0% found this document useful (0 votes)
18 views

Module 10-Deploy IP-Based MPLS VPN

Uploaded by

thanhloi31122002
Copyright
© © All Rights Reserved
Available Formats
Download as PDF, TXT or read online on Scribd
0% found this document useful (0 votes)
18 views

Module 10-Deploy IP-Based MPLS VPN

Uploaded by

thanhloi31122002
Copyright
© © All Rights Reserved
Available Formats
Download as PDF, TXT or read online on Scribd
You are on page 1/ 72

Project: MAN-E VNPT Hanoi Expansion 2017

Module 8:
Deploying MPLS-Based IP VPNs

1
Agenda

 IP/VPN Overview
 IP/VPN Deployment Scenarios
 Best Practices

2
Objectives

IP/VPN Overview

3
Terminology

4
IP/VPN Technology

5
IP/VPN Technology (cont.)
Separate Routing Table at PE

6
IP/VPN Technology Overview
Virtual Routing and Forwarding (VRF) Instance

7
IP/VPN Technology Overview (cont.)
Virtual Routing and Forwarding (VRF) Instance

8
IP/VPN Technology Overview (cont.)
VPN Control Plane

9
VPN Control Plane = Multi-Protocol BGP (MP-BGP)

10
MP-BGP UPDATE
Message Capture

11
Route-Distinguisher (rd)

12
Route-Target (rt)

13
Label

14
IP/VPN Technology Overview: Control Plane
Putting it all together

15
IP/VPN Technology Overview: Control Plane
Putting it all together (cont.)

16
IP/VPN Technology Overview: Forwarding Plane

17
IP/VPN Technology Overview: Forwarding Plane
Packet Forwarding

18
IP/VPN Technology Overview: Forwarding Plane
MPLS IP/VPN Packet Capture

19
MPLS based IP/VPN Sample Configuration (IOS)

20
MPLS based IP/VPN Sample Configuration (IOS)
(cont.)

21
MPLS based IP/VPN Sample Configuration (IOS)
(cont.)

22
MPLS based IP/VPN Sample Configuration (IOS)
(cont.)

23
MPLS based IP/VPN Sample Configuration (IOS)
(cont.)

24
MPLS based IP/VPN Sample Configuration (IOS)
(cont.)

25
MPLS based IP/VPN Sample Config (IOS-XR)

26
MPLS based IP/VPN Sample Config (IOS-XR)
(cont.)

27
MPLS based IP/VPN Sample Config (IOS-XR)
(cont.)

28
MPLS based IP/VPN Sample Config (IOS-XR)
(cont.)

29
MPLS based IP/VPN Sample Config (IOS-XR)
(cont.)

30
MPLS based IP/VPN Sample Config (IOS-XR)
(cont.)

31
Objectives

IP/VPN Deployment Scenarios

32
IP/VPN Deployment Scenarios
1. Multihoming & Load-sharing
2. Hub and Spoke
3. Extranet
4. Internet Access
5. IP/VPN over IP Transport
6. IPv6
7. Multi-VRF CE
8. VRF-Aware NAT
9. VRF-Selection Based
10. Remote VPN Access
11. QoS
12. Multicast VPN

33
1. Multi-homing & Loadsharing of VPN Traffic

34
1. Multi-homing & Loadsharing of VPN Traffic (cont.)

35
1. VPN Fast Convergence—PE-CE Link Failure

36
1. VPN Fast Convergence—PE-CE Link Failure – PIC
Edge Feature

37
2. Hub and Spoke Service

38
2. Hub and Spoke Service

39
2. Hub and Spoke Service: IOS Configuration – Option#1

Note: Only RD and RT Configuration Shown Here


40
2. Hub and Spoke Service: IOS Configuration – Option#2

Note: Only RD and RT Configuration Shown Here


41
2. Hub and Spoke Service: IOS Configuration – Option#2
(cont.)

42
2. Hub and Spoke Service: IOS Configuration – Option#2
(cont.)

43
2. What If Many Spoke Sites Connect to the Same PE
Router?

44
2. Hub and Spoke Service: Half-Duplex VRF

45
MPLS-VPN Deployment Scenarios
3. Extranet VPN

46
3. Extranet VPN – Simple Extranet (IOS Config sample)

All Sites of Both VPN_A and VPN_B Can Communicate with Each Other

47
3. Extranet VPN – Advanced Extranet (IOS Config
sample)

Only Site #1 of Both VPN_A and VPN_B Would Communicate with Each Other
48
MPLS-VPN Deployment Scenarios
4. Internet Access Service to VPN Customers

49
4. Internet Access: Design Options

50
4. Internet Access: Design Options

51
IP/VPN Deployment Scenarios:
5. Providing MPLS/VPN over IP Transport

52
5. Providing MPLS/VPN over IP Transport

53
IP/VPN Deployment Scenarios:
6. IPv6 VPN Service

54
6. IPv6 VPN Service

55
IP/VPN Deployment Scenarios:
7. Providing Multi-VRF CE Service

56
7. Multi-VRF CE aka VRF-Lite

*SubInterfaces —Any Interface Type that Supports Sub Interfaces = Ethernet Vlan, Frame Relay, ATM VCs
57
IP-VPN Deployment Scenarios
8. VRF-Aware NAT

58
8. VRF-Aware NAT

59
8. VRF-Aware NAT Services: Internet Access

60
8. VRF-Aware NAT Services: Internet Access

61
8. VRF-Aware NAT Services: Internet Access

62
MPLS based IP/VPN Service
9. VRF-Selection

63
9. VRF-Selection: Based on Source IP Address

64
10. Remote Access Service

65
10. Remote Access Service: IPSec to MPLS VPN

66
IP/VPN Services:
11. Providing QoS to VPN Customers

67
IP/VPN Services:
12. Multicast VPN

68
Objectives

Best Practices

69
Best Practices (1)

70
Best Practices (2)

71
Project: MAN-E VNPT Hanoi Expansion 2017

THANK YOU FOR LISTENING !

72

You might also like