How to secure your job: Implement MPLS VPNs
Agenda
The idea behind this talk
Lessons learned
MPLS - Label Switch Path LSP
MPLS - VPN
MPLS - VPN Routing
MPLS - VPN Forwarding
Service Architecture
Lego-Brick #1: Full-Mesh VPN
Lego-Brick #2: Hub & Spoke VPN
Lego-Brick #3: Conduits
Lego-Brick #4: Adapters
The four Network Building Blocks
Multiple VPNs per Customer
Dial-Up Sites
Standard VPN IAS
Managed Firewall IAS
Managed Firewall IAS for PN
Redundant Load Sharing PN
Disaster Recovery VPN
PN Dial Backup
PartnerNet
How to choose a RD and RT scheme
The use of Route-Reflectors
Traceroute is no longer your friend
A multi ISP enviroment
Customer complains about strange Traceroute results
What a professional troubleshooter told us :-)
The real reason
But how to explain this to a customer?
MPLS-aware traceroute
Configuration Integrity
Secure your PE VTYs!
That’s it!
Email: webmaster@ripe.net