Documente Academic
Documente Profesional
Documente Cultură
WHFKQRORJLHVKDXWGpELW
$JHQGD
• Introduction - FORE Systems ?
• Problématique & besoins réseaux dans
sa globalité
• Panorama des technologies en présence
• Etat de l’art du LAN & Campus
• Etat de l’art du réseau longue-distance
• Conclusion
)25(6\VWHPV"
• 8 ans d’âge; Public depuis 1994
• CA FY 99 > 632+ million
• > 1,600 employés dans le monde
New Generation
• QG à Pittsburgh, Pennsylvania
Network Company
3UREOpPDWLTXH %HVRLQV
5pVHDX[
$SSOLFDWLRQV,3FULWLTXHVHQ
O·DQ
O·DQ
QW
Voix sur IP
U H
XLq
Visio-conference
Imagerie
5HT
D Q WH
Commerce electronique
H S DVV
G Wp
%DQ
Télé enseignement
LOL
LVLE
Archivage électronique
p Y
Support client sur le Web
3U ULWp
Groupware
pF X
-100 0 HW6
100 200 300 400 500 600
Percentage Increase %
6WDWLVWLTXHVDODUPDQWHV
• 80% of all companies in the Global
2000 have lost money from a breach in
computer security (Source: Ernst &
Young),
• Over 50% of all security incidents
occur inside the Firewall boundary
(Source: FBI/Computer Security Institute)
4XHOOHVVRQWOHVIDLOOHV"
4XHOOHVVRQWOHVIDLOOHV"
• Protégé de l’extérieur
Block!
Public-Accessible
Servers DMZ
Attack! Attack!
Firewall
Attack!
Attack!
Internet
4XHOOHVVRQWOHVIDLOOHV"
4XHOOHVVRQWOHVIDLOOHV"
• Vulnérable à l’intérieur
Attack!
Success!
Attack!
Public-Accessible
Servers DMZ
Firewall
/DQRXYHOOHJpQpUDWLRQGH
/DQRXYHOOH JpQpUDWLRQGH
WUDQVSRUW,3
Dépendantes Alloue
Ignore les
du la bande
Applications
réseau passante
S R UWH LFH
$S VH U Y
G H
D OL WpV H ,3
T X Q G
OHV Ethernet
DX P R
$70Edge
Applications ATM
& Services Core
/HQRXYHDXPRQGHGX6\VWqPH
/HQRXYHDXPRQGHGX6\VWqPH
G·,QIRUPDWLRQ
1RXYHDX0RGqOH
$SSOLFDWLI
• Modèle objet distribué $FWLYH'LUHFWRU\
• Architecture à '+&3
1HWZRUN ,3VHF
réseau &25%$.HUEHURV
0LFURVRIW
606
606
'DQVOH5pVHDXORQJXH
GLVWDQFH Internet Age Carriers
• Problématique
✔ Maîtriser la ressource bande passante
✔ Contruire un réseau multi-services
• Besoins
✔ Ingénierie de trafic
✔ Différentation de services
7HFKQRORJLHVHQSUpVHQFH
Ethernet, ATM, IP, etc.
7HFKQRORJLHVHQSUpVHQFH
7HFKQRORJLHVHQSUpVHQFH
• Trame : Ethernet standard de facto
✔Ethernet 10/100
✔Gigabit Ethernet
• ATM
✔QoS ATM
✔PNNI
✔MPLS
• Evolution IP ou routage à haut-débit
3UpVHQWDWLRQ
*LJDELW(WKHUQHW
*LJDELW(WKHUQHW
2EMHFWLIG·pODERUDWLRQ
*LJDELW(WKHUQHW
$SSHUoXGHODWHFKQRORJLH
$SSHUoXGHODWHFKQRORJLH
• Eléments fonctionnels
*LJDELW(WKHUQHW
$SSHUoXGHODWHFKQRORJLHVXLWH
$SSHUoXGHODWHFKQRORJLHVXLWH
• Physical layer:
✔1000Base-SX 850 nm laser on MM fiber
✔1000Base-LX 1300 nm laser on SM fiber
✔1000Base-CX short haul copper STP cable
✔1000Base-T long haul copper UTP cable
*LJDELW(WKHUQHW
$SSHUoXGHODWHFKQRORJLHVXLWH
$SSHUoXGHODWHFKQRORJLHVXLWH
• Distance
E th e rn e t F a s t E th e rn e t G ig a b it
E th e rn e t
C at 5 U TP 1 0 0 m m in 100 m 25 – 100 m
M M F ib e r 2 km 4 1 2 m (H D ) 500 m
2 k m (F D )
S M F ib e r 25 km 20 km 3 km
*LJDELW(WKHUQHW
$SSHUoXGHODWHFKQRORJLHVXLWH
$SSHUoXGHODWHFKQRORJLHVXLWH
• MAC layer:
✔ utilise le protocole CSMA / CD
3UpVHQWDWLRQ$70
0RGqOHGHUpIpUHQFH$70
0RGqOHGHUpIpUHQFH$70
Management Plane
Plane Management
Control Plane User Plane
Layer Management
Higher Layer Higher Layer
Protocols Protocols
ATM Layer
Physical Layer
0RGqOHGH5pIpUHQFH3URWRFROHV
0RGqOHGH5pIpUHQFH3URWRFROHV
HIGHER
Higher Layer Functions
LAYERS
Convergence CS A
A
Segmentation and Reassembly SAR L
Generic Flow Control
A
Cell Header Generation/Extraction
T
Cell VPI/VCI Translation
M
Cell Multiplex and Demultiplex
Cell Rate Decoupling P
HEC Sequence Generation/Verification H
Y
Cell Delineation TC I
Transmission Frame Adaptation S
Transmission Frame Generation/Recovery I
C
Bit timing A
PM
Physical Medium L
&RPSRVDQWVGXFLUFXLWYLUWXHO$70
&RPSRVDQWVGXFLUFXLWYLUWXHO$70
• Trois composants
Channel
100
• Media
Path
Channel
101
0 • Virtual Path (VP)
Media • Virtual Channel (VC)
Channel Path
100
10
VC Switches
VP Switch
&ODVVHVGHVHUYLFHV$70
• CBR
• VBR
• UBR
• (ABR)
TX RX
&ODVVHVGHVHUYLFHV$70
TX RX
CBR Traffic
&ODVVHVGHVHUYLFHV$70
TX VBR Traffic RX
CBR Traffic
&ODVVHVGHVHUYLFHV$70
UBR Traffic
TX VBR Traffic RX
CBR Traffic
&ODVVHVGHVHUYLFHV$70
ABR Traffic
TX VBR Traffic RX
CBR Traffic
*LJDELWYV$70
Un ancien débat ?
3RLQWVIRUWVJLJDELW
GpILQLVSDUOH*LJDELW$OOLDQFH
GpILQLVSDUOH*LJDELW$OOLDQFH
/LPLWDWLRQVGX*LJDELW(WKHUQHW
/LPLWDWLRQVGX*LJDELW(WKHUQHW
• Dans le détail
✔GigEthernet s’appuie sur une couche
MAC modifiée qui impacte sur
➤ la taille du réseau
➤ le débit réel utilisateur
– “transmitting 64-byte frames would drop
throughput to 120 Mbps
– average Ethernet frame size is somewhere in
the 200 to 500-byte range, so GigE will deliver
300 to 500 Mbps bandwidth”
– (selon le Tolly Group)
*LJDELW(WKHUQHWYHUVXV$70
Fonctionalités GigaEthernet ATM
• QoS • (802.1p, RSVP) • Oui
• VLAN • (802.1q) • Oui
• Paquets Ethernet • Oui (starting at 512) • Oui
• Paquets TokenRing • Non • Oui
• Compatibilité IP • Oui • Oui
• Multimedia • Non real time • Oui
• extensible au WAN • Non • Oui
• Connexion serveurs • Oui • Oui
• PC Desktop • Non • Oui
• Backbone Entreprise • dépend de la taille • Oui
• Fiber Media • Oui • Oui
• Copper Media • Non • Oui
• Vrai Traffic Management • Non • Oui
• Fault Tolerance • Non • Oui
• Congestion Control • Non • Oui
$OOLHWUDPHVHWFHOOXOHV
$OOLHWUDPHVHWFHOOXOHV
Sensibilité de
l’application
au délai
Haute
Cellules
Moyen
Trames
Faible
'LIIpUHQWLDWLRQGHVHUYLFHV,3
'LIIpUHQWLDWLRQGHVHUYLFHV,3
• Différencier la bande passante
• Différencier la sécurité
• Différencier le routage & contrôle du
réseau IP
Différencier IP au niveau de
l’application
([HPSOH
$SSOLTXHUODSULRULWpGHEDQGHSDVVDQWH
$SSOLTXHU ODSULRULWpGHEDQGHSDVVDQWH
User 1
Service
Network
User 2
Contention!!!
([HPSOH
3ULRULWLVDWLRQ5HODWLYH
User
App 11:
1 Priorité 4
Service
Network
User
App 22:
2 Priorité 1
6WDQGDUGVGH3ULRULWLVDWLRQ
5HODWLYH
• IEEE 802.1p, UBRw et DiffServ
Client Server
LAN
ATM Internet
Desktops
&RPPHQWojIRQFWLRQQH"
&RPPHQWojIRQFWLRQQH"
• Le port de sortie est source de
contention...
Commutateur
4
2
1
sens de Transmission
4XLIL[HODSULRULWp"
4XLIL[HODSULRULWp"
Option 1: l’utilisateur
User 1
Service
Network
User 2
5HFRQQDLWUHOHV$SSOLFDWLRQV
5HFRQQDLWUHOHV$SSOLFDWLRQV
SD
• Pas de visibilité
utilisateurs & applications
Transport
Network
Addresses MAC Source
Data Link Destination
Physical
5HFRQQDLWUHOHV$SSOLFDWLRQV
5HFRQQDLWUHOHV$SSOLFDWLRQV
DS SD
Transport
Addresses IP Source et
Network Destination
Data Link
Physical
5HFRQQDLWUHOHV$SSOLFDWLRQV
5HFRQQDLWUHOHV$SSOLFDWLRQV
DS DS SD
Data Link
Physical
1XPpURVGHSRUWVFRQQXV
1XPpURVGHSRUWVFRQQXV
• Numéros de ports 0-255 sont
“Réservés”
1 TCPMUX TCP Port Service Mux
4XHOTXHVDSSOLFDWLRQVj
4XHOTXHVDSSOLFDWLRQVj
QXPpURVGHSRUWG\QDPLTXH
QXPpURVGHSRUWG\QDPLTXH
• comme…
✔NFS Apps
✔SAP/R3
✔H.323
✔MS Exchange
✔etc.
1HJRWLDWLRQ3RUWG\QDPLTXH
1HJRWLDWLRQ3RUWG\QDPLTXH
App 1
Service
Network
App 2
1HJRWLDWLRQ3RUWG\QDPLTXH
1HJRWLDWLRQ3RUWG\QDPLTXH
Connexion NFS
App 1
Service
Network
App 2
Port fixe…(111)
1HJRWLDWLRQ3RUWG\QDPLTXH
1HJRWLDWLRQ3RUWG\QDPLTXH
Utilisez le Port
6022
App 1
Service
Network
App 2
Port fixe…(111)
1HJRWLDWLRQ3RUWG\QDPLTXH
1HJRWLDWLRQ3RUWG\QDPLTXH
Connexion sur le
port 6022
App 1
Service
Network
App 2
/HQRXYHDXUpVHDX,3DEHVRLQ
/HQRXYHDX UpVHDX,3DEHVRLQ
G·rWUH$SSOLFDWLRQ$ZDUH
G·rWUH$SSOLFDWLRQ$ZDUHWP
%HVRLQV 7HFKQRORJLHVFOpV
• Protéger les Application-Awaretm
applications “Mission- Switching
critical”
• Fournir la sécurité
optimale sans Firewall à haut-débit
compromis de
performance
CoS IP/Ethernet,
• Différentiation de QoS ATM
services IP
• Réduire le coût de Technologie
l’administration des d’annuaire (DEN)
services
/HVWHFKQRORJLHVpPHUJHDQWHV,3
/HVWHFKQRORJLHVpPHUJHDQWHV,3
'LUHFWRU\ $SSOLFDWLRQ$ZDUH
(QDEOHG 6ZLWFKLQJ
1HWZRUNLQJ
&R6WR4R6
0DSSLQJ )LUHZDOO
6ZLWFKLQJ
(WDWGHO·DUWGX
/$1 &DPSXV
(YROXWLRQGHVDUFKLWHFWXUHV
(YROXWLRQ GHVDUFKLWHFWXUHV
PDWpULHOOHV
1st Generation 2nd Generation 3rd Generation
Application-Awaretm
Router Routing Switch Routing Switch
NEW
NEW
General Purpose CPU / NOS
CPU + RTOS RISC RISC
General Purpose
CPU + RTOS
L2/L3 L2/L3
L2/L3/L4 L2/L3/L4
ASIC ASIC
ASIC ASIC
(6;OHFRPPXWDWHXU
(6;OHFRPPXWDWHXU
$SSOLFDWLRQ$ZDUH
$SSOLFDWLRQ$ZDUHWP
38MPPS
38MPPS Plusieurs
Plusieurs
N2/N3/N4
N2/N3/N4 Gbps
Gbps
Gigabit Gigabit
Routing Firewall
Application Directory
Awareness Management
Classification
Classification
stateless
stateless
Etendre
Etendre la
de
la puissance
puissance
de l’annuaire
l’annuaire
(6; (6;
++ pour
pour lala gestion
gestion
stateful
stateful (unique)
(unique) de
de lala CoS
CoS
*HVWLRQGLVWULEXpHYLDO·DQQXDLUH
*HVWLRQGLVWULEXpHYLDO·DQQXDLUH
Microsoft
Netware Active Directory
Server
LDAP LDAP
Unix
L’ESX intègre EDSA Server
également un agent … Il est alors
LDAP pour accéder possible de gérer la
à un annuaire... politique de CoS &
sécurité optimale
pour SAP
'LUHFWRU\(QDEOHG
1HWZRUNLQJ6FKHPHV
Directory Directory Directory
Server Server Database
Network
Container
ESX
Directory Directory
Database Database Application-Aware
LDAP LDAP Switch
Translator
(Policy) LDAP
Server LDAP
enabled
SNMP/ Policy Router / Switch
Policy Database re
Database SNMP/COPS e ctu
hit
h arc
Legacy i tc
Router / Switch f sw
SNMP no
Database
l uti o
o
ev
'LIIpUHQWVDUFKLWHFWXUHVKDXW
'LIIpUHQWVDUFKLWHFWXUHVKDXW
GpELW L2 L2
L2
25M/155M Stack L2-Stack
L2--Stack
25UTP 10TX
155UTP 10/100TX Trunk
10/100TX
155MM 155M-Modular 25M 100FX
L2-Modular
L2-Modular
155M
OC3c OC3c
OC12c OC12c 1000SX
1000LX
100BaseFX
X X L3-Frame
(WDWGHO·DUWGX
UpVHDXORQJXHGLVWDQFH
0RGqOH5pVHDX:$1
0RGqOH5pVHDX:$1
Customer Locations:
In-Building PoPs
Frame
Relay
Service
SP Locations:
Head Ends, or
TDM
Service
Core Distribution Centers
ATM
Service
Edge
Transparent
LAN Service
/·HQMHXWHFKQRORJLTXH
Infrastructure Intelligente
IP
Transmission
4XHIRQWOHV2SpUDWHXUV,3"
• La majorité des grands opérateurs IP ont
choisi ATM
• Pourquoi?
✔Vitesse
✔Ingénierie deTrafic
✔Futurs besoins de QoS
• ATM est le seul à répondre à ces
besoins
,QJpQLHULHGH7UDILF
,3VXUILEUH6'+':'0HWF IP
Fibre
B
C
A
,QJpQLHULHGH7UDILF
,3VXUILEUH6'+':'0HWF IP
Fibre
Ce lien est utilisé B
à 100 %
C
A
IP
Trash
,QJpQLHULHGHWUDILF IP
,3VXU$70VXUILEUH ATM
B Fibre
,QJpQLHULHGHWUDILF IP
,3VXU$70VXUILEUH ATM
B Fibre
,QJpQLHULHGHWUDILF IP
,3VXU$70VXUILEUH ATM
B Fibre
,QJpQLHULHGHWUDILF
,QJpQLHULHGHWUDILF
'LIIpUHQFH
• Modèle IP sur fibre
✔ Ingénierie de trafic est supportée par le
plan de contrôle IP
• Modèle IP sur ATM sur fibre
✔ Ingénierie de trafic s’appuie sur ATM, en
totale transparence à IP
7UDIILF(QJLQHHULQJ IP
5HURXWDJH311,jKDXWGpELW ATM
B Fibre
7UDIILF(QJLQHHULQJ IP
5HURXWDJH311,jKDXWGpELW ATM
B Fibre
7UDIILF(QJLQHHULQJ IP
5HURXWDJH311,jKDXWGpELW ATM
B Fibre
D
Les routeurs ne voient pas le changement de topologie
)LDELOLWp
$TXHOOHYLWHVVH"
$ TXHOOHYLWHVVH"
“The PNNI results are more than 200
times better than the frame-based
numbers. That clearly indicates
that large Enterprise and ISPs
stand to boost performance
substantially by using PNNI as their
backbone routing protocol.”
Robert Mandeville
Data Communications Magazine May 1998
$UFKLWHFWXUHHQFRXFKHV
Routeur
Service
The Most Successful
ATM
ISPs Deploy Layered
Architectures
Switching
SONET/SDH
Transmission
1RXYHOOHJpQpUDWLRQG·DUFKLWHFWXUH
1RXYHOOHJpQpUDWLRQG·DUFKLWHFWXUH
HQFRXFKH
HQFRXFKH
DiffServ
Service
Gateway
Service
MPLS
LSR w/PNNI
Switching
SONET/SDH
WDM
Transmission
,QWURGXFWLRQj03/6
*RDORI0XOWLSURWRFRO/DEHO
6ZLWFKLQJ
• MPLS extends traditional IP in the following areas:
✔ Simplified Forwarding
➤ Based on labels instead of longest prefix-match
✔ Traffic Engineering
➤ Split traffic load over multiple parallel or alternate routes
✔ QoS Routing
➤ Select routes based upon QoS requirements
03/6DQG$70FRQW
• Many basic MPLS concepts have already been
borrowed from ATM:
ATM MPLS
Switching Field VP / VC Label
Routable Objects Virtual Circuits Label Switched Paths (LSPs)
Source Routing Designated Explicit Route
Transit List
Path Setup PNNI Signaling Modified RSVP (replaces soft state
with hard state à la PNNI)
,303/6$70&RQFOXVLRQV
• MPLS and ATM are actually much more alike
than they are different.
• ATM can offer today much of what MPLS is
promising tomorrow.
• Technologies such as MPLS and DiffServ are
representative of the fact that the best
concepts from ATM and traditional IP are
inevitably merging to form the Internet
landscape of the future.
/HPRGqOHHQFRXFKH
/HPRGqOHHQFRXFKH
7\SLFDO,3$701HWZRUN
Core Routers connected
POP to ATM Switches via
POP
ATM UNI links
CR CR
POP
CR
CR POP
POP
CR
CR POP
CR
ATM Switch
POP
CR Core IP Router
AR
AR AR AR Access Router /
AR AR
AS Border Router
/D\HUHG0RGHO
SPVCs from one Core
POP
POP Router to all others.
CR CR
POP
CR
CR POP
POP
CR
CR POP
CR
ATM Switch
POP
CR Core IP Router
AR
AR AR AR Access Router /
AR AR
AS Border Router
/D\HUHG0RGHOFRQW
Full mesh of SPVCs between
POP all Core Routers
POP
Many diverse paths exploited
CR CR through ATM core
POP
POP
CR
CR POP
CR
ATM Switch
POP
CR Core IP Router
AR
AR AR AR Access Router /
AR AR
AS Border Router
$GYDQWDJHVRI/D\HUHG0RGHO
• Link Speed
✔ Aggregate slower links onto high speed ATM core links
• Fast Automatic Rerouting
✔ SPVCs are rerouted without affecting router connectivity
• Traffic Engineering
✔ SPVCs assigned to preferred paths
✔ PNNI handles reroute on failure and unanticipated load
✔ Fully utilizes all ATM core network resources
• Traffic Management
✔ Traffic policing/shaping
✔ Per-VC queuing and scheduling
➤ Bradner test found latency reduced from 18,000 µs to 37 µs
(http://www.snci.com/reports/Fore/fore.htm)
✔ Packet level discard
/D\HUHG0RGHO3UREOHPVDQG
6ROXWLRQV
Problems Solutions
IGP scaling problems with Separation of IP data forwarding
O(n²) mesh of router from IGP adjacencies on routers
adjacencies • OSPF ARA
• ARA applied to IS-IS
• PNNI Augmented Routing (PAR)
3K\VLFDO7RSRORJ\
AR AR
AR AR
POP AR
LSR POP
POP
LSR
LSR
LSR POP
POP
LSR
LSR
POP
LSR
ATM Switch
POP
MPLS Label
LSR Switch Router
AR AR
AR AR Access Router /
AR AR
AS Border Router
/RDG,QIRUPDWLRQ
AR AR
AR AR
POP AR
LSR POP
POP
LSR
PNNI Link
LSR
Load/Loss
Information
/636HWXS8VLQJ03/6
AR AR
AR
AR
POP AR
LSR POP
Desired Traffic-
POP
LSR Engineered Path
LSR configured at
Point 1 -
RSVP-TE or
LDP-CR Signaling
LSR POP
POP PNNI-computed
portion of LSP
LSR
LSR
POP
LSR
ATM Switch
POP
LSR
MPLS Label
Switch Router
AR AR
AR AR Access Router /
AR AR
AS Border Router
&RQFOXVLRQ
• Multi-Protocol Label Switching integrates
Layer 3 routing/addressing with Layer 2
switching.
• MPLS technology promises much of what
ATM delivers today
• Tomorrow’s MPLS networks will be very
similar to today’s ATM layered networks
✔ MPLS standardization is progressing,
but multi-vendor interoperability will take time.
&RQFOXVLRQ
(YROXWLRQGXKDXWGpELW
(YROXWLRQGXKDXWGpELW
• Des technologies de transport
stabilisées …
✔trames et cellules cohabiteront
✔de nouvelles technologies de
transmission optique : SDH, DWDM
• De plus en plus d’intelligence au niveau
ATM et IP
• Des réseaux haut-débit à visibilité
✔application
✔et utlisateur
0HUFL
Fia@eu.fore.com