Operation TF
–Operator TF –
Agenda UDL Operation UDL 13Mbps bandwidth extension IPv4 Routing on UDL Other Routing Issues New network design in SFC Security
UDL Operation
Topics Report –UDL13Mbps extension and UDstation installation done –Keio establish maintenance contracet with UDcast for UDstation and UDbox –Backup UDstation and UDboxes will arrive soon Backup UDStation box –Coming Soon –TBD Later MTU 1500 on UDL –MTU 1452 on UDL should be legacy (SONY Feed problem) –TBD Later Issues on UDstation 13Mbps Performance –Configuration is 13Mbps but actual output by MRTG is around 10Mbps –TBD Later IPv4 routing on UDL –Install Private IPv4 for routing on the UDL (schedule and design) –TBD Later
Backup UDstation and UDbox Expected arrival date Direction of operation Expected topology including backup UDstation
MTU 1500 on UDL Current status –1500 on sfc-udl-feed and ITB ospf6d ipv6 ospf6 mtu 1452 –1452 on others –OSPFv2 with ITB is okay –OSPFv3 with all uses if mtu 1452 definition in ospf6d.conf AI3 Meeting Operator Meeting – RR UDL I/F MTU 1500 – –TS MTU
Issues on UDStation 13Mbps Performance
UDStation 13Mbps Performance TCP tests on UDL: –Multiple wget sessions on SFC RO2: web server is sfc-cpu, output is /dev/null MTU is 1500 Output is around 10Mbps (less than smartbit results)
Comparing the Results iperf TCP results: Around 11Mbps Wget results: Around 10Mbps MRTG Sfc-udl-feed:bge1
Testing direction and announcement Do more tests to confirm –iperf vs wget –Smartbit UDP vs iperf UDP If wget or iperf is less than Smartbit: –Why? –Contact UDcast? Use tcpdump, then gets more accurate number UDL maybe blocked for testing
IPv4 routing on UDL
Routing for AIT and ITB BDL bandwidth changes due to UDL 13Mbps migration –SFC-ITB and SFC-AIT are 128kbps OSPFv2 is running on UDL Neighbor: ITB, AIT should be neighbor, too. Prefer routes via UDL than BDL
Install Private IPv4 for routing on the UDL Background Discussion Design Schedule
Other Routing Issues
SFC installed a Cisco Router SFC installed Cisco with 5 I/Fs Show current status and changes made in the routing /topology
Connection to WIDE Fujisawa NOC AI3 switchWIDE switch gsr1. fujisawa sfc-gate :d30:101:4:: :d30:101:4::1 100-TX Tagged VLAN: 31,49,140 foundry1 S3/23 fa0/1 fa0/29 sfc-c :d30:101:4::3 1G-SX Tagged VLAN: 31,49,140 Cisco :d30:101:4::4 ? ? BGP backup BGP MAIN ? gi0/2 gi0/1 vlan 200 gi0/2 vlan 140 gi0/3 vlan 49 fa5/0 vlan 31
M6bone Current status: –Tunnel with RENATER using sfc-c7200-gate –Failure on advertising AI3 prefix to RENATER Trouble shooting is on-going Next: –Move c7200 to AI3 rack –BGP peers Fujisawa cisco –Push APAN-JP and TEIN2 to activate PIM- SM and MBGP
FreeBSD-specific Issues Routing socket issue FreeBSD 4.10 ~ –Kernel doesnt inform all route deletes if too many deletes in a small period Ex: route flush –Result: Zebra doesnt reinstall all routes deleted by, e.g., route flush Husni patched zebra code –Already run on some routers in AI3 –Should let others know
Multicast Routing: XORP Issues SOI Asia is using XORP 1.1 –Some bugs. E.g.: doesnt update MRIB if there are changes in kernel Should upgrade to XORP patches –Unpatched XORP 1.3 has next-hop interface problem in MRIB
AI3 SFC Network Middle-term Design
Todos for preparation Show the final topology Show the intermediate topology for the near future (Change topology with current cisco) and discuss routing and addressing
sfc-ro1 -gate sfc-ro2 -gate sfc-udbox sfc-udbox2 C-band BDLs sfc- bridge WIDE NSPIXP6 APAN NAIST sfc-gate sfc-gate2 Sfc-udl-feed
Generic Requirement Less operational cost and more stability –Integrate some PC routers to Cisco routers –Distinguish challenge and stable operation (ex. sfc- udl-feed) Capability of fiber optic connections in backbone Redundancy against hardware troubles –Backup for core routers –Backup for UDstation Interoperability between challenge and stabile operation IPv6 deployment
Less operational cost and more stability Integrate some PC routers to Cisco routers –Decrease the risk for hardware trouble Trials with PC router like sfc-udl-feed v.s backup using Cisco router –Need to clear out the minimum interoperability between challenge and stable operation
Capability of fiber optic connections in backbone For the future operation, routers and switches connecting to the backbone may need gigabit Ethernet interface
Redundancy against hardware troubles Duplicate some important routing entities –sfc-gate –sfc-udl-feed –sfc-sat –sfc-udstation
IPv6 deployment Server upgrade –WEB Cache –DNS –SOI-Asia applications? Routing in the UDL network –IPv6 for all SOI-Asia partners –Private IPv4 for a part of partners BDL partners IPv6-only connection for new RO sites
Security
–Unsrat Open Proxy –Show and confirm the ai3 security policy