© 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 1 New LISP Mapping System: LISP-DDT Presentation to LNOG Darrel Lewis on behalf.

Slides:



Advertisements
Similar presentations
LISP Mobile Node LISP Mobile Node draft-meyer-lisp-mn-00.txt Dino Farinacci, Vince Fuller, Darrel Lewis and David Meyer IETF StockholmHiroshima LISP Working.
Advertisements

© 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 1 1 © 2010 Cisco and/or its affiliates. All rights reserved. LISP Mobility.
LIP6 – University Pierre and Marie Curie ALTERNATIVE MOBILE NODE MANAGEMENT IN LISP Dung Phung, Patrick Raad, Stefano Secci LIP6 - UPMC Bureau 25-26/318.
Why do current IP semantics cause scaling issues? −Today, “addressing follows topology,” which limits route aggregation compactness −Overloaded IP address.
1 Introduction to Mobile IPv6 IIS5711: Mobile Computing Mobile Computing and Broadband Networking Laboratory CIS, NCTU.
Transitioning to IPv6 April 15,2005 Presented By: Richard Moore PBS Enterprise Technology.
© 2006 Cisco Systems, Inc. All rights reserved.Cisco Public 1 Version 4.0 Implementing IP Addressing Services Accessing the WAN – Chapter 7.
IETF 72 – July 2008 Vince Fuller, Darrel Lewis, Eliot Lear, Scott Brim, Dave Oran, Noel Chiappa, John Curran, Dino Farinacci, and David Meyer LISP Deployment.
Introduction to LISP (not (the (programming ( language))))
Implementing Inter-VLAN Routing
LISP-CONS A Mapping Database Service NANOG 41 David Meyer, Dino Farinacci, Vince Fuller, Darrel Lewis, Scott Brim, Noel Chiappa NANOG 41 October, 2007.
1 draft-fuller-lisp-ddt-01 DDT Security V. Fuller, D. Lewis, V. Ermagan Presenter: Vina Ermagan IETF 83, Paris – March 2012.
LISP MIB draft-lisp-mib-05 Vancouver IETF - LISP WG Gregg Schudel, Amit Jain, Victor Moreno July 2012.
COM555: Mobile Technologies Location-Identifier Separation.
Computer Networks: Domain Name System. The domain name system (DNS) is an application-layer protocol for mapping domain names to IP addresses Vacation.
An Engineering Approach to Computer Networking
NANOG-46 Philadelphia, June 2009 Vince Fuller & Dave Meyer (for the rest of the LISP crew: Noel Chiappa, Dino Farinacci, Darrel Lewis, Andrew Partan, and.
MOBILITY SUPPORT IN IPv6
CSEE W4140 Networking Laboratory Lecture 3: IP Forwarding and ICMP Jong Yul Kim
RIPE-59 Lisbon, October 2009 Vince Fuller (for the rest of the LISP crew: Noel Chiappa, Dino Farinacci, Darrel Lewis, Dave Meyer, Andrew Partan, and John.
Ch. 31 Q and A IS 333 Spring 2015 Victor Norman. SNMP, MIBs, and ASN.1 SNMP defines the protocol used to send requests and get responses. MIBs are like.
Cisco Public © 2013 Cisco and/or its affiliates. All rights reserved. 1.
Domain Name System | DNSSEC. 2  Internet Protocol address uniquely identifies laptops or phones or other devices  The Domain Name System matches IP.
Petteri Sirén. Content Preface Locator/ID Separation Protocol (LISP) How LISP works Methods how LISP was studied Test cases Result Summary.
1 Multi-Protocol Label Switching (MPLS). 2 MPLS Overview A forwarding scheme designed to speed up IP packet forwarding (RFC 3031) Idea: use a fixed length.
LISP Mapping Request Format And related topics Joel M. Halpern
National Institute Of Science & Technology Mobile IP Jiten Mishra (EC ) [1] MOBILE IP Under the guidance of Mr. N. Srinivasu By Jiten Mishra EC
NAGing about LISP LISP Designers/Implementors: Dave Meyer, Vince Fuller, Darrel Lewis, Eliot Lear, Scott Brim, Dave Oran, Dana Blair, Noel Chiappa, John.
Implementing IP Addressing Services Accessing the WAN – Chapter 7.
LISP-Multicast draft-farinacci-lisp-multicast-00.txt Dino Farinacci, Dave Meyer, John Zwiebel, Stig Venaas IETF Dublin - July 2008.
LISP BOF, IETF Dublin, July, 2008 Vince Fuller (for the LISP crew) LISP+ALT Mapping System.
EID: RLOC: IRTF MobOpts – Quebec City July
Cisco Global Routing Summit, August, 2008 Vince Fuller (for the LISP crew) Introduction to LISP+ALT.
RIPE Berlin – May, 2008 Vince Fuller (for Dino, Dave, Darrel, et al) LISP: Intro and Update
1 EU SP Security Forum, December, 2008 Vince Fuller (for the LISP crew) Introduction to LISP.
Locator/ID Separation Protocol (LISP) Architecture & Protocols LISP Team: Vince Fuller, Darrel Lewis, Eliot Lear, Scott Brim, Dave Oran, Elizabeth McGee,
1 LISP-DDT update LISP IETF July 2012 Vince Fuller.
LISP Deployment Scenarios Darrel Lewis and Margaret Wasserman IETF 76, Hiroshima, Japan.
IETF/IRTF Chicago - July 2007 Dino Farinacci Dave Meyer Vince Fuller Darrel Lewis LISP Implementation Report.
LISP BOF Update draft-farinacci-lisp-08.txt Dino Farinacci, Dave Meyer, Vince Fuller, Darrel Lewis, Scott Brim, Dave Oran IETF Dublin - July 2008.
LISP-CONS A Mapping Database Service IETF/IRTF - July 2007 Dave Meyer Dino Farinacci Vince Fuller Darrel Lewis Scott Brim Noel Chiappa.
LISP Internet Groper (LIG) LISP Internet Groper (LIG) draft-farinacci-lisp-lig-01.txt Dino Farinacci, Vince Fuller, Darrel Lewis and David Meyer IETF Stockholm/Hiroshima.
Ασύρματες και Κινητές Επικοινωνίες Ενότητα # 10: Mobile Network Layer: Mobile IP Διδάσκων: Βασίλειος Σύρης Τμήμα: Πληροφορικής.
Cisco Confidential © 2010 Cisco and/or its affiliates. All rights reserved. 1 Multicasting within UCS Qiese Dides.
Separating Location from Identification Dino Farinacci March 3, 2008.
Mobile IP 순천향대학교 전산학과 문종식
LISP Document Status Darrel Lewis IETF 77, Concrete Wasteland, CA.
Networking (Cont’d). Congestion Control l Is achieved by informing nodes along a route that congestion has occurred and asking them to reduce their packet.
LISP Map Server LISP WG IETF-74 San Francisco draft-fuller-lisp-ms-00.txt Vince Fuller & Dino Farinacci.
Ch. 31 Q and A IS 333 Spring 2016 Victor Norman. SNMP, MIBs, and ASN.1 SNMP defines the protocol used to send requests and get responses. MIBs are like.
Secure Access and Mobility Jason Kunst, Technical Marketing Engineer March 2016 Location Based Services with Mobility Services Engine ISE Location Services.
COM594: Mobile Technologies Location-Identifier Separation.
1 LISP-DDT implementation status and deployment considerations Vince Fuller/Darrel Lewis, Cisco IETF-85 Atlanta, GA.
November 2008 LISP Implementation Team: Vince Fuller, Darrel Lewis, David Meyer, Dino Farinacci, Andrew Partan, John Zwiebel LISP: Practice and Experience.
IDR WG, IETF Dublin, August, 2008 Vince Fuller (for the LISP crew) LISP+ALT Mapping System.
Routing and Addressing in Next-Generation EnteRprises (RANGER)
Top-Down Network Design Chapter Six Designing Models for Addressing and Naming Copyright 2010 Cisco Press & Priscilla Oppenheimer.
LISP Control Plane for NVO3 <draft-maino-nvo3-lisp-cp-00>
Overlay Network Engine (ONE)
LISP Implementation Report
Draft-ermagan-lisp-nat-traversal-00 Vina Ermagan, Dino Farinacci, Darrel Lewis, Fabio Maino, Jesper Skriver, Chris White Presenter: Vina Ermagan IETF.
LISP BOF, IETF 72 Dublin, July, 2008 Darrel Lewis (for the LISP crew)
Programmable Overlays with VPP
Booting up on the Home Link
draft-ietf-lisp-sec-12
Free Cisco Demo Questions Answers Exam Dumps PDF Realexamdumps.com
IDR WG, IETF Dublin, July, 2008 Vince Fuller (for the LISP crew)
An Engineering Approach to Computer Networking
Computer Networks Protocols
Presentation transcript:

© 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 1 New LISP Mapping System: LISP-DDT Presentation to LNOG Darrel Lewis on behalf of the LISP TEAM

2 The Story So Far  ALT was a really nice starting point because the development effort was minimal – Separated the location of the mapping from the mapping itself –Lack of the use of caching was seen as a feature in enabling mobility –Some growing pains have appeared (more later)  The interface to this mapping system is really key –MR/MS has benefits

3 Some current issues with the ALT  Who runs the ALT network? –What’s the business model? –Should it be rooted at/run by the RIRs? –Who assigns infrastructure AS/Tunnel IPs  How do we administer all these GRE/IPsec tunnels? –Why do this for an Enterprise deployment –How can we update xTRs  Why use a routing protocol and all that – we are using 1% of the features – GRE tunnels are overkill for carrying only map-requests Traceroute over the ALT has always been troublesome

4 xTRs MS/MRs ALT Legend: LISP Sites -> green 1st layer access infrastructure -> blue 2nd layer core infrastructure -> red Duplicate Everything, Per VRF?  It _seems_ logical  But to quote Jesper: “That’s Mad” xTRs MS/MRs ALT xTRs MS/MRs ALT xTRs MS/MRs ALT xTRs MS/MRs ALT

© 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 5 LISP+ALT-IID=0 (that is, LISP-DDT)

6 LISP DDT  LISP Delegated Database Tree – Hierarchy for Instance IDs and for EID Prefixes  DDT Nodes are pre-configured with delegations – DDT Map-Resolvers sends (ECM) Map-Requests – DDT Nodes Return Map-Referral messages  DDT Resolvers resolve the Map-Server’s RLOC iteratively  Replacement for LISP-ALT – Increased Flexibility - Supports LISP Instance IDs, etc. – Simplified Operations – ITRs and ETRs don’t change

7 LISP DDT Map Resolvers  DDT Map Resolvers – Cache Map Requests from ITRs – Query the DDT hierarchy iteratively – Detect Loops/Delegation Errors – Resolve the location of the DDT Map-Server  DDT Map Resolvers thus have state: – Referral Cache – Map-Request Queue

8 LISP DDT Referrals & Their Actions –‘Positive’ Referrals are used to discover a DDT-node’s RLOC for a given EID Prefix »Type 0, NODE-REFERRAL »Type 1, MS-REFERRAL »Type 2, MS-ACK –‘Negative’ referrals are used to indicate other actions: »Type 3, MS-NOT-REGISTERED »Type 4, DELEGATION-HOLE »Type 5, NOT-AUTHORITATIVE

9 DDT-Node Root /0 IID=0 DDT-Node /8 IID=0 DDT Node /16 IID=0 MS DDT-Node /24 IID=0 Setup & Configuration MR Map Request Map Referral Static Delegation Hierarchy Map Reply ETR /24 ETR-MS Registration Configuration and Setup 1 1 1) MR configured with Root, or MS1, RLOC 3 3 3) ETR is registering its EID to the Leaf MS 2 2 2) DDT-1, DDT2, DDT-3, DDT/MS-4 configured children with child prefixes, and authoritative prefixes Ex. DDT-2 Delegates child /16 to MS3 DDT-2 configured authoritative for 10/8 in IID0

10 DDT-Node Root /0 DDT Node /8 DDT Node /16 DDT-Node-4 MS /24 Map Request, Referral, & Reply MR ITR Map Request Map Referral Static Delegation Hierarchy Map Reply ETR-MS Registration ETR /24 First Request Packet Flow 1 1 1) ITR sends MRQ to MR via ECM 2 2 2) MR sends Iterative-MRQ to its statically configured Root DDT-Node via ECM-Like- packet 3 3 3) MS1 Sends a Map Referral to MR informing the MR who is the next DDT-Node (2) to try 4 4 4) MR repeats steps 2 & 3 until it gets to leaf MS/DDT-Node which has the registered ETR (DDT-4) 5 5 5) DDTNode-4 sends Map-Referral to MR with done bit set 7 7 7) ETR sends Map-Reply to the ITR 6 6 6) MS (DDT-4) receives, processes MR and fwd to ETR

11 DDT /0 DDt /8 DDT /16 DDT-4 MS /24 Once MR’s Referal-Cache is Populated 1)MRQ in ECM arrives on MR 2)MR sends MRQ in ECM (possibly double encaped if lisp-sec is used to secure referal path) to Cache’d Leaf-Map-Server (MS-4) 3)MS decaps ECM and then sends Map- Request in new ECM to ETR MS also sends a Map-Referal with Done Bit set back to MR 4)ETR sends Map-Reply to ITR MR ITR Map Request Map Referral Static Delegation Hierarchy Map Reply ETR /24 ETR-MS Registration Steady State

12 DDT Implementation Status  IOS and NXOS implementations complete  Development, and interoperability testing going on now  Beta Network running DDT code  Configuration is pretty simple  Does not include proposed DDT-SEC extensions

13 Static Delegation Hierarchy DDT Beta (IID0) Network Deployment Cisco’s DDT Roots: (Iota-Root) IID: * EID: * arin-ddt.rloc.lisp4.net ripe-ddt.rloc.lisp4.net vxnet-ddt.rloc.lisp4.net MR/MS: EID Aggregates: / :D0:1000::/ :D0:FACE::/ /24 TO MN /24 TO MN isc-mr-ms asp-mr-ms cisco-sjc-mr-ms1 eqx-ash-mr-ms Other DDT Roots IID * EID: * root-verisign.ddt-root.org mu-ddt-root.org ARIN- Region RIPE- Region AP-Region LACNIC- Region Mobile Node Region MR/MS: EID Aggregates: / :D0:2000::/36 l3-london-mr-ms tdc-mr-ms intouch-ams-mr-ms MR/MS: EID Aggregates: / :D0:3000::/36 apnic-mr-ms DDT Node with ‘child referrals’ MR/MS’s / / :d0:1219::/ :d0:120e::/48 asp-isis isc-isis intouch-isis MR/MS: EID Aggregates: / :D0:5000::/36 lacnic-mr-ms asp-isis DDT Beta- Network TLDs IID 0 v4-EID: /16 v6-EID: 2610:D0/32 uninett-ddt.rloc.lisp4.net sj-ddt.rloc.lisp4.net msn-ddt.rloc.lisp4.net Beta Network DDT TLD Iota- root Servers

14 LISP DDT Root Operations  DDT Root is expected to be neutral (vendor and provider agnostic) – –set up non profit for ddt operations/administration?  Current DDT efforts are community based

15 Wrap Up  Questions?