Download presentation
Presentation is loading. Please wait.
1
Segregated Data Services
November 2007July 2007 July 2007 IEEE P /2491r2doc.: IEEE /xxx2r0 doc.: IEEE /xxx2r0 January 2008 Segregated Data Services Date: Authors: Slide 1 D. Eastlake (Motorola) D. Eastlake (Motorola), G. Hiertz (Philips)Donald Eastlake 3rd, Motorola Donald Eastlake 3rd, Motorola
2
IEEE P802.11-07/2491r2doc.: IEEE 802.11-07/xxx2r0
July 2007 November 2007July 2007 IEEE P /2491r2doc.: IEEE /xxx2r0 doc.: IEEE /xxx2r0 January 2008 Abstract networks frequently handle different communities that need to be provided separate services. This is typically done by VLANs in wired networks. The need varies from distinguishing between “visitors” and “residents” in a home network to much stronger and more complex requirements in enterprise, municipal, and other systems. This presentation provides scenarios and requirement areas for adding segregated data services to IEEE Slide 2 D. Eastlake (Motorola) D. Eastlake (Motorola), G. Hiertz (Philips)Donald Eastlake 3rd, Motorola Donald Eastlake 3rd, Motorola
3
January 2008 Example Scenario Ia (unified infrastructure, single interface end stations) Internet Firewall Protected Services MAP 2 MAP 1 AP 2 Local Station Local Station Local Station Guest Station Local VLAN Guest VLAN Wired Connection Local Station Guest Station D. Eastlake (Motorola)
4
End Point Assesment and Remediation
January 2008 Example Scenario Ib (unified infrastructure, single interface end stations) Other Services End Point Assesment and Remediation MAP 2 MAP 1 AP 2 Healthy Station Healthy Station Healthy Station Healthy Station Infected Station Normal VLAN Assessment and Remediation VLAN Wired Connection New Station D. Eastlake (Motorola)
5
Example Scenario II (diverse mesh, multi-interface mesh points)
January 2008 Example Scenario II (diverse mesh, multi-interface mesh points) Internet Organization 2 Infrastructure Org 2 MPP Organization 1 Infrastructure Org 1 MPP Organization 1 Service Organization 2 Service Local Mesh Service Org 1 MP Org 2 MP Org 2 MP Org 1 MP Org 3 MP Org 2 MP Org 1 MP D. Eastlake (Motorola)
6
Scenario II without segregated data services
January 2008 Scenario II without segregated data services Internet Organization 1 Infrastructure Organization 2 Infrastructure Organization 1 Service Organization 2 Service Org 2 MPP Org 1 MPP Org 1 MP Org 2 MP Org 2 MP Org 1 MP Org 3 MP Org 2 MP Org 1 MP D. Eastlake (Motorola)
7
IEEE P802.11-07/2491r2doc.: IEEE 802.11-07/xxx2r0
July 2007 November 2007July 2007 IEEE P /2491r2doc.: IEEE /xxx2r0 doc.: IEEE /xxx2r0 January 2008 Areas Work Done or in Process? Advertising Availability of Services In , “service” = SSID TGu is adding facilities to advertise multiple SSIDs Transit Frame Labelling Just use VLAN ID in an C-tag (formerly called Q-tag)? New Work? Portal/Link Mapping of Services/VLANs & Priority Must be configurable but should have reasonable defaults Service Location & Multi-Service Connections Primarily relates to mesh and mesh peer links Security Tunnelling a frame through nodes not fully trusted by the endpoints. Slide 7 D. Eastlake (Motorola) D. Eastlake (Motorola), G. Hiertz (Philips)Donald Eastlake 3rd, Motorola Donald Eastlake 3rd, Motorola
8
Advertising Availability of Services
July 2007 November 2007July 2007 IEEE P /2491r2doc.: IEEE /xxx2r0 doc.: IEEE /xxx2r0 January 2008 Advertising Availability of Services Work in progress: General Advertisement Service (GAS) mechanisms in TGu (Interworking with External Networks). Includes SSIDC (SSID Container IE) for transmission of multiple SSIDs (with or without multiple BSSIDs) in a single beacon. Slide 8 D. Eastlake (Motorola) D. Eastlake (Motorola), G. Hiertz (Philips)Donald Eastlake 3rd, Motorola Donald Eastlake 3rd, Motorola
9
Transit Frame Labelling
July 2007 November 2007July 2007 IEEE P /2491r2doc.: IEEE /xxx2r0 doc.: IEEE /xxx2r0 January 2008 Transit Frame Labelling Current Practice: Base standard explicitly permits C-Tag (formerly Q-Tag) in payload ( Annex M) but C-Tag’s priority and VLAN ID fields are currently ignored. Slide 9 D. Eastlake (Motorola) D. Eastlake (Motorola), G. Hiertz (Philips)Donald Eastlake 3rd, Motorola Donald Eastlake 3rd, Motorola
10
Portal/Link Mapping of Services/VLANs & Priority
July 2007 November 2007July 2007 IEEE P /2491r2doc.: IEEE /xxx2r0 doc.: IEEE /xxx2r0 January 2008 Portal/Link Mapping of Services/VLANs & Priority Possible new work: VLAN IDs can probably be coordinated across an ESS. But in a mesh this would be very difficult. So maybe in a mesh the VLAN ID is just a local abbreviation mapped on each peer link hop? Should portals have a configurable mapping, with reasonable defaults, between external priority and TID? Slide 10 D. Eastlake (Motorola) D. Eastlake (Motorola), G. Hiertz (Philips)Donald Eastlake 3rd, Motorola Donald Eastlake 3rd, Motorola
11
Service Location & Multi-Service Connections
July 2007 November 2007July 2007 IEEE P /2491r2doc.: IEEE /xxx2r0 doc.: IEEE /xxx2r0 January 2008 Service Location & Multi-Service Connections Possible new work: A legacy station to AP link is probably limited to carrying one service. But mesh peer links might carry any service that is transiting the mesh… How does a mesh station (which might have just joined the mesh) find a new service that was not previously transiting the mesh but is offered by some other station/portal? Slide 11 D. Eastlake (Motorola) Page 11 D. Eastlake (Motorola), G. Hiertz (Philips)Donald Eastlake 3rd, Motorola Donald Eastlake 3rd, Motorola
12
IEEE P802.11-07/2491r2doc.: IEEE 802.11-07/xxx2r0
July 2007 November 2007July 2007 IEEE P /2491r2doc.: IEEE /xxx2r0 doc.: IEEE /xxx2r0 January 2008 Security Current Practice: Use IPsec or some similar application level mechanism to protect data end-to-end. Possible new work: Optional edge-to-edge security between original source station and final destination station. Slide 12 D. Eastlake (Motorola) Page 12 D. Eastlake (Motorola), G. Hiertz (Philips)Donald Eastlake 3rd, Motorola Donald Eastlake 3rd, Motorola
13
IEEE P802.11-07/2491r2doc.: IEEE 802.11-07/xxx2r0
July 2007 November 2007July 2007 IEEE P /2491r2doc.: IEEE /xxx2r0 doc.: IEEE /xxx2r0 January 2008 Results in Waikoloa 11-07/2941r1 Presented In WNG Standing Committee Vote in WNG Moved, To request the IEEE Working Group to approve and forward to the IEEE 802 Executive Committee the creation of a “WLAN Segregated Data Services” Study Group to consider how best to meet requirements as follows and how best to coordinate such activities with 802.1: labeling frames per service; security of data within a service; and the configuration and management of such services. Moved: Donald Eastlake 3rd Seconded: Guido Hiertz Yes: 22 No: 0 Abstain: 4 (100% approval) Vote In Working Group at Closing Plenary Yes: 19 No: 9 Abstain: 24 (67.85% approval) Slide 13 D. Eastlake (Motorola) Page 13 D. Eastlake (Motorola), G. Hiertz (Philips)Donald Eastlake 3rd, Motorola Donald Eastlake 3rd, Motorola
14
IEEE P802.11-07/2491r2doc.: IEEE 802.11-07/xxx2r0
July 2007 November 2007July 2007 IEEE P /2491r2doc.: IEEE /xxx2r0 doc.: IEEE /xxx2r0 January 2008 Results in Atlanta 11-07/2491r2 Presented In Mid-Week Plenary Motion in Closing Plenary Moved, To approve and forward to the IEEE 802 Executive Committee for their approval the creation of a “WLAN Segregated Data Services” Study Group to consider how best to meet requirements as follows in and how best to coordinate such activities with 802.1: labeling frames per service; security of data within such services; and the configuration and management of such services. Moved: Donald Eastlake 3rd Seconded: Stephen McCann Withdrawn due to several objections that the scope may be to broad and unspecific. (This presentation, 11-08/114 in Taipei, tries to be narrower and more specific.) Slide 14 D. Eastlake (Motorola) Page 14 D. Eastlake (Motorola), G. Hiertz (Philips)Donald Eastlake 3rd, Motorola Donald Eastlake 3rd, Motorola
15
IEEE P802.11-07/2491r2doc.: IEEE 802.11-07/xxx2r0
July 2007 November 2007July 2007 IEEE P /2491r2doc.: IEEE /xxx2r0 doc.: IEEE /xxx2r0 January 2008 References Draft s D1.07 – ESS Mesh Networking Draft u D1.01 – Interworking with External Networks Draft w D3.0, – Protected Management Frames IEEE Standard – WLANs IEEE Standard 802.1Q-2005 – VLANs Slide 15 D. Eastlake (Motorola) D. Eastlake (Motorola), G. Hiertz (Philips)Donald Eastlake 3rd, Motorola Donald Eastlake 3rd, Motorola
Similar presentations
© 2025 SlidePlayer.com. Inc.
All rights reserved.