Lucy Yong Susan Hares September 20, 2012 Boston

Slides:



Advertisements
Similar presentations
Virtual Links: VLANs and Tunneling
Advertisements

82 nd IETF Taipei1 TRILL over MPLS draft-yong-trill-trill-o-mpls-00 Lucy Yong Donald Eastlake 3rd
MPLS VPN.
Overlay Transport Virtualization (OTV)
© 2006 Cisco Systems, Inc. All rights reserved. MPLS v MPLS VPN Technology Introducing the MPLS VPN Routing Model.
Copyright © 2004 Juniper Networks, Inc. Proprietary and Confidentialwww.juniper.net 1 Multicast in BGP/MPLS VPNs and VPLS draft-raggarwa-l3vpn-mvpn-vpls-mcast-
Copyright © 2004 Juniper Networks, Inc. Proprietary and Confidentialwww.juniper.net 1 E-VPN and Data Center R. Aggarwal
Deployment of MPLS VPN in Large ISP Networks
Juniper Networks, Inc. Copyright © L2 MPLS VPNs Hector Avalos Technical Director-Southern Europe
Network Virtualization Overlay Control Protocol Requirements draft-kreeger-nvo3-overlay-cp-00 Lawrence Kreeger, Dinesh Dutt, Thomas Narten, David Black,
IPv4 - IPv6 Integration and Coexistence Strategies Warakorn Sae-Tang Network Specialist Professional Service Department A Subsidiary.
Transitioning to IPv6 April 15,2005 Presented By: Richard Moore PBS Enterprise Technology.
The Case for Enterprise Ready Virtual Private Clouds Timothy Wood, Alexandre Gerber *, K.K. Ramakrishnan *, Jacobus van der Merwe *, and Prashant Shenoy.
MPLS-VPN/BGP Approach Hari Rakotoranto Technical Marketing Engineer
L3vpn end-system draft Pedro Marques. Overview Defines a mechanism to associate an end- system virtual interface to an L3VPN. – Co-located forwarder:
Network Overlay Framework Draft-lasserre-nvo3-framework-01.
CS Summer 2003 Lecture 14. CS Summer 2003 MPLS VPN Architecture MPLS VPN is a collection of sites interconnected over MPLS core network. MPLS.
CS Summer 2003 Lecture 13. CS Summer 2003 MP_REACH_NLRI Attribute The MP_REACH_NLRI attribute is encoded as shown below:
© 2006 Cisco Systems, Inc. All rights reserved. Implementing Secure Converged Wide Area Networks (ISCW) Module 4: Frame Mode MPLS Implementation.
MPLS L3 and L2 VPNs Virtual Private Network –Connect sites of a customer over a public infrastructure Requires: –Isolation of traffic Terminology –PE,
SMUCSE 8344 MPLS Virtual Private Networks (VPNs).
BGP L3VPN Virtual PE draft-fang-l3vpn-virtual-pe-01
MPLS And The Data Center Adrian Farrel Old Dog Consulting / Juniper Networks
Network-based IP VPNs using Virtual Routers Tim Hubbard.
Network based IP VPN Architecture using Virtual Routers Jessica Yu CoSine Communications, Inc. Feb. 19 th, 2001.
© 2006 Cisco Systems, Inc. All rights reserved. MPLS v2.2—5-1 MPLS VPN Implementation Using MPLS VPN Mechanisms of Cisco IOS Platforms.
IGP Multicast Architecture Lucy Yong, Weiguo Hao, Donald Eastlake Andrew Qu, Jon Hudson, Uma Chunduri February 2015 NVO3 Interim Meeting draft-yong-rtgwg-igp-mutlicast-arch-01.
Virtual Subnet : A L3VPN-based Subnet Extension Solution draft-xu-virtual-subnet-10 Xiaohu Xu (Huawei) Susan Hares (Huawei) Yongbing Fan.
NVO3: VPN Interactions (Some initial thoughts) David L. Black, EMC IETF NVO3 BOF – Paris March 28, 2012.
MPLS - 73nd IETF Minneaplis1 Composite Transport Group (CTG) Framework and Requirements draft-so-yong-mpls-ctg-framework-requirement-00.txt draft-so-yong-mpls-ctg-framework-requirement-00.txt.
Networking in the cloud: An SDN primer Ben Cherian Chief Strategy Midokura.
GVPNs: Generalized VPNs using BGP and GMPLS Toolkit draft-ouldbrahim-ppvpn-gvpn-bgpgmpls-06.txt Hamid Ould-Brahim Yakov Rekhter
Draft-bitar-nvo3-vpn-applicability-00.txt Page - 1 Cloud Networking: Framework and VPN Applicability draft-bitar-nvo3-vpn-applicability-00.txt Nabil Bitar.
61st IETF Washington DC November 2004 BGP/MPLS IP Multicast VPNs draft-yasukawa-l3vpn-p2mp-mcast-00.txt Seisho Yasukawa (NTT) Shankar Karuna (Motorola)
Virtual Subnet: A Scalable Cloud Data Center Interconnect Solution draft-xu-virtual-subnet-06 Xiaohu Xu IETF82, TAIWAN.
Virtual Private Networks Warren Toomey. Available WAN Links.
VPN4DC Discussion VPN4DC Team Taipei, Taiwan.
CS 540 Computer Networks II Sandy Wang
IETF 81 Quebec City1 Requirements and Framework of VPN-oriented Data Center Services Ning
Network Virtualization Overlay Use Cases Lucy Yong, Mehmet Toy, Aldrin Isaac, Vishwas Manral, Linda Dunbar July 2013 Berlin Germany draft-ietf-nvo3-use-case-02.
Vic Liu Liang Xia Zu Qiang Speaker: Vic Liu China Mobile Network as a Service Architecture draft-liu-nvo3-naas-arch-01.
VXLAN Nexus 9000 Module 6 – MP-BGP EVPN - Design
1 © OneCloud and/or its affiliates. All rights reserved. VXLAN Overview Module 4.
BGP L3VPN Virtual CE draft-fang-l3vpn-virtual-ce-01 Luyuan Fang Cisco John Evans Cisco David Ward Cisco Rex Fernando Cisco John Mullooly Cisco Ning So.
1MPLS QOS 10/00 © 2000, Cisco Systems, Inc. rfc2547bis VPN Alvaro Retana Alvaro Retana
Network Virtualization Overlay Use Cases Lucy Yong, Mehmet Toy, Aldrin Isaac, Vishwas Manral, Linda Dunbar September 20, 2012 Boston draft-mity-nvo3-use-case.
© 2005 Cisco Systems, Inc. All rights reserved. BGP v3.2—6-1 Scaling Service Provider Networks Scaling IGP and BGP in Service Provider Networks.
Inter-AS Options for NVO3 and BGP/MPLS VPN Weiguo Hao, Lucy Yong, Sue Hares, Robert Raszuk Luyuan Fang, Osama Zia, Shahram Davari, Andrew Qu March 2015.
Network Virtualization Overlays Use Cases draft-timy-nvo3-use-case-01 Lucy Yong Mehmet Toy Aldrin Isaac Vishwas Manral Linda Dunbar Vancouver July 31,
Network Virtualization Overlay Control Protocol Requirements draft-kreeger-nvo3-overlay-cp Lawrence Kreeger, Dinesh Dutt, Thomas Narten, David Black, Murari.
VS (Virtual Subnet) draft-xu-virtual-subnet-03 Xiaohu Xu IETF 79, Beijing.
Inter-AS Option C between NVO3 and BGP/MPLS IP VPN network draft-hao-bess-inter-nvo3-vpn-optionc-00 Weiguo Hao Lucy Yong Susan Hares Nov, 2014 Honolulu.
XRBLOCK IETF 85 Atlanta Network Virtualization Architecture Design and Control Plane Requirements draft-fw-nvo3-server2vcenter-01 draft-wu-nvo3-nve2nve.
Network Virtualization Overlays (NVO3) NVO3 Meeting, IETF 90, Toronto Benson Schliesser Matthew Bocci
Recent Progress in Routing Standardization An IETF update for UKNOF 23 Old Dog Consulting Adrian
EVPN: Or how I learned to stop worrying and love the BGP
IP/MPLS VPN Protocol GAP Analysis For NVO3 draft-hy-nvo3-vpn-protocol-gap-analysis-02 Lucy Yong Susan Hares March 2013 Orlando FL.
MPLS Virtual Private Networks (VPNs)
TRILL DataCenter/Campus/PBB Inter-connect over IP core with BGP
Multicast in BGP/MPLS VPN
Network Virtualization Overlay Use Cases
draft-xu-isis-nvo-cp-00 Xiaohu Xu (Huawei) Saumya Dikshit (Cisco)
Virtual Subnet : A L3VPN-based Subnet Extension Solution
Multicast in Virtual Router-based IP VPNs
Private Network Laid Over ThinCPEs routing area related work
Extending MPLS/BGP VPNs to End-Systems
Kireeti Kompella Juniper Networks
EVPN a very short introduction
IS-IS VPLS for Data Center Network draft-xu-l2vpn-vpls-isis-02
Applicability of EVPN to NVO3 Networks
Presentation transcript:

Lucy Yong Susan Hares September 20, 2012 Boston IP/MPLS VPN Protocol GAP Analysis For NVO3 draft-hy-nvo3-vpn-protocol-gap-analysis-01 Lucy Yong Susan Hares September 20, 2012 Boston

About this Draft Analyze IPMPLS L2/L3VPN protocol applicability and gaps for NVO3 Intend to stay at neutral regarding Should extend and/or simplify the VPN protocols or Develop a new protocol solution for NVO3 The document is organized: IP/MPLS L2/L3 VPN Highlight L2/L3 VPN for NVO3 L2/L3 VPN for Inter DC connection when NVO3 is used Operator Aspects March 28, 2012 IETF NVO3 BOF - Paris

NVO3 Interim Meeting Boston IP/MPLS VPN Highlight PE CE LSP Tunnel IP/MPLS L3VPN Model OSPF eBGP Static iBGP IP/MPLS VPN may be L2 or L3 based Provide the L2 or L3 connectivity among CE sites One PE may support multiple VPNs that are at L2 or L3 VPN traffic is isolated from others & decoupled from backbone network Allows customer to use own address space and address family Carry both unicast and multicast traffic L3VPN supports gateway function and policy, may span across multi ASes CE may be a network site or LANs in general (maybe a host too) PE must be a member in a VPN if the CE needs be in the VPN VPN may use multiple control plane protocols L2VPN: BGP, LDP, data plane learning L3VPN: iBGP, OSPF, eBGP, RIP, Static Route LSP Tunnel: LDP, RSVP-TE (or GRE IP tunnel) September 20, 2012 NVO3 Interim Meeting Boston

NVO3 Interim Meeting Boston What NVO3 Ask Many NVOs are built on a common infrastructure with: Traffic isolation among one another Independent address space in each and isolated from infrastructure’s Flexible VM placement and move from one server to another without physical network limitation (no change on VM addresses when move) No Communication b/w an end system in an overlay and a transport underlay Scalability, security An NVO may be L2 or L3 based where: The End System (TES) may be VM or Server Network Virtual Edge (NVE ) may be on Server or ToR Server may run as a host or a network edge in DC underlying network Interwork with other NVO instances Allow external user to access an NVO VM UN DC Site NVO1 NVO2 NVE TES Tunnel NVO3 Model September 20, 2012 NVO3 Interim Meeting Boston

NVO3 Interim Meeting Boston Quick Comparison Assumption: TES <-> CE, NVE <-> PE , Tunnel b/w NVEs <-> Tunnel b/w PEs Notation: Support ( √ ), May Support (≤) , Not Support(×) , Not Apply (≠) NVO3 Requirements VPN Clarification Traffic Isolation √ Own Address Space Be L2 or L3 based Decouple from underlying transport VPN traffic is decoupled from underlay transport VM Mobility × support cold move in L2VPN, but not hot move Flexible VM placement operation ≠ host placement is at CE site, VPN has no visibility to it NVE on ToR when ToR supports VPN PE function TES and NVE on a Server PE and CE are physically separated VM as TES ≤ via hypervisor Server as TES like CE as a host NVE is on a server that is a host in UN use tunnel? VNI Table support well if NVE is on ToR, may not if NVE on Server Tunneling VPN uses MPLS LSP Tunnel, rarely others September 20, 2012 NVO3 Interim Meeting Boston

NVO3 Interim Meeting Boston Quick Comparison Cont. Notation: Support ( √ ), May Support (≤) , Not Support(×) , Not Apply (≠) NVO3 Requirements VPN Clarification Auto discovery √ NVE discovery Load Balancing ≤ ECMP function in WAN may not be sufficient for NVO3 Broadcast or Multicast Underlying Network Design DC network design may or may not be same as WAN’s Gateway L3VPN gateway cap. may not be sufficient for NVO3, L2VPN has no Multi data plane interworking × Only support one data plane schema Interwork with other NVOs NVO Access externally ×, √ L2VPN does not have it, L3VPN supports extranet access Scalability Depend on the configuration, i.e. NVE is on ToR or on server. Operation Aspect DC operation model may be very different from SP model Clearly, commons and gaps exist between IP/MPLS VPN and NVO3 requirements Sum: √ (10), ≤ (7), × (4), ≠ (3) September 20 2012 NVO3 Interim Meeting Boston

VPN Interconnect DC Underlay Networks IP/MPLS VPN interconnects DC underlay networks VPN does not have the visibility of any overlay networks PE connects to DC GW (as CE) via a local interface or sub-interface PE may run OSPF, eBGP, etc, CE peers with PE only, not remote CEs This enables an NVO to span across DC sites w/o a gateway Overlay tunnels are built between any pair of NVEs directly NVO control plane runs independently from VPN control plane This does not add any new requirement to IP/MPLS VPN VM UN GW DC Site A NVO1 NVO2 PE DC Site B NVO3 IP/MPLS VPN September 20, 2012 NVO3 Interim Meeting Boston

NVO3 Interim Meeting Boston DC NVO Access via a VPN DC NVO may be accessed via an IP/MPLS VPN VPN connects DC NVO and Enterprise sites PE may peer with Enterprise sites VPN CP needs to interwork with NVO CP and Enterprise CP A logical gateway is necessary at a DC GW Be the member of DC NVO and terminate NVO tunnels May perform routing, NAT, policy, firewall functions PE may perform some gateway function too DC GW and PE may be configured with many NVOs for diff. customers This may require VPN enhancement Interworking with NVO Control Plane, and support VM mobility DC Site A WAN VM NVO GW IP/MPLS VPN PE DC Site B Enterprise Site 1 Enterprise Site 2 September 20, 2012 NVO3 Interim Meeting Boston

NVO3 Interim Meeting Boston Acknowledgements Authors like to thank Aldrin Isaac, Ivan Pepeinjak, Yakov Rekhter, John Drake, Joe Halpern, and others on the mailing list for their valuable inputs. September 20, 2012 NVO3 Interim Meeting Boston

NVO3 Interim Meeting Boston Next Step Welcome comments and suggestions draft-hy-nvo3-vpn-protocol-gap-analysis-01 September 20, 2012 NVO3 Interim Meeting Boston