Manuel d’utilisation Cisco Systems OL-4344-01

32 pages 0.43 mb
Télécharger

Aller à la page of 32

Summary
  • Cisco Systems OL-4344-01 - page 1

    CH A P T E R 1-1 Cisco IP Solution Center, 3.0: MPLS VPN Ma nagement User Guide, 3.0 OL-4344-01 1 About Cisco IP Solution Center Cisco IP Solution Center (ISC) is a car rier- class ne two rk and service-management solution for the rapid and cost-effecti ve deli very of IP services. IP based services target ed to enterprise customers can represent m ...

  • Cisco Systems OL-4344-01 - page 2

    1-2 Cisco IP Solution Center, 3.0: MPLS VPN Manage ment User Guide, 3.0 OL-4344-01 Chapter 1 Ab out Cisco IP Solution Center Overview of ISC The notable ISC network elements are as follows: • ISC Network Mana gement Su bnet The ISC Network Mana gement Su bnet is required when the service pro vider’ s service offering entails the ma nagement of ...

  • Cisco Systems OL-4344-01 - page 3

    1-3 Cisco IP Solution Center, 3.0: MPLS VPN Ma nagement User Guide, 3.0 OL-4344-01 Chapter 1 About Cisco IP Solution Center Overview of ISC It is not required that the set of IPv4 addresses us ed in any two VPNs be mutual ly exclusi v e because the PEs translate IPv4 ad dresses into IPv4 VPN enti ties by using MP-BGP with exte nded community attrib ...

  • Cisco Systems OL-4344-01 - page 4

    1-4 Cisco IP Solution Center, 3.0: MPLS VPN Manage ment User Guide, 3.0 OL-4344-01 Chapter 1 Ab out Cisco IP Solution Center Overview of ISC • VLAN ID Management : ISC allocates VLAN IDs per customer and per Et hernet Service deployed. The service provider can track per Access Domain a pa rticular allocated VLAN ID (per service or per customer or ...

  • Cisco Systems OL-4344-01 - page 5

    1-5 Cisco IP Solution Center, 3.0: MPLS VPN Ma nagement User Guide, 3.0 OL-4344-01 Chapter 1 About Cisco IP Solution Center Overview of ISC Figur e 1 -3 Access Do main Assigned 2. All the network elements hav e been discov ered dur ing the Autodiscov ery process, as well as the network topol ogy (connect i vity betw een sites). 3. The service opera ...

  • Cisco Systems OL-4344-01 - page 6

    1-6 Cisco IP Solution Center, 3.0: MPLS VPN Manage ment User Guide, 3.0 OL-4344-01 Chapter 1 Ab out Cisco IP Solution Center Overview of ISC • Route Distinguisher (RD) pool : The IP subnets advert ised by the CE routers to the PE routers are augmented with a 64-bit pref ix called a route dist inguisher (RD) to make them unique. The resulti ng 96- ...

  • Cisco Systems OL-4344-01 - page 7

    1-7 Cisco IP Solution Center, 3.0: MPLS VPN Ma nagement User Guide, 3.0 OL-4344-01 Chapter 1 About Cisco IP Solution Center Overview of ISC • VRF confi guration (exp ort map, import map, maximum number of routes, VRF and RD o verride, and so forth) • Choice of joining t he VPN as hub or spoke • Choice of interf aces on the PE, CE, and interme ...

  • Cisco Systems OL-4344-01 - page 8

    1-8 Cisco IP Solution Center, 3.0: MPLS VPN Manage ment User Guide, 3.0 OL-4344-01 Chapter 1 Ab out Cisco IP Solution Center Overview of ISC Figur e 1 -4 Defining the User Role The permissions to Create, V ie w , Modify , a nd De lete are enforced for the follo wing resources: PENDING DEPLOYED FUNCTIONAL BROKEN 93827 LOST REQUESTED WAIT DEPLOY FAIL ...

  • Cisco Systems OL-4344-01 - page 9

    1-9 Cisco IP Solution Center, 3.0: MPLS VPN Ma nagement User Guide, 3.0 OL-4344-01 Chapter 1 About Cisco IP Solution Center The Customer’s and Provider ’ s View of the Netw ork The Customer’s and Provider’s View of the Network From the customer’ s point of vie w , they see their internal routers communicating with their customer edge rout ...

  • Cisco Systems OL-4344-01 - page 10

    1-10 Cisco IP Solution Center, 3.0: MPLS VPN Manage ment User Guide, 3.0 OL-4344-01 Chapter 1 Ab out Cisco IP Solution Center The Customer’s and Provider’s View of the Network Figur e 1 -6 Service Provider’ s View of the Networ k About Provider Edge Routers (PEs) At the edge of the provider network are provider ed ge routers (PEs). Wi thin th ...

  • Cisco Systems OL-4344-01 - page 11

    1-11 Cisco IP Solution Center, 3.0: MPLS VPN Ma nagement User Guide, 3.0 OL-4344-01 Chapter 1 About Cisco IP Solution Center The Customer’s and Provider ’ s View of the Netw ork A Multi-VRF CE is unlik e a CE in that there is no label e xchange, no LDP ad jacency , and no labeled packet flo w between the PE a nd the CE. Multi-VR F CE routers us ...

  • Cisco Systems OL-4344-01 - page 12

    1-12 Cisco IP Solution Center, 3.0: MPLS VPN Manage ment User Guide, 3.0 OL-4344-01 Chapter 1 Ab out Cisco IP Solution Center Using Templates to Custom ize Configuration Files Mapping IPsec Tunnels to MPLS VPNs Provisio ning network-based IPsec VPNs in order to map IPsec tunn els to MPLS VPNs in v olves bo th MPLS and IPsec services in IP Solutions ...

  • Cisco Systems OL-4344-01 - page 13

    1-13 Cisco IP Solution Center, 3.0: MPLS VPN Ma nagement User Guide, 3.0 OL-4344-01 Chapter 1 About Cisco IP Solution Center Using Templates to Custom ize Configuration Files The template fi les and data f iles are in XML format. The template f ile, its data f iles, and all templat e configuration f ile fi les are ma pped to a single directory . ? ...

  • Cisco Systems OL-4344-01 - page 14

    1-14 Cisco IP Solution Center, 3.0: MPLS VPN Manage ment User Guide, 3.0 OL-4344-01 Chapter 1 Ab out Cisco IP Solution Center About MPLS VPNs • Audit Existing Services : Checks and ev aluates conf igurat ion of deployed service to see if the service is still in ef fect. • Audit Routing Reports : Checks the VRF f or the VPN on t he PE. This repo ...

  • Cisco Systems OL-4344-01 - page 15

    1-15 Cisco IP Solution Center, 3.0: MPLS VPN Ma nagement User Guide, 3.0 OL-4344-01 Chapter 1 About Cisco IP Solution Center About MPLS VPNs Characteristics of MPLS VPNs MPLS VPNs have the follo wing characteristics: • Multiprotocol Border Gate w ay Protocol-Multiprot ocol (MP-BGP) extension s are used to encode customer IPv4 address pref ix es i ...

  • Cisco Systems OL-4344-01 - page 16

    1-16 Cisco IP Solution Center, 3.0: MPLS VPN Manage ment User Guide, 3.0 OL-4344-01 Chapter 1 Ab out Cisco IP Solution Center About MPLS VPNs VPN Routing and Forwarding Tables (VRFs) The VPN routing and forw arding table (VRF) is a ke y element in the MPLS VPN technolog y . VRFs exist on PEs only (ex cept in the case of a Multi -VRF CE). A VRF is a ...

  • Cisco Systems OL-4344-01 - page 17

    1-17 Cisco IP Solution Center, 3.0: MPLS VPN Ma nagement User Guide, 3.0 OL-4344-01 Chapter 1 About Cisco IP Solution Center About MPLS VPNs Figur e 1 - 9 VRFs for Sites i n Multiple VPNs VRF Implementation Considerations When implementing VPNs and VRFs, Cisco recommend s you keep the foll owin g considerations in mind: • A local V RF inter face ...

  • Cisco Systems OL-4344-01 - page 18

    1-18 Cisco IP Solution Center, 3.0: MPLS VPN Manage ment User Guide, 3.0 OL-4344-01 Chapter 1 Ab out Cisco IP Solution Center About MPLS VPNs • The MPLS VPN backbone relies on the appropr iate Interior Gate wa y Protocol (IGP) that is configured for MPLS, fo r example, EIGRP , or OSPF . When you issue a show ip r oute command on a PE, you see the ...

  • Cisco Systems OL-4344-01 - page 19

    1-19 Cisco IP Solution Center, 3.0: MPLS VPN Ma nagement User Guide, 3.0 OL-4344-01 Chapter 1 About Cisco IP Solution Center About MPLS VPNs ISC chooses route tar get v alues by default, b ut you can o verr ide the automatically assigned R T values if necessary when you first define a CERC in the ISC software (see the “Def ining CE Routing Commun ...

  • Cisco Systems OL-4344-01 - page 20

    1-20 Cisco IP Solution Center, 3.0: MPLS VPN Manage ment User Guide, 3.0 OL-4344-01 Chapter 1 Ab out Cisco IP Solution Center About MPLS VPNs ISC supports multiple CEs pe r site and multiple site s connected to the same PE. Each CERC has unique route targ ets (R T), route distinguisher (RD) and VRF naming. Aft er provisio ning a CERC, it is a good ...

  • Cisco Systems OL-4344-01 - page 21

    1-21 Cisco IP Solution Center, 3.0: MPLS VPN Ma nagement User Guide, 3.0 OL-4344-01 Chapter 1 About Cisco IP Solution Center Security Requirements for MPLS VPNs Security Requirements for MPLS VPNs This section discusses the security requirements for MPLS VPN archit ectures. This section concentrates on protecting the core netw ork against attacks f ...

  • Cisco Systems OL-4344-01 - page 22

    1-22 Cisco IP Solution Center, 3.0: MPLS VPN Manage ment User Guide, 3.0 OL-4344-01 Chapter 1 Ab out Cisco IP Solution Center Security Requirements for MPLS VPNs Gi ven addressi ng and routing separati on across an MPLS core network , MPLS of fers in thi s respect the same security as comparable Layer 2 VPNs, such as A TM or Frame Relay . It is not ...

  • Cisco Systems OL-4344-01 - page 23

    1-23 Cisco IP Solution Center, 3.0: MPLS VPN Ma nagement User Guide, 3.0 OL-4344-01 Chapter 1 About Cisco IP Solution Center Security Requirements for MPLS VPNs Resistance to Attacks It is not possible to d irectly intrude into other VPNs. Ho we v er , i t is possible to attack the MPLS core, and try to attack other VPNs from there. There are two b ...

  • Cisco Systems OL-4344-01 - page 24

    1-24 Cisco IP Solution Center, 3.0: MPLS VPN Manage ment User Guide, 3.0 OL-4344-01 Chapter 1 Ab out Cisco IP Solution Center Security Requirements for MPLS VPNs In practice, access to the PE router o ver the CE-PE int erface can be limi ted to the required rou ting protocol b y using access control lists (A CLs). This limits the point of attack to ...

  • Cisco Systems OL-4344-01 - page 25

    1-25 Cisco IP Solution Center, 3.0: MPLS VPN Ma nagement User Guide, 3.0 OL-4344-01 Chapter 1 About Cisco IP Solution Center Security Requirements for MPLS VPNs For security reasons, a PE router should ne ver accep t a p acket with a label fr om a CE router . Cisco routers implementation is such that pack ets that arri ve on a CE interface with a l ...

  • Cisco Systems OL-4344-01 - page 26

    1-26 Cisco IP Solution Center, 3.0: MPLS VPN Manage ment User Guide, 3.0 OL-4344-01 Chapter 1 Ab out Cisco IP Solution Center Security Requirements for MPLS VPNs • PE-P link: use LDP MD5 authen tication • P-P This pre vents att ackers from spoof ing a peer rout er and introducin g bogus routing infor mation. Secure management is particularly im ...

  • Cisco Systems OL-4344-01 - page 27

    1-27 Cisco IP Solution Center, 3.0: MPLS VPN Ma nagement User Guide, 3.0 OL-4344-01 Chapter 1 About Cisco IP Solution Center Security Requirements for MPLS VPNs From a security point of vie w , the merged VPNs beha ve like one logical VPN, and the security mechanisms described abov e apply now between th e merged VPN and other VPNs. The mer ged VPN ...

  • Cisco Systems OL-4344-01 - page 28

    1-28 Cisco IP Solution Center, 3.0: MPLS VPN Manage ment User Guide, 3.0 OL-4344-01 Chapter 1 Ab out Cisco IP Solution Center Security Requirements for MPLS VPNs The forwarding table for a PE contains only addre ss entries for members of the sa me VPN. The PE rejects requests for addresses not listed in its forw ard ing table. By implementing a log ...

  • Cisco Systems OL-4344-01 - page 29

    1-29 Cisco IP Solution Center, 3.0: MPLS VPN Ma nagement User Guide, 3.0 OL-4344-01 Chapter 1 About Cisco IP Solution Center Security Requirements for MPLS VPNs • Layer 2 VPN Service • MPLS VPN Service • In v entory • IPsec VPN Service • FireW all Service • NA T S e r v i c e • SLA • Deployment Flow Engine • Di sc over y • W ork ...

  • Cisco Systems OL-4344-01 - page 30

    1-30 Cisco IP Solution Center, 3.0: MPLS VPN Manage ment User Guide, 3.0 OL-4344-01 Chapter 1 Ab out Cisco IP Solution Center Security Requirements for MPLS VPNs • The Processing server can be added dynami cally . The W atchdog will discov er their e xistence when you start up ISC. • Each Collection server is responsible for a set of collection ...

  • Cisco Systems OL-4344-01 - page 31

    1-31 Cisco IP Solution Center, 3.0: MPLS VPN Ma nagement User Guide, 3.0 OL-4344-01 Chapter 1 About Cisco IP Solution Center The Four-Tier System Architecture Figur e 1 -12 Redundant Load Balancing Configur ation The Four-Tier System Architecture The Cisco ISC architecture is a four-t ier architecture. The four tiers are: • Client tier The Client ...

  • Cisco Systems OL-4344-01 - page 32

    1-32 Cisco IP Solution Center, 3.0: MPLS VPN Manage ment User Guide, 3.0 OL-4344-01 Chapter 1 Ab out Cisco IP Solution Center The Four-Tier System Architectu re • Contr o l tier The Control T ier consists of the ISC Repository (a relational database) and the task scheduling and distrib ution system. In ISC, th ere is only one Co ntrol tier machin ...

Fabricant Cisco Systems Catégorie Computer Accessories

Les documents que nous recevons du fabricant de l'appareilCisco Systems OL-4344-01 peuvent être divisés en plusieurs groupes. Ceux-ci sont, entre autres:
- dessins techniques Cisco Systems
- manuels d’utilisations OL-4344-01
- fiches produit Cisco Systems
- dépliants
- ou étiquettes-énergie Cisco Systems OL-4344-01
Tous sont importants, mais les informations les plus importantes du point de vue de l'utilisation de l'appareil se trouvent dans le manuel d’utilisation Cisco Systems OL-4344-01.

Un groupe de documents appelé manuels d’utilisation est également divisé en types plus spécifiques, tels que: Manuels d’installation Cisco Systems OL-4344-01, manuels d’entretien, brefs manuels ou manuels de l’utilisateur Cisco Systems OL-4344-01. Selon vos besoins, vous devriez chercher le document dont vous avez besoin. Sur notre site, vous pouvez voir le manuel le plus populaire d’utilisation du produit Cisco Systems OL-4344-01.

Manuels d’utilsiation similaires

Manuel d’utilisation complet de l’appareil Cisco Systems OL-4344-01, quelle devrait-elle être?
Le manuel d’utilisation, également appelé le mode d’emploi, ou tout simplement le manuel, est un document technique destiné à aider à utiliser Cisco Systems OL-4344-01 par les utilisateurs. Des manuels sont généralement écrits par un rédacteur technique, mais dans un langage accessible à tous les utilisateurs Cisco Systems OL-4344-01.

Le manuel d’utilisation complet Cisco Systems, devrait inclure plusieurs éléments de base. Certains d'entre eux sont moins importants, tels que: la couverture / page de titre ou pages d'auteur. Cependant, la partie restante, devrait nous fournir des informations importantes du point de vue de l'utilisateur.

1. Introduction et des conseils sur la façon d'utiliser le manuel Cisco Systems OL-4344-01 - Au début de chaque manuel, nous devrions trouver des indices sur la façon d'utiliser le document. Il doit contenir des informations sur l'emplacement de la table des matières Cisco Systems OL-4344-01, FAQ ou des problèmes les plus fréquents - les points qui sont les plus souvent recherchés par les utilisateurs de chaque manuel
2. Table des matières - index de tous les conseils pour lCisco Systems OL-4344-01 qui peuvent être trouvés dans le document courant
3. Conseils sur la façon d'utiliser les fonctions de base de l’appareil Cisco Systems OL-4344-01 - qui devraient nous aider dans les premières étapes lors de l'utilisation Cisco Systems OL-4344-01
4. Troubleshooting - séquence systématique des activités qui nous aideront à diagnostiquer et ensuite résoudre les principaux problèmes de Cisco Systems OL-4344-01
5. FAQ - questions fréquemment posées
6. Détails du contact Informations sur l'endroit où chercher le contact avec le fabricant / service Cisco Systems OL-4344-01 dans un pays donné, si le problème ne peut être résolu par nous-mêmes.

Avez-vous une question à propos de Cisco Systems OL-4344-01?

Utiliser le formulaire ci-dessous

Si vous n’avez pas résolu votre problème avec Cisco Systems OL-4344-01, avec l'aide du manuel que vous avez trouvé, posez une question en utilisant le formulaire ci-dessous. Si un utilisateur a eu un problème similaire avec Cisco Systems OL-4344-01 il est probable qu’il a envie de partager la façon de le résoudre.

Réécrire le texte de l'image

Commentaires (0)