【正文】
服務(wù)質(zhì)量保證應(yīng)用托管內(nèi)容托管無線互聯(lián)網(wǎng)主機(jī)托管視頻會(huì)議軟交換…從接入層到骨干網(wǎng)業(yè)務(wù)業(yè)務(wù) 匯聚匯聚 點(diǎn)點(diǎn)IP 語音語音數(shù)據(jù)專線數(shù)據(jù)專線互聯(lián)網(wǎng)接入互聯(lián)網(wǎng)接入內(nèi)容推送內(nèi)容推送鐵通城域網(wǎng)鐵通城域網(wǎng)? DSL? 無線? 幀中繼? ATM? 專線? 以太網(wǎng)接入層?長途多業(yè)務(wù)平臺(tái)?長途波分?ATMCRNET核心數(shù)據(jù)網(wǎng)集成的模型集成的模型專注于業(yè)務(wù)開展專注于業(yè)務(wù)開展?城域 DWDM?城域 DPT?SDH多業(yè)務(wù)平臺(tái)?以太網(wǎng)?MSTPPresentation_ID 169。 2023, Cisco Systems, Inc. All rights reserved. 18基于 CRNET全國范圍的 MPLS VPN業(yè)務(wù)CRNET 寬帶數(shù)據(jù)網(wǎng)鐵道部 北京VPN北京總部鐵道部 上海VPN上海分部吉林分部武漢分部廣州分部鐵道部 成都VPNPresentation_ID 169。 2023, Cisco Systems, Inc. All rights reserved. 20多業(yè)務(wù)服務(wù)的具體實(shí)現(xiàn)多業(yè)務(wù)服務(wù)的具體實(shí)現(xiàn)MPLS VPN的安全性Presentation_ID 169。 2023, Cisco Systems, Inc. All rights reserved. 22用戶端設(shè)備 用戶端設(shè)備A用戶 1 A用戶 2?? 使用原有私有地址使用原有私有地址?? 寬帶互連-寬帶互連- 10/100M以太網(wǎng),低成本,高帶寬以太網(wǎng),低成本,高帶寬MPLS VPN 企業(yè)內(nèi)聯(lián)網(wǎng)-用戶內(nèi)部網(wǎng)絡(luò)互連企業(yè)內(nèi)聯(lián)網(wǎng)-用戶內(nèi)部網(wǎng)絡(luò)互連增加虛擬專用網(wǎng) A的路由IP寬帶寬帶 城域城域 網(wǎng)絡(luò)平網(wǎng)絡(luò)平同時(shí)可輕松提供針對(duì)不同業(yè)務(wù)的多同時(shí)可輕松提供針對(duì)不同業(yè)務(wù)的多 VPN服務(wù)服務(wù)如語音,視頻,財(cái)務(wù),人事等如語音,視頻,財(cái)務(wù),人事等Presentation_ID 169。臺(tái)提供互聯(lián)網(wǎng)訪問業(yè)務(wù)。 2023, Cisco Systems, Inc. All rights reserved. 24Classical Inter Access AddressingThe Customer can use private address space.The firewall provides Network Address Translation (NAT) between the private address space and the small portion of public address space assigned to the customer.Private addresses Public addressesPresentation_ID 169。 2023, Cisco Systems, Inc. All rights reserved. 26Central Firewall ServiceTraffic FlowInterInter Access VPNVPNCustomer A CEA1CEA2VPNCustomer B CEB1CEB2CentralFirewall? Traffic between sites of one customer should flow inside the VPN.? Traffic between customers is not allowed。 customer sites are protected by a central firewall.Presentation_ID 169。 2023, Cisco Systems, Inc. All rights reserved. 28Inter Access in a VPN?Benefits:?The provider backbone is isolated from the Inter。 full Inter routing cannot be implemented because of scalability problems.Presentation_ID 169。 2023, Cisco Systems, Inc. All rights reserved. 30Inter Access Through Packet Leaking?Benefits:This method can be implemented over any WAN or LAN media.?Drawbacks:Inter and VPN traffic is mixed over the same link。 2023, Cisco Systems, Inc. All rights reserved. 31Packet Leaking in ActionPEPE InterSite1PEIGSite2Network Serial0VPNA VRF(global)Site1 routesSite2 routesGlobal Table and FIB...IP packetD=Label = 3 IP packetD=IP packetD=Presentation_ID 169。 2023, Cisco Systems, Inc. All rights reserved. 33互聯(lián)網(wǎng)A用戶 1 A用戶 2虛擬專用網(wǎng)路由互聯(lián)網(wǎng)訪問路由增加虛擬專用網(wǎng) B的部分路由互聯(lián)網(wǎng)訪問B用戶 1增加虛擬專用網(wǎng) A的部分路由用戶端設(shè)備 用戶端設(shè)備用戶端設(shè)備在提供企業(yè)內(nèi)聯(lián)網(wǎng),互聯(lián)網(wǎng)訪問業(yè)在提供企業(yè)內(nèi)聯(lián)網(wǎng),互聯(lián)網(wǎng)訪問業(yè)務(wù)基礎(chǔ)上,利用同一線路,統(tǒng)一的務(wù)基礎(chǔ)上,利用同一線路,統(tǒng)一的IP寬帶網(wǎng)絡(luò)平臺(tái)提供企業(yè)外聯(lián)網(wǎng)業(yè)寬帶網(wǎng)絡(luò)平臺(tái)提供企業(yè)外聯(lián)網(wǎng)業(yè)務(wù)。IP寬帶網(wǎng)絡(luò)平臺(tái)寬帶網(wǎng)絡(luò)平臺(tái)MPLS VPN 企業(yè)外聯(lián)網(wǎng)-外部網(wǎng)互連Presentation_ID 169。 2023, Cisco Systems, Inc. All rights reserved. 35運(yùn)營商之運(yùn)營商CustomerISP 不運(yùn)行 MPLSCRNETPE1PE2CE1CE2中經(jīng)網(wǎng) 沈陽 IGP中經(jīng)網(wǎng) 北京 IGP ISP customersASBR1ASBR2ISP customersNetwork = NIPDest=NIPDest=N 1 IPDest=NIPDest=NIPDest=NIPDest=N 2 IPDest=NIPDest=N 1 6 Presentation_ID 169。 2023, Cisco Systems, Inc. All rights reserved. 37運(yùn)營商之運(yùn)營商CustomerISP 運(yùn)行 MPLSVPNCarrier BackbonePE1PE2CE1CE2IPE1IPE2Network = NIPDest=NIPDest=NIPDest=N 12 3 IPDest=N 12 2 IPDest=N 1 6 12 IPDest=N 1 12 IPDest=N 25 12 IPDest=N 7 12 IPDest=N 12 中竟網(wǎng) 沈陽 IGP中經(jīng)網(wǎng) 北京 IGPPresentation_ID 169。 2023, Cisco Systems, Inc. All rights reserved. 39CATV/CNCCRNET網(wǎng)際 MPLS VP