Layer 2 VPN
Layer 2 VPN
Layer 2 VPN
Carrier Ethernet
Services
Tim McSweeney
Product Manager
Layer 2 VPNs & Network Access
Presentation_ID
Cisco Confidential
Agenda - GARR
What Is Driving L2VPNs?
Foundations
MPLS and GMPLS
Pseudo Wires
VPLS Overview
Why Deploy VPLS?
VPLS in a Nutshell
Hierarchical VPLS and Autodiscovery
Manageability and Cisco Service Delivery Models
Presentation_ID
Cisco Confidential
Aggregation
PSN
Aggregation
Access
Internet
VLAN 100
Termination
IP/MPLS
VLAN
200
VLAN 200
Transport
VPWS
Layer 3
Cisco Confidential
L2VPN Taxonomy
L2VPN Models
VPWS
VPLS
L2TPv3
AToM
IP
IP Core
Core
Presentation_ID
MPLS
MPLS Core
Core
Ethernet
Ethernet
Ethernet
Ethernet
Frame
Frame Relay
Relay
Frame
Frame Relay
Relay
ATM
ATM (AAL5
(AAL5 &
& Cell)
Cell)
ATM
ATM (AAL5
(AAL5 &
& Cell)
Cell)
PPP
PPP &
& HDLC
HDLC
PPP
PPP &
& HDLC
HDLC
Ethernet
Ethernet
Cisco Confidential
Customer
Site A
4. LSR switches
packets using
label swapping
PE
P
PE
Cisco Confidential
Customer
Site B
MPLS Encapsulation
One or More Labels Inserted into Packet Header
PPP Header
(Packet over SONET/SDH)
PPP Header
Label
MAC Header
Label
0
1
2
3
0 1 2 3 4 5 6 7 8 9 0 1 2 3 4 5 6 7 8 9 0 1 2 3 4 5 6 7 8 9 0 1
Label 20bits
EXP S
TTL-8bits
Presentation_ID
Cisco Confidential
Source: Cisco MPLS based VPNs: Equivalent to the security of Frame Relay and ATM, Miercom, March 2001,
http://www.miercom.com/_gfx/nav/acrobat.gif
Presentation_ID
Cisco Confidential
GMPLS Overview
GMPLS provides Unified Control Plane across different layers
GMPLS extends MPLS/MPLS-TE control plane
GMPLS extends these control planes to support ANY class of
interfaces (i.e. layers)
Provides Bi-directional LSPs
Cisco Confidential
MPLS Network
G-PE1
PE1
G-PE2
PE2
GMPLS LSP
MPLS LSP
MPLS LSP
Ethernet
Frame
Ethernet
Frame
GMPLS LSP
MPLS
Layer
MPLS
Layer
MPLS
Layer
GMPLS
LSP
Stacks
GMPLS
LSP
Stacks
L1, L2, L3
GMPLS
connection
between PEs
MPLS
Layer
L1, L2, L3
Cisco Confidential
GMPLS/MPLS Integration
Cisco actively involved in private and
public interoperability (for example,
ISOCORE www.iscocore.com)
Main focus: IP/Optical integration proof of
concept and interoperability across
GMPLS/MPLS layers
Optical Dynamic GMPLS LSPs signalled
and advertised in the MPLS layer
L3VPNs, TE, VPLS, PW, Multicast services
running over the GMPLS LSP
If you are interested let us know!!!
GMPLS
available for
customer
evaluation on
Cisco routers
Cisco CRS-1
Cisco 12000
Cisco 7600
GMPLS deployment
Service providers in Japan have done
testing and ready for deployment
Typical services: L3VPN, TE, PW
Presentation_ID
Cisco Confidential
10
Bridged
Ethernet
over
ATM
CE
SP Network
Service
Interworking
EoMPLS
Pseudo Wire
Ethernet example
Ethernet VLAN
Presentation_ID
CE
Cisco Confidential
11
Multipoint plug-and-play
provisioning
OpEx Savings
Presentation_ID
Cisco Confidential
12
Customer
Site
PE
Customer
Site
MPLS
PE
Full Mesh of
Pseudowires
Customer
Site
Cisco Confidential
13
VPLS
VPLS
192.168.11.11/24
192.168.11.1/24
192.168.11.2/24
Hierarchical VPLS
- Two (or More) Tier
Hierarchy
- MPLS or Ethernet
at the Edge
- MPLS Core
H-VPLS
H-VPLS
u-PE
PE-CLE
MTU-s
GE
n-PE
PE-POP
PE-rs
n-PE
PE-POP
PE-rs
ETHERNET EDGE
u-PE
PE-CLE
MTU-s
PW
MPLS CORE
MPLS EDGE
Point-to-Point or Ring
Presentation_ID
Cisco Confidential
14
PE-2
MPLS Network
CE-SITE2
PE-3
CE-SITE3
Cisco Confidential
15
Cisco
7600
VPLS/ MPLS
Cisco
7600
Cisco
7600
City 1
STP Domain
Q-in-Q 14
Cisco
7600
STP
STP
City 3
Q-in-Q 20 Domain
City 2
Q-in-Q 10 Domain
Description:
Customers attach to Regional Metro Ethernet networks
VPLS links the Metro Ethernet Regions
Benefit: Scales to support larger Ethernet deployments
Full mesh for core tier (hub) only
A Comprehensive Solution: Robust, Flexible, Scalable, Manageable
Presentation_ID
Cisco Confidential
16
Centralized DNS
Radius Directory Services
Distributed
BGP
Label Distribution
Protocol
Signaling
Autodiscovery
Configuration Steps
1. Establish BGP sessions &
activate it for the
L2VPN/VPLS address-family
2. Create VPLS instance &
associated interfaces to it
3. (Optional) Establish
import/export rules (or use
the default mode)
Cisco Confidential
17
Presentation_ID
Cisco Confidential
18
LDP
Point-to-Point
Information Only
BGP
Broadcasts All
Information to
All Peers
No Policy
Complex Policy,
Often Changing
Information
Advertised
Can Have
Significant
Churn Due to
Broadcast
Mostly Idle
Presentation_ID
Cisco Confidential
19
Pseudowire Redundancy:
Protects from Key Potential Faults
Packet Switched
Network
PE2a
CE1
CE2a
PE1
Primary
Pseudowire
PE2b
Attachment
Circuit
Attachment
Circuits
CE2b
Redundant
Pseudowire
Presentation_ID
Cisco Confidential
20
AS10
Provider A
AS20
Provider B
Cisco Confidential
21
Inter-Autonomous Systems:
Pseudowire Switching
Switch Points
AS10
Provider A
AS20
Provider B
Cisco Confidential
22
pwvc 11
PE-1
PE-2
pwvc 111
AS 1
pwvc 151
PE-3
AS 2
pwvc 12
Pwvc 112
ASBR-1
attached-circuit 4
attached-circuit 6
pseudo-wire
pseudo-wire
attached-circuit
pseudo-wire
L2 signalling (UNI)
LDP / L2TPv3
LDP/L2TPv3
LDP / L2TPv3
VPWS
VPWS
VPWS
attached-circuit
L2 signalling (UNI)
Each pseudowire segment can independently employ draftmartini or L2TPv3 signaling and encapsulations
The ASBRs are responsible for "cross-connecting" the
pseudowire control channels and pseudowire data planes
Presentation_ID
Cisco Confidential
23
Manageability &
Cisco Service
Delivery Models
Presentation_ID
Cisco Confidential
24
Presentation_ID
Cisco Confidential
25
EoMPLS PW
EoMPLS PW
Ethernet
MPLS-VPN
QinQ
Business
L3 VPN
Business
E-LAN
Ethernet UNI
MPLS NNI
EoMPLS Pseudowire
EoMPLS PW
VPLS
Ethernet UNI
H-VPLS
MPLS NNI
Business
E-LINE
Ethernet UNI
Port, 1:1 VLAN
MPLS NNI
Efficient
Access
Intelligent
Edge
Large Scale
Aggregation
Multiservice
Core
MSE
Access Node
Aggregation Node
E-MSE for MPLS NNI
Distribution Node
MSE
DSL, Ethernet
Presentation_ID
MPLS / IP
Cisco Confidential
IP, MPLS
MPLS
26
VPLS Deployment
Profiles
Presentation_ID
Cisco Confidential
27
Cisco Confidential
28
Presentation_ID
Cisco Confidential
29
Financial (USA)
Deployed VPLS in November 2004
Provides integrated information and technology applications in the
global financial services industry
SP (Brasil)
Developing rollout of triple play services to the DSL and Metro
Ethernet market in the city of So Paulo
Network has independent Layer 2 aggregation domains
interconnected via pseudowires for customers that need to cross
domains
Will use TE and Pseudowire Redundancy on the inter-domain
connections
Presentation_ID
Cisco Confidential
30
Presentation_ID
Cisco Confidential
31
Presentation_ID
Cisco Confidential
32