Beruflich Dokumente
Kultur Dokumente
2E1623
Data Links and Local
Area Networks
Goal
2
Private Network
• “Leased lines”
Physical connections provided by operator
3
Virtual Private Network
4
Why Provider Provisioned VPNs?
• Legacy technology
Potentially large investments
5
Traditional Virtual Private Network
service provider
network
6
Separate Technologies
7
Basic Idea
Customer Provider Tunnel
Edge Edge
Access
8
Tunneling
9
Provider Provisioned VPNs
Customer Provider
Edge Edge
Access
10
Why Layer 2 VPNs?
• PPP/HDLC
• ATM, Frame Relay
• SDH/SONET
• “TDM”
TDM bit-streams (T1, E1, T3, E3)
“Structure agnostic”
o Does not consider TDM framing formats
• Ethernet
13
Ethernet VPWS
PSN
PSN
Bridge
• Raw mode
Port to port service
VLAN tags, if any, pass transparently
• Tagged mode
VLAN to VLAN service
Multiple VLANs multiplexed over pseudo wire
14
Ethernet VPWS Encapsulation
LSP label(s) PW label Control word Ethernet frame (without preamble, FCS)
• Control Word
Contains 16-bit sequence number for frame ordering (if
necessary)
• PW label
Identifies psedo wire to which packet belongs
• LSP label(s)
Further MPLS tunnel encapsulation (if necessary)
15
Virtual Private LAN Services (VPLS)
LAN
switch
service
• Layer 2 MPLS virtual private networks, aka Transparent LAN Services (TLS)
• PEs perform additional LAN functions, compared to VPWS
Learning and forwarding based on MAC addresses
Flooding
o Broadcast, multicast and unknown addresses
16
Pseudo Wire Provisioning
• Configuration
Manual or by management tools
• LDP
Point-to-point tunnels
Extensions to identify pseudowires and signal
attributes of pseudowires
o New TLVs, FEC elements, parameters and codes
17
Layer 2 Tunneling Protocol (L2TP)
• L2TPext
IETF working group
• Auto-discovery
A PE discovers which other PEs are in the
VPN
o Tunnels are set up
• Multi-protocol extensions
Associate information related to other
protocols with the next-hop
information
IP
• IP VPN • RFC2547bis
A VPN is a private IP network, with BGP for autodiscovery and
its own IP address space distribution of routes within VPN
So it is not part of the Internet MPLS tunnels between PEs
22
Reading Instructions
23