Module 10-Deploy IP-Based MPLS VPN
Module 10-Deploy IP-Based MPLS VPN
Module 8:
Deploying MPLS-Based IP VPNs
1
Agenda
IP/VPN Overview
IP/VPN Deployment Scenarios
Best Practices
2
Objectives
IP/VPN Overview
3
Terminology
4
IP/VPN Technology
5
IP/VPN Technology (cont.)
Separate Routing Table at PE
6
IP/VPN Technology Overview
Virtual Routing and Forwarding (VRF) Instance
7
IP/VPN Technology Overview (cont.)
Virtual Routing and Forwarding (VRF) Instance
8
IP/VPN Technology Overview (cont.)
VPN Control Plane
9
VPN Control Plane = Multi-Protocol BGP (MP-BGP)
10
MP-BGP UPDATE
Message Capture
11
Route-Distinguisher (rd)
12
Route-Target (rt)
13
Label
14
IP/VPN Technology Overview: Control Plane
Putting it all together
15
IP/VPN Technology Overview: Control Plane
Putting it all together (cont.)
16
IP/VPN Technology Overview: Forwarding Plane
17
IP/VPN Technology Overview: Forwarding Plane
Packet Forwarding
18
IP/VPN Technology Overview: Forwarding Plane
MPLS IP/VPN Packet Capture
19
MPLS based IP/VPN Sample Configuration (IOS)
20
MPLS based IP/VPN Sample Configuration (IOS)
(cont.)
21
MPLS based IP/VPN Sample Configuration (IOS)
(cont.)
22
MPLS based IP/VPN Sample Configuration (IOS)
(cont.)
23
MPLS based IP/VPN Sample Configuration (IOS)
(cont.)
24
MPLS based IP/VPN Sample Configuration (IOS)
(cont.)
25
MPLS based IP/VPN Sample Config (IOS-XR)
26
MPLS based IP/VPN Sample Config (IOS-XR)
(cont.)
27
MPLS based IP/VPN Sample Config (IOS-XR)
(cont.)
28
MPLS based IP/VPN Sample Config (IOS-XR)
(cont.)
29
MPLS based IP/VPN Sample Config (IOS-XR)
(cont.)
30
MPLS based IP/VPN Sample Config (IOS-XR)
(cont.)
31
Objectives
32
IP/VPN Deployment Scenarios
1. Multihoming & Load-sharing
2. Hub and Spoke
3. Extranet
4. Internet Access
5. IP/VPN over IP Transport
6. IPv6
7. Multi-VRF CE
8. VRF-Aware NAT
9. VRF-Selection Based
10. Remote VPN Access
11. QoS
12. Multicast VPN
33
1. Multi-homing & Loadsharing of VPN Traffic
34
1. Multi-homing & Loadsharing of VPN Traffic (cont.)
35
1. VPN Fast Convergence—PE-CE Link Failure
36
1. VPN Fast Convergence—PE-CE Link Failure – PIC
Edge Feature
37
2. Hub and Spoke Service
38
2. Hub and Spoke Service
39
2. Hub and Spoke Service: IOS Configuration – Option#1
42
2. Hub and Spoke Service: IOS Configuration – Option#2
(cont.)
43
2. What If Many Spoke Sites Connect to the Same PE
Router?
44
2. Hub and Spoke Service: Half-Duplex VRF
45
MPLS-VPN Deployment Scenarios
3. Extranet VPN
46
3. Extranet VPN – Simple Extranet (IOS Config sample)
All Sites of Both VPN_A and VPN_B Can Communicate with Each Other
47
3. Extranet VPN – Advanced Extranet (IOS Config
sample)
Only Site #1 of Both VPN_A and VPN_B Would Communicate with Each Other
48
MPLS-VPN Deployment Scenarios
4. Internet Access Service to VPN Customers
49
4. Internet Access: Design Options
50
4. Internet Access: Design Options
51
IP/VPN Deployment Scenarios:
5. Providing MPLS/VPN over IP Transport
52
5. Providing MPLS/VPN over IP Transport
53
IP/VPN Deployment Scenarios:
6. IPv6 VPN Service
54
6. IPv6 VPN Service
55
IP/VPN Deployment Scenarios:
7. Providing Multi-VRF CE Service
56
7. Multi-VRF CE aka VRF-Lite
*SubInterfaces —Any Interface Type that Supports Sub Interfaces = Ethernet Vlan, Frame Relay, ATM VCs
57
IP-VPN Deployment Scenarios
8. VRF-Aware NAT
58
8. VRF-Aware NAT
59
8. VRF-Aware NAT Services: Internet Access
60
8. VRF-Aware NAT Services: Internet Access
61
8. VRF-Aware NAT Services: Internet Access
62
MPLS based IP/VPN Service
9. VRF-Selection
63
9. VRF-Selection: Based on Source IP Address
64
10. Remote Access Service
65
10. Remote Access Service: IPSec to MPLS VPN
66
IP/VPN Services:
11. Providing QoS to VPN Customers
67
IP/VPN Services:
12. Multicast VPN
68
Objectives
Best Practices
69
Best Practices (1)
70
Best Practices (2)
71
Project: MAN-E VNPT Hanoi Expansion 2017
72