originates in Site 1 Site 1 CE-1 C1 BGP IGP update: CE-2 Summarized Route OSPF / /32 Internal route C2 ebgp4 update: Site 2 Put filters on the mutual redistribution to avoid any loops 13
14 Agenda Introduction Physical Migration to MPLS VPN Backbone Routing considerations using BGP as PE-CE protocol BGP interaction with local Site IGPs AS Considerations and VPN Topologies OSPF as PE-CE protocol EIGRP as PE-CE protocol Default route handling in MPLS VPN Preventing routing Loops with SOO Limiting vrf routes and potential black holing Multi-homing Scenarios Summary 14
15 BGP AS Considerations VPN Sites belong to same ASN Customer may have same AS number in all its Sites Default BGP behaviour would force the CE to drop the routing update because of the ASpath loop detection Allow-as in can be used on the CE to accept the update even if it contains its own AS. Service provider can re-write the customer AS using AS- override feature PE-2 replaces all occurrences of customer ASN in the AS-Path with its own ASN and forwards the update to CE-2 VPN-IPv4 update: RD: AS_PATH: router bgp 100 address-family ipv4 vrf odd neighbor remote-as neighbor as-override PE-1 ASN: 100 PE-2 ebgp4 update: AS_PATH: ebgp4 update: AS_PATH: CE-1 ebgp4 update: AS_PATH: CE-2 ASN: /32 ASN: Site 1 Site 2 x CE2 would discard the route as he would see his own AS in the ASpath of BGP update 15
16 VPN Topology considerations Hub and Spoke Model PE3 sees its own AS in the AS-Path and rejects the update Allow-as in if configured at spoke Site, will allow the update at PE3 if it contains SP s ASN ASN: 250 ASN: 250 Site-1 CE1 Site-2 CE2 ebgp4 update: AS_PATH: PE1 PE2 ASN: 100 PE3 address-family ipv4 vrf Hub neighbor remote-as 250 neighbor activate neighbor as-override ebgp4 update: AS_PATH: loop ebgp4 update: AS_PATH: CE3-Hub ASN: 250 CE3-Spoke Site-3 N3 address-family ipv4 vrf spoke neighbor remote-as 250 neighbor activate neighbor allow-as in 4 16
17 Agenda Introduction Physical Migration to MPLS VPN Backbone Routing considerations using BGP as PE-CE protocol OSPF as PE-CE protocol EIGRP as PE-CE protocol Default route handling in MPLS VPN Preventing routing Loops with SOO Limiting vrf routes and potential black holing Multi-homing Scenarios Summary 17
18 Common Design Consideration- OSPF Area placement OSPF Sites belong to different areas Area 0 is not mandatory when migrating to MPLS VPN service VPN sites may have different Sites configured for different areas If Area 0 exists, it must touch MPLS VPN PE routers. VPN-IPv4 Update RD:Net-1, Next-hop=PE-1 RT=xxx:xxx MED: 6 OSPF-Route-Type= 1:2:0 OSPF-Domain:xxx OSPF-RID= PE-1:0 PE-1 Type-1 (Router-LSA) Link-State-ID: Net-1 Adv. Router: CE-1 Metric: 6 MPLS-VPN Backbone Area 1 Area 2 PE-2 Type-3 (Summary- LSA) Down bit is set Link-State-ID: Net-1 Adv. Router: PE-2 Metric: 6 CE-1 Network = Net-1 Site1 CE-2 Site2 18
19 Common Design Consideration- OSPF Area placement Sites are in the same Area- Backdoor exists Customers Sites are in the same area and there is a backdoor link Route is advertised to MPLS VPN backbone Same prefix is learnt as intra-area route via backdoor link PE2 does not generate Type3 LSA once type-1 LSA is received from the site Traffic is sent over backdoor link instead of MPLS VPN cloud. VPN-IPv4 Update RD:Net-1, Next-hop=PE-1 RT=xxx:xxx OSPF-Route-Type= 1:2:0 OSPF-Domain: xxx OSPF-RID= PE-1:0 MPLS-VPN Backbone No LSA Type 3 created MPLS VPN Backbone Not used Type-1 (Router-LSA) Link-State-ID: C-1 Link-ID: Net-1 Area: 1 Adv. Router: C-1 PE-1 CE-1/CE-2 link Area 1 PE-2 Type-1 (Router-LSA) Link-State-ID: C-1 Link-ID: Net-1 Area: 1 Adv. Router: C-1 Type-1 (Router-LSA) Link-State-ID: C-1 Link-ID: Net-1 Area: 1 Adv. Router: C-1 Net-1 C-1 CE-1 Site1 Type-1 (Router-LSA) Area 1Link-State-ID: C-1 Link-ID: Net-1 Area: 1 Adv. Router: C-1 Site2 CE-2 Area 1 19
20 Common Design Consideration- OSPF Area placement Sites are in the same Area- Backdoor with Sham link The sham link is treated as a virtual-link : unnumbered, ptp, DC link The sham link is reported in the router LSA s type 1 originated by the two routers connecting to the sham link The MPLS VPN backbone or the backdoor link can be made preferred path by tweaking the metrics Type-1 (Router-LSA) Link-State-ID: C-1 Link-ID: Net-1 Area: 1 Adv. Router: C-1 MPLS-VPN Backbone Type-1 (Router-LSA) Link-State-ID: C-1 Link-ID: Net-1 Area: 1 Adv. Router: C-1 Type-1 (Router-LSA) Link-State-ID: C-1 Link-ID: Net-1 Area: 1 Adv. Router: C-1 PE-1 Sham-Link CE-1/CE-2 link Area 1 CE-1 CE-2 Net-1 Area 1 Type-1 (Router-LSA) Area 1 Link-State-ID: C-1 C-1 Link-ID: Net-1 Area: 1 Site1 Adv. Router: C-1 Site2 PE-2 Type-1 (Router-LSA) Link-State-ID: C-1 Link-ID: Net-1 Area: 1 Adv. Router: C-1 With Metric manipulation, MPLS Backbone Can be made preferable 20
21 Common Design Consideration- OSPF Area placement Other scenarios Some OSPF sites entirely belong to area 0 and some other sites can belong to non area 0 Some sites may consist of hierarchical OSPF topology consisting of area 0 as well as non-zero areas. Both scenarios are valid. MPLS VPN Super Backbone PE1 PE2 VPN red VPN red area 0 area 1 CE1 area 2 Site1 Site2 21
22 Common Design Consideration- OSPF Area placement Area 0 Placement As before some sites may consist of hierarchical OSPF topology consisting of area 0 as well as non-zero areas. If site contains area 0, it must touch provider PE router. OSPF RULE: Summary LSAs from non-zero area s are not injected into backbone area 0 Inter-area routes will not show up unless a Virtual link is created. MPLS VPN Super Backbone vpnv4 update virtual-link LSA Type 3 x VPN red LSA Type 1 or 2 VPN red area 2 CE1 PE1 LSA Type 3 PE2 area 1 LSA Type 3 area 0 x LSA type 3 Summary routes is NOT advertised into area 0 22
23 Agenda Introduction Physical Migration to MPLS VPN Backbone Routing considerations using BGP as PE-CE protocol OSPF as PE-CE protocol EIGRP as PE-CE protocol Default route handling in MPLS VPN Preventing routing Loops with SOO Limiting vrf routes and potential black holing Multi-homing Scenarios Summary 23
24 EIGRP Without backdoor Support Site 1 and Site3 are connected to PE1. In addition a backdoor link exists between site1 and site2. PE1 learns the route via EIGRP and also received the same route via ibgp from PE2. EIGRP route redistributed in BGP becomes locally sourced and is preferred over ibgp learnt route Site3 traffic destined for Site 2 arrives on PE1 but afterwards traverses site1 instead of MPLS BB. pe1#sh ip bgp vpnv4 all pe2#sh ip bgp vpnv4 all BGP routing table entry for 100:1: /24, version BGP routing table entry for 100:1: /24, version [snip] Paths: (2 available, best #2, table vpna) (via vpna) from ( ) [snip] Origin incomplete, metric , localpref 100, weight (via vpna) from ( ) 32768, valid, sourced, best Origin incomplete, metric , localpref 100, weight Extended Community: RT:100:1 0x8800:32768: , valid, sourced, best 0x8801:10: x8802:65282: Extended Community: RT:100:1 0x8800:32768:0 0x8803:65282:1500 0x8801:10: x8802:65281: x8803:65281:1500 VPNv4 Update [snip] BGP PE-2 EIGRP EIGRP Internal /24 P1 BGP PE-1 EIGRP EIGRP Internal /24 Site3 CE-3 EIGRP AS-10 Site /24 CE /24 EIGRP AS-10 EIGRP Backdoor CE-1 EIGRP AS-10 Site1 24
25 EIGRP With backdoor Support With backdoor support, BGP route selection algorithm in the SP network has been modified. EIGRP metric of locally sourced and remote route is compared. Metric of locally received route is higher and includes the backdoor link metric (MPLS BB does not add additional metric) pe2#show ip bgp vpnv4 all BGP routing table entry for 100:1: /24, version 16 [snip] (via vpna) from ( ) Origin incomplete, metric , localpref 100, weight 32768, valid, sourced, best Extended Community: RT:100:1 Cost:pre-bestpath:128: x8800:32768:0 0x8801:10: x8802:65281: x8803:65281:1500, mpls labels in/out 24/nolabel VPNv4 Update pe1#show ip bgp vpnv4 all BGP routing table entry for 100:1: /24, version [snip] (metric 11) from ( ) Origin incomplete, metric , localpref 100, valid, internal, best Extended Community: RT:100:1 Cost:pre-bestpath:128: x8800:32768:0 0x8801:10: x8802:65281: x8803:65281:1500, mpls labels in/out nolabel/24 BGP BGP PE-2 EIGRP EIGRP Internal /24 P1 PE-1 EIGRP EIGRP Internal /24 Site3 CE-3 EIGRP AS-10 Site2 CE-2 CE /24 EIGRP Backdoor /24 EIGRP AS-10 EIGRP AS-10 Site1 25
26 Agenda Introduction Physical Migration to MPLS VPN Backbone Routing considerations using BGP as PE-CE protocol OSPF as PE-CE protocol EIGRP as PE-CE protocol Default route handling in MPLS VPN Preventing routing Loops with SOO Limiting vrf routes and potential black holing Multi-homing Scenarios Summary 26
27 Default Route origination (OSPF/EIGRP) BGP by default does not redistribute /0 router bgp 1 address-family ipv4 vrf <name> redistribute connected default-information originate VPN-IPv4 Update RD: , Next-hop=PE-1 RT=xxx:xxx MED=20 OSPF-Route-Type= 0:5:1 OSPF-Router-ID= PE-1 OSPF-Domain: xxx MPLS-VPN Backbone router ospf 1 vrf <name> redistribute bgp 1 subnets network area 1 default-information originate PE-1 Type-5 external LSA Link-ID: Adv. Router: CE-1 Metric : 20 Area 1 Area 2 PE-2 Type-5 (External-LSA) Link-State-ID: Adv. Router: PE-2 Metric : 20 CE-1 default-information originate always CE-2 Similar configuration needs to be done for EIGRP 27
28 Default Route in Multi-hub Environment Design Objective West Region CEs West Region PEs PE-San Jose x VPNv4: /0 US SP x East Region PEs /0 East Region CEs CE-SJ /0 PE-RTP CE-RTP Both San Jose and RTP advertise Default routes to the spoke Sites Satellite Sites in West Coast Region should take the default route to SJ and East Coast Sites should use RTP for default route In case of failure, spoke Sites should take the non-preferred default route 28
29 Default Route in Multi-hub Environment Possible Solution US SP West Region CEs Data Traffic West Region PEs VPNv4: /0 Lower Med PE-San Jose VPNv4: /0 Higher Med East Region PEs VPNv4: /0 Lower Med /0 East Region CEs Data Traffic CE-SJ /0 PE-RTP CE-RTP Over here it is proposed that when we advertise default route it would be in such a way that West Region PEs receives a lower med from SJ and higher med from RTP. Similarly East Region PEs receives a default route with a lower med from RTP and higher med from SJ In this way if SJ lost is route West Coast can then revert to the RTP Note: We have used med as an example any other BGP attribute can be used 29
30 Agenda Introduction Physical Migration to MPLS VPN Backbone Routing considerations using BGP as PE-CE protocol OSPF as PE-CE protocol EIGRP as PE-CE protocol Default route handling in MPLS VPN Preventing routing Loops with SOO Limiting vrf routes and potential black holing Multi-homing Scenarios Summary 30
31 Implementing SOO for Loop Prevention The SOO (extended BGP community) can be used to prevent loops in these scenarios. The SOO is needed only for multihomed sites. When EBGP is run between PE and CE routers, the SOO is configured through a route map command. For other routing protocols, the SOO can be applied to routes learned through a particular VRF interface during the redistribution into BGP. 31
32 Avoiding loops with SOO Not a hub and spoke scenario You don t want the routes sent from site3 CE4 to be sent back to site3 via PE4 ASN: Site-1 CE1 ebgp4 update: N3 AS_PATH: PE1 PE4 ebgp4 update: N3 AS_PATH: loop CE3 ASN: Site-2 ebgp4 update: N3 AS_PATH: ASN: 100 ebgp4 update: N3 AS_PATH: CE4 N3 ASN: PE2 CE2! address-family ipv4 vrf Site3 neighbor remote-as neighbor activate neighbor as-override neighbor route-map set_ soo in no auto-summary no synchronization exit-address-family! route-map set_soo permit 10 set extcommunity soo 100:65003 ip vrf sitemap route-map-name PE3 Site-3! address-family ipv4 vrf Site3 neighbor remote-as neighbor activate neighbor as-override neighbor route-map set_ soo in no auto-summary no synchronization exit-address-family! route-map set_soo permit 10 set extcommunity soo 100:
33 Avoiding loops with SOO PE3 and PE4 are configured with the same SoO value If SoO in the BGP update matches with the configured value, update will not be forwarded to CE3 Note: In fact PE4 will never forward the update to CE3 even if the site-3 is segmented (and say CE3 and CE4 can not communicate with each other using intra-site routing) BGP(2): soo loop detected for - sending unreachable ASN: Site-1 CE1 ebgp4 update: N3 AS_PATH: SoO:100:65001 PE1 PE4 PE4 SoO:100:65003 x CE3 ASN: Site-2 ebgp4 update: N3 AS_PATH: ASN: 100 ebgp4 update: N3 AS_PATH: CE4 N /24 ASN: CE2 SoO:100:65002 PE2 PE3 SoO:100:65003 Site-3 PE4#show ip bgp vpnv4 vrf sit /24! (metric 20) from ( ) Origin incomplete, metric 0, localpref 100, valid, internal, best Extended Community: SoO:100:65003 RT:1:2 PE3#sh ip bgp vpnv4 vrf Site /24 [snip] from ( ) Origin incomplete, metric , localpref 100, valid, external Extended Community: SoO:100:65003 RT:100:1 33
34 Agenda Introduction Physical Migration to MPLS VPN Backbone Routing considerations using BGP as PE-CE protocol OSPF as PE-CE protocol EIGRP as PE-CE protocol Default route handling in MPLS VPN Preventing routing Loops with SOO Limiting vrf routes and potential black holing Multi-homing Scenarios Summary 34
35 VRF route limit VRF route limit allows the Service Provider to protect his PE routers from uncontrolled route advertisements from CE routers VRF route-limit allows to limit the number of routes that are imported into a VRF Routes coming from CE routers Routes coming from other PEs (imported routes) The route limit is configured for each VRF If the number of routes exceed the route-limit Syslog message is generated Routes are not inserted into VRF anymore Optional 35
36 Max Routes exceeded- Route propagation Potential Blackholing PE3 receive route /24 BUT MAX route limit is NOT reached PE3 add to its VRF routing table (config-vrf)# maximum route 100 PE1 EBGP Update for PE3 vrf EBGP Update for MPiBGP Update for MPLS Backbone vrf PE2 vrf CE-1 Data traffic for may go to PE2 and get blackholed CE-2 EBGP Update for PE2 receive route /24 BUT MAX route limit is reached PE1 can t add to its VRF routing table PE1#sh ip route vrf pagent PE1# # nothing! PE1#sh ip bgp vpnv4 vrf pagent i r> / {27016,57039,16690} e Enable suppress-inactive feature on PE2 to disable advertisements of BGP routes that don t make it to the routing table 36
37 Agenda Introduction Physical Migration to MPLS VPN Backbone Routing considerations using BGP as PE-CE protocol OSPF as PE-CE protocol EIGRP as PE-CE protocol Default route handling in MPLS VPN Preventing routing Loops with SOO Limiting vrf routes and potential black holing Multi-homing Scenarios Summary 37
38 Multi-tier Sites in Multi-homed Enterprise An enterprise might choose multiple providers for their L3VPN services It is possible that some of the enterprise satellite sites might be single homed. Unpredictable routing behavior may occur in the steady state or after a failure NY Tier1 Site C2 Net X CE4 IGP Cloud CE3 SJ Tier3 Site CE5 PE5 SP1 PE3 SP2 PE2 PE4 PE1 CE1 LA Tier1 Site IGP Cloud CE2 Net Y C1 38
39 Tier3 Site transiting Tier 1 Site- Problem Data traffic for Net Y when everything is up SJ Tier3 Site CE5 Data traffic for Net X cannot be routed even though there is an alternate path If PE3-CE4 link goes down IGP Up x PE5 NY Tier1 Site CE4 MPBGP UpPE3 SP1 PE4 CE1 C2 IGP Up IGP Up IGP Up IGP Cloud Net X SP2 CE3 IGP Up CE2 PE2 MPBGP Up PE1 IGP Up Generally speaking we might prevent IGP update for Net X LA Tier1 Site IGP Cloud Net Y In case of a failure, single homed site may not have connectivity to other sites Even though an alternate path exists but update was blocked to ensure traffic doesn t take sub-optimal path by transiting the enterprise site C1 39
40 Tier3 Site transiting Tier 1 Site Possible Solution Data traffic for Net Y when everything is up SJ Tier3 NY Tier1 Site IGP Cloud Site SP1 are withdrawn SP2 CE5 PE5 Data traffic for Net X would be routed through LA Site If PE3-CE4 link goes down IGP Up IGP Up CE4 MPBGP Up CE1 PE3 MPBGP Up PE4 IGP Cloud CE1 may choose PE1 as the best path LA Tier1 for NetX. No filters for Net X Site Don t filter the routes that do not belong to the site C2 IGP Up IGP Up MPBGP updates IGP Up Net X C1 CE3 CE2 IGP Up PE2 MPBGP Up SP cloud now sees two routes. With appropriate metric manipulation, PE5 can choose path via PE3 as the primary path. In case of failure, an alternate valid path will be available via PE4 PE1 Net Y IGP Up 40
41 Tier3 Site transiting Tier 1 Site Suboptimal Routing and Routing Loops - Caveat We need to filters to block networks originated within the site (network X) SJ Tier3 NY Tier1 Site Site SP1 SP2 CE5 PE5 Allow Net X to be advertised to PE4 IGP Up IGP Up CE4 CE1 x PE3 MPBGP Up PE4 LA Tier1 Site C2 IGP Up IGP Up IGP Cloud IGP Up IGP Cloud Net X loop CE3 CE2 IGP Up PE2 MPBGP Up CE4 can possibly choose PE3 as the best path for Net X which can result in suboptimal routing and possible routing loops PE1 IGP Up Net Y 41
42 Agenda Introduction Physical Migration to MPLS VPN Backbone Routing considerations using BGP as PE-CE protocol OSPF as PE-CE protocol EIGRP as PE-CE protocol Default route handling in MPLS VPN Preventing routing Loops with SOO Limiting vrf routes and potential black holing Multi-homing Scenarios Summary 42
43 Summary For large enterprises, migration to L3VPN service requires a phased approach so that disruption to existing services is minimal Existing site local routing protocols policies and their interaction with PE-CE routing protocols should be carefully analyzed Topological considerations such as backdoor links, multi-homing scenarios, OSPF areas placement and BGP AS number scheme etc should be taken into account to avoid sub-optimal routing or loops. Default route and Summarization is important for proper routing to the internet or to the central sites and could be coordinated with the service provider for optimal results. Site-to-site VPN routing convergence should be kept in mind while deploying delay sensitive application Redundancy and Multi-provider topologies may result in loops if not properly implemented. 43
44 Q&A 44
45 Backup slides Site-to-Site VPN Routing Convergence 45
46 Vrf Table RIB LC-HW FIB Site-to-site Convergence in MPLS VPN Environment FIB LC FIB Receipt of Local Routes into BGP Table on the PE Router MP-BGP MP-BGP Table Table Local_CE Local_PE Import of Local Routing Information into the Corresponding Ingress VRF Routing Table T2 T3 T1 PE Router Receives a Routing Update from a CE Router=30sec Convergence depends on the Service provider network Site-to-Site convergence heavily dependant on MP-BGP convergence in the provider network End-to-End convergence sum of highlighted Convergence PointsT1 thru T8 RR T4 T4 Advertisement of Routes to MP-BGP Peers =5 sec MP-BGP MP-BGP Table Table T5 T7 Advertisement of Routes to CE Routers =30 sec T8 Processing of Incoming Updates by the CE Router Receipt of Advertised Routes into BGP Table on the PE Router Remote_PE Vrf Table RIB LC-HW FIB T6 Import of Newly Received Routes into Local VRF s Routing Table=15sec Remote_CE FIB LC FIB 46
47 Summary (Theoretical Convergence) Two sets of timers; first set consists of T1, T4, T6 and T7; second set comprises of T2, T3, T5 and T8 First set mainly responsible for the slower convergence unless aggressively tweaked down Theoretically sums up to ~ 85 seconds [30 (T1)+5*2 (T4)+15(T6)+30 (T7)] Once different timers are tuned, convergence mainly depends on T6; min T6=5 secs Assuming ~ x secs for T2, T3, T5 and T8 collectively Local_PE T4 T3 T2 T1 Local_CE RR T4 T5 T6 T7 T8 Remote_CE Remote_PE PE-CE Protocol Max Conv. Time (Default Settings) Max Conv. Time (Timers Tweaked Scan=5, Adv=0) BGP ~85+x Seconds ~5+x Seconds OSPF ~25+x Seconds ~5+x Seconds EIGRP ~25+x Seconds ~5+x Seconds RIP ~85+x Seconds ~5+x Seconds 47
Using OSPF in an MPLS VPN Environment
Using OSPF in an MPLS VPN Environment Overview This module introduces the interaction between multi-protocol Border Gateway Protocol (MP-BGP) running between Provider Edge routers (s) and Open Shortest
Notice the router names, as these are often used in MPLS terminology. The Customer Edge router a router that directly connects to a customer network.
Where MPLS part I explains the basics of labeling packets, it s not giving any advantage over normal routing, apart from faster table lookups. But extensions to MPLS allow for more. In this article I ll
MPLS-based Layer 3 VPNs
MPLS-based Layer 3 VPNs Overall objective The purpose of this lab is to study Layer 3 Virtual Private Networks (L3VPNs) created using MPLS and BGP. A VPN is an extension of a private network that uses
MPLS Inter-AS VPNs. Configuration on Cisco Devices
MPLS Inter-AS VPNs Configuration on Cisco Devices (C) Herbert Haas 2005/03/11 1 #1: Back-to-Back VRF ip vrf blue rd 1:1 route-target both 1:1 address-family ipv4 vrf blue neighbor 1.1.1.2 activate ip vrf
MPLS Configration 事 例
MPLS Configration 事 例 JANOG6 MPLSパネル グローバルワン 株 式 会 社 06/16/2000 JANOG6 MPLS Pannel 1 MPLS Configration なにが 必 要?(Ciscoしかわかりません) IOSは12.0(7) T 以 上 がいい PEは3600, 4500, 7200, and 7500 PはCisco LS1010, 7200,
IMPLEMENTING CISCO IP ROUTING V2.0 (ROUTE)
IMPLEMENTING CISCO IP ROUTING V2.0 (ROUTE) COURSE OVERVIEW: Implementing Cisco IP Routing (ROUTE) v2.0 is an instructor-led five day training course developed to help students prepare for Cisco CCNP _
For internal circulation of BSNLonly
E3-E4 E4 E&WS Overview of MPLS-VPN Overview Traditional Router-Based Networks Virtual Private Networks VPN Terminology MPLS VPN Architecture MPLS VPN Routing MPLS VPN Label Propagation Traditional Router-Based
UPDATE = [Withdrawn prefixes (Optional)] + [Path Attributes] + [NLRIs].
Table of Contents Introduction...1 MP-BGP Overview...1 VPNv4 Prefixes and EIGRP Extended Communities...3 VPNv4 Prefixes and Redistribution...4 Race Condition 1: Backdoor Link preferred by EIGRP...8 BGP
MPLS VPN Implementation
MPLS VPN Implementation Overview Virtual Routing and Forwarding Table VPN-Aware Routing Protocols VRF Configuration Tasks Configuring BGP Address families Configuring BGP Neighbors Configuring MP-BGP Monitoring
MPLS VPN. Agenda. MP-BGP VPN Overview MPLS VPN Architecture MPLS VPN Basic VPNs MPLS VPN Complex VPNs MPLS VPN Configuration (Cisco) L86 - MPLS VPN
MPLS VPN Peer to Peer VPN s Agenda MP-BGP VPN Overview MPLS VPN Architecture MPLS VPN Basic VPNs MPLS VPN Complex VPNs MPLS VPN Configuration (Cisco) CE-PE OSPF Routing CE-PE Static Routing CE-PE RIP Routing
IMPLEMENTING CISCO MPLS V3.0 (MPLS)
IMPLEMENTING CISCO MPLS V3.0 (MPLS) COURSE OVERVIEW: Multiprotocol Label Switching integrates the performance and traffic-management capabilities of data link Layer 2 with the scalability and flexibility
Implementing Cisco MPLS
Implementing Cisco MPLS Course MPLS v2.3; 5 Days, Instructor-led Course Description This design document is for the refresh of the Implementing Cisco MPLS (MPLS) v2.3 instructor-led training (ILT) course,
IMPLEMENTING CISCO MPLS V2.3 (MPLS)
IMPLEMENTING CISCO MPLS V2.3 (MPLS) COURSE OVERVIEW: The course will enable learners to gather information from the technology basics to advanced VPN configuration. The focus of the course is on VPN technology
MPLS VPN Route Target Rewrite
The feature allows the replacement of route targets on incoming and outgoing Border Gateway Protocol (BGP) updates Typically, Autonomous System Border Routers (ASBRs) perform the replacement of route targets
Implementing Cisco Service Provider Next-Generation Edge Network Services **Part of the CCNP Service Provider track**
Course: Duration: Price: $ 3,695.00 Learning Credits: 37 Certification: Implementing Cisco Service Provider Next-Generation Edge Network Services Implementing Cisco Service Provider Next-Generation Edge
PRASAD ATHUKURI Sreekavitha engineering info technology,kammam
Multiprotocol Label Switching Layer 3 Virtual Private Networks with Open ShortestPath First protocol PRASAD ATHUKURI Sreekavitha engineering info technology,kammam Abstract This paper aims at implementing
s@lm@n Cisco Exam 642-889 Implementing Cisco Service Provider Next-Generation Egde Network Services Version: 7.0 [ Total Questions: 126 ]
s@lm@n Cisco Exam 642-889 Implementing Cisco Service Provider Next-Generation Egde Network Services Version: 7.0 [ Total Questions: 126 ] Cisco 642-889 : Practice Test Question No : 1 Refer to the exhibit.
Advanced BGP Policy. Advanced Topics
Advanced BGP Policy George Wu TCOM690 Advanced Topics Route redundancy Load balancing Routing Symmetry 1 Route Optimization Issues Redundancy provide multiple alternate paths usually multiple connections
Introduction Inter-AS L3VPN
Introduction Inter-AS L3VPN 1 Extending VPN services over Inter-AS networks VPN Sites attached to different MPLS VPN Service Providers How do you distribute and share VPN routes between ASs Back- to- Back
Understanding Route Redistribution & Filtering
Understanding Route Redistribution & Filtering When to Redistribute and Filter PAN-OS 5.0 Revision B 2013, Palo Alto Networks, Inc. www.paloaltonetworks.com Contents Overview... 3 Route Redistribution......
BGP Best Path Selection Algorithm
BGP Best Path Selection Algorithm Document ID: 13753 Contents Introduction Prerequisites Requirements Components Used Conventions Why Routers Ignore Paths How the Best Path Algorithm Works Example: BGP
Configuring MPLS Hub-and-Spoke Layer 3 VPNs
CHAPTER 23 This chapter describes how to configure a hub-and-spoke topology for Multiprotocol Layer Switching (MPLS) Layer 3 virtual private networks (VPNs) on Cisco NX-OS devices. This chapter includes
Kingston University London
Kingston University London Thesis Title Implementation and performance evaluation of WAN services over MPLS Layer-3 VPN Dissertation submitted for the Degree of Master of Science in Networking and Data
IPv6 over MPLS VPN. Contents. Prerequisites. Document ID: 112085. Requirements
IPv6 over MPLS VPN Document ID: 112085 Contents Introduction Prerequisites Requirements Components Used Conventions Configure Network Diagram VRF Configuration Multiprotocol BGP (MP BGP) Configuration
Presentation_ID. 2001, Cisco Systems, Inc. All rights reserved.
1 Session Number BGP Feature Update 12.0S July 2003 Mike Pennington [email protected] Cisco Systems - Denver, CO 2 Overview Overview Definition of Terms BGP Convergence optimization Issues w/ Static peer-groups
Deploying MPLS-based IP VPNs Rajiv Asati Distinguished Engineer BRKMPL-2102
Deploying MPLS-based IP VPNs Rajiv Asati Distinguished Engineer BRKMPL-2102 Abstract This session describes the implementation of IP Virtual Private Networks (IP VPNs) using MPLS. It is the most common
How To Make A Network Secure
1 2 3 4 -Lower yellow line is graduate student enrollment -Red line is undergradate enrollment -Green line is total enrollment -2008 numbers are projected to be near 20,000 (on-campus) not including distance
Introducing Basic MPLS Concepts
Module 1-1 Introducing Basic MPLS Concepts 2004 Cisco Systems, Inc. All rights reserved. 1-1 Drawbacks of Traditional IP Routing Routing protocols are used to distribute Layer 3 routing information. Forwarding
Transitioning to BGP. ISP Workshops. Last updated 24 April 2013
Transitioning to BGP ISP Workshops Last updated 24 April 2013 1 Scaling the network How to get out of carrying all prefixes in IGP 2 Why use BGP rather than IGP? p IGP has Limitations: n The more routing
AMPLS - Advanced Implementing and Troubleshooting MPLS VPN Networks v4.0
Course Outline AMPLS - Advanced Implementing and Troubleshooting MPLS VPN Networks v4.0 Module 1: MPLS Features Lesson 1: Describing Basic MPLS Concepts Provide an overview of MPLS forwarding, features,
MPLS/VPN Overview. 2009 Cisco Systems, Inc. All rights reserved. 1
MPLS/VPN Overview 2009 Cisco Systems, Inc. All rights reserved. 1 Legal Notice THE SPECIFICATIONS AND INFORMATION REGARDING THE PRODUCTS IN THIS DOCUMENT ARE SUBJECT TO CHANGE WITHOUT NOTICE. ALL STATEMENTS,
MPLS. Cisco MPLS. Cisco Router Challenge 227. MPLS Introduction. The most up-to-date version of this test is at: http://networksims.com/i01.
MPLS Cisco MPLS MPLS Introduction The most up-to-date version of this test is at: http://networksims.com/i01.html Cisco Router Challenge 227 Outline This challenge involves basic frame-mode MPLS configuration.
Border Gateway Protocol (BGP)
Border Gateway Protocol (BGP) Petr Grygárek rek 1 Role of Autonomous Systems on the Internet 2 Autonomous systems Not possible to maintain complete Internet topology information on all routers big database,
Building VPNs. Nam-Kee Tan. With IPSec and MPLS. McGraw-Hill CCIE #4307 S&
Building VPNs With IPSec and MPLS Nam-Kee Tan CCIE #4307 S& -.jr."..- i McGraw-Hill New York Chicago San Francisco Lisbon London Madrid Mexico City Milan New Delhi San Juan Seoul Singapore Sydney Toronto
Using the Border Gateway Protocol for Interdomain Routing
CHAPTER 12 Using the Border Gateway Protocol for Interdomain Routing The Border Gateway Protocol (BGP), defined in RFC 1771, provides loop-free interdomain routing between autonomous systems. (An autonomous
Why Is MPLS VPN Security Important?
MPLS VPN Security An Overview Monique Morrow Michael Behringer May 2 2007 Future-Net Conference New York Futurenet - MPLS Security 1 Why Is MPLS VPN Security Important? Customer buys Internet Service :
DD2491 p2 2011. MPLS/BGP VPNs. Olof Hagsand KTH CSC
DD2491 p2 2011 MPLS/BGP VPNs Olof Hagsand KTH CSC 1 Literature Practical BGP: Chapter 10 MPLS repetition, see for example http://www.csc.kth.se/utbildning/kth/kurser/dd2490/ipro1-11/lectures/mpls.pdf Reference:
Exam Name: BGP + MPLS Exam Exam Type Cisco Case Studies: 3 Exam Code: 642-691 Total Questions: 401
Question: 1 Every time a flap occurs on a route, the route receives A. 750 per-flap penalty points which are user configurable B. 1500 per-flap penalty points which are user configurable C. 200 per-flap
MPLS Implementation MPLS VPN
MPLS Implementation MPLS VPN Describing MPLS VPN Technology Objectives Describe VPN implementation models. Compare and contrast VPN overlay VPN models. Describe the benefits and disadvantages of the overlay
Implementing MPLS VPN in Provider's IP Backbone Luyuan Fang [email protected] AT&T
Implementing MPLS VPN in Provider's IP Backbone Luyuan Fang [email protected] AT&T 1 Outline! BGP/MPLS VPN (RFC 2547bis)! Setting up LSP for VPN - Design Alternative Studies! Interworking of LDP / RSVP
IP Routing Configuring RIP, OSPF, BGP, and PBR
13 IP Routing Configuring RIP, OSPF, BGP, and PBR Contents Overview..................................................... 13-6 Routing Protocols.......................................... 13-6 Dynamic Routing
IPv6 over IPv4/MPLS Networks: The 6PE approach
IPv6 over IPv4/MPLS Networks: The 6PE approach Athanassios Liakopoulos Network Operation & Support Manager ([email protected]) Greek Research & Technology Network (GRNET) III Global IPv6 Summit Moscow, 25
RFC 2547bis: BGP/MPLS VPN Fundamentals
White Paper RFC 2547bis: BGP/MPLS VPN Fundamentals Chuck Semeria Marketing Engineer Juniper Networks, Inc. 1194 North Mathilda Avenue Sunnyvale, CA 94089 USA 408 745 2001 or 888 JUNIPER www.juniper.net
APNIC elearning: BGP Basics. Contact: [email protected]. erou03_v1.0
erou03_v1.0 APNIC elearning: BGP Basics Contact: [email protected] Overview What is BGP? BGP Features Path Vector Routing Protocol Peering and Transit BGP General Operation BGP Terminology BGP Attributes
Understanding Virtual Router and Virtual Systems
Understanding Virtual Router and Virtual Systems PAN- OS 6.0 Humair Ali Professional Services Content Table of Contents VIRTUAL ROUTER... 5 CONNECTED... 8 STATIC ROUTING... 9 OSPF... 11 BGP... 17 IMPORT
How To Understand Bg
Table of Contents BGP Case Studies...1 BGP4 Case Studies Section 1...3 Contents...3 Introduction...3 How Does BGP Work?...3 ebgp and ibgp...3 Enabling BGP Routing...4 Forming BGP Neighbors...4 BGP and
Inter-domain Routing Basics. Border Gateway Protocol. Inter-domain Routing Basics. Inter-domain Routing Basics. Exterior routing protocols created to:
Border Gateway Protocol Exterior routing protocols created to: control the expansion of routing tables provide a structured view of the Internet by segregating routing domains into separate administrations
Analyzing Capabilities of Commercial and Open-Source Routers to Implement Atomic BGP
Telfor Journal, Vol. 2, No. 1, 2010. 13 Analyzing Capabilities of Commercial and Open-Source Routers to Implement Atomic BGP Aleksandar Cvjetić and Aleksandra Smiljanić Abstract The paper analyzes implementations
MPLS-based Virtual Private Network (MPLS VPN) The VPN usually belongs to one company and has several sites interconnected across the common service
Nowdays, most network engineers/specialists consider MPLS (MultiProtocol Label Switching) one of the most promising transport technologies. Then, what is MPLS? Multi Protocol Label Switching (MPLS) is
White Paper. Cisco MPLS based VPNs: Equivalent to the security of Frame Relay and ATM. March 30, 2001
The leading edge in networking information White Paper Cisco MPLS based VPNs: Equivalent to the security of Frame Relay and ATM March 30, 2001 Abstract: The purpose of this white paper is to present discussion
BGP Link Bandwidth. Finding Feature Information. Contents
The BGP (Border Gateway Protocol) Link Bandwidth feature is used to advertise the bandwidth of an autonomous system exit link as an extended community. This feature is configured for links between directly
Configuring a Basic MPLS VPN
Configuring a Basic MPLS VPN Help us help you. Please rate this document. Contents Introduction Conventions Hardware and Software Versions Network Diagram Configuration Procedures Enabling Configuring
Introduction to MPLS-based VPNs
Introduction to MPLS-based VPNs Ferit Yegenoglu, Ph.D. ISOCORE [email protected] Outline Introduction BGP/MPLS VPNs Network Architecture Overview Main Features of BGP/MPLS VPNs Required Protocol Extensions
SEC-370. 2001, Cisco Systems, Inc. All rights reserved.
SEC-370 2001, Cisco Systems, Inc. All rights reserved. 1 Understanding MPLS/VPN Security Issues SEC-370 Michael Behringer SEC-370 2003, Cisco Systems, Inc. All rights reserved. 3
S-38.3192 ITGuru Exercise (3: Building the MPLS BGP VPN) Spring 2006
S-38.3192 ITGuru Exercise (3: Building the MPLS BGP VPN) Spring 2006 Original version: Johanna Nieminen and Timo Viipuri (2005) Modified: Timo-Pekka Heikkinen, Juha Järvinen and Yavor Ivanov (2006) Task
Fundamentals Multiprotocol Label Switching MPLS III
Fundamentals Multiprotocol Label Switching MPLS III Design of Telecommunication Infrastructures 2008-2009 Rafael Sebastian Departament de tecnologies de la Informació i les Comunicaciones Universitat Pompeu
Tackling the Challenges of MPLS VPN Testing. Todd Law Product Manager Advanced Networks Division
Tackling the Challenges of MPLS VPN ing Todd Law Product Manager Advanced Networks Division Agenda Background Why test MPLS VPNs anyway? ing Issues Technical Complexity and Service Provider challenges
MPLS VPN over mgre. Finding Feature Information. Prerequisites for MPLS VPN over mgre
The feature overcomes the requirement that a carrier support multiprotocol label switching (MPLS) by allowing you to provide MPLS connectivity between networks that are connected by IP-only networks. This
GregSowell.com. Mikrotik Routing
Mikrotik Routing Static Dynamic Routing To Be Discussed RIP Quick Discussion OSPF BGP What is Routing Wikipedia has a very lengthy explanation http://en.wikipedia.org/wiki/routing In the context of this
How To Set Up Bgg On A Network With A Network On A Pb Or Pb On A Pc Or Ipa On A Bg On Pc Or Pv On A Ipa (Netb) On A Router On A 2
61200860L1-29.4E March 2012 Configuration Guide Configuring Border Gateway Protocol in AOS for Releases Prior to 18.03.00/R10.1.0 This guide only addresses BGP in AOS data products using AOS firmware prior
Simple Multihoming. ISP Workshops. Last updated 30 th March 2015
Simple Multihoming ISP Workshops Last updated 30 th March 2015 1 Why Multihome? p Redundancy n One connection to internet means the network is dependent on: p Local router (configuration, software, hardware)
Layer 3 MPLS VPN Enterprise Consumer Guide Version 2
Layer 3 MPLS VPN Enterprise Consumer Guide Version 2 This document is written for networking engineers and administrators responsible for implementing a Layer 3 (L3) MPLS VPN service from a service provider
Textbook Required: Cisco Networking Academy Program CCNP: Building Scalable Internetworks v5.0 Lab Manual.
Course: NET 251 Building Scalable Internetworks Credits: 3 Textbook Required: Cisco Networking Academy Program CCNP: Building Scalable Internetworks v5.0 Lab Manual. Course Description: In this course,
Advanced MPLS VPN Solutions
AMVS Advanced MPLS VPN Solutions Volume 2 Version 1.0 Student Guide Text Part Number: 97-0625-01 The products and specifications, configurations, and other technical information regarding the products
MPLS VPN Security BRKSEC-2145
MPLS VPN Security BRKSEC-2145 Session Objective Learn how to secure networks which run MPLS VPNs. 100% network focus! Securing routers & the whole network against DoS and abuse Not discussed: Security
Implementing MPLS VPNs over IP Tunnels
Implementing MPLS VPNs over IP Tunnels The MPLS VPNs over IP Tunnels feature lets you deploy Layer 3 Virtual Private Netwk (L3VPN) services, over an IP ce netwk, using L2TPv3 multipoint tunneling instead
Example: Advertised Distance (AD) Example: Feasible Distance (FD) Example: Successor and Feasible Successor Example: Successor and Feasible Successor
642-902 Route: Implementing Cisco IP Routing Course Introduction Course Introduction Module 01 - Planning Routing Services Lesson: Assessing Complex Enterprise Network Requirements Cisco Enterprise Architectures
MPLS Concepts. MPLS Concepts
MPLS Concepts MPLS: Multi Protocol Label Switching MPLS is a layer 2+ switching MPLS forwarding is done in the same way as in VC (Virtual Circuit) switches Packet forwarding is done based on Labels MPLS
How Routers Forward Packets
Autumn 2010 [email protected] MULTIPROTOCOL LABEL SWITCHING (MPLS) AND MPLS VPNS How Routers Forward Packets Process switching Hardly ever used today Router lookinginside the packet, at the ipaddress,
s@lm@n Cisco Exam 400-201 CCIE Service Provider Written Exam Version: 7.0 [ Total Questions: 107 ]
s@lm@n Cisco Exam 400-201 CCIE Service Provider Written Exam Version: 7.0 [ Total Questions: 107 ] Cisco 400-201 : Practice Test Question No : 1 Which two frame types are correct when configuring T3 interfaces?
Methods of interconnecting MPLS Networks
Methods of interconnecting MPLS Networks NANOG31, May 2005 San Francisco Cable & Wireless Internet Engineering Udo Steinegger What this talk is about General This presentation covers technologies on how
APNIC elearning: BGP Attributes
APNIC elearning: BGP Attributes Contact: [email protected] erou04_v1.0 Overview BGP Attributes Well-known and Optional Attributes AS Path AS Loop Detection ibgp and ebgp Next Hop Next Hop Best Practice
Cisco 642-889. Implementing Cisco Service Provider Next-Generation Egde Network Services. Version: 4.1
Cisco 642-889 Implementing Cisco Service Provider Next-Generation Egde Network Services Version: 4.1 QUESTION NO: 1 Cisco 642-889 Exam Which type of VPN requires a full mesh of virtual circuits to provide
Lab 4.2 Challenge Lab: Implementing MPLS VPNs
Lab 4.2 Challenge Lab: Implementing MPLS VPNs Learning Objectives Configure Open Shortest Path First (OSPF) and Enhanced Interior Gateway Routing Protocol (EIGRP) on a router Enable MPLS on a router Verify
Simple Multihoming. ISP/IXP Workshops
Simple Multihoming ISP/IXP Workshops 1 Why Multihome? Redundancy One connection to internet means the network is dependent on: Local router (configuration, software, hardware) WAN media (physical failure,
Route Discovery Protocols
Route Discovery Protocols Columbus, OH 43210 [email protected] http://www.cse.ohio-state.edu/~jain/ 1 Overview Building Routing Tables Routing Information Protocol Version 1 (RIP V1) RIP V2 OSPF
Expert Reference Series of White Papers. An Overview of MPLS VPNs: Overlay; Layer 3; and PseudoWire
Expert Reference Series of White Papers An Overview of MPLS VPNs: Overlay; Layer 3; and PseudoWire 1-800-COURSES www.globalknowledge.com An Overview of MPLS VPNs: Overlay; Layer 3; and PseudoWire Al Friebe,
Implementing MPLS VPNs over IP Tunnels on Cisco IOS XR Software
Implementing MPLS VPNs over IP Tunnels on Cisco IOS XR Software The MPLS VPNs over IP Tunnels feature lets you deploy Layer 3 Virtual Private Netwk (L3VPN) services, over an IP ce netwk, using L2TPv3 multipoint
MPLS Security Considerations
MPLS Security Considerations Monique J. Morrow, Cisco Systems [email protected] November 1 2004 MPLS JAPAN 2004 1 Acknowledgments Michael Behringer, Cisco Systems 2 Why is MPLS Security Important? Customer
MPLS WAN Explorer. Enterprise Network Management Visibility through the MPLS VPN Cloud
MPLS WAN Explorer Enterprise Network Management Visibility through the MPLS VPN Cloud Executive Summary Increasing numbers of enterprises are outsourcing their backbone WAN routing to MPLS VPN service
BGP Link Bandwidth. Finding Feature Information. Prerequisites for BGP Link Bandwidth
The Border Gateway Protocol (BGP) Link Bandwidth feature is used to advertise the bandwidth of an autonomous system exit link as an extended community. This feature is configured for links between directly
CS551 External v.s. Internal BGP
CS551 External v.s. Internal BGP Bill Cheng http://merlot.usc.edu/cs551-f12 1 Exterior vs. Interior World vs. me EGP vs. IGP Little control vs. complete administrative control BGP (and GGP, Hello, EGP)
How To Import Ipv4 From Global To Global On Cisco Vrf.Net (Vf) On A Vf-Net (Virtual Private Network) On Ipv2 (Vfs) On An Ipv3 (Vv
BGP Support for IP Prefix Import from Global Table into a VRF Table The BGP Support for IP Prefix Import from Global Table into a VRF Table feature introduces the capability to import IPv4 unicast prefixes
BGP Advanced Features and Enhancements
BGP Advanced Features and Enhancements George Wu TCOM610 Conditional Route Injection Network: originate route into BGP if there is corresponding routes in IP routing table Aggregate-address: inject route
Implementing Cisco MPLS
MPLS Implementing Cisco MPLS Volume 2 Version 2.1 Student Guide Text Part Number: ILSG Production Services: 11.18.04 Copyright 2004, Cisco Systems, Inc. All rights reserved. Cisco Systems has more than
OSPF Routing Protocol
OSPF Routing Protocol Contents Introduction Network Architecture Campus Design Architecture Building Block Design Server Farm Design Core Block Design WAN Design Architecture Protocol Design Campus Design
--BGP 4 White Paper Ver.1.0-- BGP-4 in Vanguard Routers
BGP-4 in Vanguard Routers 1 Table of Contents Introduction to BGP... 6 BGP terminology... 6 AS (Autonomous system):... 6 AS connection:... 6 BGP Speaker:... 6 BGP Neighbor/Peer:... 7 BGP Session:... 7
Approach to build MPLS VPN using QoS capabilities
International Journal of Engineering Research and Development e-issn: 2278-067X, p-issn: 2278-800X, www.ijerd.com Volume 7, Issue 8 (June 2013), PP. 26-32 Approach to build MPLS VPN using QoS capabilities
Application Note. Failover through BGP route health injection
Application Note Document version: v1.2 Last update: 8th November 2013 Purpose This application note aims to describe how to build a high available platform using BGP routing protocol to choose the best
Border Gateway Protocol BGP4 (2)
Border Gateway Protocol BGP4 (2) Professor Richard Harris School of Engineering and Advanced Technology (SEAT) Presentation Outline Border Gateway Protocol - Continued Computer Networks - 1/2 Learning
MPLS L3 VPN Supporting VoIP, Multicast, and Inter-Provider Solutions
MPLS L3 VPN Supporting VoIP, Multicast, and Inter-Provider Solutions Luyuan Fang ATT MPLSCon 2005, NYC The world s networking company SM Outline Overview of the L3 VPN deployment VoIP over MPLS VPN MPLS
Cisco CCNP 642 901 Optimizing Converged Cisco Networks (ONT)
Cisco CCNP 642 901 Optimizing Converged Cisco Networks (ONT) Course Number: 642 901 Length: 5 Day(s) Certification Exam This course will help you prepare for the following exams: Cisco CCNP Exam 642 901:
Multihomed BGP Configurations
Multihomed BGP Configurations lvaro Retana Cisco IOS Deployment and Scalability 1 genda General Considerations Multihomed Networks Best Current Practices 2 The Basics General Considerations 3 General Considerations
