ZXR105900ESeriesCongurationGuide(VPN)
àIfthetypeeldis0,ANeldcoversfourbytes.
àIfthetypeeldis1,ANeldcoverstwobytes.
àIfthetypeeldis2,ANeldcoverstwobytes.
TheRDisonlyusedbetweenPEsandCEstodifferentiateIPv4addressesofdifferent
VPNs.TheingressgeneratesanRDandconvertsthereceivedIPv4routeoftheCEinto
aVPN-IPv4address.BeforeadvertisingtheroutetotheCE,theegressPEconvertsthe
VPN-IPv4routeintoanIPv4route.
MPLSVPNPrinciple
MPLSVPNadoptsL3technology.EveryVPNhasitsownVPN-ID.EveryVPNusercan
onlycommunicatewiththemembersbelongingtothesameVPN,andonlyVPNmembers
canentertheVPN.
InMPLSVPN,theserviceprovider(SP)allocatesaRDtoeveryVPN.TheRDisunique
inSPnetwork.
Forwardingtablecontainsauniqueaddress,calledVPN-IPaddress,whichisformed
throughtheconnectionoftheRDanduserIPaddress.TheVPN-IPaddressisunique
inthenetwork.Theaddresstableisstoredintheforwardingtable.
BGPisaroutinginformationdistributionprotocol,whichusesmulti-protocolextension
andcommonattributestodeneVPNconnectivity.InMPLSVPN,BGPonlyadvertises
messagestothemembersinthesameVPN,andprovidesbasicsecuritybymeansof
trafcsplit.
DataisforwardedbyusingLSP .TheLSPdenesaspecialpaththatcannotbechanged,
toguaranteethesecurity.Suchalabel-basedmodecanprovidecondentialitylikeframe
relayandATM.TheSPassociatesaspecialVPNtoaninterface,andpacketforwarding
isdecidedbyingresslabels.
VPNforwardingtablecontainsalabelthatcorrespondstotheVPN-IPaddress.Thelabel
isusedtosenddatatothecorrespondingdestination.SincethelabelreplacestheIP
address,usercankeepitsownaddressstructure.Thedatacanbetransmittedwithout
NetworkAddressTranslation(NAT).Accordingtothedataingress,thecorresponding
switchwillselectaspecialVPNforwardingtablethatonlycontainsavaliddestination
addressinVPN.RouterselectsaspeciedVPNforwardingtableaccordingtotheingress.
TheVPNforwardingtablecontainsthevaliddestinationaddressesonly.
CEadvertisesroutinginformationontheuser'snetworktothePEbymeansofstaticroute,
defaultroute,routingprotocolsRIP ,OSPF ,IS-ISorBGP .
CEsendstheroutinginformationtoPEbystaticroute,defaultrouterorroutingprotocol,
suchasRoutingInformationProtocol(RIP),OpenShortestPathFirst(OSPF)and
IntermediateSystem-to-IntermediateSystem(IS-IS).
Meanwhileextendedmulti-protocolBGPisusedbetweenPEstotransmitVPN-IP
informationandthecorrespondinglabels(VPNlabel,calledinnerlabelhereinafter).
1-4
SJ-20150114102049-016|2015-03-10(R1.0)ZTEProprietaryandCondential