NORDUnet Nordic Infrastructure for Research & Education LHCone P2P routing without dynamic router configuration Magnus Bergroth
NORDUnet Nordic infrastructure for Research & Education LHC sites
NORDUnet Nordic infrastructure for Research & Education GPN BGP Advertise reachability
NORDUnet Nordic infrastructure for Research & Education BGP Peering eBGP TCP, local IP – remote IP local AS – remote AS
NORDUnet Nordic infrastructure for Research & Education P2P
NORDUnet Nordic infrastructure for Research & Education P2P Single Vlan Point to point Single connection
NORDUnet Nordic infrastructure for Research & Education P2P Full Mesh Vlans Point to point A - B, Vlan 1 B – C, Vlan 2 C – A, Vlan 3
NORDUnet Nordic infrastructure for Research & Education P2P n x subinterface Use the first available unused vlan P2P swap vlan-id if needed
NORDUnet Nordic infrastructure for Research & Education IP single Vlan Full mesh of BGP sessions BGP establish when links goes up.
NORDUnet Nordic infrastructure for Research & Education IP Vlan mesh Vlan tied to site, pre configured ip /31 per Vlan. BGP or static routing with BFD
NORDUnet Nordic infrastructure for Research & Education n x subinterface Other side unknown IP addresses can’t be assigned. Un-numbered not possible with BGP. RIP can advertise reachability over un-numbered interfaces. BFD to faster detect link status
NORDUnet Nordic infrastructure for Research & Education Summary Single Vlan Mesh Vlansn x Vlans ConnectivityOne site at the time Any to anyn sites at the time IP addressing Shared IP space IP peer vlanUn- numbered RoutingBGPBGP, Static with BFD RIP with BFD
NORDUnet Nordic infrastructure for Research & Education Usage of P2P All traffic between sites will use available P2P links
NORDUnet Nordic infrastructure for Research & Education Advertise subset of IP space Statefull firewall kills asymmetric traffic
NORDUnet Nordic infrastructure for Research & Education Filter/Policy based forwarding
NORDUnet Nordic infrastructure for Research & Education Filter/Policy based forwarding
NORDUnet Nordic infrastructure for Research & Education Out of this scope Have software that controls the Border Routers and inserts Policy/Filter based rules. Source IP + port, Destination IP + port pointing to P2P vlan.
NORDUnet Nordic infrastructure for Research & Education Last slide, out of ideas