Ontwikkelingen van R o u ter N etwer ken Fred Rabouw 1 3-t i e r R o u t e r N e t w e r k e n. Core: forwarden van grote h oeveel h eden data. D i s tri b u ti e: Cl as s i fi c eren en fi l teren A c c es s 2 2-t i e r R o u t e r N e t w e r k e n. Core+ D i s tri b u ti e A c c es s 3 1
P e r f o r m a n c e i s m eer dan p ac k ets p er s ec onde ( p p s ) 4 P e r f o r m a n c e i s m eer dan p ac k ets p er s ec onde ( p p s ) Control P l ane p erform anc e D ata P l ane p erform anc e 5 P e r f o r m a n c e i s m eer dan p ac k ets p er s ec onde ( p p s ) Control P l ane p erform anc e Hoeveel B G P b u r en k a n d e r ou t er a a n? Hoe s n el c on ver g eer t O S P F? C C on on t t rol rol P P l an l an e D P l p p p s p p s a j n ata ane erform anc e Hoeveel. Hoeveel ls e ook og. 6 2
M 2-t i e r R o u t e r N e t w e r k e n. A S R 1 0 0 0 Ci s c o 7 2 0 0 8 0 0 I S R. 7 2 0 0?. A S R? Cat 3 K 7 2-t i e r R o u t e r N e t w e r k e n. ASR 1000 C i s c o 7 2 00 8 00 I SR. 7 2 0 0?. A S R? Cat 3 K 8 C i sc o 7 20 0 < > A S R 1 0 0 0 Ci s c o 7 2 0 0 : A l 1 0 j aar de p op u l ai rs te aggregati e s wi tc h 2 M p p s. aar i edere s ervi c e gaat ten k os te van h et aantal p p s C C on on t trol P P l an l an e & D D at ata P P l an l an e 9 3
C i sc o 7 20 0 < > A S R 1 0 0 0 Ci s c o 7 2 0 0 : A l 1 0 j aar de p op u l ai rs te aggregati e s wi tc h 10 C i sc o 7 20 0 < > A S R 1 0 0 0 A S R 1 0 0 0 : V ol gende generati e aggregati e rou ter 1 0 M p p s. V erandert h aas t ni et al s er s ervi c es aangez et worden. C C on on t t rol rol P P l an l an e 11 C i sc o 7 20 0 < > A S R 1 0 0 0 A S R 1 0 0 0 : V ol gende generati e aggregati e rou ter 1 0 G b p s I P 1 0 G b p s F i l 3 G b p s I P s rewal.5 ec 2 0 G b p s I P 1 6 G b p s F i rewal l 8 G b p s I P s ec 12 4
D e 8 0 0 s e n I S R s 8 00 I SR 13 S e r v i c e s i n d e I S R V i d e o AAS 3 G V oi c e F i rewal l AX P I P s ec i rel es s L A N i red L A N 14 w a a r z i t w a t o p d e I S R s? 15 5
S M Cisco 3G ireless AN HIC T h e C i sc o 3 G i re l e ss AN H I C prov i d e s a c ost-e f f e c ti v e a l te rn a ti v e to I SD N d i a l b a c k up a n d prov i d e s B usi n e ss C on ti n ui ty f or c ri ti c a l a ppl i c a ti on s Industry Standard PCI E x p re ss M i ni c ard RSSI / Network L E D s D i ag no s ti c s and M o ni to r i ng P o r t S er i al c o nnec ti o n R J 4 5 Antenna O p ti o ns TNC Antenna Co nnec to r s Supports h i g h spe e d 3 G Sta n d a rd s C D M A - E V D O R e v -A, G SM - H SD P A P ri m a ry a ppl i c a ti on s: AN B a c k up a n d I n sta n t/ M ob i l e C on n e c ti v i ty E m b e d d e d 3 G M od e m - P C I E x pre ss M i n i c a rd f orm f a c tor Supporte d on C i sc o 1 8 4 1 / 2 8 0 0 / 3 8 0 0 Se ri e s R oute rs ork i n g w i th l a rg e n um b e r of m a j or c a rri e rs (Sprint, Verizon & Cingular, T elef onic a, O range, Vod af one, M T N -S. A f ric a, SK T elec om - S. K orea) 16 C i sc o 8 8 0 3G F e a t u r e H i g h l i g h t s P r o v i d e s b r o a d b a n d A N c o n n e c t i v i t y o v e r H i g h S p e e d 3 G i r e l e ss N e t w o r k s C i sc o b r a n d e d 3 G E x p r e ssc a r d su p p l i e d b y S i e r r a i r e l e ss. E M 5 9 7 e ( E V D O ) o r E M 8 8 0 e ( U M T S / H S P A ) C e l l u l a r i n t e r f a c e b a se d o n t h e a sy n c se r i a l i n t e r f a c e a n d D D R i n C i sc o I O S D i a g n o st i c p o r t ( P o st F C S su p p o r t ) C i sc o I O S C L I -b a se d m o d e m a c t i v a t i o n I n d e p e n d e n t m o d e m f i r m w a r e u p g r a d e A u t o m a t i c b e st n e t w o r k se l e c t i o n EVDO RevA EVDO Rev0 1 X RT T H S P A U M T S EDG E G P RS w w w. c i s c o. c om/ g o/ 3g f or 3G modem op ti ons and more i nf o 3G modem and external antennae are b u ndled w i th th e 8 8 0 s eri es 3G S K U s, f ac tory op ti on only C h oi c e of 3G modem s p ares S of tw are loc k i ng A nti -th ef t s ec u ri ty b rac k et H S P A modems orderab le 1 0 / 9 C D M A modems orderab le 1 0 / 30 17 A X P T e c h n i c a l O v e r v i e w D edi c at ed A p p l i c at i on res ourc es C i sc o I SR C P U, M e m o r y, S t o r a g e S t an dards B as ed H os t i n g i n f ras t ruc t ure H a r d e n e d C i sc o L i n u x O L i n u x V se r v e r sa n d b o x i n g AU X IOS C on f i g u ra ti on on i tori n g E v en t T ri g g ers C on trol P l a n e D a ta P l a n e G E -1 G E -2 IOS Interface ( C/ C+ + ) Ap p A X P M P er l / P y th o n o d u l e J av a Ap p l i c ati o n O S G I J av a V i r tu al i z ed O S V i r tu al i z ed O S E x t e n s i b l e IOS-l i k e C L I Cis c o L inux O S Logging/Debugging facilities A ddi t i on al Feat ures : S t a n d a r d p r o g r a m m i n g su p p o r t I S R se r i a l p o r t v i r t u a l i z a t i o n M o n i t o r i n g, C o n f i g u r a t i o n, a n d E E M A P I s S eri al D evi c e 18 6
M M E Cisco In t eg ra t ed V id eo S u rv eilla n ce T h e C i sc o I n te g ra te d V i d e o Surv e i l l a n c e Sol uti on prov i d e s a c ost e f f e c ti v e w a y to d e pl oy g l ob a l l y a c c e ssi b l e surv e i l l a n c e to y our re m ote si te s Integrated Network Video Recorder Integrated A nal og Video G ateway A nalog V i deo Gatew ay of f ers analog v i deo i nterf ac e f or I P V i deo S u rv ei llanc e S olu ti ons 1 6 A nalog V i deo P orts : M J P E G, M P E G-4, H. 2 6 4 8 C ontac t C los u re P orts 2 R S -4 8 5 p orts f or dev i c e P an/ T i lt/ Z oom c ontrol I nteg rated N etw ork V i deo R ec order U ni f i ed i nterf ac e i nto I P C ameras and A nalog dev i c es ( th rou g h th e A V G) M anag e, v i ew and arc h i v e s u rv ei llanc e data f or u p to 6 4 dev i c es s i mu ltaneou s ly E xp and th e s u rv ei llanc e s y s tem f lexi b i li ty w i th U ni f i ed C ommu ni c ati ons K ey B enef i ts Single Box Solution for Unified C om m unic a tion a nd Surv eilla nc e R em ote a c c es s to s urv eilla nc e d a ta for a la rm / ev ent v a lid a tion F ully s urv iv a b le s olution 19 A A S A F u ll P res erv ati on of I P and T C P H eader I nf ormati on B Cisco AAS Client o r k s ta tio n AN R o u ter L AN S w itc h F ir ew a ll F ir ew a ll AN R o u ter IP N e t w o r k S er v er E d g e N M Co r e AE R o b u s t A p p l i c a t i o n A d a p t e r s t o Of f l o a d A N a n d D a t a C e n t e r L o c a l Se r v i c e s T r a n s p o r t a n d F l o w Op t i m i z a t i o n s D a t a R e d u n d a n c y E l i m i n a t i o n A c c e l e r a t e s A L L T C P T r a f f i c D a t a C e n t e r Sc a l a b i l i t y 20 P L S P L S / V P N D M V P N 21 7
O O m H e t e n t e r p r i se p r o b l e e m Mijn b r a nc h k a nt o r e n o e t e n v e r b ind ing h e b b e n m e t h o o f d k a nt o o r d a t a c e nt e r... 22 V e r sc h i l l e n d e si t u a t i e s v e r e e n o p e n ne t w e r k ( I nt e r ne t ) V P N, D MV P N v e r e e n g e s l o t e n ne t w e r k v a n e e n p r o v id e r. Z e l f g e s c h e id e n g e b r u ik e r s g r o e p e n MP L S / V P N... 23 D y n a m i c M u l t i p o i n t V P N [ 1 ] G e w o o n G R E + I P s e c V e e l c o nf ig u r a t ie w e r k [ 2 ] D MV P N S im p e l c e nt r a a l c o nf ig u r a t ie f il e S im p e l b r a nc h e s t o e v o e g e n B r a nc h e s k u nne n d ir e c t p r a t e n... 24 8
M D y n a m i c M u l t i p o i n t V P N ( 1 ) Spok e A se n d s a n N H R P q ue ry pa c k e t to th e N H R P se rv e r. Sp o k e B P C -> eb e b Sp o k e A... P C 25 D y n a m i c M u l t i p o i n t V P N ( 2) Spok e A re c e i v e s th e N H R P re spon se a n d e n te rs i t i n i ts N H R P ta b l e. T h i s tri g g e rs I P se c to c re a te a tun n e l d i re c tl y to B Sp o k e B e b Sp o k e A... P C = D y na m ic & T em p o r a r y S p o k e-to -s p o k e I P s ec tu nnels 26 P L S v a n p r o v i d e r MPLS Network PE P CPE 27 9
O M M B e n e f i t s o f M P L S / B G P V P N s C onnec ti on-o ri ented V P N T op olog y O u C u d f M u Q S p p f S p S u p p b b y Private, connectionless IP VPNs tstand ing scalab ility stom er IP ad ressing reed om ltip le os classes ecu re su ort or intranets and ex tranets im lif ied VPN Provisioning ort over any access or ack one tech nolog V P N A V P N B V P N C V P N B V P N C P L S b as ed C onnec ti onles s V P N T op olog y V P N A V P N C V P N B V P N A V P N B V P N C V P N A VPN C V P N B V P N A VPN A VPN C VPN B V P N A V P N B V P N C V P N A V P N B V P N C 28 Zelf g es c h ei d en g eb r u i k er s g r o ep en 1 t o Ma ny : O ne ne t w o r k s u p p o r t s m a ny v ir t u a l ne t w o r k s u ts ou rc ed I T D ep artment erg ed N ew C omp any S eg reg ated D ep artment ( R eg u latory C omp li anc e) Virtual Virtual Virtual P h y s ic al N e tw o rk 29 Z e l f g e sc h e i d e n g e b r u i k e r sg r o e p e n M P L S / V P N p ri m a om geb ru i k ers ges c h ei den te h ou den op Cam p u s en A N N aar D atac enter: F i rewal l geeft toegang tot gem eens c h ap p el i j k e s ervi c es 30 10
Q & A 31 11