GA»Æ½ð¼×

¡°¼«¼ò¡±»ÀР¡¤ È«ÓòÖÇÁª Ø­ GA»Æ½ð¼×м«¼òÁ캽ÏÂÒ»´úÐ£Ô°Íø½¨Éè×êÑлá
date
Ô¤Ô¼Ö±²¥
ÎÞ¸Ð×¼Èë ÈËÎïͳ¹Ü Ø­ RG-SAM+5.X ÐÂÒ»´ú¸ßУAIÈÏ֤ƽ̨°ä²¼
date
Ô¤Ô¼Ö±²¥
GA»Æ½ð¼×¡¤(Öйú¼¯ÍÅ)¹Ù·½ÍøÕ¾
²úÆ·
< ·µ»ØÖ÷²Ëµ¥
²úÆ·ÖÐÐÄ
²úÆ·
½â¾ö¹æ»®
< ·µ»ØÖ÷²Ëµ¥
½â¾ö¹æ»®ÖÐÐÄ
ÐÐÒµ
ºÏ×÷ͬ°é
·µ»ØÖ÷²Ëµ¥
Ñ¡ÔñÇøÓò/˵»°
GA»Æ½ð¼×¡¤(Öйú¼¯ÍÅ)¹Ù·½ÍøÕ¾
GA»Æ½ð¼×¡¤(Öйú¼¯ÍÅ)¹Ù·½ÍøÕ¾ GA»Æ½ð¼×¡¤(Öйú¼¯ÍÅ)¹Ù·½ÍøÕ¾

BGP/MPLS VPN¼¼Êõ°×ƤÊéV1.0

BGP/MPLS IP VPNÊÇÁí±íÒ»ÖÖʵÏÖVPNµÄ·½Ê½£¬Äܹ»ËµËüÊÇÒ»ÖÖ½éÓÚµÚ¶þ²ãºÍµÚÈý²ãËí·ºÍ̸µÄVPN£¬ÕâÖØÒªÊÇÓÉMPLS¾ö¶¨µÄ¡£

  • GA»Æ½ð¼×¡¤(Öйú¼¯ÍÅ)¹Ù·½ÍøÕ¾

    °ä²¼¹¦·ò£º2009-09-25

  • GA»Æ½ð¼×¡¤(Öйú¼¯ÍÅ)¹Ù·½ÍøÕ¾

    µã»÷Á¿£º

  • GA»Æ½ð¼×¡¤(Öйú¼¯ÍÅ)¹Ù·½ÍøÕ¾

    µãÔÞ£º

·ÖÏíÖÁ

GA»Æ½ð¼×¡¤(Öйú¼¯ÍÅ)¹Ù·½ÍøÕ¾
GA»Æ½ð¼×¡¤(Öйú¼¯ÍÅ)¹Ù·½ÍøÕ¾
GA»Æ½ð¼×¡¤(Öйú¼¯ÍÅ)¹Ù·½ÍøÕ¾

ÎÒÏëÆÀÂÛ

1 ¸ÅÊö

 

1.1 MPLS VPN¼¼Êõ²¼¾°

 

    VPN£¨Virtual Private Network£©µÄ¸ÅÏë×îÔçÊÇ´ÓרÏßÒý·¢µÄ¡£ÏȾÙÒ»¸öÀý×Ó×¢Ã÷Ϊʲô±ØÒªVPN£¬ÀýÈçÒ»¸ö¹«Ë¾ÔÚÈ«¹ú¸÷µØ¶¼Óзֹ«Ë¾£¬ÄÇôͨ³£Ëü±ØÐë×âÓÃרÏßʵÏÔìóÒµÄÚ²¿µÄ»¥ÁªÍøÂ磬ÕâÖÖ·½Ê½±ØÒªÔÚÁ½µØ»ò¶à¸öµØÖ·Ö®¼ä×âÓÃÔ¶³ÌÏß·£¬²»ÂÛÊÇ·ñº±¼û¾Ý´«ÊäÕâÌõÔ¶³ÌÏß·¶¼¹Ì¶¨·ÖÅ䣬Óû§Ö§³öµÄ¼ÛÖµºÜ¸ß¡£×¨ÏßÍøÂçÓµÓÐÒÔÏÂÌØµã£º

 

    1. °²È«ÐԸߣ¬Ïß·ΪÓû§×¨Óã¬·ÖÆçÓû§¼äÊÇÎïÀí¸ôÀëµÄ£»
 

    2. ¼ÛÖµ°º¹ó£»
 

    3. ´ø¿íÀË·ÑÑϳÁ£»

 

    ÓÉÓÚרÏßÍøÂçÓµÓеÄһЩ¹Ì³öȱµã£¬VPNµÄÖ÷ÕžÍÊÇͨ¹ý¹«ÓÃÍøÂ罫ÒìµØµÄÍøµã»¥ÁªÊµÏÖÒ»¸ö˽ÓÐÍø¾ÍÏñÓÃרÏßÁª½ÓÆðÀ´µÄÒ»Ñù¡£ÆäʵÏֵķ½Ê½¾ÍÊÇÔÚ¹«ÍøÉϳÉÁ¢Ä³ÖÖ´ó¾ÖµÄÁ´Â·×÷ΪIPµÄËí·½øÐÐÒìµØÍøµã»¥Áª¡£ÔÚ¹«ÍøÉÏʵÏÖVPN £¬Óû§Ö»±ØÒªÖ§³öµ½ÍøÂç·þÎñÌṩÉ̵ı¾µØÏß·ÓöÈ£¬²¢ÇÒÔÚûº±¼û¾Ý´«ÊäʱÄܹ»¶Ï¿ªÏνӽøÒ»²½½Ú¼óÁË¿ªÏú¡£

 

1.2 VPN½ç˵

 

    ¹ËÃû˼Ò壬Ð鹹רÓÃÍø£¨Virtual Private Network£©²»ÊÇÕæµÄרÓÃÍøÂ磬µ«È´¿ÉÄÜʵÏÖרÓÃÍøÂçµÄÖ°ÄÜ¡£ËùνÐé¹¹£¬ÊÇÖ¸Óû§²»ÔÙ±ØÒªÕ¼ÓÐÏÖʵµÄÔ¶³ÌÊý¾ÝÏß·£¬¶øÊÇʹÓ÷þÎñÌṩÉÌÏÖ³ÉÍøÂçµÄÊý¾ÝÏß·£¨Í¨¹ýʹÓÃËí·¼¼Êõ£©¡£ËùνרÓÃÍøÂ磬ÊÇÖ¸Óû§¿ÉÒÔΪ×Ô¼ºÔì¶©Ò»¸ö×îÇкÏ×Ô¼ºÐèÒªµÄÍøÂ磬¾ÍÏñÊÇ˽ÓеÄÍøÂçÒ»Ñù¡£

 

1.3 BGP/MPLS VPN

 

    ÎÒÃÇ֪·ʵÏÖVPNµÄ·½Ê½ÓкöàÖÖ£¬ÀýÈçÓлùÓÚµÚ¶þ²ãËí·ºÍ̸£¨L2TP£©µÄVPN£¬Ò²ÓлùÓÚµÚÈý²ãËí·ºÍ̸£¨ÈçIPSec£©µÄVPN¡£¶øBGP/MPLS IP VPNÊÇÁí±íÒ»ÖÖʵÏÖVPNµÄ·½Ê½£¬Äܹ»ËµËüÊÇÒ»ÖÖ½éÓÚµÚ¶þ²ãºÍµÚÈý²ãËí·ºÍ̸µÄVPN£¬ÕâÖØÒªÊÇÓÉMPLS¾ö¶¨µÄ¡£

 

    ¼ÈÈ»ÊÇVPNÆäËùʵÏÖµÄÖ°ÄÜÒÔ¼°´ïµ½µÄÖ÷Õźʹ«Í³µÄVPNÊÇÒ»ÑùµÄ£¬Ö»ÊÇ»ùÓÚMPLSµÄIP VPNºÍ´«Í³µÄIP VPNÏà±Å×кöàÓÅÊÆ¡£Èç¶ÔÓÚVPNÓû§¶øÑÔ£¬ËüÄܹ»´ó´ó¼ò»¯Óû§µÄÖÎÀí¹¤×÷Á¿£¬²»ÔÙ±ØÒªÊ¹ÓÃרÃŵÄVPNÉ豸£¨ÈçVPN²¦Èë·þÎñÆ÷£©Ö»±ØÒªÊ¹Óô«Í³µÄ·ÓÉÆ÷¾ÍÄܹ»¹¹½¨VPN¡£

 

    ¶ÔÓÚÔËÓªÉ̶øÑÔ£¬Ñ¡È¡MPLS VPNºÜÈÝÒ×ʵÏÖVPNµÄÀ©´ó£¬Í¬Ê±¸øÔËÓªÉÌ´øÀ´¸ü´óµÄÉÌ»ú¡£
 

 

    ÕâÀïÚ¹ÊÍÒ»ÏÂΪʲôÊǽÐBGP/MPLS VPNÄØ £¿ÕâÊÇÓÉÓÚMPLSÀûÓÃÓÚLayer 3µÄVPNÖÐҪʹÓÃBGP×÷ΪMPLSµÄ±êÇ©·Ö·¢ºÍ̸£¬¾ÍºÃ±ÈMPLSÀûÓÃÓÚIPµ¥²¥×ª·¢ÖбØÐëʹÓÃLDP×÷ΪÆä±êÇ©·Ö·¢ºÍ̸£¬Ê¹ÓÃBGPºÍ̸ÔÚ·þÎñÌṩÉÌÍøÂçµÄPEÖ®¼ä»¥»»VPN·ÓÉÒÔ¼°°ó¶¨µÄ±êÇ©¡£

 

2 BGP/MPLS VPN¼Ü¹¹

 

GA»Æ½ð¼×¡¤(Öйú¼¯ÍÅ)¹Ù·½ÍøÕ¾
 

                                  ͼ2-1

 

    ÔÚMPLS VPNµÄÏνÓÄ£ÐÍÖУ¬ÍøÂçÓÉÔËÓªÉ̵ĹǸÉÍøÓëÓû§µÄ¸÷¸öSite×é³É£¬ËùνVPN¾ÍÊǶÔsite¼¯ÖеĻ®·Ö£¬Ò»¸öVPN¾Í¶ÔÓ¦Ò»¸öÓÉÈô¸Ésite×é³ÉµÄ¼¯ÖС£

 

2.1 ÊõÓï

 

ÏÈÒýÈ뼸¸ö¸ÅÏ룺

 

    CE£¨Custom Edge£©£ºÓû§SiteÖÐÖ±½ÓÓë·þÎñÌṩÉÌÏàÁ¬µÄ±ßÔµÉ豸£¬Í¨³£ÊÇ·ÓÉÆ÷
 

 

    PE£¨Provider Edge£©£º¹Ç¸ÉÍøÖеıßÔµÉ豸£¬ËüÖ±½ÓÓëÓû§µÄCEÏàÁ¬

 

    P ·ÓÉÆ÷£¨Provider Router£©£º¹Ç¸ÉÍøÖв»ÓëCEÖ±½ÓÏàÁ¬µÄÉ豸

 

    VPN Site£ºVPNÓû§µÄÕ¾µã£¬ÊÇVPNÖеÄÒ»¸ö¹ÂÁ¢µÄIPÍøÂ磬¸ÃÍøÂçÄÚ²¿×ÔÉíÊÇIP»¥ÁªµÄ£¬µ«ÊÇºÍÆäËüÕ¾µã£¨»òÕßÊÇ×ÓÍø£©Í¨³£À´Ëµ²»Í¨¹ý¹Ç¸ÉÍø²»ÓµÓÐÁ¬Í¨ÐÔ¡£¹«Ë¾×ܲ¿£¬·ÖÖ§»ú¹¹¶¼ÊÇsiteµÄ¾ßÌåÖÆ×Ó¡£CEͨ³£ÊÇVPN SiteÖеÄÒ»¸ö·ÓÉÆ÷»òÈý²ã»¥»»É豸ÉõÖÁÊÇÒ»¸öÖ÷»ú¡£Ò»¸öCEÉ豸×ÜÊDZ»ÒÔΪ´¦ÓÚÒ»¸öµ¥¶ÀµÄÕ¾µã£¬µ«ÊÇÒ»¸öÕ¾µãÄܹ»Í¬Ê±ÊôÓÚ¶à¸öVPN¡£

 

    VRF£ºÃ¿¸öPE¶¼ÊØ»¤ºÍÖÎÀíһϵÁеÄת°ä·¢£¬ ÆäÖÐÒ»¸öת°ä·¢½Ð×ö“ȱʡµÄת°ä·¢”»òÕ߽Гȫ¾Öת°ä·¢”£»ÆäËüµÄת°ä·¢½Ð“VPN ·ÓÉת°ä·¢£¨VPN Routing and Forwarding tables£©”¡£ÈôÊÇÒ»¸ö±¨ÎÄͨ¹ýAC´ïµ½PE£¬¸ÃACûÓÐͬÈκÎVRF¹ØÁªµÄ»°£¬ÄÇô½«Ê¹ÓÃÈ«¾ÖµÄ·ÓɱíΪ¸Ã±¨ÎĵÄÖ÷ÕŵØÖ·²éÕÒ·ÓÉ¡ £Äܹ»µ¥Ò»µÄÀí½âΪ£¬È«¾ÖµÄת°ä·¢´æ·ÅµÄÊǹ«ÍøµÄ·ÓÉ£¨±£ÕÏSPÍøÂçÖÐ×ÔÉíPEºÍPE£¬PEºÍPÖ®¼ä¿ÉÄÜ»¥Í¨£©£¬VRF´æ´¢µÄÊÇVPNÕ¾µãµÄ˽ÓзÓÉ¡£

 

2.2 ×é³ÉµÀÀí

 

    1. MPLS VPNµÄÍøÂç»ú¹ØÓÉ·þÎñÌṩÉÌÀ´ÊµÏÖ¡£ÔÚÕâÖÖÍøÂç»ú¹ØÖУ¬ÓÉ·þÎñÌṩÉÌÏòÓû§ÌṩVPN·þÎñ£¬Óû§¸Ð´¥²»µ½¹«¹²ÍøÂçµÄ´æÔÚ£¬¾ÍÈçͬռÓжÀÁ¢µÄÍøÂç×ÊÔ´Ò»Ñù¡£

 

    2. ͬÑù¶ÔÓÚ·þÎñÌṩÉ̹ǸÉÍøÂçÄÚ²¿µÄ P ·ÓÉÆ÷£¬Ò²¾ÍÊDz»ÓëCE Ö±½ÓÏàÁ¬µÄ·ÓÉÆ÷¶øÑÔ£¬Ò²²»ÖªÂ·ÓÐVPNµÄ´æÔÚ£¬½ö½öÕÆ¹Ü¹Ç¸ÉÍøÄÚ²¿µÄÊý¾Ý´«Êä¡£µ«Æä±ØÐë¿ÉÄÜÖ§³ÖMPLSºÍ̸£¬²¢Ê¹ÄܸúÍ̸¡£

 

    3. ËùÓеÄVPNµÄ¹¹½¨¡¢ÏνӺÍÖÎÀí¹¤×÷¶¼ÊÇÔÚPEÉϽøÐеÄ¡£PEλÓÚ·þÎñÌṩÉÌÍøÂçµÄ±ßÔµ£¬´ÓPEµÄ½Ç¶ÈÀ´¿´£¬Óû§µÄÒ»¸öÁ¬Í¨µÄIP ϵͳ±»ÊÓΪһ¸ösite £¬Ã¿Ò»¸ösiteͨ¹ýCEÓëPEÏàÁ¬£¬site ÊÇ×é³ÉVPNµÄ¸ù»ùµ¥Ôª¡£

 

    4. Ò»¸öVPNÊÇÓɶà¸ösite×é³ÉµÄ£¬Ò»¸ösite Ò²Äܹ»Í¬Ê±ÊôÓÚ·ÖÆçµÄVPN¡£ ÊôÓÚͳһ¸öVPNµÄÁ½¸ösiteͨ¹ý·þÎñÌṩÉ̵Ĺ«¹²ÍøÂçÏàÁ¬£¬VPNÊý¾ÝÔÚ¹«¹²ÍøÂçÉÏ´«²¼£¬±Ø±ØÒª±£ÕÏÊý¾Ý´«ÊäµÄ˽ÓÐÐԺͰ²È«ÐÔ¡£ Ò²¾ÍÊÇ˵£¬Á¥ÊôÓÚij¸öVPNµÄsite·¢ËͳöÀ´µÄ±¨ÎÄÖ»ÄÜת·¢µ½Í¬ÑùÊôÓÚÕâ¸öVPNµÄsite ÀïÈ¥£¬¶ø²»Äܱ»×ª·¢µ½ÆäËûsite ÖÐÈ¥¡£

 

    5. ͬʱ£¬ÈκÎÁ½¸öûÓй²Í¬µÄsite µÄVPN¶¼Äܹ»Ê¹ÓóÁµþµÄµØÖ·¿Õ¼ä£¬¼´ÔÚÓû§µÄ˽ÓÐÍøÂçÖÐʹÓÃ×Ô¼º¶ÀÁ¢µÄµØÖ·¿Õ¼ä£¬¶ø²»ÓÃ˼¿¼ÊÇ·ñÓëÆäËûVPN»ò¹«ÍøµÄµØÖ·¿Õ¼äì¶Ü¡£ËùÓÐÕâЩ¾Í¶¼±ØÒªÒÀÀµÓÚVRF£¨VPN Routing & Forwarding Instance£©¡£

 

3 BGP MPLS/VPNµÀÀí

 

ÔÚÒ»¸öMPLS VPNÍøÂçÖУ¬±ØÒª½â¾öÒÔÏÂÈý¸öÎÊÌ⣺

 

    1. ±¾µØÂ·ÓÉì¶ÜÎÊÌ⣬¼´£ºÔÚͳһ̨PEÉÏÈôºÎ·Ö±æ·ÖÆçVPNµÄÒ»Ñù·ÓÉ¡£

 

    2. ·ÓÉÔÚÍøÂçÖеĴ«²¼ÎÊÌ⣬Á½ÌõÒ»ÑùµÄ·ÓÉ£¬¶¼ÔÚÍøÂçÖд«²¼£¬¶ÔÓÚ½Ó¹ÜÕßÈôºÎ·Ö±æ±Ë´Ë £¿

 

    3. ±¨ÎĵÄת·¢ÎÊÌ⣬¼´±ã³É¹¦µÄ½â¾öÁË·ÓɱíµÄì¶Ü£¬µ«Êǵ±PE½Ó¹Üµ½Ò»¸öIP±¨ÎÄʱ£¬ËûÓÖÈôºÎ¿ÉÄÜ֪·¸Ã·¢¸øÄǸöVPN £¿ÓÉÓÚIP±¨ÎÄÍ·ÖÐΨһ¿ÉÓõÄÐÅÏ¢¾ÍÊÇÖ÷ÕŵØÖ·¡£¶øºÃ¶àVPNÖж¼¿ÉÄÜ´æÔÚÕâ¸öµØÖ·¡£

 

3.1 VRF-VPN·ÓÉת·¢Ê·ý£¨VPN Routing & Forwarding Instance£©

 

    Æäʵ½â¾öµØÖ·Ã¬¶ÜµÄÎÊÌ⣬Ҳ´æÔÚһЩ²½Ö裺ʹÓÃACL¡¢IP unnumber¡¢NAT¡£µ«ÕâЩ·¨×Ó¶¼ÊÇ»ùÓÚ“´ò²¹¶¡”µÄ˼Ï룬ûÄÜ´ÓÐÔÖÊÉϽâ¾öÎÊÌâ¡£

 

    ÒªÏë³¹µ×½â¾ö£¬±ØÐëÔÚÀíÂÛÉÏÓÐËùÍ»ÆÆ¡ £Äܹ»´ÓרÓÃPEÉϵõ½ÆôµÏ¡£×¨Ó÷ÓÉÆ÷·½Ê½·Ö¹¤Ã÷È·£¬Ã¿¸öPEÖ»±£Áô×Ô¼ºVPNµÄ·ÓÉ¡£PÖ»±£Áô¹«ÍøÂ·ÓÉ¡£¶ø´Ë¿ÌµÄ˼·ÊÇ£º½«ÕâЩËùÓÐÉ豸µÄÖ°ÄÜ£¬ºÍÔÚһ̨PEÉÏʵÏÖ¡£
 

 

GA»Æ½ð¼×¡¤(Öйú¼¯ÍÅ)¹Ù·½ÍøÕ¾

                                     Í¼3-1

 

    ÿһ¸öVRFÄܹ»¿´×÷Ðé¹¹µÄ·ÓÉÆ÷£¬ÈçͬÊÇһ̨רÓõÄPEÉ豸¡£¸ÃÐ鹹·ÓÉÆ÷Ô̺¬ÈçÏÂÔªËØ£º

    Ò»ÕŶÀÁ¢µÄ·Óɱí£¬µ±È»Ò²Ô̺¬Á˶ÀÁ¢µÄµØÖ·¿Õ¼ä¡£

 

    Ò»×é¹éÊôÓÚÕâ¸öVRFµÄ½Ó¿ÚµÄ¼¯ÖС£

 

    Ò»×éÖ»ÓÃÓÚ±¾VRFµÄ·ÓɺÍ̸¡£

 

    ¶ÔÓÚÿ¸öPE£¬Äܹ»ÊØ»¤Ò»¸ö»ò¶à¸öVRF£¬Í¬Ê±ÊØ»¤Ò»¸ö¹«ÍøµÄ·ÓÉ±í£¨Ò²½ÐÈ«¾Ö·ÓÉ±í£©£¬¶à¸öVRFÊ·ýÏ໥·ÖÀë¶ÀÁ¢¡£

 

    ÆäʵʵÏÖVRF²¢²»ÄÑÌ⣬¹Ø¼üÔÚÓÚÈôºÎÔÚPEÉÏʹÓÃÌØ¶¨µÄÕ½Êõ¹æ¶¨À´Ð­µ÷¸÷VRFºÍÈ«¾Ö·ÓɱíÖ®¼äµÄ¹ØÏµ¡£

 

3.2 VRFµÄ·ÓÉ·Ö·¢

 

GA»Æ½ð¼×¡¤(Öйú¼¯ÍÅ)¹Ù·½ÍøÕ¾
 

                                   ͼ3-2

 

    ÈçͼÖÐËùʾ£¬ÊôÓÚÒ»¸öVPNµÄsite¿ÉÄܱðÀëÏνӵ½·ÖÆçµÄPEÉÏ¡£ ΪÁ˱£ÕÏVPNµÄÁ¬Í¨ÐÔ£¬ÎÒÃDZØÐëÔÚPEÖ®¼ä»¥»»VPN·ÓÉÐÅÏ¢¡£ VPN·ÓÉÕ¼ÓÐ×Ô¼º¶ÀÁ¢µÄµØÖ·¿Õ¼ä£¬ÕâÖÖ·ÓÉÔÚ·þÎñÌṩÉ̵Ĺ«¹²ÍøÂçÖд«µÝ²»ÄÜѡȡͨ³£µØÖ·½á¹¹£¬²»È»»áÓÉÓÚµØÖ·¿Õ¼äµÄ³Áµþµ¼Ö·ÓɱíµÄ»ìÂÒ£¬¶øÊÇͨ¹ýRDÓëIPµØÖ·Ò»Â·×é³ÉΨһµÄVPN-IPV4µØÖ·½á¹¹À´´«µÝ¡£Í¬Ê±ÔÚPEÖ®¼äÒ²²»ÄÜѡȡͨ³£µÄ·ÓɺÍ̸£¬¶øÊÇͨ¹ý¶ÔBGP×÷¿Ï¶¨µÄÀ©´ó£¬Ê¹ÓöàºÍ̸BGP£¨MultiProtocol BGP£©À´»¥»»VPNÐÅÏ¢¡£ÕâЩ±ÉÈËÒ»²¿·Ý½«»á½²µ½¡£

 

3.3 RD--·Óɱêʶ£¨Route Distinguisher£©ÓëVPN-IPv4µØÖ·

 

    ÔÚÇ°ÃæÌáµ½¹ý£¬PEÖ®¼äͨ¹ý¹«¹²ÍøÂ绥»»VPN·ÓÉ£¬²»ÄÜѡȡͨ³£µÄµØÖ·½á¹¹ºÍ·ÓɺÍ̸¡£Òò¶ø£¬Ê×ÏÈÒýÈëRD£¨Route Distinguisher£©µÄ¸ÅÏë¡£

 

    RDÀ´±êʾÿ¸öVRF¡£ RDÓëVRFÊÇÖðÒ»¶ÔÓ¦µÄ£¬Ã¿Ò»¸öVRF¶¼ÓÐ×Ô¼ºµÄRD£¬RDÔڹǸÉÍøÖÐά³ÖΨһÐÔ£¬ÊÇSiteµÄ±êʶ¡£

 

    PE·ÓÉÆ÷Ö®¼äʹÓÃBGPÀ´°ä²¼VPN·ÓÉ¡£³ß¶ÈBGP¶Ôÿ¸öIPǰ׺ֻÄÜ×°ÖúͰ䲼һ¸ö·ÓÉ¡£ÓÉÓÚÿ¸öVPNÓÐ×Ô¼ºµÄµØÖ·¿Õ¼ä£¬Òâζ×ÅͬÑùµÄIPµØÖ·»á±»ËÁÒâÊýÖ÷ÕÅVPNËùʹÓã¬ÔÚÿ¸öVPNÖÐÕâ¸öµØÖ·°µÊ¾Ò»¸ö·ÖÆçµÄϵͳ¡£ ÕâÑù¾Í±ØÒªÔÊÐíBGP¶Ôÿ¸öVPNµÄÒ»ÑùµÄIPǰ׺Äܹ»×°ÖúͰ䲼¶à¸ö·ÓÉ£¬Í¬Ê±£¬ÒªÊ¹ÓÃÌØ¶¨µÄÕ½ÊõÀ´¾ö¶¨ÄÄÒ»Ìõ·Óɱ»ÄĸösiteËùʹÓá£Îª´Ë£¬¶àºÍ̸BGP ʹÓÃÁËеĵØÖ·×å--VPN-v4µØÖ·¡£

 


GA»Æ½ð¼×¡¤(Öйú¼¯ÍÅ)¹Ù·½ÍøÕ¾

                              ͼ3-3

 

    Ò»¸öVPN-v4µØÖ·ÓÐ12¸ö×Ö½Ú£¬ÆðÍ·ÊÇ8×Ö½ÚµÄRD£¬½ÓÏÂÈ¥ÊÇ4×Ö½ÚµÄIPµØÖ·¡£ÈôÊÇÁ½¸öVPNʹÓÃÒ»ÑùµÄIPµØÖ·£¬PE·ÓÉÆ÷ΪËüÃÇÔö³¤·ÖÆçµÄRD£¬×ª»»³ÉΨһµÄVPN-v4µØÖ·£¬²»»áÔì³ÉµØÖ·¿Õ¼äµÄì¶Ü¡£

 

    ʹÓÃVPN-v4µØÖ·½â¾öÁËVPN·ÓÉÔÚ¹«¹²ÍøÂçÖд«µÝʱµÄµØÖ·¿Õ¼äì¶ÜÎÊÌ⣬µ«ÓÉÓÚÕâÒѾ­²»ÔÙÊÇÔ­ÓеÄIPµØÖ·×åµÄµØÖ·½á¹¹£¬²»Äܱ»Í¨³£µÄ·ÓɺÍ̸Ëù³ÐÔØ£¬Í¬Ê±£¬Ã¿Ò»¸öÓû§ÍøÂç¶¼ÊǶÀÁ¢µÄϵͳ£¬ËüÃÇÖ®¼ä¾­¹ý·þÎñÌṩÉ̵Ä·ÓÉÐÅÏ¢´«µÝʹÓÃIGPºÍ̸ÏÔÈ»ÊDz»ÊʺϵÄ£¬Òò¶øÎÒÃDZØÒª½«BGPºÍ̸×÷¿Ï¶¨µÄÀ©´ó£¬ÓÃËüÀ´³ÐÔØÐµÄVPN-v4µØÖ·×å·ÓÉ£¬Í¬Ê±´«µÝ¸½¼ÓÔÚ·ÓÉÉϵÄRoute TargetÊôÐÔ¡£

 

    ͨ¹ýRDÓëVPN-IPv4µØÖ·£¬½â¾öÁË·ÓÉÔÚÍøÂçÖеĴ«²¼£¬Á½ÌõÒ»ÑùµÄ·ÓÉ£¬¶¼ÔÚÍøÂçÖд«²¼£¬¶ÔÓÚ½Ó¹ÜÕßÈôºÎ·Ö±æ±Ë´ËÎÊÌâ¡£

 

3.4 BGPÀ©´óÓëRoute TargetÊôÐÔ

 

    PEÖ®¼ä»¥»»VPNÐÅÏ¢£¬ÔÚBGPµÄUPDATE±¨ÎÄÖгÐÔØVPN-v4µØÖ·×å·ÓÉ£¬Õâ¾ÍÊǶÔBGP½øÐÐÁËÀ©´óµÄMBGP£¨¶àºÍ̸BGP£©¡£MBGP²»½öÄܳÐÔØIPv4·ÓÉ£¬²¢ÇÒÄܳÐÔØVPN£¬IPv6£¬¶à²¥µÈ·ÓÉ¡£ MBGPÓÐÁ½¸öÖØÒªµÄ¹¤×÷£¬ÎªÂ·ÓÉÖ¸¶¨Ìض¨ÍøÂç²ãºÍ̸µÄÏÂÒ»ÌøºÍNLRI£¨ÍøÂç²ã¿É´ïÐÅÏ¢£©¡£


GA»Æ½ð¼×¡¤(Öйú¼¯ÍÅ)¹Ù·½ÍøÕ¾
 

                                  ͼ3-4

 

    BGPÀ©´ó¼¯ÌåÊôÐÔÊǶԼ¯ÌåÊôÐÔ×öÁËÀ©´ó£¬Ôö´óÁËÖµÓò£¬²¢»®¶¨ÁËÄÚ²¿½á¹¹¡£À©´ó¼¯ÌåÊôÐÔÊÇÒ»¸ö¹ý¶É¿ÉÑ¡ÊôÐÔ£¬ËüÓÉÒ»¸öÀ©´ó¼¯ÌåµÄ¼¯ÖÐ×é³É£¬Ã¿¸öÀ©´ó¼¯ÌåÊÇ8×Ö½ÚµÄÊý¡£Route TargetÊôÐÔÊÇÓÉBGPµÄÀ©´ó¼¯ÌåÊôÐÔÀ´°µÊ¾µÄ¡£

 

Route Target ÊôÐÔ

 

    VPNµÄ³ÉÔ±¹ØÏµÊÇͨ¹ý·ÓÉËùЯ´øµÄroute targetÊôÐÔÀ´»ñµÃµÄ¡£ PEÖÐÿ¸öSiteµÄ·ÓɱíÖеÄ·ÓÉÏîÄܹ»ÓÐÒ»»ò¶à¸öRoute TargetÊôÐÔ¡£ Ëü°µÊ¾Á˸÷ÓÉÄܹ»±»ÄÄЩsiteËù½Ó¹Ü£¬½Ó¹ÜÄÄЩsiteµÄ´«ËÍÀ´µÄ·ÓÉ¡£

 

    Ò»¸öÓµÓÐÕâÖÖÊôÐԵķÓɱØÐë·¢Ë͸øËùÓÐÔÚRoute TargetÖÐÖ¸Ã÷µÄsiteËùÏνӵÄPE·ÓÉÆ÷£¬PE½Ó¹Üµ½Ô̺¬´ËÊôÐԵķÓɺó£¬Èô´ËÊôÐÔÖ¸Ã÷µÄsiteͬ¼ºÒ»Ö£¬Ôò²ÎÓëµ½ÏàÓ¦µÄ·ÓɱíÖС£

 

    RTµÄÐÔÖÊÊÇÿ¸öVRF±í°××Ô¼ºµÄ·ÓÉÆúÈ¡¼°°®ºÃµÄ·½Ê½¡ £Äܹ»·ÖΪÁ½²¿ÃÅ£ºExport TargetÓëimport Target£»Ç°Õß°µÊ¾ÁËÎÒ·¢³öµÄ·ÓɵÄÊôÐÔ£¬¶øºóÕß°µÊ¾ÁËÎÒ¶ÔÄÇЩ·ÓɸÐÐËÖ¡£ÀýÈ磺

 

    SITE-A£ºÎÒ·¢µÄ·ÓÉÊǺìÉ«µÄ£¬ÎÒÒ²Ö»½Ó¹ÜºìÉ«µÄ·ÓÉ¡£

 

    SITE-B£ºÎÒ·¢µÄ·ÓÉÊǺìÉ«µÄ£¬ÎÒÒ²Ö»½Ó¹ÜºìÉ«µÄ·ÓÉ¡£

 

    SITE-C£ºÎÒ·¢µÄ·ÓÉÊÇÐþÉ«µÄ£¬ÎÒÒ²Ö»½Ó¹ÜÐþÉ«µÄ·ÓÉ¡£

 

    SITE-D£ºÎÒ·¢µÄ·ÓÉÊÇÐþÉ«µÄ£¬ÎÒÒ²Ö»½Ó¹ÜÐþÉ«µÄ·ÓÉ¡£

 

    ÕâÑù£¬SITE£­AÓëSITE-BÖоÍÖ»ÓÐ×Ô¼ººÍ¶Ô·½µÄ·ÓÉ£¬Á½ÕßʵÏÖÁË»¥·Ã¡£Í¬ÀíSITE£­CÓëSITE-DÒ²Ò»Ñù¡£ÕâʱÎÒÃǾÍÄܹ»°ÑSITE-AÓëSITE£­B³ÆÎªVPN-A£¬¶ø°ÑSITE-CÓëSITE-D³ÆÎªVPN-B£¬ÈçÏÂͼ£º
 

 

GA»Æ½ð¼×¡¤(Öйú¼¯ÍÅ)¹Ù·½ÍøÕ¾
 

                                   Í¼3-5

 

    ¶ÔÒ»¸öPE£¬ÓÐÒ»¸öRoute TargetÊôÐԵļ¯ÖÐÓÃÓÚ¸½¼Óµ½´Óij¸ösite½Ó¹ÜµÄ·ÓÉÉÏ£¬³ÆÎªExport Route Target£¬ÁíÒ»¸öRoute TargetÊôÐԵļ¯ÖÐÓÃÓÚ¾ö¶¨ÄÄЩ·ÓÉÄܹ»ÒýÈëµ½´ËsiteµÄ·ÓɱíÖУ¬³ÆÎªImport Route Target¡£ËüÃÇÊÇ·ÖÆçµÄ¼¯ÖС£ÕâÁ½¸ö¼¯ÖеÄ×éºÏÄܹ»»ú¹ØÈκÎÍØÆËÀàÐ͵ÄVPN¡£

 

    ÔÚPEÉÏ£¬Ã¿¸öVRF¶¼ÓÐÒ»¸öImport Route TargetÁбí£¬Ö»Óе±Â·ÓɵÄExport¡¡Route TargetÓëVRFµÄImport Route TargetÁбíÏàÆ¥Å䣬·ÓɲŻᱻÒýÈëµ½¸ÃVRFµÄ·ÓɱíÖС£

 

RTµÄ½Ã½ÝÀûÓÃ

 

    ÓÉÓÚÿ¸öRT Export TargetÓëimport Target¶¼Äܹ»ÅäÖöà¸öÊôÐÔ£¬ÀýÈ磺ÎÒ¶ÔºìÉ«»òÕßÀ¶É«µÄ·Óɶ¼¸ÐÐËÖ¡£½Ó¹ÜʱÊÇ“»ò”²Ù×÷£¬ºìÉ«µÄ¡¢À¶É«µÄÒÔ¼°Í¬Ê±¾ß±¸Á½ÖÖÉ«²ÊµÄ·ÓɳÇÊб»½ÓÊÜ¡£ËùÒÔ¾ÍÄܹ»ÊµÏÖ¼«¶È½Ã½ÝµÄVPN½Ó¼û½ÚÔì¡£

 

 

GA»Æ½ð¼×¡¤(Öйú¼¯ÍÅ)¹Ù·½ÍøÕ¾
 

                                  ͼ3-6

 

3.5 Ë½Íø±êÇ©

 

    ÖÁ´Ë£¬Ç°Á½¸öÎÊÌ⣺ÔÚPE±¾µØµÄ·ÓÉì¶ÜºÍÍøÂç´«²¼¹ý³ÌµÄì¶Ü¶¼Òѽâ¾ö¡£µ«ÊÇÈôÊÇÒ»¸öPEµÄÁ½¸ö±¾µØVRFͬʱ´æÔÚ10.0.0.0/24µÄ·ÓÉ£¬µ±Ëû½Ó¹Üµ½Ò»¸öÖ÷ÕŵØÖ·Îª10.0.0.1µÄ±¨ÎÄʱ£¬ËûÈôºÎ֪·¸Ã°ÑÕâ¸ö±¨ÎÄ·¢¸øÓëÄĸöVRFÏàÁ¬µÄCE £¿×¢¶¨»¹±ØÒªÔÚ±»×ª·¢µÄ±¨ÎÄÖÐÔö³¤Ò»Ð©ÐÅÏ¢¡£

 

    ·Óɰ䲼ʱÒѾ­Ð¯´øÁËRD£¬ÀíÂÛÉÏÄܹ»Ê¹ÓÃRD×÷Ϊ±êÊ¶ÄØ£¬µ«ÊÇRDÒ»¹²ÓÐ64¸öbit£¬Ì«´óÁË¡£Õâ»áµ¼ÖÂת·¢Ð§ÄܵĽµµÍ¡£ËùÒÔÖ»±ØÒªÒ»¸ö¶ÌÓס¢¶¨³¤µÄÏóÕ÷¼´¿É¡£ÓÉÓÚ¹«ÍøµÄËí·ÒѾ­ÓÉMPLSÀ´Ìṩ£¬²¢ÇÒMPLSÖ§³Ö¶à²ã±êÇ©µÄǶÌ×£¬Õâ¸öÏóÕ÷½ç˵³ÉMPLS±êÇ©µÄÌåʽ¡£Õâ¸öË½ÍøµÄ±êÇ©¾ÍÓÉMP-BGPÀ´·ÖÅ䣬ÓëË½ÍøµÄ·ÓÉÒ»Æð°ä²¼³öÈ¥¡£

 

3.6 BGP°ä²¼Â·ÓÉʱ±ØÒªÐ¯´øµÄÐÅÏ¢

 

    Ò»¸öÀ©´óÖ®ºóµÄNLRI£¨Network Layer Reachability Information£©£¬Ôö³¤Á˵ØÖ·×åµÄÃèÊö£¬ÒÔ¼°Ë½ÍølabelºÍRD¡£
 

 

    ×·ËæÖ®ºóµÄÊÇRTµÄÁбí

 

    ¶ÔÓÚʹÓÃÁËÀ©´óÊôÐÔMP_REACH_NLRIµÄBGP£¬ÎÒÃdzÆÖ®ÎªMP-BGP¡£

 

4 BGP MPLS/VPN·ÓÉ·Ö·¢¡¢±¨ÎÄת·¢»úÔì

 

    ÔÚMPLS VPNÖУ¬ÓÉÓÚѡȡÁËÁ½²ã±êǩջ½á¹¹£¬ËùÒÔP²¢²»²Î¼ÓVPN·ÓÉÐÅÏ¢µÄ½»»¥£¬VPNÕ¾µãÄÚ²¿ÊÇͨ¹ýCEÓëPE¡¢PEÓëPEÖ®¼äµÄ·Óɽ»»¥ÖªÂ·ÊôÓÚij¸öVPNµÄÍøÂçÍØÆËÐÅÏ¢¡£
 

¾ßÌåÄܹ»×ÛºÏΪÈçÏÂ3¸ö²½Ö裺
 

    1. CEÓëPEÖ®¼äµÄ·ÓÉ»¥»»
 

    2. PEÓëPEÖ®¼äµÄ·ÓÉ»¥»»
 

    3. PEÓëCEÖ®¼äµÄ·ÓÉ»¥»»

 

4.1 CEÓëPEÖ®¼äµÄ·ÓÉ»¥»»

 

    ÔÚPEÉÏΪ·ÖÆçµÄVPNÕ¾µãÅäÖÃVRF¡£PEÉÏÊØ»¤¶à¸ö¶ÀÁ¢µÄ·Óɱí£¬Ô̺¬¹«ÍøºÍË½ÍøÂ·ÓÉ±í£¨VRF£©£¬ÆäÖУº
 

    1. ¹«ÍøÂ·ÓÉ±í£ºÔ̺¬´ïµ½ÆäËûPEºÍPµÄ·ÓÉ£¬ÓɹǸÉÍøµÄIGP²úÉú¡£
 

    2. Ë½ÍøÂ·ÓÉ±í£ºÔ̺¬±¾VPN¿É´ïµ½µÄ·ÓÉ£¨¼´ÊôÓÚ¸ÃVPNµÄ·ÖÆçÕ¾µãÖ®¼äµÄ·ÓÉ£©¡£


GA»Æ½ð¼×¡¤(Öйú¼¯ÍÅ)¹Ù·½ÍøÕ¾
 

                              ͼ4-1

 

    CEÓëPEÖ®¼äͨ¹ýѡȡ¾²Ì¬Â·ÓÉ¡¢¶¯Ì¬Â·ÓɺÍ̸£¨ÈçOSPF,RIP…£©½øÐзÓÉÐÅÏ¢µÄ½»»¥¡£ µ±Ingress PE´Óij¸ö½Ó¿Ú½Ó¹Üµ½À´×ÔCEµÄ·ÓÉÐÅϢʱ£¬½«¸Ã·Óɵ¼Èë¶ÔÓ¦µÄVRF¡£

 

4.2 PEÓëPEÖ®¼äµÄ·ÓÉ»¥»»

 

    PEÓëPEÖ®¼äµÄ·ÓÉ»¥»»ÐÔÖÊÉϾÍÊǽ«PEÉϵÃVRF·ÓÉ×¢Èëµ½MP-IBGP²¢Í¨¹ýMP-IBGPÔÚPE¼ä»¥»»µÄ¹ý³Ì¡£

 

GA»Æ½ð¼×¡¤(Öйú¼¯ÍÅ)¹Ù·½ÍøÕ¾
 

                              ͼ4-2

 

    PEͨ¹ýά³ÖIBGPÈ·±£Â·ÓÉÐÅÏ¢±»·Ö·¢¸øËùÓÐÆäËüµÄPE¡£µ±Ingress PE·Ö·¢Â·ÓÉÐÅϢʱ£¬½«Í¬Ê±Ð¯Òý·ÓɵصãVRFµÄRD£¬¼´½«Â·ÓɵÄIPv4µØÖ·Ç°×º×ª»¯ÎªVPN-IPv4µØÖ·¡£

 

    ·Ö·¢µÄ¾ßÌå·ÓÉÐÅÏ¢£¨VPN-IPv4·ÓÉÐÅÏ¢£©Ô̺¬£º
 

    ¸Ã·ÓɵÄVPN-IPv4µØÖ·Ç°×º
 

    ÏÂÒ»ÌøµØÖ·¼´Ingress PEµÄVPN-IPv4µØÖ·£¨Í¨³£ÊÇPEÉϵÄLoopback½Ó¿ÚµØÖ·£¬ÆäRD=0£©
 

    ·ÖÅ䏸¸Ã·ÓɵÄVPN±êÇ©£¨ÓÃÀ´±êʶÊôÓÚÄĸöVPN»òÕß˵ÊÇÄĸöVRF£©
 

    ¸Ã·ÓɵصãVRFµÄExport RT
 

 

4.3 PEÓëCEÖ®¼äµÄ·ÓÉ»¥»»

 

    PEÓëCEÖ®¼äµÄ·ÓÉ»¥»»¼´ÎªMP-IBGP°Ñ·ÓÉ×¢Èëµ½PEÉϵÄVRF¶øºóͨ¹ýPEÓëCEÉÏÔËÐеÄ·ÓɺÍ̸ÔÙ·Ö·¢¸øCEµÄ¹ý³Ì¡£

 

GA»Æ½ð¼×¡¤(Öйú¼¯ÍÅ)¹Ù·½ÍøÕ¾
 

                                 ͼ4-3

 

    µ±Egress PEÊÕµ½Â·ÓÉÐÅϢʱ£¬½«²é¿´¸Ã·ÓɵÄRT£¬ÈôÊÇRTºÍÆäËÁÒâVRFÖÐËÁÒâÒ»¸öImport RTÏà·ûʱ£¬¾Í½«¸Ã·ÓÉ´æÈëVPN-IPv4µÄ·Óɱí¡£

 

    ÔÚ½øÐзÓÉÑ¡ÔñÖ®ºó£¬½«×îÓÅ·ÓÉÖеÄVPN-IPv4µØÖ·×ª»¯³ÉIPv4µØÖ·£¨¼´È¥µôµØÖ·ÖеÄRD£©µ¼Èëµ½ÏàÓ¦µÄVRF£¬Ë½Íø±êÇ©±£Áô£¬¼Í¼µ½×ª°ä·¢ÖУ¬Áô×öת·¢Ê±Ê¹Óá£
ÔÙÓɱ¾VRFµÄ·ÓɺÍ̸ÒýÈë²¢´«µÝ¸øÏàÓ¦µÄCE¡£·¢¸øCEʱÏÂÒ»ÌøÎª½Ó¹Ü¶ËPE×Ô¼ºµÄ½Ó¿ÚµØÖ·¡£ÕâÑù¾ÍʵÏÖÁË´ÓMP-IBGP·ÓÉ×¢Èëµ½VRFµÄ¹ý³Ì¡£

 

4.4 MPLS/VPN ±¨ÎÄת·¢

 

GA»Æ½ð¼×¡¤(Öйú¼¯ÍÅ)¹Ù·½ÍøÕ¾
 

                                    Í¼4-4

    ÔÚMPLS VPNÖУ¬ÊôÓÚͳһµÄVPNµÄÁ½¸öSite Ö®¼äת·¢±¨ÎÄʹÓÃÁ½²ã±êÇ©À´½â¾ö£¬ÔÚÈë¿ÚPEÉÏΪ±¨ÎÄ´òÉÏÁ½²ã±êÇ©£¬µÚÒ»²ã£¨±í²ã£©±êÇ©ÔڹǸÉÍøÄÚ²¿½øÐл¥»»£¬´ú±íÁË´ÓPEµ½¶Ô¶ËPEµÄÒ»ÌõËí·£¬VPN±¨ÎÄ´òÉÏÕâ²ã±êÇ©£¬¾ÍÄܹ»ÑØ×ÅLSP´ïµ½¶Ô¶ËPE£¬Õâʱ³½¾Í±ØÒªÊ¹Óõڶþ²ã£¨Äڲ㣩±êÇ©£¬Õâ²ã±êÇ©ÅúʾÁ˱¨ÎÄÓ¦¸Ã´ïµ½Äĸösite£¬»òÕ߸ü¾ßÌåһЩ£¬´ïµ½ÄÄÒ»¸öCE£¬ÕâÑù£¬Æ¾¾ÝÄÚ²ã±êÇ©£¬¾ÍÄܹ»ÕÒµ½×ª·¢µÄ½Ó¿Ú¡ £Äܹ»ÒÔΪ£¬ÄÚ²ã±êÇ©´ú±íÁËͨ¹ý¹Ç¸ÉÍøÏàÁ¬µÄÁ½¸öCEÖ®¼äµÄÒ»¸öËí·¡£

 

5 GA»Æ½ð¼×ÍøÂçBGP MPLS VPNʵÏÖ

 

5.1 ×éÍøÐèÒª

 

    ÒªÇó£ºÓÐÁ½¸öVPNÓû§£¬VPNAºÍVPNB¡£VPNAÔÚ¸£ÖݺÍÉϺ£ÓÐ×Ô¼ºµÄÕ¾µã£¬VPNB ÔÚ±±¾©ºÍÉϺ£ÓÐ×Ô¼ºµÄÕ¾µã£¬´Ë¿ÌÒªVPNA ÄÚµÄÓû§Äܹ»½Ó¼û×Ô¼º¸£ÖݺÍÉϺ£µÄ×ÊÔ´£¬VPNB ÄÚµÄÓû§Äܹ»½Ó¼û×Ô¼º±±¾©ºÍÉϺ£µÄ×ÊÔ´£¬Á½¸öVPN Ö®¼ä²»ÄÜÏ໥½Ó¼û¡£

 

5.2 ×éÍøÍØÆË

 

GA»Æ½ð¼×¡¤(Öйú¼¯ÍÅ)¹Ù·½ÍøÕ¾
 

                                    ͼ5-1

 

5.3 ÅäÖò½Öè

 

1. ÅäÖÃPE

 

    ÒÔPE_SH ΪÀý£º
 

    ÅäÖÃVRF
 

    ÔÚPE_SHÉϽç˵Á½¸öVRF£¬VRFA_SHºÍVRFB_SH£¬±ðÀëΪÕâÁ½¸öVRF½ç˵RÖµºÍRTÖµ£¬²¢°ÑVRFºÍ¶ÔÓ¦µÄ½Ó¿Ú¹ØÁªÆðÀ´¡£
 

GA»Æ½ð¼×¡¤(Öйú¼¯ÍÅ)¹Ù·½ÍøÕ¾

ÅäÖÃBGP ºÍ̸

GA»Æ½ð¼×¡¤(Öйú¼¯ÍÅ)¹Ù·½ÍøÕ¾

GA»Æ½ð¼×¡¤(Öйú¼¯ÍÅ)¹Ù·½ÍøÕ¾

 

ÔÚPE_FZºÍPE_BJÅäÖùý³ÌºÍÉÏÃæÀàËÆ¡£

 

2. ÅäÖÃCE

 

    ÒÔVPNB_SH ΪÀý:
 

    ÅäÖÃBGP
 

GA»Æ½ð¼×¡¤(Öйú¼¯ÍÅ)¹Ù·½ÍøÕ¾

VPNA_SH¡¢VPNA_FZºÍVPNB_BJµÄÉÏCEµÄÅäÖúÍVPNB_SHÀàËÆ¡£

 

3. ÅäÖÃP

 

ÒÔP1ΪÀý£º
 

GA»Æ½ð¼×¡¤(Öйú¼¯ÍÅ)¹Ù·½ÍøÕ¾

GA»Æ½ð¼×¡¤(Öйú¼¯ÍÅ)¹Ù·½ÍøÕ¾

P2ÉϵÄÅäÖúÍP1ÀàËÆ¡£

6 BGP/MPLS IP VPN³ß¶Èϵͳ·¢Õ¹

 

    IETFÒѾ­ÔÚ2004Äê³ÉÁ¢ÁËL3VPNµÄ¹¤×÷×éרÃÅ×êÑÐL3VPNµÄ¼¼ÊõºÍÀûÓã¬ÕâÀïÖØÒª½²ÓëBGP/MPLS VPN×îÖ±½ÓÓйصÄRFC£¬ BGP/MPLS IP VPNµÄ¼¼Êõ×îÔçÓÉIETFÔÚ1999ÄêÔÚRFC 2547Ìá³ö£¬ºóÀ´³öÁËÒ»¸ö¶©Õý°æ½ÐRFC2547bis£¬ÏÖÓеÄÍøÂçÉ豸ÌṩÉÌʵÏÖµÄBGP/MPLS VPN¶¼ÊÇÆ¾¾ÝRFC2547bisʵÏֵġ£Ëæ×Ÿü¼Êõ±»¸÷¸öÍøÂçÉ豸³§ÉÌÖ§³Ö²¢ÀûÓ㬸ü¼ÊõÒѾ­±»Êµ¼ÊÖ¤Ã÷±ÈÁ¦³ÉÊì¡£2006ÄêIETFƾ¾ÝÕâЩÄêÔÚÀûÓùý³ÌÖеÄʵ¼Ê×Ü½á½øÒ»²½ÃÀÂúÁ˸ü¼Êõ£¬³Áа䲼ÁËRFC4364²¢ÉêÃ÷°Î³ýÁËRFC2547¡£RFC4364ÀïÃæ¾ßÌåÂÛÊöÁËBGP/MPLS IP VPNsµÄ¼Ü¹¹¡¢¼¼ÊõʵÏֺͲ¿Êð¡£Áí±íÓÉÓÚBGP/MPLS IP VPNsµÄ¼¼ÊõʵÏÖÐèÒª£¬¶ÔBGPºÍ̸µÄ¸öÐÔ½øÐÐÁË´óÁ¿µÄÀ©´ó£¬ÖØÒªÔ̺¬£º
 

    RFC2858 Multiprotocol Extensions for BGP-4 Ö§³Ö¶àºÍ̸À©´óµÄBGP
 

    draft-ietf-idr-as4bytes ASºÅÓÉÔ­À´µÄ2×Ö½Ú±äΪ4×ֽڵĴ¦ÖÃ
 

    RFC1997 BGP Communities Attribute BGPµÄ¼¯ÌåÊôÐÔ
 

    RFC2918 Route Refresh Capability for BGP-4 BGPµÄˢлúÔì
 

    draft-ietf-idr-route-filter Cooperative Route Filtering Capability for BGP-4 BGPµÄORF»úÔì
 

    RFC2796 BGP Route Reflection BGPµÄ·ÓÉ·´ÉäÆ÷ʵÏÖ
 

    RFC3107 Carrying Label Information in BGP-4 ÈôºÎÔÚBGPÖÐЯ´øMPLS±êÇ©
 

    RFC4360 BGP Extended Communities Attribute BGPµÄÀ©´ó¼¯ÌåÊôÐÔ

 

ʹÓÃBGP/MPLSʵÏÖµÄLayer3 VPNÖØÒªÓÐÈçÏÂÌØµã£º

 

    VPNµÄËí·ÊÇÔÚÍøÂç·þÎñÌṩÉ̵ÄPEÉϳÉÁ¢µÄ£¬¶ø²»ÊÇÔÚÓû§µÄCEÖ®¼ä³ÉÁ¢µÄ¡£VPNµÄ·ÓÉÒ²ÊÇÔÚPEºÍPEÖ®¼ä´«µÝ£¬¶ø²»ÔÚCEÖ®¼ä´«µÝ¡£ÕâÑùÓû§¾Í²»±ØÒª·¢Ê²Ã´¾«Á¦ÊØ»¤×Ô¼ºµÄVPN¡£BGP/MPLS IP VPNÒ²ÊôÓÚ·þ ÎñÉÌÌṩµÄVPN¼¼Êõ£¬¶ÔÓÚ·þÎñÉÌÌṩµÄVPN£¬IETF¸øÆäÁËÒ»¸öÊõÓï½ÐProvider Provisioned VPN£¬¼ò³ÆÎªPPVPN

 

    °ÑVPNËí·µÄ²¿Êð¼°Â·Óɰ䲼±äΪ¶¯Ì¬ÊµÏÖ£¬ÕâÑùÓÐÀûÓÚVPNµÄ¹æÄ£À©´ó£¬Äܹ»ºÜÈÝÒ×ʵÏÖÔö³¤Ò»¸öеÄVPN»òÕßÊÇеÄÕ¾µã²ÎÓëµ½Ò»¸öÏÖÓеÄVPNÖС£

 

    Ö§³ÖµØÖ·³Áµþ£¨·ÖÆçVPNÄܹ»Ê¹ÓÃÒ»ÑùµÄµØÖ·¿Õ¼ä£©¡£

 

    ÔÚ·þÎñÌṩÉ̵ÄÍøÂçÖУ¬VPNµÄÒµÎñÁ÷ʹÓñêÇ©»¥»»×ª·¢¶ø²»ÊÇ´«Í³µÄ·ÓÉת·¢¡£

 

    ¿ÉÄÜΪÆóÒµÌṩ¾ß±¸×¨Ïß¼¶°²È«±£ÏյĻ¥Áª¹æ»®¡£

 

    Äܹ»ÀûÓÃMPLS¼¼ÊõʵÏÖÁ÷Á¿¹¤³Ì£¬Ö§³ÖÓû§µÄ¸÷ÀàQosÐèÒª¡£

 

    Ïà½ÏÓÚ´«Í³·½Ê½£¬»ùÓÚMPLSµÄVPNÔÚ¿ÉÀ©´óÐÔ¡¢·þÎñÖÊÁ¿ºÍ°²È«ÐԵȷ½ÃæÕ¹Ê¾³öÏÔÖøÌØµã¡£Òò¶øMPLS VPN¼¼ÊõÊǽ«À´¹¹½¨VPNµÄ·¢Õ¹·½Ïò£¬»áÔ½À´Ô½Êܵ½¿Í»§ºÍÔËÓªÉ̵ĹØ×¢¡£
 

GA»Æ½ð¼×¡¤(Öйú¼¯ÍÅ)¹Ù·½ÍøÕ¾ GA»Æ½ð¼×¡¤(Öйú¼¯ÍÅ)¹Ù·½ÍøÕ¾

µãÔÞ

¸ü¶à¼¼Êõ²©ÎÄ

ÈκαØÒª£¬ÇëÁªÏµGA»Æ½ð¼×

GA»Æ½ð¼×¡¤(Öйú¼¯ÍÅ)¹Ù·½ÍøÕ¾

·µ»Ø¶¥²¿

ÊÕÆð
GA»Æ½ð¼×¡¤(Öйú¼¯ÍÅ)¹Ù·½ÍøÕ¾ ÎĵµAI¸±ÊÖ
GA»Æ½ð¼×¡¤(Öйú¼¯ÍÅ)¹Ù·½ÍøÕ¾ ÎĵµÆÀ¼Û
ev-close
¸Ã×ÊÁÏÊÇ·ñ½â¾öÁËÄúµÄÎÊÌâ £¿
ev-close
Äú¶Ôµ±Ç°Ò³ÃæµÄÖÐÒâ¶ÈÈôºÎ £¿
²»Õ¦µÎ
¼«¶ÈºÃ
dark-star dark-star dark-star dark-star dark-star
ev-close
ÄúÖÐÒâµÄÔ­ÒòÊÇ£¨¶àÑ¡£© £¿
ev-close
Äú²»ÖÐÒâµÄÔ­ÒòÊÇ£¨¶àÑ¡£© £¿
ev-close
ÄúÊÇ·ñ»¹ÓÐÆäËûÎÊÌâ»ò½¨Òé £¿
ΪÁ˼±¾ç½â¾ö²¢»Ø¸´ÄúµÄÎÊÌ⣬ÄúÄܹ»ÁôÏÂÁªÏµ·½Ê½
ÓÊÏä
ÊÖ»úºÅ
ev-bg
¸Ð¼¤ÄúµÄ·´À¡£¡
GA»Æ½ð¼×¡¤(Öйú¼¯ÍÅ)¹Ù·½ÍøÕ¾
GA»Æ½ð¼×¡¤(Öйú¼¯ÍÅ)¹Ù·½ÍøÕ¾
GA»Æ½ð¼×¡¤(Öйú¼¯ÍÅ)¹Ù·½ÍøÕ¾
ÇëÑ¡Ôñ·þÎñÏîÄ¿
¹Ø¹ØÕ÷ѯҳ
ÊÛǰÕ÷ѯ ÊÛǰÕ÷ѯ
ÊÛǰÕ÷ѯ
ÊÛºó·þÎñ ÊÛºó·þÎñ
ÊÛºó·þÎñ
¶¨¼û·´À¡ ¶¨¼û·´À¡
¶¨¼û·´À¡
¸ü¶àÁªÏµ·½Ê½
¡¾ÍøÕ¾µØÍ¼¡¿