1 AS-scope (type 11) Opaque LSA Validation ( draft-bryskin-ospf-lsa-type11-validation-00.txt ) Igor Bryskin (Movaz Networks) : Alex.

Slides:



Advertisements
Similar presentations
Multi-Area OSPF Multi-area OSPF networks can be difficult to design, and typically demand more administrative attention than any other popular interior.
Advertisements

OSPF WG - IETF 66 OSPF Protocol Evolution WG Re-Charter Acee Lindem/Cisco Systems.
CCNP 1: Advanced Routing
OSPF Two-part Metrics Jeffrey Zhang Lili Wang Juniper Networks 88 th IETF, Vancouver.
Lonnie Decker Multiarea OSPF for CCNA Department Chair, Networking/Information Assurance Davenport University, Michigan August 2013 Elaine Horn Cisco Academy.
© 2008 Cisco Systems, Inc. All rights reserved.Cisco ConfidentialPresentation_ID 1 Chapter 6: Multiarea OSPF Scaling Networks.
BY MICHAEL SUDKOVITCH AND DAVID ROITMAN UNDER THE GUIDANCE OF DR. GABI NAKIBLY OSPF Security project: Summary.
Routing Security Capabilities draft-zhao-opsec-routing-capabilities-02.txt OPSEC WG, IETF #66.
Instructor & Todd Lammle
OSPF Stub neighbor Draft Faraz Shamim – Cisco Padma Pillay-Esnault – Cisco Khalid Raza – Viptela Andrew Kulawiak – Bank of America John Cavanaugh – 405.
OSPF WG – IETF 70 - Vancouver OSPFv2 Multi-Instance draft-acee-ospf-multi-instance-00.txt Acee Lindem/Redback Networks Abhay Roy/Cisco Systems Sina Mirtorabi/Force10.
OSPF Two-part Metrics Jeffrey Zhang Juniper Networks 90 th IETF, Toronto.
Update to: The OSPF Opaque LSA Option draft-berger-ospf-rfc2370bis Lou Berger Igor Bryskin Alex Zinin
Advanced Juniper Networks Routing
Phased OSPF Link-State Database Synchronization draft-dimitri-ospf-phased-db-sync-00.txt Dimitri Papadimitriou Alcatel-Lucent IETF 79 – Beijing November.
Draft-ospf-non-compatible Mike Dubrovsky. The draft addresses the following problem: Problem: How to introduce non-backward compatible functionality into.
By Alex Kirshon and Dima Gonikman Under the Guidance of Gabi Nakibly.
OSPF Security Vulnerabilities Analysis draft-jones-OSPF-vuln-01.txt IETF 58 – RPSEC Working Group.
OSPF Incremental Link State Database Synchronization (draft-retana-ospf-ils-01) Alvaro Retana, Acee Lindem
1 ELEN 602 Lecture 20 More on Routing RIP, OSPF, BGP.
Unicast Routing Protocols: RIP, OSPF, and BGP
© 2009 Cisco Systems, Inc. All rights reserved. ROUTE v1.0—3-1 Implementing a Scalable Multiarea Network OSPF- Based Solution Configuring and Verifying.
© 2009 Cisco Systems, Inc. All rights reserved. ROUTE v1.0—3-1 Implementing a Scalable Multiarea Network OSPF- Based Solution Lab 3-3 Debrief.
OSPF Two-part Metrics Jeffrey Zhang Juniper Networks 89 th IETF, Landon.
Objectives After completing this chapter you will be able to: Describe hierarchical routing in OSPF Describe the 3 protocols in OSPF, the Hello, Exchange.
IETF 68 Prague: draft-dolganow-ospf-pwe3-ms-pw-ext authors: Alex Zinin (Alcatel-Lucent) Andrew Dolganow (Alcatel-Lucent) Dimitri Papadimitriou (Alcatel-Lucent)
Routing and Routing Protocols Dynamic Routing Overview.
1 CS 4396 Computer Networks Lab Dynamic Routing Protocols - II OSPF.
McGraw-Hill©The McGraw-Hill Companies, Inc., 2000 Chapter 14 Routing Protocols RIP, OSPF, BGP.
OSPF Security Vulnerabilities Analysis draft-ietf-rpsec-ospf-vuln-02.txt IETF 66 – RPSEC Working.
Carl Bergenhem Multi Area OSPF Carl Bergenhem
1 Introducing Routing 1. Dynamic routing - information is learned from other routers, and routing protocols adjust routes automatically. 2. Static routing.
Instructor & Todd Lammle
© 1999, Cisco Systems, Inc OSPF Overview RFC 2328, 2178, 1583.
RIP2 (Routing Information Protocol) Team Agile. Routing Protocols Link State – OSPF – ISIS Distance vector – RIP (version 1 and 2) – IGRP (Cisco Proprietary)
Ogier - 1 OSPF Database Exchange Summary List Optimization draft-ietf-ospf-dbex-opt-00.txt Richard Ogier Presented by Acee Lindem March 19, 2007 IETF 68.
TCP/IP Protocol Suite 1 Copyright © The McGraw-Hill Companies, Inc. Permission required for reproduction or display. Chapter 11 Unicast Routing Protocols.
McGraw-Hill©The McGraw-Hill Companies, Inc., 2000 Chapter 13 Routing Protocols (RIP, OSPF, BGP)
Introduction to OSPF Nishal Goburdhan. Routing and Forwarding Routing is not the same as Forwarding Routing is the building of maps Each routing protocol.
1 Routing Table  The seven fields Mask: for finding (sub)network address of the destination l Host-specific routing: (/32) l Default routing:
1 Multi Topology Routing for OSPFv3 (draft-mirtorabi-mt-ospfv3-00.txt) Sina Mirtorabi
1 Policy-Enabled Path Computation Framework ( draft-bryskin-pce-policy-enabled-path-comp-01.txt ) Igor Bryskin (Movaz Networks) : Dimitri.
Cisco Confidential 1 © 2010 Cisco and/or its affiliates. All rights reserved. Understanding and troubleshooting of Nat address Translation( NAT) and IP.
OSPF Offloading: The HELLO Protocol A First Step Toward Distributed Heterogeneous Offloading Speaker: Mary Bond.
 Development began in 1987  OSPF Working Group (part of IETF)  OSPFv2 first established in 1991  Many new features added since then  Updated OSPFv2.
OSPF Extensions for ASON Routing draft-ietf-ccamp-gmpls-ason-routing-ospf-02.txt IETF67 - San Diego - Nov’06 Dimitri Papadimitriou (Alcatel)
Extensions to OSPFv2 for Advertising Optional Route/Link Attributes draft-mirtorabi-ospf-tag-00.txt Sina Mirtorabi
Inter-area MPLS TE Architecture and Protocol Extensions
OSPF WG – IETF 63 OSPFv3 Graceful Restart Padma Pillay-Esnault Cisco Systems
© 2009 Cisco Systems, Inc. All rights reserved. ROUTE v1.0—3-1 Implementing a Scalable Multiarea Network OSPF-Based Solution Planning Routing Implementations.
PCE 64 th IETF PCE Policy Architecture draft-berger-pce-policy-architecture-00.txt Lou Berger Igor Bryskin Dimitri Papadimitriou.
Cisco Confidential © 2010 Cisco and/or its affiliates. All rights reserved. 1 draft-pillay-esnault-ospf-service-distribution-00.txt Padma Pillay-Esnault.
OSPFv3 John Rullan Cisco Certified Instructor Trainer Thomas A. Edison CTE HS Stephen Lynch Network Architect, CCIE #36243 ABS Technology Architects.
1 OSPF Based L1VPN Auto-Discovery ( draft-bryskin-l1vpn-ospf-auto-discovery-00.txt ) Igor Bryskin (Movaz Networks) : Lou Berger (LabN.
3 rd December 0770 th IETF Meeting ospf-lite draft-thomas-hunter-reed-ospf-lite-00.txt Matthew Ramon Thomas
© 2009 Cisco Systems, Inc. All rights reserved. ROUTE v1.0—3-1 Implementing a Scalable Multiarea Network OSPF- Based Solution Configuring and Verifying.
Release 5.1, Revision 0 Copyright © 2001, Juniper Networks, Inc. Advanced Juniper Networks Routing Module 3: OSPF NSSA.
OSPF Link Overload draft-hegde-ospf-link-overload Shraddha Hegde Hannes Gredler Pushpasis Sarkar.
OSPF (Open Shortest Path First)
Dynamic routing Routing Algorithm (Dijkstra / Bellman-Ford) – idealization All routers are identical Network is flat. Not true in Practice Hierarchical.
Multi Topology Routing (MTR) for OSPF
ISIS Flooding Reduction in MSDC
Chapter 9: Multiarea OSPF
Module Summary Open Shortest Path First (OSPF) protocol is one of the most commonly used link-state IP routing protocols in networking. It is an open standard.
Chapter 9: Multiarea OSPF
Routing With a Link-State Protocol
Chapter 9: Multiarea OSPF
draft-ietf-ospf-te-link-attr-reuse-04
Inter-AS OAM for SR Networks IETF 105, Montreal
Presentation transcript:

1 AS-scope (type 11) Opaque LSA Validation ( draft-bryskin-ospf-lsa-type11-validation-00.txt ) Igor Bryskin (Movaz Networks) : Alex Zinin (Alcatel) : Lou Berger (LabN Consulting, LLC) :

2 Purpose of the document qFix issue in RFC2370 vThere is no way to validate AS-scope (type 11) Opaque LSAs received outside of the LSA originator area qProposed solution reuses the mechanism for validation of AS external route (type 5) LSAs

3 The Problem q[RFC2370] introduces a mechanism for the distribution of application specific information using the OSPF protocol via opaque LSAs. The distribution of opaque LSA could be limited to: vonly immediate neighbors of the originator (LSAs type- 9) vonly OSPF nodes located within the originator's OSPF area (LSAs type-10) vall OSPF nodes within the originator's OSPF domain/AS (LSAs type-11) qThere is no way for OSPF nodes in remote areas to check availability of a type -11 LSA originator vAs there is with AS external route (type-5)

4 Validation of type-5 LSAs qAS external route (type-5) LSAs have also the AS-scope, hence there is a similar problem with their validation qThe problem is addressed via use of area-scope ASBR- summary (type-4) LSAs originated by ABRs for every known ASBR

5 Proposed Solution qApply the same approach used for validation of AS external route (type-5) LSAs as used to validate AS-scope (type-11) opaque LSAs qSome details: vAS-scope opaque LSAs originators must act as ASBRs –To trigger ASBR-summary (type-4) LSAs originated by ABRs (without ABR modification) –Uses current E-bit Set by OSPF nodes that originate AS-scope opaque LSAs In the Options field of Hello packets and LSAs vNode validate received AS-scope (type-11) opaque LSAs via type- 4 LSAs –As with type-5 LSAs, type-11 LSAs only processed if advertising router (ASBR) has a routing table entry

6 Backward Compatibility issues qNone

7 Security Considerations qThe suggested solution reuses the ASBR tracking mechanism that is already employed in basic OSPF for type-5 LSAs. v Applying it to type-11 Opaque LSAs does not create any threats that are not already known for type-5 LSAs.

8 Notes/Next Steps qType-11 Opaque LSAs flooding rules are unchanged qThe suggested solution does not apply for stub-areas qWe propose to make this draft a WG document

9 Thank You