You are on page 1of 102

Mc lc

1
PHN QUY TRNH:
QUY TRNH VAN HNH V BO DUNG ROUTER
JUNIPER E-series

Chuong I. Cc qui trnh khai bo trong vn hnh khai thc
Router Juniper E-series...............................................................5
1. Quy trnh khai bo giao thc djnh tuyn OSPF ............................5
1.1 Khi tao OSPF routing process. ........................................................5
1.2 jnh ngha mang cn qung b.........................................................5
1.3 Chinh sa cc thng s lin quan .....................................................5
1.4 Authentication....................................................................................6
2. Qui trnh Khai bo giao thc MPLS...............................................6
2.1 MPLS v DiSfferv ..............................................................................7
3. Qui trnh khai bo giao thc BGP-4..............................................7
3.1 Khi tao BGP routing process. ..........................................................8
3.2 jnh ngha mang cn qung b.........................................................8
3.3 Thit lp quan h vi Neighbor v djnh ngha Peer Groups. .............8
3.4 V hiu ho tnh nng Synchronization. ............................................8
3.5 ng dung Policy-base routing dng route-map.(Optional) ................8
3.6 Cu hnh qung b cc thng tin VPN.(Optional)..............................9
4. Qui trnh khai bo, cu hnh QoS trn Juniper Router ..................9
4.1 Phn loai Traffic (Classification) ........................................................9
4.2 Thit lp Policy. ...............................................................................10
4.3 Thit lp Scheduling. .......................................................................10
4.4 Cu hnh Congested Avoidance han ch tt nghn. .......................11
4.5 Tao mt QoS-profile hon chinh v p vo mt interface cu th. ....11
4.6 p profile QoS vo mt interface cu th. .........................................11
5. Qui trnh khai bo AAA. ...............................................................12
5.1 Cho php chc nng AAA trn router..............................................12
5.2 Mt s thng s. ..............................................................................12
5.3 jnh ngha phuong thc kim tra. ...................................................12
6. Quy trnh khai bo BRAS ............................................................13
7. Quy trnh cu hnh Interface POS...............................................14
7.1 Cu hnh mc vt l.........................................................................15
7.2 Cu hnh cc giao din. ...................................................................15
7.3 Kim tra lai cu hnh........................................................................15
8. Quy trnh khai bo mang ring o VPN ......................................15
8.1 Tao vrf trong default virtual router...................................................15
8.2 Khai bo rd AS: ...............................................................................16
8.3 Thit lp route-target import & export policy....................................16
8.4 Khai bo interface PE-to-CE ...........................................................16
8.5 Cu hnh routes dn site khch hng - static route .........................16
8.6 config iBGP peering vpnv4..............................................................16
Mc lc


2
8.7 Khai bo VPN dnh cho Surpass ....................................................17
9. Qui trnh khai bo thm mt DSLAM mi ...................................19
9.1 Khai bo interface............................................................................19
9.2 Khai bo djnh tuyn cho DSLAM.....................................................19
9.3 Khai bo ADSL port.........................................................................19
10. Qui trnh khai bo thm port thu bao ADSL trn ATM DSLAM.19
10.1 i vi BRAS Bnh Duong, ng Nai .............................................20
10.2 i vi cc BRAS cn lai.................................................................20
11. Qui trnh khai bo thm port thu bao ADSL trn IP DSLAM.....21
11.1 Khai bo qun l DSLAM ................................................................21
11.2 Khai bo cc thu bao.....................................................................21
12. Qui trnh khai bo thm di dja chi IP cho thu bao ADSL (IP
Pool) ...................................................................................................22
12.1 Khai bo djnh tuyn IP pool.............................................................22
12.2 Khai bo IP Pool..............................................................................22
12.3 Khai bo Prefix-list...........................................................................22
12.4 Khai bo BGP..................................................................................22
13. Update NVS card SRP module................................................22
13.1 Trung hop chi c mt SRP trong h thng....................................22
13.2 Trung hop c hai SRP...................................................................23
Chuong II. Bo dung ROUTER JUNIPER..........................24
1. Phn cp bo dung:..................................................................24
1.1 Bo dung Cp 1: ...........................................................................24
1.2 Bo dung Cp 2: ...........................................................................24
2. Cc quy trnh bo dung, kim tra djnh ky: ................................24
2.1 jnh ky mi ca truc:.........................................................................24
2.2 jnh ky hng tun............................................................................27
2.3 jnh ky hng thng..........................................................................28
2.4 jnh ky hng qu.............................................................................30

PHN PHU LUC:
GII THIEU ROUTER JUNIPER M160, ERX v CC GIAO
THC LIN QUAN

Chuong I. Gii thiu Router M-160 ......................................34
1. Cu trc tng quan h thng M160.............................................34
1.1 Co cu chuyn tip gi ....................................................................34
1.2 Co cu djnh tuyn ...........................................................................37
1.3 H thng con diu khin hn hop MCS (Miscellaneous Control
Subsystem) .................................................................................................39
1.4 Giao din th cng( Craft interface).................................................39
1.5 Tm ni giao tip CIP (Connector Interface Panel) ........................41
1.6 Cc card giao tip dang s dung trong h thng.............................42
Mc lc


3
1.7 Ci dt v thay th cu trc ca M160 ............................................44
2. Phn mm diu khin _ JUNOS Internet ....................................45
2.1 X l giao thc djnh tuyn...............................................................45
2.2 X l giao tip..................................................................................48
2.3 X l diu khin...............................................................................49
2.4 Kernel RE........................................................................................49
Chuong II. Gii thiu Router E-series ...................................49
1. Gii thiu tng quan h thng ERX 1410 ...................................49
2. Cc ng dung chnh ca ERX-1410 ...........................................53
2.1 ung truyn tp trung ...................................................................53
2.2 Tao tuyn o....................................................................................54
2.3 ng dung tp trung xDSL................................................................54
2.4 Thuc thi mang LAN o.....................................................................54
2.5 Vj tr cu th ca ERX trong mang ....................................................54
3. Cu trc phn cng.....................................................................55
3.1 Cc k thut ng dung trong phn cng .........................................56
3.2 Modul h thng................................................................................57
4. Phn mm diu khin..................................................................61
4.1 Lung data v cch x l gi ...........................................................62
4.2 IP.....................................................................................................64
4.3 IP/ATM (Asynchronous Tranfer Mode) ............................................66
4.4 SONET............................................................................................67
4.5 Routing............................................................................................67
4.6 Cht luong djch vu QoS..................................................................72
4.7 H tro truy cp t xa bng thng rng B-RAS.................................74
4.8 H tro VLAN....................................................................................75
Chuong III. Gii thiu mt s khi nim, giao thc s dung
trong router M v E series.........................................................76
1. Giao thc djnh tuyn OSPF ........................................................76
1.1 Gii thiu djnh tuyn dng...............................................................76
1.2 Cc thut ng thung s dung .......................................................77
1.3 Cc trang thi trong OSPF ..............................................................77
1.4 Hoat dng ca OSPF ......................................................................78
1.5 Multiarea OSPF...............................................................................79
2. Gii thiu v MPLS .....................................................................80
2.1 Tng quan .......................................................................................80
2.2 Thut ng........................................................................................82
2.3 Cu trc ca mt MPLS node..........................................................84
3. Border Gateway Protocol Version 4 (BGP-4)..............................88
3.1 Khi nim AS (Autonomous System). .............................................88
3.2 c tnh ca BGP-4.........................................................................89
3.3 Mt s khi nim lin quan dn co ch lm vic ca BGP-4...........89
4. Gii thiu tng quan AAA............................................................90
Mc lc


4
4.1 Vic s dung AAA trong vn d bo mt v diu khin truy cp m
rng trong mang..........................................................................................90
4.2 Tng quan AAA...............................................................................90
4.3 Giao thc s dung cho djch vu AAA................................................92
5. Cht luong djch vu QoS..............................................................94
5.1 Vai tr ca QoS. ..............................................................................94
5.2 Best Effort Delivery..........................................................................95
5.3 Intergrated Service Model. ..............................................................95
5.4 Differentiated Services Model..........................................................95
5.5 Phn loai QoS vi DSCP.................................................................95
5.6 Thuc thi QoS ...................................................................................97
6. Gii thiu v SNMP.....................................................................98
T vit tt v ti liu tham kho ..99






























Phn quy trnh


Chuong I: Quy trnh khai bo, vn hnh 5

PHN QUY TRNH:
QUY TRNH VAN HNH V BO
DUNG ROUTER JUNIPER E-series



Chuong I. Cc qui trnh khai bo trong vn hnh
khai thc Router Juniper E-series
1. Quy trnh khai bo giao thc djnh tuyn OSPF
- Khi tao OSPF routing process.
- jnh ngha mang cn qung b.
- Chinh sa cc thng s lin quan
- Authentication.
1.1 Khi tao OSPF routing process.
Khai bo router chay OSPF: VTN2_ERX(config)#router ospf 1
1.2 jnh ngha mang cn qung b.
+ VTN2_ERX(config-router)#domain-id 0.0.0.0
- Khai bo interface no chay OSPF thng qua net:
+ VTN2_ERX(config-router)# network 192.168.250.0 0.0.0.255 area 0.0.0.0
+ VTN2_ERX(config-router)# network 192.168.251.0 0.0.0.255 area 0.0.0.0
+ VTN2_ERX(config-router)# network 203.210.144.27 0.0.0.0 area 0.0.0.0
+ VTN2_ERX(config-router)# network 203.210.146.76 0.0.0.3 area 0.0.0.0
- chi duy nht mt interface dng lnh:
+ VTN2_ERX(config-router)# address 203.210.146.70 area 0.0.0.0
+ VTN2_ERX(config-router)# address 203.210.146.78 area 0.0.0.0

1.3 Chinh sa cc thng s lin quan
- Dead-interval, c hai cch cu hnh: trn router v trn interface:
+ VTN2_ERX(config-router)#address dja-ch-interface dead-interval thi-gian
+ VTN2_ERX(config-if)# ip ospf dead-interval 12
- Hello-interval c hai cch cu hnh: trn router v trn interface:
Phn quy trnh


Chuong I: Quy trnh khai bo, vn hnh 6
+ VTN2_ERX(config-router)#address dja-ch-interface hello-interval thi-gian
+ VTN2_ERX(config-if)# ip ospf hello-interval 3
- Khai bo d uu tin chon router lm DR/BDR:
+ VTN2_ERX(config-if)# ip ospf priority s;
- Cost c hai cch d thay di:
+ thay di bandwith
+ VTN2_ERX(config-if)# ip ospf cost 1000
i vi nhng router c s dung interface gigabit:
+ VTN2_ERX(config-router)#ospf auto-cost reference-bandwidth 1000 d tr
gi trj thuc cho Gigabit
1.4 Authentication
- Authentication: mi interface OSPF c th c cc key khc nhau
+ VTN2_ERX(config-router)#address 203.210.146.70 message-digest-key 1
md5 8 TnIf'j+as+Xt(Q
+ VTN2_ERX(config-router)#address 203.210.146.70 authentication message-
digest
+ VTN2_ERX(config-router)#address 203.210.146.78 message-digest-key 1
md5 8 @jtq4k.pI/pZ)Q
+ VTN2_ERX(config-router)#address 203.210.146.78 authentication message-
digest
1 thuc cht gip 2 router khng mun thy nhau trong khi du chay
OSPF trn cng mt vng. 8 dng d quyt djnh mt khu c duoc
encrypted format khng?
Mc djnh, khi c su thay di LSA loai 5 hoc 7, t cc exterrnal route, OSPF
s tnh ton lai dung di mi chi cho duy nht nhng LSA thay di d. Tuy nhin
d c th ti uu ho dung di, OSPF cho php tnh ton lai tt c d chon best
route cho tt c nhng external route bng lnh:
+ VTN2_ERX(config-router)#disable-incremental-external-sfp
- Luu : Mi khi d bu DR xong th router lm DR d duoc gi lai cho dn
khi no bj down cho d c mt router uu tin hon n xut hin trong
mang.
2. Qui trnh Khai bo giao thc MPLS
Trong mang VTN, MPLS network duoc cu hnh theo dang topology-
driven nn trong pham vi d ti ny chi d cp dn cch khai bo sau: LDP tu
Phn quy trnh


Chuong I: Quy trnh khai bo, vn hnh 7
dng thit lp cc LSP cho IGP, direct hay static route. V nhu vy vic cu hnh
chi l enable tnh nng MPLS d router tu dng s dung LDP mc djnh
Global config thit lp cc thng s chung MPLS cho mt router:
+ Enable MPLS (mc djnh enable):
VTN2_ERX(config)#mpls
+ Config router LSR d tao topology-driven LSP
VTN2_ERX(config)#mpls topology-driven-lsp
Interface profile config Cu hnh profile s dung LDP/RSVP cho interface:
+ Vo profile tuong ng (c th s dung profile default) d cu hnh
VTN2_ERX(config)#mpls ldp profile interface default
VTN2_ERX(config)#mpls rsvp profile interface default
Interface config Cu hnh mt interface trn LSR d chay MPLS:
VTN2_ERX(config-if)#mpls
(p profile ldp/rsvp cho interface)
VTN2_ERX(config-if)#mpls ldp profile default
2.1 MPLS v DiSfferv
Hin nay trong mang VTN dang cu hnh MPLS h tro DiffServ thng qua EXP
dui hnh thc statical config:
+ Mapping traffic class vo trung EXP
VTN2_ERX(config)# mpls match traffic-class "best-effort" color green set exp-bits 4
VTN2_ERX(config)#mpls match traffic-class "TRC-EXPEDITED" color green set exp-bits 5
VTN2_ERX(config)# mpls match traffic-class "TRC-ASSURED" color green set exp-bits 2
VTN2_ERX(config)# mpls match traffic-class "TRC-C7" color green set exp-bits 4
trong d s chon t 0..7 d phn bit cc class. Nhu vy c dn 7 class c th
truyn trong MPLS network.
+ Mapping trung EXP nguoc tr lai traffic-class
VTN2_ERX(config)#mpls match exp-bits 2 set traffic-class "TRC-ASSURED" color green
VTN2_ERX(config)#mpls match exp-bits 4 set traffic-class "TRC-C7" color green
VTN2_ERX(config)#mpls match exp-bits 5 set traffic-class "TRC-EXPEDITED" color green
3. Qui trnh khai bo giao thc BGP-4
- Khi tao BGP routing process.
Phn quy trnh


Chuong I: Quy trnh khai bo, vn hnh 8
- jnh ngha mang cn qung b.
- Thit lp quan h vi Neighbor v djnh ngha Peer Groups.
- V hiu ho tnh nng Synchronization.
- ng dung Policy-base routing dng route-map.
- Cu hnh qung b cc thng tin VPN.
3.1 Khi tao BGP routing process.
VTN2_ERX(config)#router bgp 65400
VTN2_ERX(config-router)#bgp router-id 203.210.144.162
- Cho php BGP qung b route t External vo Internal.

VTN2_ERX(config-router)#bgp advertise-best-external-to-internal
VTN2_ERX(config-router)#bgp log-neighbor-changes
3.2 jnh ngha mang cn qung b.
VTN2_ERX(config-router)#network 203.210.251.0 mask 255.255.255.0
VTN2_ERX(config-router)#network 222.253.176.0 mask 255.255.248.0
VTN2_ERX(config-router)#network 222.253.184.0 mask 255.255.255.0
VTN2_ERX(config-router)#network 222.253.185.0 mask 255.255.255.0
3.3 Thit lp quan h vi Neighbor v djnh ngha Peer Groups.
VTN2_ERX(config-router)#neighbor VTN peer-group
VTN2_ERX(config-router)#neighbor 203.210.144.2 peer-group VTN
VTN2_ERX(config-router)#neighbor VTN remote-as 65400
VTN2_ERX(config-router)# neighbor VTN password VTN
VTN2_ERX(config-router)#neighbor VTN update-source 203.210.144.162
- Qung b cho neighbor cc gi trj Attribute (Metric d BGP thuc hin
djnh tuyn dng).
VTN2_ERX(config-router)# neighbor VTN send-community
3.4 V hiu ho tnh nng Synchronization.
VTN2_ERX(config-router)#no synchronization
3.5 ng dung Policy-base routing dng route-map.(Optional)
Dng IP prefix-list (mt hnh thc Access-list) d phn loai traffic.
VTN2_ERX(config)#ip prefix-list "addr_pools" seq 5 permit 222.253.176.0/21
VTN2_ERX(config)#ip prefix-list "addr_pools" seq 10 permit 203.210.251.0/24
VTN2_ERX(config)#ip prefix-list "addr_pools" seq 15 permit 222.253.182.0/24
VTN2_ERX(config)#ip prefix-list "addr_pools" seq 20 permit 222.253.183.0/24
VTN2_ERX(config)#ip prefix-list "deny_all" seq 5 deny 0.0.0.0/0
Tao route-map
VTN2_ERX(config)#route-map "137_ip_pools" permit 10
VTN2_ERX(config-route-map)#match ip address prefix-list "addr_pools"
Phn quy trnh


Chuong I: Quy trnh khai bo, vn hnh 9
- Gn cho route-map ny ga trj Attribute l 4286054500 khi route ny
qung b cho neighbor. (y l metric, BGP dua vo gi trj ny d
thuc hin djnh tuyn dng).
VTN2_ERX(config-route-map)#set community 4286054500
Cu hnh Route-map cho BGP.
VTN2_ERX(config)#router bgp 65400
VTN2_ERX(config-router)#neighbor VTN route-map "block_everything" in
VTN2_ERX(config-router)#neighbor VTN route-map "137_ip_pools" out
Cc lnh trn p cc route-map cho chiu in/out ca traffic.
3.6 Cu hnh qung b cc thng tin VPN.(Optional)
VTN2_ERX(config)#router bgp 65400
VTN2_ERX(config-router)#address-family vpnv4 unicast
VTN2_ERX(config-router-af)#neighbor 203.210.144.2 activate
VTN2_ERX(config-router-af)#neighbor 203.210.144.2 send-community extended
VTN2_ERX(config-router-af)#exit-address-family
- Cho php BGP trao di thng tin Address-family vi peer
VTN2_ERX(config-router)#address-family ipv4 vrf DSLAM-NMS
VTN2_ERX(config-router-af)# no synchronization
VTN2_ERX(config-router-af)#no auto-summary
VTN2_ERX(config-router-af)#redistribute connected
VTN2_ERX(config-router-af)#exit-address-family
4. Qui trnh khai bo, cu hnh QoS trn Juniper Router
- Phn loai Traffic (Classification).
- Thit lp Policy, Marking //Marking mpls traffic.
- Thit lp Scheduling.
- Cu hnh Congestion Avoidance.
- Tao ra QoS-profile hon chinh.
- p QoS-profile ln mt Interface.
4.1 Phn loai Traffic (Classification)
- jnh ra di tuong
VTN2_ERX(config)#classifier-list CLL-VOIP ip any any
VTN2_ERX(config)#classifier-list CLL-C7 udp any range 10200 10695 any range
10200 10695
VTN2_ERX(config)#classifier-list intruder ip host 220.150.85.58 any
VTN2_ERX(config)#classifier-list intruder ip any host 203.210.144.27
VTN2_ERX(config)#classifier-list intruder ip any host 203.210.146.70
VTN2_ERX(config)#classifier-list SECURITY tcp 10.147.0.0 0.0.255.255 10.147.0.0
0.0.255.255 eq 445
VTN2_ERX(config)#classifier-list SECURITY tcp 10.147.0.0 0.0.255.255 10.147.0.0
0.0.255.255 eq 445
Phn quy trnh


Chuong I: Quy trnh khai bo, vn hnh 10
- jnh ngha ra cc lp traffic, vi traffic thuc lp ny duoc phuc vu uu
tin hon traffic thuc cc lp khc
VTN2_ERX(config)#traffic-class "TRC-EXPEDITED"
VTN2_ERX(config-traffic-class)#fabric-strict-priority
VTN2_ERX(config)#traffic-class " TRC-C7"
VTN2_ERX(config-traffic-class)#fabric-strict-priority

VTN2_ERX(config)#traffic-class "best-effort"
VTN2_ERX(config)#traffic-class " TRC-ASSURED"

4.2 Thit lp Policy.
- jnh ngha rate-limit-profile c tn l BW-256k gii han chim dung
bng thng h thng ti da l 256kbps
VTN2_ERX(config)#ip rate-limit-profile BW-256k
VTN2_ERX(config-rate-limit-profile)#committed-rate 256000

- jnh ngha ra policy c tn l pol-voip, policy ny ly di tuong CLL-
VOIP gn vo lp traffic TCR-EXPEDITED. Traffic ny s duoc x l
vi d uu tin 10 chi chim ti da 256kbps bng thng ca h thng.

VTN2_ERX(config)#ip policy-list pol-voip
VTN2_ERX(config-policy-list)#traffic-class TCR-EXPEDITED traffic-group
CLL-VOIP precedence 10
VTN2_ERX(config-policy-list)#rate-limit-profile BW-256k
- Trong trung hop s dung Layer 2 QoS.(trong thuc t, VTN ng dung
cng ngh chuyn mach MPLS), c th loc ra MPLS traffic, gn CoS
cho MPLS traffic, dng thi Mark MPLS traffic d. ngha ca Mark
dy l dnh du cc MPLS frame vi nguy co Drop khc nhau.
VTN2_ERX(config)#mpls match traffic-class TRC-EXPEDITED color
yellow set exp-bits 5
- Red: Kh nng bj Drop cao.
- Yellow: Kh nng bj Drop trung bnh.
- Green: Kh nng bj Drop thp.
4.3 Thit lp Scheduling.
- Tao hng doi
VTN2_ERX(config)#scheduler-profile "HIGH:EF"
VTN2_ERX(config-scheduler-profile)#weight 65

VTN2_ERX(config)#scheduler-profile "HIGH:C7"
VTN2_ERX(config-scheduler-profile)#weight 5
VTN2_ERX(config-scheduler-profile)# strict-priority
Phn quy trnh


Chuong I: Quy trnh khai bo, vn hnh 11

- Tao queue-profile. Traffic duoc gn queue-profile ny, khi duoc xp
vo Exgress queue, s duoc dnh khng gian buffer nhiu hon so vi
mc djnh (gi trj buffer-weight mc djnh l 60).
VTN2_ERX(config)#queue-profile "QUEUE-EXPEDITED"
VTN2_ERX(config-queue-profile)#buffer-weight 5
VTN2_ERX(config)#queue-profile "QUEUE-C7"
VTN2_ERX(config-queue-profile)#buffer-weight 5


4.4 Cu hnh Congested Avoidance han ch tt nghn.
VTN2_ERX(config)#drop-profile DRP-DFLT
VTN2_ERX(config-drop-profile)#committed-threshold 65000
Lnh ny djnh ngha dorp-profile tn l DRP-DFLT. Traffic p dung drop-
profile ny c mc ngung l 65Kbyte buffer, phn traffic vuot qu ngung ny
s bj Drop.
4.5 Tao mt QoS-profile hon chinh v p vo mt interface cu
th.
VTN2_ERX(config)#qos-profile GENERAL-1
VTN2_ERX(config-qos-profile)# ip queue traffic-class "TRC-EXPEDITED" queue-profile
"QUEUE-EXPEDITED" scheduler-profile "HIGH:EF" drop-profile default
VTN2_ERX(config-qos-profile)# lsp queue traffic-class "TRC-C7" queue-profile "QUEUE-C7"
scheduler-profile "HIGH:C7" drop-profile DRP-DFLT
Cc lnh ny khi tao QoS-profile hon chinh c tn l GENERAL-1.
Trong QoS profile ny p dung cho traffic duoc phn loai t traffic-class CLL-
VOIP (di vi IP traffic) v TRC-C7 (di vi lsp MPLS traffic). c tnh v
queue, schedule, drop ca traffic-class ny duoc djnh ngha trong queue-profile,
scheduler-profile, v drop-profile.
4.6 p profile QoS vo mt interface cu th.
VTN2_ERX(config)#interface pos 8/0
VTN2_ERX(config-if)#qos-profile GENERAL-1
VTN2_ERX(config-if)#ip policy input pol-voip statistic enable
Sau khi p m hnh QoS ny vo interface POS 8/0, tt c traffic luu
thng trn inteface ny s duoc kim tra, phn loai v duoc x l theo nhng
chnh sch d duoc djnh ngha trong QoS-profile.
Ngoi ra, traffic voip s duoc gii han mc 256kbps (theo nhu policy-
list pol-voip).

Phn quy trnh


Chuong I: Quy trnh khai bo, vn hnh 12
5. Qui trnh khai bo AAA.
- Bt tnh nng cho php cu hnh AAA trn router.
- jnh ngha mt s thng s cho RADIUS server
- jnh ngha phuong thc kim tra AAA
5.1 Cho php chc nng AAA trn router.
VTN2_ERX(config)#aaa new-model
- Chi r dja chi source, port v key bt tay ca AAA server.
VTN2_ERX(config)# radius authentication server 203.162.4.15
VTN2_ERX(config-radius)# udp-port 1645
VTN2_ERX(config-radius)# key "vtn2-bras"

VTN2_ERX(config)# radius accounting server 203.162.4.15
VTN2_ERX(config-radius)# udp-port 1646
VTN2_ERX(config-radius)# key "vtn2-bras"
5.2 Mt s thng s.
- jnh ngha cch client dng server no trong danh sch cc server
RADIUS
VTN2_ERX(config)# radius algorithm round-robin
- Xc djnh dja chi source thay v ly Router ID lm source giao tip vi
RADIUS
VTN2_ERX(config)# radius update-source-addr 203.210.144.107
- Khai bo djnh dang thng s nas-indentified
VTN2_ERX(config)# radius nas-identifier ADSL
5.3 jnh ngha phuong thc kim tra.
- Xc djnh s dung radius d Authentication v Accounting
VTN2_ERX(config)# aaa authentication ppp default radius.
VTN2_ERX(config)# aaa accounting ppp default radius.
- Show cu hnh radius trn BRAS
137_ERX#show radius authentication servers
RADIUS Authentication Configuration
-----------------------------------
Udp Retry Maximum Dead
IP Address Port Count Timeout Sessions Time Secret
---------------- ------ ----- ------- -------- ---- ------
203.162.4.15 1645 3 3 255 0 123456


137_ERX#show radius authentication statistics
RADIUS Authentication Statistics
--------------------------------
Statistic 203.162.4.15
Phn quy trnh


Chuong I: Quy trnh khai bo, vn hnh 13
----------------------- ------------
UDP Port 1645
Round Trip Time 2
Access Requests 465977
Rollover Requests 0
Retransmissions 12754
Access Accepts 435628
Access Rejects 26470
Access Challenges 0
Malformed Responses 0
Bad Authenticators 0
Requests Pending 0
Request Timeouts 16633
Unknown Responses 0
Packets Dropped 7
6. Quy trnh khai bo BRAS
- Khai bo License cho mt BRAS mi
VTN2_ERX(config)#license b-ras b-ras_lisense
VTN2_ERX(config)#aaa domain-map vtn2

- Khai bo Radius AAA server
VTN2_ERX(config)#radius authentication server IPAddress_of_radius_server
VTN2_ERX(config-radius)#udp-port 1645
VTN2_ERX(config-radius)#key vtn2
VTN2_ERX(config-radius)#exit
VTN2_ERX(config)#radius accounting server IPAddress_of_radius_server
VTN2_ERX(config-radius)#udp-port 1646
VTN2_ERX(config-radius)#key vtn2
VTN2_ERX(config-radius)#exit

- Khai bo interface kt ni dn DSLAM
VTN2_ERX(config)#controller sonet 1/0
VTN2_ERX(config-controller)#clock source internal module
VTN2_ERX(config-controller)#no shut
VTN2_ERX(config-controller)#exit

VTN2_ERX(config)#interface atm 1/0
VTN2_ERX(config-if)#atm sonet stm-1
VTN2_ERX(config-if)#atm clock internal chassis
VTN2_ERX(config-if)#atm vc-per-vp 4096
VTN2_ERX(config-if)#atm description "Link to DSLAM HUB DaLat - FO"
VTN2_ERX(config)#interface atm 1/0.4095 point-to-point
VTN2_ERX(config-if)#atm pvc vdc vpi vci aal5nsap
VTN2_ERX(config-if)#description Ket Noi ve DSLAM
VTN2_ERX(config-if)#encapsulation ppp
VTN2_ERX(config-if)#ppp authentication chap
VTN2_ERX(config-if)#ip access-route
VTN2_ERX(config-if)#ip unnumber loopback 0
VTN2_ERX(config-if)#exit

- Khai bo djnh tuyn IP pool
Phn quy trnh


Chuong I: Quy trnh khai bo, vn hnh 14
VTN2_ERX(config-if)#ip route 203.210.231.0 255.255.255.0 atm 1/0.4095
VTN2_ERX(config-if) #show ip route static

- Khai bo IP Pool
VTN2_ERX(config-if) # ip local pool 137_DSL_pool 203.210.231.1
203.210.231.254

- Khai bo Prefix-list
VTN2_ERX(config-if) # ip prefix-list addr_pools sequence 10 permit 203.210.231.0/24
v prefix-list s lin quan dn ROUTE-MAP, duoc khai bo trong giao thc BGP
route-map 137_ip_pools

- Trong protocol BGP:
VTN2_ERX(config)#router bgp 65000
VTN2_ERX(config-router)#neighbor VTN route-map "block_everything" in
VTN2_ERX(config-router)#neighbor VTN route-map "137_ip_pools" out

7. Quy trnh cu hnh Interface POS
- Cu hnh mc vt l
- Cu hnh cc giao din
- Kim tra lai cu hnh


HCM-VTN2_ERX#show hardware
serial assembly assembly ram
slot type number number rev. (MB)
---- ------------ ---------- ---------- -------- ----
0 --- --- --- --- ---
1 DPFE 7100521409 3500007001 A03 64
2 --- --- --- --- ---
3 --- --- --- --- ---
4 --- --- --- --- ---
5 --- --- --- --- ---
6 SRP-10Ge 4303400547 3500005401 A11 512
7 --- --- --- --- ---0020
8 OC3/OC12-POS 4302510592 3501103906 A06 128
9 --- --- --- --- ---
10 --- --- --- --- ---
11 --- --- --- --- ---
12 ??? ??? ??? ??? 256
13 --- --- --- --- ---

Phn quy trnh


Chuong I: Quy trnh khai bo, vn hnh 15
7.1 Cu hnh mc vt l
- Trn Router HCM
HCM-VTN2_ERX(config)#controller sonet 8/0
HCM-VTN2_ERX(config-controll)#sdh
HCM-VTN2_ERX(config-controll)#clock source internal chassis
HCM-VTN2_ERX(config-controll)#path overhead j1 msg HCM
HCM-VTN2_ERX(config-controll)#exit

- Trn Router HANOI
HANOI-VTN1_ERX(config)#controller sonet 3/0
HANOI-VTN1_ERX(config-controll)#sdh
HANOI-VTN1_ERX(config-controll)#clock source internal chassis
HANOI-VTN1_ERX(config-controll)#path overhead j1 msg HANOI
HANOI-VTN1_ERX(config-controll)#exit

7.2 Cu hnh cc giao din.
- Trn Router HCM
HCM-VTN2_ERX(config)#interface pos 8/0
HCM-VTN2_ERX(config-if)#encapsulation ppp
HCM-VTN2_ERX(config-if)#description KET_NOI_VOI_HANOI
HCM-VTN2_ERX(config-if)#clock source internal chassis
HCM-VTN2_ERX(config-if)#ip address 172.16.0.1 255.255.255.0
HCM-VTN2_ERX(config-if)#pos framing sdh
HCM-VTN2_ERX(config-if)#ip mask-reply
HCM-VTN2_ERX(config-if)#exit

- Trn Router HANOI
HANOI-VTN1_ERX(config)#interface pos 3/0
HANOI-VTN1_ERX(config-if)#encapsulation ppp
HANOI-VTN1_ERX(config-if)#description KET_NOI_VOI_HCM
HANOI-VTN1_ERX(config-if)#clock source internal chassis
HANOI-VTN1_ERX(config-if)#ip address 172.16.0.2 255.255.255.0
HANOI-VTN1_ERX(config-if)#pos framing sdh
HANOI-VTN1_ERX(config-if)#ip mask-reply
HANOI-VTN1_ERX(config-if)#exit

7.3 Kim tra lai cu hnh
- Trn Router HCM
HCM-VTN2_ERX#show controller sonet 8/0
HCM-VTN2_ERX#show interface pos 8/0
HCM-VTN2_ERX#ping 172.16.0.2
8. Quy trnh khai bo mang ring o VPN
8.1 Tao vrf trong default virtual router
HCM-VTN2_ERX#config terminal
HCM-VTN2_ERX(config)#ip vrf VPN-VTN
Phn quy trnh


Chuong I: Quy trnh khai bo, vn hnh 16
(Tn VPN l tuy chon v cng khng cn ging nhau tai cc Router, tuy nhin
d d qun l nn chon tn thng nht)

8.2 Khai bo rd AS:
rd 65400:1070001

rd (route distinguisher) dnh s nhu sau: AS number: nnn xxxx, trong d
AS number: 65400
nnn: Router ID, ly 3 s cui ca dja chi Router
xxxx: s th tu ca VPN (Dorado dnh s tu dng t 1)

8.3 Thit lp route-target import & export policy
route-target export 65400:1000001
route-target import 65400:2000001
route-target import 65400:1500001

Thng thung rt (route-target) ly trng vi rd, nu mang full-mesh th chi cn 1
rt cho tt c: vd: 65400:8000 v bng routing s qung b cho tt c cc router
trn mang c import cng 1 rt : route-target both 65400:xxxx

8.4 Khai bo interface PE-to-CE
VTN2_ERX(config)#virtual-router :VPN-VTN

VTN2_ERX(config)#interface loopback 0
VTN2_ERX(config-if)#ip address 192.168.1.1 255.255.255.255
VTN2_ERX(config-if)#ip description "Just a loopback address for VPN

VTN2_ERX(config)#interface atm 2/2.961
VTN2_ERX(config-if)#encapsulation bridge1483
VTN2_ERX(config-if)#atm pvc 4560 1 992 aal5snap
(cu hnh trn s duc nm default router)
VTN2_ERX(config-if)#ip description "VPN-VTN connect to Siemens TELEQ
router "
VTN2_ERX(config-if)#ip unnumbered loopback 0
or
VTN2_ERX(config-if)#ip address 10.254.1.1 255.255.255.252 (dja chi WAN
nu l routed1483)

8.5 Cu hnh routes dn site khch hng - static route
ng trong VRF :VPN-VTN tao static route

VTN2_ERX:default:VPN-VTN(config)#ip route 192.168.1.0 255.255.255.0 atm 2/2.961
8.6 config iBGP peering vpnv4
VTN2_ERX#virtual-router default

Phn quy trnh


Chuong I: Quy trnh khai bo, vn hnh 17
VTN2_ERX(config)#router bgp 65400
VTN2_ERX(config-router)#raddress-family ipv4 vrf VPN-VTN
VTN2_ERX(config-router)# no synchronization (default)
VTN2_ERX(config-router)# no auto-summary (default)
VTN2_ERX(config-router)# redistribute static or redistribute connected
VTN2_ERX(config-router)# exit-address-family (default)

8.7 Khai bo VPN dnh cho Surpass
Bao gm vpn-surpass v vpn-surpass-protection
Cc thnh phn ca h thng Surpass s kt ni vi nhau qua vpn-surpass.
Bn canh d vpn-surpass-protection l VPN duoc tao ra d du phng cho
vpn-surpass. Co ch du phng nhu sau:

- D liu khai bo cho vpn-surpass-protection hon ton ging
vi d liu khai bo cho vpn-surpass.
- Hai VPN ny duoc cu hnh chung mt Route-Target. Tuy nhin
tai cng mt thi dim chi c 1 VPN trang thi Active, cc
interface 1 trong 2 VPN s trang thi down, nn su trng dja
chi IP s khng nh hung dn hoat dng ca cc VPN ny.
- Trong trung hop xy ra su c port chnh. Khi d, cc port
tuong ng trn vpn-surpass-protection s chuyn sang trang
thi up, BGP s qung b cc route lin quan, v h thng tr
lai hoat dng bnh thung.
Khi khai bo VPN dnh cho VoIP: cn luu mt s dim sau:
- vpn-surpass v vpn-surpass-protection cng ging VPN bnh
thung, hoat dng ch d Full-Mess.
- Luu luong chay trn cc VPN ny bao gm thng tin diu khin
v luu luong VoIP, cho nn cc luu luong ny phi duoc phn
loai v gn cho mt mc d uu tin nht djnh (gn cc thng s
v QoS).

137_ERX:default:vpn-surpass#show ip int brief
Interface IP-Address Status Protocol Description
-------------------- ------------------- ---------- ----------- ---------------
null0 255.255.255.255/32 up up
loopback0 172.31.0.162/32 up up "Testing interf
ace for VPN Sur
Pass"
FastEthernet3/4 192.168.100.25/29 up up "Link to HiG100
0V3 Payload of
MoPC 15-19"
FastEthernet3/0 192.168.100.9/29 up up "Link to HiG100
0V3 Payload of
MoPC-0&&-4"
FastEthernet3/2 192.168.100.1/29 up up "Link to HiG100
0V3 OAM&PayLoad
MoPC-5,6,13,14
"
FastEthernet3/2 192.168.100.17/29* up up "Link to HiG100
Phn quy trnh


Chuong I: Quy trnh khai bo, vn hnh 18
0V3 OAM&PayLoad
MoPC-5,6,13,14
"
Note: '*' indicates a secondary ip address.

137_ERX:default:vpn-surpass#show config interface FastEthernet3/2
! NOTE: This script represents only a subset of the full system configuration.
interface fastEthernet 3/2
ip description "Link to HiG1000V3 OAM&PayLoad MoPC-5,6,13,14"
ip address 192.168.100.1 255.255.255.248
ip mask-reply
ip address 192.168.100.17 255.255.255.248 secondary
ip policy input "POL-C7" statistics enabled baseline enabled
ip rip receive version off

Trong d: Policy input POL-C7 duoc dng d quy djnh QoS cho thng tin bo
hiu v luu luong VoIP trn mang.

Thng tin chi tit v Policy POL-C7
137_ERX:default:vpn-surpass#show policy-list POL-C7

Policy Table
------ -----
IP Policy POL-C7
Administrative state: enable
Reference count: 6
Classifier control list: CLL-C7, precedence 10
traffic-class TRC-C7
Classifier control list: CLL-VOIP, precedence 20
traffic-class TRC-EXP

Referenced by interface(s):
FastEthernet3/4 input policy, statistics enabled, virtual-router
vpn-surpass
FastEthernet3/5 input policy, statistics enabled, virtual-router
vpn-surpass-protection
FastEthernet3/1 input policy, statistics enabled, virtual-router
vpn-surpass-protection
FastEthernet3/3 input policy, statistics enabled, virtual-router
vpn-surpass-protection
FastEthernet3/0 input policy, statistics enabled, virtual-router
vpn-surpass
FastEthernet3/2 input policy, statistics enabled, virtual-router
vpn-surpass
Referenced by profile(s):
None
Referenced by merged policies
*Clasifier control list : CLL-C7 v CLL-VOIP duoc dng d phn loai d liu VoIP
137_ERX:default:vpn-surpass#show classifier-list CLL-C7

Classifier Control List Table
---------- ------- ---- -----
IP CLL-C7.1 udp any range 10200 10695 any range 10200 10695

Phn quy trnh


Chuong I: Quy trnh khai bo, vn hnh 19

137_ERX:default:vpn-surpass#show classifier-list CLL-VOIP

Classifier Control List Table
---------- ------- ---- -----
IP CLL-VOIP.1 ip any any

Sau khi phn loai, cc loai luu luong ny s duoc gn mc QoS nh vo traffic-
class TRC-C7 v TRC-EXP.
137_ERX:default:vpn-surpass#show traffic-class TRC-C7
fabric
traffic fabric strict
class weight priority
------- ------ --------
TRC-C7 8 yes

137_ERX:default:vpn-surpass#show traffic-class TRC-EXP
fabric
traffic fabric strict
class weight priority
------- ------ --------
TRC-EXP 8 yes

9. Qui trnh khai bo thm mt DSLAM mi
9.1 Khai bo interface
VTN2_ERX# vir :DSLAM-NMS
VTN2_ERX# interface atm 2/0.4096
VTN2_ERX# ip description DSLAM Thu Dau Mot
VTN2_ERX# atm pvc vcd vpi vci aal5snap 256 128 1
VTN2_ERX# ip unnumbered loopback 1

9.2 Khai bo djnh tuyn cho DSLAM
VTN2_ERX# ip route 172.20.124.2 255.255.255.255 atm 2/0.4096

9.3 Khai bo ADSL port
VTN2_ERX# macro verbose portconfig.mac
10. Qui trnh khai bo thm port thu bao ADSL trn ATM
DSLAM
Thu thp cc thng tin:
- Vj tr Slot ca card ATM: show version
- Vj tr Port ca DSLAM HUB: (DSLAM cn khai bo du vo DSLAM HUB
no): show interface atm 1/0 .
- ATM sub interface: xem trong file Excel
- VPI (Virtual Path Identifier)
Phn quy trnh


Chuong I: Quy trnh khai bo, vn hnh 20
- VCI (Virtual Circuit Identifier)
(Thng thung BTinh s thng bo yu cu khai bo card th my ca
DSLAM: luu di vi DSLAM ca Alcatel th 1 card c 24 port, DSLAM ca
Siemens th 1 card c 32 port ADSL, c nhu vy s tnh duoc VCI)
- VCD xem trong file Excel
- Number of Sub interface: s port/card cn khai bo
- Profile: c hai profile : pppox-640K-2M v pppox_640K-2M (sau ny s
thng nht chi 1 profile thi) d han ch tc d truy cp ca khch hng
vo Internet nh hon 2Mb/s. xem BRAS dang s dung Profile no
dng lnh:
VTN2_ERX#show profile brief
VTN2_ERX#show atm subinterface atm 1/0.1010010032 .

kim tra macro truc khi chay: macro test autoconfig.mac

10.1 i vi BRAS Bnh Duong, ng Nai
BDG_ERX#macro verbose autoconfig.mac
Enter ATM slot/port: 2/0
Enter Start ATM sub interface: 33
Enter VP number (0-255): 1
Enter VC number (31-4095): 64 ( = sub interface + 31)
Enter VCD Start no: 1064
Enter number of Sub interfaces: 24
Enter Profile Name: pppox-640K-2M

10.2 i vi cc BRAS cn lai
Atm subinterface v VCD trng nhau v theo nguyn tc:

BRAS Sub interface = BRAS PVC-ID = 1xxYzzKKKK
1xx = 100 + BRAS Slot No. (e.g: slot 0=>1xx=100, slot 13=>1xx=113)
Y = BRAS Port No. (e.g: port 2/1=>Y=1, port 3/0=>Y=0)
zz = VPI (1-99) (e.g: VPI=9 => zz=09, VPI=15 => zz=15)
KKKK = VCI (32-4096) (e.g: VCI=34 => KKKK=0034, VCI=156 => KKKK=0156, VCI=2014
=> KKKK=2014)
EX: slot/port=1/1, vpi=24, vci=35 => subint=PVC-ID=1011240035

VTN2_ERX#macro verbose portconfig.mac
Enter ATM slot: 1
Enter ATM port: 0
Enter VPI number (1-99): 3
Enter start VCI number (32-4096): 34
Enter number of Sub interfaces: 32
Enter Profile Name: pppox_640K-2M

Phn quy trnh


Chuong I: Quy trnh khai bo, vn hnh 21
Khi chay macro s hin thj ln mn hnh cc thng tin cn thit. kim
tra lai s dung lnh: Show atm sub interface atm 1/0.1010010032 d xem
sub interface du tin v sub interface cui cng va tao.
11. Qui trnh khai bo thm port thu bao ADSL trn IP
DSLAM
IP DSLAM s dung giao tip Ethernet d kt ni dn BRAS. Do d d
c th qun l duoc cc thu bao xDSL, VLAN ID duoc s dung trn
router ERX 1440. Tuy nhin vic gii han s luong 4096 VLAN ID trn
mt interface khin vic nhn dang cc thu bao tr nn kh khn khi cc
DSLAM duoc du theo m hnh RING hoc CHAIN. V vy vic khai bo
trn BRAS cng nhu trn DSLAM v RADIUS c khc so vi cch khai
bo di vi ATM DSLAM
11.1 Khai bo qun l DSLAM
interface gigabitEthernet 13/0
ethernet description "Management for all Core Switches KGG"
mtu 1526
encapsulation vlan
!----------------------------------------------
interface gigabitEthernet 13/0.1093
svlan id 1000 1093
svlan ethertype 8100
pppoe
pppoe remote-circuit-id
Trong d SVLAN ID duoc s dung d tng s luong VLAN ID dng d
phn bit cc DSLAM vi nhau. SVLAN Type djnh ngha loai SVLAN
duoc dng (phi ging nhau BRAS v IP DSLAM).
11.2 Khai bo cc thu bao
pppoe subinterface gigabitEthernet 13/0.1000.1
encapsulation ppp
ppp authentication pap chap
profile any pppoEonly
!
Trong d profile pppoEonly duoc djnh ngha nhu sau:
profile PPPOE
ip unnumbered loopback 2
ip sa-validate
ip policy input "Mega-Maxi-In" statistics enabled
ip policy output "Mega-Maxi-Out" statistics enabled
ppp authentication pap chap
pppoe sessions 1
pppoe remote-circuit-id
Cu lnh remote-circuit-id duoc s dung d dnh du phn bit thu
bao PPPoE vi nhau. Trung remote-circuit-id s duoc RADIUS nhn
dang, t d s kim tra xc thuc cng nhu p chnh xc gi cuc cho
dng thu bao ny.
Phn quy trnh


Chuong I: Quy trnh khai bo, vn hnh 22
12. Qui trnh khai bo thm di dja chi IP cho thu bao ADSL
(IP Pool)
12.1 Khai bo djnh tuyn IP pool
VTN2_ERX#ip route 203.210.231.0 255.255.255.0 null 0
VTN2_ERX#show ip route static

12.2 Khai bo IP Pool
VTN2_ERX# ip local pool 137_DSL_pool 203.210.231.1 203.210.231.254
VTN2_ERX# show ip local pool

12.3 Khai bo Prefix-list
VTN2_ERX# ip prefix-list addr_pools sequence 10 permit 203.210.231.0/24
VTN2_ERX# show ip prefix-list

v prefix-list s lin quan dn ROUTE-MAP, duoc khai bo trong giao thc
BGP
route-map 137_ip_pools
VTN2_ERX#show route-map

Trong protocol BGP:
neighbor VTN route-map "block_everything" in
neighbor VTN route-map "137_ip_pools" out

Chi qung b 137_ip_pools ra bn ngoi thi, khng nhn bng djnh
tuyn t bn ngoi vo.

12.4 Khai bo BGP
VTN2_ERX# router bgp 65400
VTN2_ERX# network 203.210.231.0 mask 255.255.255.0

VTN2_ERX# show ip bgp
VTN2_ERX# show ip protocols

13. Update NVS card SRP module
13.1 Trung hop chi c mt SRP trong h thng
Nu h thng chi c duy nht SRP th bt buc phi tt router mi c th
thuc hin duoc vic update
Halt h thng
Ngt ngun
Tho SRP modul
Thay card NVS
Phn quy trnh


Chuong I: Quy trnh khai bo, vn hnh 23
Lp lai SRP modul
Bt lai ngun
13.2 Trung hop c hai SRP
Xc djnh SRP backup
Tho SRP backup
Thay card NVS
Lp lai SRP modul
ng b d cp nht NVS:
VTN2_ERX#synchronize
Reboot SRP back up:
VTN2_ERX#reload slot khe-cm-cha-backupSRP
Chuyn vai tr 2 SRP:
VTN2_ERX#srp switch
Tho card backup SRP
Thay card NVS
ng b d cp nht NVS


























Phn quy trnh


Chuong I: Quy trnh khai bo, vn hnh 24








Chuong II. Bo dung ROUTER JUNIPER
1. Phn cp bo dung:
c th tai Cng ty Vin thng lin tinh l h thng NGN duoc giao cho
i iu hnh Chuyn mach Lin tinh tai cc Trung tm qun l, vn hnh khai
thc v bo dung djnh ky. (Xung Bo dung chi thuc hin bo dung cc
thit bj truyn dn). Do d qui trnh bo dung duoc phn lm 2 cp:
1.1 Bo dung Cp 1:
Bo dung cp Trung tm, dy chnh l do cp i HCMLT thuc hin,
phn cng cho cc CBKT chuyn su v lnh vuc NGN ca i HCMLT thuc
hin. Bo dung cp 1 bao gm cc cng vic bo dung djnh ky hng qu,
hng nm.
1.2 Bo dung Cp 2:
Bo dung cp i/ Tram: do T Chuyn mach thuc i HCMLT thuc
hin, phn cng cc CBKT truc ca vn hnh khai thc thuc hin. Bo dung cp
2 bao gm cc cng vic bo dung djnh ky trong cc ca truc, bo dung djnh
ky hng ngy, hng tun, hng thng.

2. Cc quy trnh bo dung, kim tra djnh ky:
2.1 jnh ky mi ca truc:
2.1.1 Kim tra tnh trang hat dng cc kt ni t cc ERX, BRAS
v M160
Trn M160
vtn2@VTN2_M160_RE0> show interfaces descriptions
Phn quy trnh


Chuong II: Quy trnh bo dung 25

vtn2@VTN2_M160_RE0> show interfaces l match last
- Last flapped : 2007-04-30 10:41:10 ICT (11w5d 10:22 ago)
- Last flapped : 2007-05-05 11:17:41 ICT (1d 07:45 ago)
- Last flapped : 2007-02-13 08:40:58 ICT (0 00:21 ago)
- Last flapped : 2007-02-13 08:40:58 ICT (11w5d 10:22 ago)
- Last flapped : 2007-05-05 21:47:08 ICT (21:16:00 ago)
- Last flapped : 2007-04-25 00:05:35 ICT (1w4d 18:57 ago)
- Last flapped : 2007-03-31 00:35:43 ICT (5w1d 18:27 ago)
- Last flapped : 2007-05-05 21:47:08 ICT (21:16:00 ago)
- Last flapped : 2007-05-03 10:48:30 ICT (3d 08:14 ago)

2.1.2 Kim tra vic kt ni internet ca BRAS v ERX
ERX_137P#ping www.vtn.com.vn
Resolving "www.vtn.com.vn" ...
Sending 5 ICMP echoes to 222.255.4.11, timeout = 2 sec.
!!!!!
Success rate = 100% (5/5), round-trip min/avg/max = 252/253/257 ms

2.1.3 Kim tra cc thu bao ADSL
LDG_ERX#show subscribers summary
Virtual
Router Subscribers Ppp Ip Tnl Total
------------ ------------ ------ ------ ------ ------
default 3305 3305 0 0 3305
Total Subscribers : 3305
Peak Subscribers : 3482

LDG_ERX#show subscribers
Subscriber List
---------------
Virtual
User Name Type Addr|Endpt Router
------------------------ ----- -------------------- ------------
ctyvienthongldg ppp 222.253.179.63/local default
Phn quy trnh


Chuong II: Quy trnh bo dung 26
doiduong-hotel ppp 222.253.184.72/local default
greenfieldlio ppp 222.254.211.177/local default

ctycphagiang ppp 222.254.209.158/local default
lamdongpt ppp 222.253.184.105/local default
bv-anphuoc ppp 222.254.210.93/local default
thptbc-nguyenhue ppp 222.254.211.131/local default
nmtddamibloc ppp 222.254.211.55/local default
dlthuysy ppp 222.254.209.60/local default
bv_anphuoc ppp 222.254.212.64/local default
dlcocobeach1 ppp 222.253.182.143/radius default

2.1.4 Kim tra luu lung trn mang thng qua PRTG software




Phn quy trnh


Chuong II: Quy trnh bo dung 27
2.2 jnh ky hng tun
2.2.1 Kim tra cc lnh d thc thi trn h thng, xem thng tin
cc Session truy cp h thng thng qua Syslog server.


2.2.2 Hin th[ thng tin v ti nguyn h thng
Trn ERX_1410
VTN2_ERX#show utilization
Please wait...
System Resource Utilization
---------------------------
heap cpu bw
slot type (%) (%) exceed
---- -------- ---- --- ------
0 FE-8 56 19 Y
1 FE-8 56 3 Y
2 GE 22 3 Y
3 OC3-4P 25 3 Y
4 FE-8 56 3 Y
5 FE-8 56 3 Y
6 SRP-10Ge 29 15 ---
7 SRP-10Ge 10 2 ---
8 FE-8 56 3 Y
9 --- --- --- Y
10 GE 49 3 Y
Phn quy trnh


Chuong II: Quy trnh bo dung 28
11 OC12Pos 25 3 Y
12 OC3-4A 58 5 Y
13 FE-8 56 3 Y

VTN2_ERX#show environment
Please wait....
chassis: 14 slot (id 0x3, rev. 0x0)
fabric: 10 Gbps (rev. 8)
fans: fanSubsystemOk
nvs: ok (488MB flash disk, 22% full), matches running config
power: A ok, B ok
srp redundancy: switch-on-error enabled, auto-sync enabled, in sync
slots: ok
online: 0 1 2 3 4 5 6 8 10 11 12 13
standby: 7
empty: 9
line redundancy: none
temperature: ok
timing: primary
primary: sonet 11/0 (ok)
secondary: internal SC oscillator (ok)
tertiary: internal SC oscillator (ok)
auto-upgrade enabled
system operational: yes

vtn2@VTN2_M160_RE0> show system uptime
Current time: 2007-05-06 19:52:02 ICT
System booted: 2007-01-19 03:56:51 ICT (15w2d 15:55 ago)
Protocols started: 2007-01-19 04:10:12 ICT (15w2d 15:41 ago)
Last configured: 2007-04-28 09:47:32 ICT (1w1d 10:04 ago) by phamddo
7:52PM up 107 days, 15:55, 1 user, load averages: 0.01, 0.03, 0.00

{master

vtn2@VTN2_M160_RE0> show system alarms

2.3 jnh ky hng thng
2.3.1 Hin th[ cc modul c trong h thng
VTN2_ERX#show hardware
serial assembly assembly ram
slot type number number rev. (MB)
---- ------------ ---------- ---------- -------- ----
0 GE/FE 4303150560 3500104503 A00 128
1 GE/FE 4303410143 3500104503 A03 128
2 GE/FE 4304317905 3500104554 A01 256
Phn quy trnh


Chuong II: Quy trnh bo dung 29
3 OC3/OC12-POS 4302510592 3501103906 A06 128
4 GE/FE 4303410155 3500104503 A03 128
5 GE/FE 4303410088 3500104503 A03 128
6 SRP-10Ge 4303080305 3500005401 A11 512
7 SRP-10Ge 4303410493 3500005402 A00 512
8 GE/FE 4303410200 3500104503 A03 128
9 --- --- --- --- ---
10 GE/FE 4303410194 3500104503 A03 128
11 OC3/OC12-POS 4303410228 3501103906 A01 128
12 OC3/OC12-ATM 4303350201 3500103906 A04 128
13 GE/FE 4303410150 3500104503 A03 128

number
of
serial assembly assembly MAC
slot type number number rev. addresses
---- -------------- ---------- ---------- -------- ---------
0 FE-8 I/O 4303110287 3501006702 A01 8
1 FE-8 I/O 4303331302 3501006702 A01 8
2 GE-SFP I/O 4605260736 4500002001 A05 1
3 OC3-4MM I/O 4303160064 3500006502 A03 4
4 FE-8 I/O 4303420381 3501006702 A01 8
5 FE-8 I/O 4303331269 3501006702 A01 8
6 SRP-10Ge I/O 4302480140 3500003302 A01 1
7 --- --- --- --- ---
8 FE-8 I/O 4303420439 3501006702 A01 8
9 --- --- --- --- ---
10 GE-MM I/O 4303130083 3500006602 A04 1
11 OC12-SM-IR I/O 4303290019 3504005102 A00 1
12 OC3-4SM I/O 4303420360 3501006502 A03 4
13 FE-8 I/O 4304304576 3501006702 A02 8
base
slot MAC address
---- --------------
0 0090.1a40.8613
1 0090.1a40.a942
2 0090.1aa0.5870
3 0090.1a40.8e2c
4 0090.1a40.bb32
5 0090.1a40.a9f2
6 0090.1a40.65e0
7 ---
8 0090.1a40.b9a4
9 ---
10 0090.1a40.8aaf
11 0090.1a40.9f9b
12 0090.1a40.b785
13 0090.1a41.3f75
Phn quy trnh


Chuong II: Quy trnh bo dung 30


Trn M160
vtn2@VTN2_M160_RE0> show chassis hardware
Hardware inventory:
Item Version Part number Serial number Description
Chassis 51833 M160
Midplane REV 05 710-001245 AY0140 M160 Backplane
FPM CMB REV 03 710-001642 AT1461 FPM Board
FPM Display REV 03 710-001647 HK0125 FPM Display
CIP REV 06 710-002649 HJ7974 M160 CIP
PEM 0 Rev 03 740-003787 PB15418 Power Entry Module
PEM 1 Rev 03 740-003787 PB15438 Power Entry Module
PCG 0 REV 05 710-003066 HK0568 M160 PFE Clock
PCG 1 REV 05 710-003066 HK0610 M160 PFE Clock
Routing Engine 0 REV 14 740-005022 P12040700041 RE-3.0
Routing Engine 1 REV 14 740-005022 P12040700277 RE-3.0
MCS 0 REV 13 710-001226 HK7283 MCS
MCS 1 REV 13 710-001226 HH4984 MCS
SFM 0 SPP REV 08 710-001228 HL5893 SPP

2.4 jnh ky hng qu
2.4.1 Backup cu hnh
Chuyn cu hnh hin hnh trn ERX-Router thnh dang File *.scr, *.cnf
VTN2_ERX#show configuration > erx_137_ddmmyyyy.scr
VTN2_ERX#copy running-configuration erx_137_ddmmyyyy.cnf
(trong d erx_137 l tn router, ddmmyyyy l thi gian tao file cu hnh)

VTN2_ERX(config)#host VTN2 203.210.145.154 ftp
(jnh ngha host c tn l VTN2 c dja chi IP l 203.210.145.154 c chc
nng FTP server)

Sao luu cu hnh trn FTP server.
VTN2_ERX#copy erx_137_ddmmyyyy.scr VTN2:erx_137_ddmmyyyy.scr
VTN2_ERX#copy erx_137_ddmmyyyy.cnf VTN2:erx_137_ddmmyyyy.cnf
(copy cc file cu hnh (*.scr, *.cnf) sang FTP server)

2.4.2 Lm sach b nh Flash d[nh k
Muc dch: kim tra dung luong b nh Flash, xa bt nhng File backup-
config luu tr d lu.

ERX_137P#dir
Please wait...
Active/standby file systems are synchronized.
Phn quy trnh


Chuong II: Quy trnh bo dung 31
unshared in
file size size date (Vietnam) use
----------------------------------- --------- --------- ------------------- ---
disk0:/incoming <DIR> 0 03/22/2007 06:10:34
disk0:/outgoing <DIR> 0 03/22/2007 06:10:34
disk0:erx137-cnf220307.cnf 7857236 7857236 03/22/2007 05:52:12
disk0:erx137-cnf230307.cnf 7968383 7968383 03/23/2007 18:40:46
disk0:reboot.hty 53824 53824 03/23/2007 18:59:38
disk0:portconfig.mac 2069 2069 03/22/2007 07:49:56
disk0:portdelete.mac 1933 1933 03/22/2007 07:50:28
disk0:vlanconfig.mac 1193 1193 04/04/2007 03:51:22
disk0:vlandel.mac 984 984 04/04/2007 03:51:46
disk0:erx_7-2-3.rel 157984506 157984506 03/19/2007 10:48:44 !
disk0:erxldg-cnf220307.scr 2154521 2154521 03/22/2007 05:53:00
standby-disk0:reboot.hty 3392 3392 03/23/2007 19:16:18
Disk capacity
-------------
Capacity Free Reserved
Device (bytes) (bytes) (bytes)
-------------- ---------- --------- --------
disk0: 1054900224 807883328 68157440
standby-disk0: 1054900224 807767360 68157440

2.4.3 Xa cc file d c.
ERX_137P#delete erx137-cnf220307.scr
ERX_137P #delete erx137-cnf220307.cnf

2.4.4 Kim tra tnh hnh s dng IP cp pht cho thu bao
Internet.
Muc dch: xem mc d s dung dja chi IP hin tai. T cc kt qu ny, c
th du don nhu cu trong tuong lai d c k hoach phn b thm IP Pool cho
hop l.

LDG_ERX#show ip local pool
High Abated
Pool Thresh Thresh Trap
--------------------- ------ --------- ----
LDG_DSL_Pool 85 75 N
In
Begin End Free Use
------------------- ---------------------- ----- -----
222.253.183.1 222.253.183.254 0 254
222.253.185.1 222.253.185.254 0 254
222.253.177.2 222.253.177.254 0 253
222.253.178.1 222.253.178.254 0 254
222.253.179.1 222.253.179.254 0 254
Phn quy trnh


Chuong II: Quy trnh bo dung 32
222.253.180.1 222.253.180.254 0 254
222.253.181.1 222.253.181.254 0 254
222.253.184.1 222.253.184.127 0 127
222.253.182.1 222.253.182.127 0 127
222.254.208.1 222.254.208.254 0 254
222.254.209.1 222.254.209.254 0 254
222.254.210.1 222.254.210.254 0 254
222.254.211.1 222.254.211.254 0 254
222.254.212.1 222.254.212.254 19 235

2.4.5 Switch over SRP
Xem hai card d dng b v d liu chua (cng file config)

VTN2_ERX#show enviroinment
Please wait...
chassis: 14 slot (id 0x3, rev. 0x0)
fabric: 10 Gbps (rev. 8)
fans: fanSubsystemOk
nvs: ok (488MB flash disk, 28% full), matches running config
power: A ok, B not present
*** srp redundancy: switch-on-error enabled, auto-sync disabled, oat of sync
(file system)
*** slots: cards missing or offline
online: 6 12 13
standby: 7
missing: 3
empty: 0 1 2 4 5 8 9 10 11
line redundancy: none
temperature: ok
timing: primary
primary: internal SC oscillator (ok)
secondary: external SC E1 (A) (ERROR)
tertiary: internal SC oscillator (ok)
auto-upgrade enabled
*** system operational: no

VTN2_ERX#synchronize
************************************************** (DONE)

Hon di chc nng 2 card SRP (master v slave)
VTN2_ERX#srp switch force
WARNING. This command will reboot the system and boot from the other SRP.
Proceed with SRP switch' [confirm]

2.4.6 Restore cu hnh trong trung hp thay SRP mi.
- jnh ngha FTP server.
Phn quy trnh


Chuong II: Quy trnh bo dung 33
VTN2_ERX(config)#host VTN2 203.210.145.154 ftp
- Upload cu hnh t FTP server vo Flash ca SRP
VTN2_ERX#copy VTN2:erx_137_ddmmyyyy.scr erx_137_ddmmyyyy.scr
VTN2_ERX#copy VTN2:erx_137_ddmmyyyy.cnf erx_137_ddmmyyyy.cnf

- Boot lai SRP theo cu hnh mong mun.
VTN2_ERX(config)#boot config erx_137_ddmmyyyy.scr [once]
(thuc hin boot lai ERX theo file cu hnh erx_137_ddmmyyyy.scr.
Option once cho php ERX router chi boot t file cu hnh
erx_137_ddmmyyyy.scr mt ln duy nht, cc ln reboot sau s boot theo cu
hnh dang chay. Nu khng c option ny, cc ln boot sau ERX router vn boot
theo file cu hnh erx_137_ddmmyyyy.scr
2.4.7 An ton v sinh cng nghip.
- V sinh thn, v my.
- Kim tra nhit d hoat dng ca thit bj, nhit d phng.
- Kim tra ni dt thit bj.
- o dim dng p, ngun din v so snh vi tiu chun k thut.
2.4.8 Thay th tray quat
- Thay th quat lm mt khng cn phi tt ngun din. Tuy nhin phi ch
thay th trong thi gian ngn, nu khng khi nhit d tng dn mc nht
djnh router s khng trang thi lm vic bnh thung m chuyn qua
ch d bo v.













ERX1410 ERX705




Phn quy trnh


Chuong II: Quy trnh bo dung 34



















PHN PHU LUC:
GII THIEU ROUTER JUNIPER M160,
ERX v CC GIAO THC LIN QUAN


Chuong I. Gii thiu Router M-160
1. Cu trc tng quan h thng M160
1.1 Co cu chuyn tip gi
Co cu ny c th chuyn tip dn 160 triu gi trong mt giy, bng thng
tp trung router l 160 Gbps don cng v 80 Gbps song cng (10 Gbps trn
mi FPC). Co cu chuyn tip gi duoc thuc thi cc IC chuyn bit (ASIC) v
bao gm mt b nh chia s d h tro b tra bng tp trung.
Cc b phn cu thnh:
Midplane Kt ni gia FPC v SFM cng nhu cc thnh phn h
thng khc.
Phn ph lc


Chuong I: Gii thiu M160 35
SFM (Switching and Forwarding Modules)
FPC (Flexible PIC Concentrators)
PIC (Physical Interface Connectors) Mi PIC c mt IC diu khin.
PIC cung cp kt ni cp quang v giao tip s dn mang. Cc PIC
cu th s dung cho M160 ca VTN2 s duoc trnh by phn sau.
PCG (Packet Forwarding Engine Clock Generator) Pht xung clock
125 MHz d x l gi, c hai PCG d lm master v backup.
1.1.1 Modul chuyn tip v chuyn mach - SFM
Bao gm cc IC Internet
Processor II (dua ra cc quyt djnh
chuyn tip dua vo tra bng, x l,
chuyn mach dn cc FPC dch) v IC
Distributed Buffer Manager (phn phi
cc cell d liu v chuyn tip cc
khai bo ca gi ra). M160 h tro ti
da 4SFM. Trang thi dn led ca SFM:
Nhn Mu Tnh trang M t
Sng
SFM hoat dng bnh
thung OK Xanh
Nhp nhy SFM khi dng
Fail Vng Sng SFM hng
1.1.2 Thanh tp trung cc PIC FPC

Physical Physical
Interface Interface
Card Card
Physical Physical
Interface Interface
Card Card
PIC PIC PIC PIC
PIC PIC PIC PIC
PIC PIC PIC PIC
FPC
B
u
f
f
e
r

B
u
f
f
e
r

m
e
m
o
r
y
m
e
m
o
r
y
B
u
f
f
e
r

B
u
f
f
e
r

m
e
m
o
r
y
m
e
m
o
r
y
ASIC ASIC ASIC ASIC


Phn ph lc


Chuong I: Gii thiu M160 36

Cung cp b nh chia s v kt
ni PIC dn phn cn lai ca router
d gi c th duoc djnh tuyn dn
port tuong ng. Mi FPC c mt IC
Packet Director phn phi cc gi d
liu gia cc SFM, mt IC I/O
Manager d chia cc gi d liu dn
thnh cc khi nh (cell) 64 byte v
ti hop cc cell thnh gi d liu khi
chng d sn sng cho truyn dn. C 8 khe slot d cm FPC tuong ng vi
ti da 8 FPC c th c trong mt router. Mi khe slot c hai dn LED v mt
nt Offline nm pha trn n bng giao tip (th cng). n xanh chi trang
thi OK v dn d chi trang thi hng. Nt offline hin thj khe slot v duoc
dng khi tho b FPC. Truc khi tho g FPC, nhn v gi nt ny cho dn
khi dn trang thi hng bt ln.
1.1.3 Cc buc hoat dng

Packet Forwarding Engine Components v dng d liu: M160
dm bo gi d liu di qua h thng dy d, M160 duoc thit k d
cc IC chuyn bit phn cng nm gi vic chuyn tip cc gi d liu.
Chui d liu qua co cu chuyn tip theo cc buc sau:
a) Gi d liu dn giao tip vo ca PIC
Phn ph lc


Chuong I: Gii thiu M160 37
b) PIC chuyn gi dn FPC, tai dy IC Packet Director s phn phi gi
cho cc IC I/O Manager
c) IC I/O Manager x l header ca gi, chia gi thnh cell 64 byte v
gi chng dn SFM thng qua midplane
d) IC Distributed Buffer Manager SFM phn phi cell qua b nh
duoc chia s d dn FPC
e) IC Internet Processor II SFM thuc thi tra bng djnh tuyn v dua ra
quyt djnh chuyn tip.
f) IC ny cng khai bo IC Distributed Buffer Manager th hai SFM,
l IC chuyn tip khai bo dn giao tip ng ra.
g) IC I/O Manager FPC ti hop cc cell d liu b nh chia s
thnh cc gi data v truyn chng thng qua IC Packet Director d
dn PIC ng ra.
h) PIC ng ra truyn di cc gi d liu d ti hop
1.2 Co cu djnh tuyn

Cu trc d[nh tuyn M160
Co cu djnh tuyn M160 nm gi tt c cc x l giao thc djnh tuyn cng
nhu cc phn mm khc diu khin giao tip router, phn cng, h thng qun
l v cc cuc truy nhp vo router ca ngui dng. Phn mm diu khin l
JUNOS Internet. Cc djnh tuyn v x l phn mm s chay trn kernel giao tip
vi co cu chuyn tip gi.
Co cu ny cung cp cc dc tnh sau:
Phn ph lc


Chuong I: Gii thiu M160 38
X l cc gi giao thc djnh tuyn Tt c cc gi giao thc djnh tuyn
t mang du truyn dn co cu ny, khng qua co cu chuyn tip gi.
Phn doan phn mm Bng cch chia cc phn mm chc nng khc
nhau thnh cc qu trnh x l ring r, cc su c s t hoat khng nh
hung dn qu trnh x l chung.
Phn lp Kh nng h tro cc giao tip, mach o ln
Giao din qun l C nhiu cp d khc nhau d chon lua nhu CLI
(giao din cu hnh, qun l phn mm giao thc djnh tuyn), th cng
hay SNMP (giao thc qun l mang don gin).

IC Internet Processor II cho php bng chuyn tip ( co cu chuyn tip
gi) duc cp nht m khng phi ngt qung chuyn tip
Co cu djnh tuyn M160 xy dung v duy tr mt hay nhiu bng djnh tuyn
nhu hnh trn. T bng djnh tuyn, co cu ny tao ra mt bng tuyn dng goi l
bng chuyn tip d chuyn dn co cu chuyn tip gi.
C hai co cu djnh tuyn RE trong router M160, mt l master (mc djnh l
slot c nhn RE0) v mt d backup. RE master s quyt djnh PCG no l
master.
Phn ph lc


Chuong I: Gii thiu M160 39
1.3 H thng con diu khin hn hop MCS (Miscellaneous
Control Subsystem)
Lm vic vi co cu djnh tuyn d
cung cp chc nng diu khin v qun
l cc thnh phn ca router cng nhu
cung cp clock SONET cho router. Mi
MCS yu cu co cu djnh tuyn kt ni
vi slot lin k vi n. Trong mi router
M160 c hai host modul (co cu djnh
tuyn + MCS), mt host lm vic v mt
host du phng. Cu th MCS c cc chc nng sau:
MCS thu thp cc thng bo t cc cm bin trong h thng. Khi n
pht hin mt trang thi hng hay cnh bo, n gi tn hiu dn co cu
djnh tuyn RE pht thng bo hay thit lp cnh bo.
MCS cp ngun cho cc thnh phn ca router khi chng khi dng hay
ngt ngun khi nt offline bt
Qun l cc xung clock
Thng bo cho cc thnh phn ca router host modul no l master, v
backup, tuong tu di vi PCG.
1.4 Giao din th cng( Craft interface)
Giao din ny cung cp trang thi tng qut ca router v c cc nt refresh
hoat dng cnh bo, tho g FPC.



Phn ph lc


Chuong I: Gii thiu M160 40

Hnh dng Mu sc Trang thi M t hoat dng


Sng
Cnh bo khn cp iu ny dn dn
M160 c th ngng hoat dng. Nguyn
nhn c th l: Cc thnh phn chc nng
bj tho b, hu hng hay nhit d vuot qu.


Vng Sng
Cnh bo Duy tr mt thng bo hay
cnh bo tnh trang gia tng nhit d.


- -
Refresh lai ton b cc cnh bo Khi
nhn nt ton b dn trn giao din s
sng nhm muc dch test lai ton b.

Mn hnh LCD v cc nt lin quan:
Mn hnh hin thj 4 dng vi 6 nt lin quan xung quanh, hoat dng hai ch
d:
1.4.1 Mode Idle
Trong sut qu trnh hoat dng bnh thung, mn hnh hoat dng mode
ny v lm nhim vu bo co lai thng tin tnh trang hin tai.

- Dng du tin Tn Router
- Dng th hai Thi gian router d hoat dng, theo dang
Up ngy + gi:pht
- Dng ba v bn Thng bo tnh trang (ci dt hay tho g c th
gin doan thng bo).
ci dt mesage mc djnh s duoc trnh by phn B.
1.4.2 Mode Alarm
Khi cnh bo xut hin (dn d hoc vng), mn hnh chuyn ch d
sang mode Alarm v thng bo v tnh trang alarm.
ACO/LT
Phn ph lc


Chuong I: Gii thiu M160 41

- Dng th nht Tn router
- Dng th hai S ca cnh bo
- Dng ba v bn Thng bo cu th, R l cnh bo d (khn cp), Y l
cnh bo vng. (PEM: ngun cung cp DC)
1.5 Tm ni giao tip CIP (Connector Interface Panel)
Nm ngoi cng bn tri mt truc M160, n bao gm cc du ni giao
tip v cc cng tc cnh bo.


1.5.1 Port giao tip Co cu d[nh tuyn
Mt na trn ca card l hai b port dnh cho vic kt ni vi mt hay
nhiu cc thit bj ngoi d ngui diu khin c th chay cc lnh JUNOS
qun l router. B port HOST0 ni vi Co cu djnh tuyn slot RE0 v
HOST1 ni vi RE1.
ETHERNET
Ni Co cu djnh tuyn qua kt ni Ethernet dn mang LAN dng cho
qun l. S dung du RJ 45 h tro kt ni 10Mbps hay 100Mbps. Hai dn
led nh bn tri port chi: kt ni 10Mbps (dn vng sng); kt ni
100Mbps (dn xanh sng).
CONSOL
Kt ni RE dn h thng diu khin thng qua port RS-232 ni tip
AUXILIARY
Phn ph lc


Chuong I: Gii thiu M160 42
Kt ni RE dn laptop, modem hay cc thit bj h tro khc thng qua
RS 232 ni tip.
1.5.2 Cng tc cnh bo
Gm hai cng tc kt ni router dn cc thit bj cnh bo khc. hai cng
tc ny tuong ng vi hai dn cnh bo trn giao din th cng.
1.6 Cc card giao tip dang s dung trong h thng
1.6.1 SONET/SDH PIC
K thut SONET/SDH l k thut kt hop kh nng bng thng ln v tn
dung uu th ca dung truyn quang. K thut ny dang duoc dng rng ri
d cung cp tc d truyn cao ng dung trong co s ha tng ca cc mang
IP lp ln. Hin nay, Juniper cung cp series card giao tip SONET/SDH h
tro tc d t OC-3c/STM-1 dn OC192c/STM-64. M160 ca VTN 2 dang s
dung mt s card loai ny.

OC-3c/STM
4-port
Dai: 2km (MM)
15km (IR)
Bc song:
1.270nm en
1.360nm
Card OC-3c/STM-1 PIC cung cap giai phap
xay dng mang xng song s dung toc
o mach toc o cao OC-3c/STM-1. IC nay
phat 155Mbps tren moi port, do o moi IC
co the up len toi a la 622Mbps.
- Card ho tr ca hai mode multi va single.
Hien nay M160 ang s dung 5 card Multi va
1 card Single IR
- Card ch hoat ong che o lien ket
(4 card tren mot FPC)
OC-12c/STM-4
1-port
Dai: 5km (IR)
Bc song:
1.274nm en1.356nm

IC nay ho tr cho viec truyen toc o
cao hn, phat luong STM-4 622Kbps, no cung
co the cung cap 4 luong 155Mbps vi giao
tiep n.
- Card ho tr ca hai mode multi va single.
Hien nay M160 ang s dung 1 card Single IR.
- Card hoat ong ca che o lien ket
(4 card tren mot FPC) lan khong lien ket.

Phn ph lc


Chuong I: Gii thiu M160 43
1-port OC-12c/STM-4 SONET/SDH PIC


C-48c/STM-16
1-port
Dai: 2km
Bc song: 1.266nm
en 1.360nm

Co the ap ng yeu cau bang thong
mang loi Internet. ng truyen 2,5 Gbps
- Hien nay M160 ang s dung 2 card
Single SR.
- Card hoat ong ca che o lien ket
(4 card tren mot FPC) lan khong lien ket.

1-port OC-48c/STM-16 SONET/SDH PIC


1.6.2 Ethernet PIC
Gigabit Ethernet PIC cung cp tc d 1Gbps v 10Gbps trn mi port d
h tro su pht trin nhanh chng ca mang truc.
mang truc, card Gigabit Ethernet kt ni router li dn Switch chuyn
mach kt ni nhm tp hop luong ln cc lung vo mach tc d cao. Hin
nay M160 VTN2 trang bj mt card 10Gbps 1port d sn sng kt ni vi VDC
nhm ho mang truy cp Internet.
Vi su h tro ca card ny, cc kt ni
dn mang truc internet s c thi gian phn
hi nhanh hon.
Vi cc ng dung yu cu bng thng
cao d truyn trong ni vng, card ny s
dung soi quang LX cho khong cch 10km
hay hon phu thuc vo so s cp. Nu s
dung soi quang LH, khong cch c th tng ln dn 70km.
Cc dc tnh:
H tro VLAN d phn chia lung gia cc server thnh cc lung
ring r o.
Tp trung lung, c ngha l kh nng kt hop mt tp cc port vi
tc d lung ging nhau vo mt knh o. Do d h tro dng thi
cc giao tip vt l song song gia cc thit bj. C th cu hnh dn
16 nhm trn mt router vi mi nhm gm 8 port. Nu mt dung
dn down, luu luong s duoc ti cu trc vo cc dung cn lai.

Phn ph lc


Chuong I: Gii thiu M160 44
H tro dung dn chuyn mach nhn MPLS, do d h tro rt tt
cho co s ha tng IP bi kh nng kt hop chuyn mach lp 2 vi
k thut luu luong IP v dung hm.
H tro VRRP cp d vt l. Do d, mi port vt l c th hoat
dng nhu l mt backup cho port vt l khc.
Thng tin lp hai duoc nh xa ln lp ba v truyn qua tuyn
WAN. V du cc 802.1p tags s duoc nh xa vo DiffServ ca cc
bit thng tin ca MPLS, do d lp djch vu CoS c th duoc mang di
khp cc du cui.
Cc dc dim ca card 1-Gbps Gigabit Ethernet (SX interface):
Connector: SC
Chiu di c th ca cp quang:200m-500m
Buc sng: 830-860nm
n led
Led trang thi: - Xanh: hoat dng bnh thung
- : Tt c cc link bj down
- Tt: PIC khng hoat dng
Led port: + ung truyn: - Xanh:port dang online
- Tt: Port down
+ Nhn d liu: Nhy xanh
1.7 Ci dt v thay th cu trc ca M160
M160 l mt router cho mang truc do d yu cu v thi gian cht l ti
thiu. Juniper djnh ngh ba mc sau ng dung cho vic ci dt v thay th cc
thnh phn trong M160:
Thnh phn ci dt, tho g bt ky: Ban c th ci dt hay tho g cc
thnh phn ny m khng cn ct ngun hay lm gin doan chc
nng djnh tuyn.
Thnh phn nh hung tuong di: Ban c th ci dt hay tho g cc
thnh phn ny m khng cn ct ngun nhung chc nng djnh tuyn
ca h thng bj gin doan khi thnh phn bj tho g.
Thnh phn nh hung tuyt di: Ban phi ngt ngun khi mun tho
g thnh phn ny.
TP ci dt, tho g
bt ky
TP nh hung
tuong di
TP nh hung
tuyt di
Phn ph lc


Chuong I: Gii thiu M160 45
Loc khng kh
Khay quat
FPC
Card giao tip vt l
PIC

MCS
B pht xung clock
ca co cu chuyn tip
gi (PCG)
Co cu djnh tuyn
SFM
Tm ni giao tip
(CIP ngoi cng bn
tri, mt truc M160)
Hp ngt din (ci
ny th ai cng bit :)






2. Phn mm diu khin _ JUNOS Internet
Phn mm RE bao gm mt s phn mm x l d diu khin chc nng
router v mt kernel d kt ni giao tip gia cc b x l, bao gm:
X l giao thc djnh tuyn
X l giao tip
X l MIB II (Management Information Base) v SNMP (Simple Network
Management Protocol)
X l diu khin
Kernel RE (Co cu djnh tuyn)
2.1 X l giao thc djnh tuyn
Phn mm ny diu khin giao thc djnh tuyn chay trn M160. X l giao
thc djnh tuyn khi dng tt c cc cu hnh giao thc djnh tuyn v nm gi
tt c cc thng dip djnh tuyn. Cc thng tin djnh tuyn s duoc phn mm
cp nht vo bng djnh tuyn v xc djnh tuyn dung kh d cho mt dch no
d trong mang, t d cc buc di s duoc up ln bng chuyn tip ca co cu
djnh tuyn (RE). Cui cng, phn mm ny s thuc thi cc chnh sch (policy)
m ban yu cu d xc djnh cch thng tin djnh tuyn duoc truyn di gia giao
thc djnh tuyn v bng djnh tuyn.
Phn ph lc


Chuong I: Gii thiu M160 46
2.1.1 Giao thc d[nh tuyn
Giao thc djnh tuyn lin kt hoat dng vi giao thc djnh tuyn IP v cung
cp lp v diu khin cn thit cho mang li Internet. N h tro mt s giao thc
chuyn tip v k thut luu luong sau:
Cc giao thc d[nh tuyn unicast
BGP Border Gateway Protocol, l mt giao thc Exterior Gateway
dm bo vng trao di thng tin gia cc vng djnh tuyn (AS).
ICMP Internet Control Message Protocol Router Discovery, l mt giao
thc d cc host pht hin dja chi subnet ca cc router dang hoat
dng.
IS-IS Intermediate System to Intermediate System, l giao thc Interior
gateway dng cho mang IP, s dung thut ton Dijkstra) d xc djnh
tuyn.
OSPF Open Shortest Path First, l giao thc IGP cho mang IP, l giao
thc trang thi dung dn, dua ra quyt djnh djnh tuyn dua trn thut
gii SPF (Dijkstra).
RIP Routing Information Protocol, IGP cho mang IP dua vo thut
ton Bellman-Ford, l giao thc s dung vector khong cch.
Cc giao thc d[nh tuyn multicast
DVMRP Distance Vector Multicast Routing Protocol
IGMP Internet Group Management Protocol, dng d qun l mi lin
h trong nhm multicast.
MSDP Multicast Source Discovery Protocol, giao thc h tro kt ni
nhiu PIM lai vi nhau.
PIM Protocol Independent Multicast, l mt giao thc djnh tuyn
multicast, dng d djnh tuyn luu luong dn cc nhm multicast do d
c th m rng v kt ni cc domain lin mang.
SAP/SDP Session Announcement Protocol/Session Description
Protocol, cc giao thc nm gi cc thng bo, m t.
Cc giao thc k thut luu lung
LDP Label Distribution Protocol, giao thc cung cp co ch phn phi
nhn. LDP cho php cc router thit lp cc dung dn chuyn mach
qua mang bng cch nh xa thng tin djnh tuyn lp mang truc tip dn
Phn ph lc


Chuong I: Gii thiu M160 47
dung dn chuyn mach lp data-link. Cc dung dn chuyn mach
cn c th duoc tao ra bng giao thc du tr dnh ring RSVP, tuy
nhin trong pham vi ti liu ny cng nhu trong cc ng dung M160
VTN giao thc ny khng duoc d cp dn.
MPLS Multiprotocol Label Switching, l giao thc cho php ban cu
hnh cc LSP (dung dn chuyn mach nhn) v cng c th diu khin
luu luong qua mang bng cch gn truc tip dn mt dung dn cu
th, hon l dua vo thut gii dung dn ngn nht d chon dung
truyn. y l mt giao thc kt hop sc manh dung truyn ca lp
data v tnh linh hoat ca lp chuyn mach mang bng cch s dung
cc nhn. Chi tit v giao thc ny s duoc trnh by ti liu Chuyn
mach nhn da giao thc MPLS.
2.1.2 Bng chuyn tip v d[nh tuyn
Chc nng co bn ca b x l giao thc djnh tuyn JUNOS l duy tr bng
djnh tuyn v s dung thng tin trong bng d xc djnh tuyn hoat dng cho
dim dn. N copy thng tin v tuyn dung kh d dn bng chuyn tip ca
Co cu djnh tuyn (Junos kernel s copy chuyn dn Co cu Chuyn tip gi).
Mc djnh, b x l giao thc djnh tuyn duy tr cc bng djnh tuyn dui
dy v s dung thng tin trong mi bng d xc djnh tuyn dung hoat dng cho
dim dch:
Bng djnh tuyn unicast
Luu gi thng tin djnh tuyn cho tt c cc giao thc unicast chay trn
M160 bao gm BGP, IS-IS, OSPF, v RIP. T bng ny, ta cng c th cu
hnh thm vo cc tuyn dung chng han nhu mt tuyn c djnh no d.
Tt c cc giao thc unicast du s dung bng ny d qung b cc thng
tin djnh tuyn cho cc ln cn ca n.
Cc tuyn dung trong bng ny du duoc chon theo chi ph thp nht.
Cc chi ph ca mt tuyn dung s duoc cp nht theo Chnh sch djnh
tuyn v cu hnh cc tham s phn mm khc. iu ny s duoc trnh by
phn Chnh sch djnh tuyn.
Bng djnh tuyn multicast
Luu tr thng tin djnh tuyn cho tt c cc giao thc multicast chay trn
M160 bao gm DVMRP v PIM, cng c th cu hnh thm cc tuyn bng
djnh tuyn.
Phn ph lc


Chuong I: Gii thiu M160 48
Trong bng ny, b x l giao thc djnh tuyn s dung lung luu luong
v cc thng s khc (duoc chi djnh bi thut gii djnh tuyn multicast) d
chon tuyn hoat dng.
Bng djnh tuyn MPLS
Luu gi thng tin nhn MPLS
2.1.3 Chnh sch d[nh tuyn
Chnh sch djnh tuyn cho php diu khin cc tuyn dung duoc nhp
vo hay xut ra bng djnh tuyn. N cng cho php thit lp thng tin dnh km
vi cc tuyn dung ny.
Chnh sch djnh tuyn p dung khi giao thc djnh tuyn gn dung dn
vo bng djnh tuyn duoc goi l chnh sch nhp bi cc tuyn dung duoc
nhp vo bng djnh tuyn. Nguoc lai, cc chnh sch duoc p dung khi giao
thc djnh tuyn qung b cc tuyn dung trong bng thng tin djnh tuyn th
duoc goi l chnh sch xut bi v tuyn dung duoc xut t bng djnh tuyn.
Chnh sch nhp p dung d xc djnh cc tuyn hoat dng, trong khi chnh
sch xut dng d qung b tuyn dung.
Chnh sch djnh tuyn duoc thuc thi bng mt s cc djnh ngha. Mt
chnh sch chi r cc diu kin d thch ng vi tuyn dung v cc phn ng
vi tuyn dung d khi diu kin thch ng xy ra. V du, khi mt bng djnh
tuyn nhp thng tin djnh tuyn t mt giao thc djnh tuyn, chnh sch djnh
tuyn s thay di quyn uu tin ca tuyn, dnh du tuyn vi mt mu d xc
djnh n cho phn b sau ny, thm ch c th ngn chn tuyn ny khng th
nhp vo bng djnh tuyn. Tuong tu, khi mt bng djnh tuyn xut tuyn dung
dn mt giao thc djnh tuyn, chnh sch djnh tuyn c th dng k gi trj
khong cch, sa di thng tin giao tip BGP, thm cc thng tin cho tuyn
dung hay thm ch ngn chn n xut ra.
2.2 X l giao tip
JUNOS x l giao tip qun l cc thit bj giao tip vt l v logic M160.
N thuc thi cc dng lnh (CLI) v cu hnh trang thi d chi r cc tnh cht ca
giao tip (FPC khung cha FPC v PIC trong cc FPC), loai giao tip (nhu
SONET/SDH hay ATM).
Phn mm JUNOS giao tip vi b x l giao tip trong Co cu chuyn tip
gi thng qua kernel JUNOS, cho php phn mm truy tm trang thi v diu
kin ca cc giao tip trn router.
Phn ph lc


Chuong I: Gii thiu M160 49
2.3 X l diu khin
X l diu khin khi dng tt c cc b x l khc v tp lnh khi M160
boot. N qun l tt c cc b x l v c gng khi dng lai bt c b x l no
bj ngng.
2.4 Kernel RE
Kernel cung cp ha tng co s cho tt c cc b x l. N cng cung cp
dung kt ni gia bng djnh tuyn (duy tr bi b x l giao thc djnh tuyn)
vi bng chuyn tip (duy tr bi Co cu djnh tuyn). Thm vo d, n giao tip
vi Co cu chuyn tip gi.

Chuong II. Gii thiu Router E-series
1. Gii thiu tng quan h thng ERX 1410
ERX l router bin th h mi do Juniper sn xut. Trong mang NGN, ERX
dng vai tr l edge router v BRAS dt cc tinh thnh cho mang li 3 router
M160. Hin nay VTN2 dang dng model ERX1410.
Mt s dc dim ca model loai ny l:
1410 c ngha h thng c 14 khe d diu khin luu luong v dng
modul x l chuyn mach SRP (Switch Route Processor) 10Gbps. C
th cu hnh h thng d cho php cc line modul hoat dng tc d ti
da mc djnh hay hoat dng tc d ph hop vi tc d ngun.
H tro pht d liu tc d cao vi mt d port ln, kt ni vi thu bao
d dng.
Cu trc h thng gm 3 thnh phn chnh:
- Mt co cu chuyn mach chia s hoat dng tc d 10 Gbps
- Mach chuyn tip co cu phn phi dn tng line modul
- B x l cho vic duy tr bng djnh tuyn v cu hnh h thng (dy
chnh l phn mm diu khin).
Phn ph lc


Chuong II: Gii thiu ERX 50
Phn mm h thng h tro:
- Kh nng djnh tuyn full s dung BGP, IS-IS, OSPF v RIP
- H tro djnh tuyn advance s dung MPLS
- iu khin v thuc thi chnh sch cht luong djch vu cho IP v ATM
- Nm gi luu luong IP dui nhiu dang dng gi
- H tro cc dc tnh ca B-RAS
- Tao tuyn VPN
Hnh dang ca ERX1410:



Mt truc v sau ERX1410
Phn ph lc


Chuong II: Gii thiu ERX 51

Seri ERX-1400 l cc router bin chuyn dng cho cc thit bj yu cu tc
d logic v vt l cao, n cho php cc nh cung cp djch vu phn phi cc kt
ni IP tc d cao, vi nhiu djch vu dn cc thu bao. V du minh hoa cc line
modul nhn v chuyn tip luu luong ra khi h thng ERX duoc chi ra hnh
dui.
Phn ph lc


Chuong II: Gii thiu ERX 52

H thng ERX nhn v chuyn tip luu lung
H thng ERX-1410 tp trung nhiu chc nng nhu:
- Nhn luu luong vo, m gi d phuc hi gi IP nguyn thy hay nhn
gi d liu lp 2 d dng gi truyn di dui dang gi IP
- Kim tra gi tc d li d p dung cht luong djch vu QoS, VPN v
chnh sch djnh tuyn.
- Thu thp thng k chi tit thng tin trn mi gi.
- jnh tuyn gi IP trong mang s dung BGP-4, IS-IS OSPF, RIP, tuyn
tnh hay MPLS hay dung hm IP.
Dui dy l mt s cc line modul v cc giao thc m chng h tro hin
VTN dang dng, cc line modul ny c th dng cho ng vo hay ra du duoc:
Phn ph lc


Chuong II: Gii thiu ERX 53

Mi ERX-1410 c th ci dt ti da:
- 48 OC3/STM1 ATM/POS(packet over SONET) port
- 12 OC12/STM4 ATM/POS port
- 12 GE(Gigabit Ethernet) port
- 96 FE (Fast Ethernet) port
- 100.000 giao tip IP dc lp, cho php nh cung cp vn hnh h
thng h tro nhiu thit bj ng dung IP v du nhu kt ni dn DSLAM
cho djch vu truy cp bng thng rng (vai tr B-RAS).
2. Cc ng dung chnh ca ERX-1410
2.1 ung truyn tp trung
H thng c th h tro trn 24.000 thit bj FT1 (fraction of T1) nhm ti uu
ha cc dim tn tai POP (point of presence), n nm gi mt s chc nng tp
trung bin sau:
- Phuong php m gi (strip encapsulation)
- p dung djnh tuyn, QoS, VPN, bandwidth, security.
- jnh tuyn gi dung dn ATM hay POS vi OC3/STM1,
OC12/STM4 hoc qua GE, 100Base-T Ethernet.
Phn ph lc


Chuong II: Gii thiu ERX 54
2.2 Tao tuyn o
C th p dung VPN di vi cc tuyn T1, T3, VLAN hay xDSL. ERX1410
h tro mt s k thut VPN bao gm L2TP, GRE, IPSec, MPLS. Hin nay VTN
cu hnh ERX h tro MPLS cho phn phi luu luong trong mang truyn dn.
2.3 ng dung tp trung xDSL
ERX1410 l gii php l tung cho vic tp trung cc multiplexer truy nhp
dung dy thu bao s (DSLAM) mang truc.
2.4 Thuc thi mang LAN o
ERX cung cp kh nng kt ni VLAN,nhu Gigabit Ethernet hay Fast
Ethernet.
2.5 Vj tr cu th ca ERX trong mang
Hai hnh dui minh hoa vj tr ca h thng vi vai tr l mt router bin trong
mang Internet end-to-end. H thng c th giao tip qua nhiu phuong tin khc
nhau. hnh a, khch hng s dung T1/T3 d giao tip trong khi hnh b, lai s
dung dung thu bao s DSL vi multiplexer DSLAM.

Hnh a, Giao tip vi h thng ERX s dng T1/T3
Phn ph lc


Chuong II: Gii thiu ERX 55

Hnh b, Giao tip h thng qua DSLAM
3. Cu trc phn cng
H thng ERX s dung modul dang lp d cha phn cng. N bao gm
mt plan gia c djnh, cc line modul c th tho ri mt truc (c cc dn
trang thi) v I/O modul ng vo ra mt sau. H thng c dnh ch cho cc
modul backup v h tro chuyn nng line modul t backup modul dn master.
Hnh dui l cu trc co bn ca mt ERX-1410.

Phn ph lc


Chuong II: Gii thiu ERX 56
3.1 Cc k thut ng dung trong phn cng
H thng s dung cu trc da x l phn phi dn tng port d nng tc d
x l v su pht trin da dang lp ca h thng. Do d, n c kh nng h tro
dc tnh djnh tuyn th h mi, cung cp cc djch vu khc nhau.
Cc chnh sch cho dng data s duoc djnh hnh tp trung v sau d s
duoc load v tng line modul. Bi tt c cc chnh sch QoS duoc phn phi
dn tn line modul nn tc d x l vn duoc duy tr ngay c khi thm vo modul
mi.
3.1.1 Dng d liu
Hnh dui s th hin cc dng d liu di qua phn cng ca h thng. Cc
line modul s x l v chuyn tip gi. Co cu chuyn mach s chuyn mach gi
bn trong tc d cao (10Gbps). B x l djnh tuyn thu thp bng thng tin djnh
tuyn, gi di bng djnh tuyn v cp nht cc line modul.

1
11 Li vo ca gi thng qua port
2
22 Gi duoc truyn qua connector d dn line modul
3
33 Line modul qun l djnh tuyn v cht luong djch vu QoS
Phn ph lc


Chuong II: Gii thiu ERX 57
4
44 Gi duoc djnh tuyn dn line modul ng ra qua b x l chuyn mach
SRP 10Gbps
5
55 Line modul ng ra sp xp gi vo dung uplink vi QoS yu cu
6
66 Gi duoc truyn qua connector dn I/O modul
7
77 Truyn gi di thng qua port ng ra.
3.1.2 c tnh d phng
Trong ERX, line modul l mt thnh phn quan trong, cc b x l du nm
trn n ch khng phi l I/O modul. Su thit k tch bit ny gip cho h
thng c th du phng vi cc line modul c th chia s cp. Nu mt line modul
hng, ci du phng s dng chnh cp d ( bn trong h thng) m khng cn
phi khai bo hay chuyn di cp g (cp ngoi). C cc loai du phng sau.
D phng 1:1
Modul SPR s dung kiu du phng ny. Khi hai SRP duoc ci dt, mt
s lm master v ci cn lai s dng vai tr backup.C hai h thng du dng
chung modul I/O SRP ( mt sau). Chng s tu chuyn di khi xy ra su c.
D phng 1:N
Hu ht tt c cc line modul du c kh nng h tro kiu du phng ny.
Mt line modul du tr trong mt nhm modul cng loai s cung cp co ch du
phng cho tt c modul cn lai. iu ny tht su quan trong bi router s
dung h thng truyn dn dung luong ln. Nu mt dung dn xy ra su c
th hng ngn thu bao s mt kt ni. s dung ch d ny, cn phi ci
dt phn cng theo mt th tu nht djnh. iu ny s duoc trnh by trong
phn sau.
D phng port
Kiu du phng ny h tro cho cc I/O modul loai OCx/STMx v GE. C hai
port trn cng modul. C hai du nhn cng gi data. H thng ERX kim tra cc
gi ny d xc djnh c hay khng c vn d di vi kt ni quang cho c hai
port. Dua vo thng tin ny, h thng s chon port no hoat dng v port no du
phng. Nu c bt ky su c vi kt ni port, h thng s chuyn dung truyn
dn port du tr.
3.2 Modul h thng
Mt s dc tnh cu trc ca cc loai modul thng dung:
Su hin din ca EPROM trn mi modul cho php xc djnh modul
d v cc thng s k thut sn xut
Phn ph lc


Chuong II: Gii thiu ERX 58
Vj tr ring bit ca cc modul line cho php luu tr ring bit cc
boot image ca chnh n
Mi modul du c b x l RISC chuyn bit, thnh phn chuyn
tip, tm kim ring nn kh nng x l dm bo tc d phn loai v
chuyn tip cc gi 40 byte, thm ch khi h thng hoat dng ti
cao nht.
Luu : Khi ci dt phn cng di vi c SRP ln line modul, phn I/O lun
duoc lp vo truc ri mi dn SRP/line modul. Khi tho ra th nguoc
lai, cc SRP v line modul (mt truc ERX) phi duoc tho ra truc!
3.2.1 Modul SPR
SRP modul l hai board lin quan, c hai board du kt ni dn midplan
v kt ni vi nhau (nhn bn ngoi khng th bit duoc ;-):
Board khung (fabric) l mt server khung chuyn mach nhm sp
xp cc gi cho line modul. N c mt phn cng sp xp ti
nguyn linh hoat cho php ng dung cht luong djch vu QoS dn
tng giao tip vt l v logic, cung cp mt ljch trnh cht ch uu
tin cho vic phn pht gi.
Board h thng l mt board chuyn dng, d boot h thng,
qun l chn don (xem h thng c lm vic bnh thung?), v
h tro x l giao thc djnh tuyn.





Cu trc chi tit ca SRP








Phn ph lc


Chuong II: Gii thiu ERX 59
Modul SRP phi tn tai th h thng mi boot ln duoc. Luu l khng
th tho g SRP khi h thng dang hoat dng (trong trung hop h thng chi
c mt modul SRP). Hnh trn l cu trc chi tit ca mt SRP.
Card luu tr c d[nh
mt truc ca mi SRP, c mt khe ring d cm card loai ny (goi l
PCMCIA card). N duy tr cc thng tin cu hnh h thng v phn mm ca
c h thng. Do d khng th tho card ny ra cho d PCMCIA card cng
hoat dng h tro ch d back up, bi v trong h thng c hai card du chay,
phng khi c su c xy ra di vi card master thi card back up s h tro ngay
m khng cn reload. tho card loai ny ra chi c th tho lun SRP du
phng.
Cch thc hoat dng ca SRP nhu sau:
Khi bt ngun h thng, modul SRP s thuc thi m khi dng (boot) t
PCMCIA. N cng s load phn mm (image) t flash ny vo SDRAM, sau d
thuc thi cc m ly t SDRAM. Mt khi d khi dng xong, SRP s load cc
image thuc thi dn tng line modul.
Khi cc line modul d hoat dng, SRP giao tip vi cc line modul thng
qua mt bus 150 Mbps (ni qua co cu chuyn mach).
Luu : Nhu vy khi ci dt mi SRP modul, h thng s boot hai ln v khong
gia thi gian d trang thi ca SRP modul mi ny l no responding (nu dng
CLI show ver s thy, trong khong 5 pht).
SRP I/O Modul
Chi c mt loai I/O modul SRP cho tt c cc model SRP. Trn mi
modul I/O SRP c hai khe d c th h tro giao tip vi 2 SRP thng qua
midplan. I/O SRP modul h tro cc port sau:
10/100Base-T, port h tro diu khin, qun l bng Ethernet
RS-232, port diu khin qun l VT100
Ng vo ca clock ngoi
Ng ra ca cc cnh bo (chia thnh 3 cp d)
3.2.2 Line Modul v I/O modul
Line modul x l d liu t cc kt ni ng vo nhiu dang khc nhau.
I/O modul cung cp kt ni t h thng ERX dn mang.
Phn ph lc


Chuong II: Gii thiu ERX 60
Phn loai gi
Mi line modul h tro vic phn loai gi ng vo. Mt co cu phn loai
cc line s kt hop cc trung cu th (nhu dja chi IP ngun v dch, port
ngun v dch v giao thc) dn giao din ng vo IP, cc trung lp 2 v.v
Cc line modul dng cho h tr dung hm
Line modul djch vu dung hm TSM (Tunnel Service line Modul) h tro
dung hm IP; nhu DVMRP (Distance Vector Multicast Routing Protocol) v
GRE (Generic Routing Encapsulation); v du cui LNS (L2TP network
server) cho L2TP (Layer 2 Tunneling Protocol). Modul IPSec Service s m
ho hay gii m gi vi giao thc tuong ng (IPsec). Hin nay cc modul ny
VTN khng dng cho nn trong pham vi ti liu ny s khng d cp dn cc
line modul ny mt cch chi tit.
Cu trc line modul
Phn ph lc


Chuong II: Gii thiu ERX 61
Cch ci dt phn cng d h tr backup line modul

c th h tro backup, h thng cn c:
Line modul du phng
Midplan du phng
I/O modul du phng
Hin nay VTN khng c ch d du phng nn trong pham vi ti liu ny
khng d cp chi tit.
Tnh nng cc card (line modul) tuong tu nhu cc card ASIC trong M160
4. Phn mm diu khin
Phn ny s m t cc thnh phn software ca h thng ERX. N bao
gm cc thng tin v lung luu luong, cc giao thc truy nhp, djnh tuyn v co
ch cht luong djch vu QoS.
Phn mm ERX l mt h thng bao gm cc phn mm con ng dung cho
cc h thng (nhu BGP-4, IP, SNMP, Frame Relay, SONET). Chng dc lp vi
nhau v c cc resource ring bit nhu b nh, buffer, v b x l. iu ny cho
php mi h thng con han ch giao tip, dng chung cc di tuong no d, t
d gim thiu ti da cc li cho h thng con. SRP modul chju trch nhim load
Phn ph lc


Chuong II: Gii thiu ERX 62
cc phn mm image dn mi line modul (phn mm cha trong PCMCIA flash),
n cng c nhim vu gi xung cc bng djnh tuyn cp nht.
4.1 Lung data v cch x l gi
u tin gi duoc nhn bi mt giao tip line modul. Gi s duoc x l
ngay trn line modul d. Cc chnh sch djnh tuyn v QoS c th duoc p
dung theo muc dch. Gi sau d s duoc truyn tr ra ngoi.
Qu trnh dui dy m t cch h thng ERX x l gi:
1. Line modul nhn gi
Bt c line modul no cng c th l line ng vo.
2. Gi duoc phn loai. Kt qu ca phn loai l mt dja chi ng ra cho
gi. Phn loai bng mt s cch sau:
Lp 2 Phn loai gi dua vo giao tip ng vo. iu ny cho
php nh cung cp djch vu djnh ngha cc chnh sch cho thu bao
ca mnh v du nhu: nh xa tt c luu luong t port X hay mach o
Y dn mt djch vu dc bit no d.
Lp 2+ - phn loai gi dua vo nhn MPLS. iu ny cho php nh
cung cp s dung nhn MPLS d dng k dung dn luu luong.
Lp 3 Phn loai gi dua vo s port cng nhu bt c trung no
trong gi, bao gm dja chi IP ngun, dch, trung DiffSer, v loai
ng dung. iu ny cho php nh cung cp djch vu gia tng kh
nng diu khin thng qua cc djnh ngha djch vu. V du nhu nh
xa tt c luu luong VoIP cho vic dp ng thi gian thuc, hay l
nh xa tt c luu luong nhn t mt dja chi ngun thu bao cu th
vo djch vu best-effort.
Mt khi gi d duoc phn loai, chc nng tra cu s tm kim djc chi
ng ra tuong ng cho gi v dnh vo gi dja chi tuyn di dn ng ra.
Sau d gi s duoc dt vo trong hng doi ca mt djch vu cu th ty
vo chng thuc phn loai no.
3. Mt s x l trn gi (kt qu ca vic phn loai n), bao gm:
Cho php hay t chi chuyn tip dua vo profile djch vu ca thu
bao. V du nu mt thu bao bj ngn cm do hung ti mt dja chi
dch nhay cm, tt c cc gi d s bj chn lai.
Phn ph lc


Chuong II: Gii thiu ERX 63
ng k gi vi cp d x l, v du nhu chuyn tip gi dn hng doi
djch vu r rng (Gold, Silver hay Bronze).
ua djch vu vo cc cp d uu tin hay di bng thng cu th
Khng ch gi dn mt cp d r rng. C th dn hai ngung duoc
thit lp. iu ny khin gi duoc thit lp dui ba dang cho php
(xanh), cnh bo (vng), hay qu d (d).
nh du gi vi mt nhn d chi ra cch x l cho phn cn lai ca
mang. nh du bao gm mt nhn MPLS, byte DS hay bit DE (t
chi-cho php). V du nhu c th djnh danh tt c luu luong VoIP nhu
l su uu tin cao vi mt nhn MPLS d nm gi su uu tin hay nu
mt luu luong thu bao gia tng dt ngt vuot qu profile, th s dnh
du DE d c th t chi gi nu xy ra nghn.
ng dung thch hop cho cc djch vu VPN. Phu thuc vo yu cu ca
nh cung cp djch vu m nhng djch vu c th bao gm mapping
ATM PVC, dng k chnh sch djnh tuyn, tao router o v bao gm
c VPN. V du : nh xa luu luong t thu bao dn mt dung PVC
ATM d c th h tro dim dn VPN.
Thng k hay tnh ton thng tin v gi hay lung.
Dn lung luu luong dn mt IPSec hay dung hm djch vu cho x l
k tip.
Bt c su kt hop no ca nhng xl trn cng c th chp nhn, v
du nhu thu bao c th dng k djch vu Gold vi su dm bo bng
thng 384 Kbps.
Hnh dui th hin luu luong duoc chia segment thnh ba dng doi dua
vo su phn loai, n cng th hin kt qu ca vic x l.
Phn ph lc


Chuong II: Gii thiu ERX 64

Chia segment v x l luu lung
4. Gi s duoc chuyn tip dn dja chi ng ra dua vo chc nng
chuyn tip IP (luu l cc di chuyn du l di chuyn trong router
ERX).
Co cu chuyn mach modul SRP nm gi gi chuyn tip dn port
dch ng ra (trong ERX).
5. Line modul nm lp biu ca gi, dng gi lp 2 v truyn gi dn ng
ra.
Mt khi gi d duoc lp biu, router line modul s remove dja chi
djnh tuyn trong, dng gi vi header lp 2 (ATM, POS, Frame
ReLay, PPP, VLAN), v truyn gi vo mang. Tt c dng luu luong
du duoc truyn vi tc do li (full).
4.2 IP
H thng ERX thuc thi mt cu trc IP kiu stack d h tro cu hnh dng
nhm thay di d dng cu hnh mang vi t djch vu bj ngt nht. Tt c thng tin
cu hnh IP stack du duoc luu trong flash (PCMCIA), v tt c cc thay di
cu trc stack l thay di dng m khng di hi h thng phi khi dng lai.
Mt bng giao tip luu tr thng tin v cc giao din, mi interface di km
vi mt stack IP; bao gm index, dja chi IP, subnet mask; cng vi giao din lp
thp nht, MTU (maximum transmission unit), trang thi (up or down) v timer chi
tnh trang giao tip. iu ny cho php trin khai h thng vi cc ng dung IP
nhu tp trung du ra t DSLAM cho cc ng dung B-RAS.
Phn ph lc


Chuong II: Gii thiu ERX 65
Cng c th cu hnh giao tip IP bng cch tao mt profile. Kh nng ny
cho php qun l mt luong ln giao tip IP cng mt tp cc dc tnh. Thm
vo d, mt profile cng gip dng k giao tip IP vi mt router o.
4.2.1 IP/PPP (Point to Point Protocol)
IP/PPP cho php nh cung cp djch vu nhn luu luong t cc thu bao c
cc thit bj CPE nhu l router vi giao tip PPP v luu luong ra djnh dang
PPP dn cc thit bj mang khc.

ERX h tr kt ni IP/PPP t CPE
Luu luong t CPE sau d duoc ti djnh tuyn dn dung ra ca h thng
hay CPE khc ni vi ERX.
Cu trc PPP bao gm:

4.2.2 IP/Frame Relay
H thng h tro Frame Relay qua POS (packet over SONET) bt c line
modul OCx/STMx POS no.
Vi dc tnh ny cho php:
Nhn luu luong t cc thu bao c CPE nhu router vi giao tip FR.
Nhn luu luong t cc thit bj mang khc m cc thit bj ny gi d liu
ra dui dang FR nhu switch FR.
Phn ph lc


Chuong II: Gii thiu ERX 66
S dung FR nhu mt k thut uplink cc dung khng phn knh T3
hay E3.

Kt ni IP/PPP vi IP/FR
Hnh trn minh hoa ERX c th nhn mt s k thut truy cp v h tro
dung dn tr v dn CPE hay mang li. Thung giao tip FR c mt CPE
(router) hay mt mang cng cng (c FR switch).
Cu trc FR (vi lp vt l lm nn tng) v trong ERX

Cu trc Frame Relay v trong h thng ERX
4.3 IP/ATM (Asynchronous Tranfer Mode)
ERX h tro IP qua ATM, dc tnh ny cho php nh cung cp nhn luu
luong thu bao (router) c giao tip ATM hay t cc thit bj pht ATM nhu
DSLAM, cng nhu kt nI dn mang truc ATM.
Hnh duI m t cu trc giao thc ATM vI nn tng l lp vt l. Giao
tip ATM kt nI vI lop giao tip IP/OSI.
Phn ph lc


Chuong II: Gii thiu ERX 67

Cu trc ATM v trong h thng ERX
4.4 SONET
SONET h tro hai giao thc:
IP/PPP v IP/FR qua SONET cc line modul Ocx/STMx
IP/ATM v IP/PPP qua SONET cc lie modul Ocx/STMx
iu ny cho php cc kt ni quang vo h thng hay kt ni ERX dn
mang truc thng qua kt nI quang.

ERX h tr giao tip quang
4.5 Routing
ERX l th h router phn lp h tro cho c giao thc djnh tuyn IP vng
v lin vngbao gm BGP-4, OSPF, RIP, MPLS, VRRP v multicast IP.
C 3 dc tnh thuc thi ca h thng djnh tuyn:
H tro phn phi djnh tuyn, chuyn mach gi tc d li.
Phn ph lc


Chuong II: Gii thiu ERX 68
Hu ht cc giao thc djnh tuyn du duoc h tro bao gm BGP,
OSPF, IS-IS, RIP v MPLS, cng nhu kh nng phn lp dja chi cao
cn thit cho cc mang quy m ln.
H thng cho php tao ra nhiu router o vi mi router c cc giao
thc djnh tuyn v bng djnh tuyn ring r.
4.5.1 Cu trc d[nh tuyn ERX
Cu trc djnh tuyn ERX duoc thit k dp ng kh nng djnh tuyn cc
mang quy m ln. H thng hoat dng tc d mang dung truc, vi cc gi
40-byte v cc dc tnh h tro nhu QoS, VPN hay tnh. Cu trc djnh tuyn
phn phi dn tng line modul, tai d vic tra bng v quyt djnh chuyn tip
s duoc thuc thi dua vo bng djnh tuyn. Hai chc nng ny s duoc m t
chi tit dui dy.
Modul SRP xy dung v luu tr d liu djnh tuyn dn 1,5 triu tuyn.
Thng tin duy tr mi tuyn bao gm t nht: dja chi IP dch, chiu di, ph
dung dn, thng tin ti djnh tuyn, giao thc p dung cho tuyn v chi r hon
v giao thc d nhu hoat dng lp 1, lp 2, ni vng hay lin mang.
Tuyn dung trong bng djnh tuyn c th duoc chia x cho cc giao thc
djnh tuyn v bt c giao thc djnh tuyn no cng c th thm tuyn dung
vo bng djnh tuyn. Cp d lin kt gia cc giao thc khc nhau cng duoc
cu hnh. V bng djnh tuyn chung duoc luu tr tp trung modul SRP
nhung sau d duoc nn v chuyn dn (multicast) tt c cc line modul.
Luu l: nu c router o th mi router ny du c cc co s d liu djnh
tuyn ca ring n.
Hnh dui m t bng djnh tuyn duoc tao thnh v qu trnh x l phn
phi. SRP modul thu thp thng tin djnh tuyn v luu n trong cng mt
bng. Sau d bngny duoc gi ti tng line modul, dc tnh ny cho php cc
gi dn duoc x l nhanh chng v hiu qu.
Khi mt gi duoc nhn line modul, vic tra bng djnh tuyn duoc thuc
thi. Nu tuyn khng tn tai trong bng, th noi dn duoc xem nhu khng tn
tai v mt gi ICMP thng bo s duoc gi.
Phn ph lc


Chuong II: Gii thiu ERX 69

Cch thc phn phi d[nh tuyn
4.5.2 iu khin tuyn
ERX cho php diu khin trao di thng tin djnh tuyn gia cc router o
trong h thngcng nhu gia cc router trong mang v gia cc giao thc
router.
Danh sch truy nhp Cung cp b loc p dung cho cc tuyn nh
xa hay danh sch phn phi. iu ny cho php cc chnh sch
duoc p dung nhu ngn chn chuyn tip tuyn gia bng djnh
tuyn BGP4 v IS-IS.
nh xa tuyn Thay di cc dc tnh ca tuyn khi truyn. nh xa
tuyn c th dng dnhch truy nhp d xc djnh tp cc tuyn cn
chinh sa.
Danh sch phn phi iu khin thng tin djnh tuyn d truyn
dn mt dim router no d. N lun s dung danh sch truy nhp
d xc djnh tuyn cn cho phn phi. V du nhu danh sch phn
phi c th s dung danh sch truy nhp d chi r tuyn cho qung
b.
Phn ph lc


Chuong II: Gii thiu ERX 70
Ti djnh tuyn Cho php tuyn duoc chia s gia cc giao thc v
min djnh tuyn. V du mt mang con c cc tuyn BGP c th lot
vo bng djnh tuyn IS-IS.
4.5.3 Mt s ng dng c th ca MPLS:
K thut luu luong
Mang ring o (bao gm h tro MBGP)
Cht luong djch vu v lp djch vu
4.4.3.1. Mang ring o BGP/MPLS
a giao thc m rng BGP cho php BGP trao di thng tin djnh tuyn
cho nhiu dng dja chi khc nhau. BGP mang thng tin djnh tuyn cho mang
v nhn MPLS, trong khi MPLS truyn ti luu luong d liu. Hnh dui m t
mt h thng din hnh.

Mt h thng VPN BGP/MPLS din hnh
Mang truc c hai loai router:
Router bin nh cung cp (PE) dt bin ca mang li nh cung
cp djch vu. Cc router ny phi chay BGP-4, bao gm VPN
Phn ph lc


Chuong II: Gii thiu ERX 71
BGP/MPLS m rng. Chng cng c th l dim du hay kt cui
ca dung dnh ring LSP trong MPLS.
Router li nh cung cp (P) kt ni truc tip dn PE hay cc P
khc. Nhng router ny cho php chuyn mach nhn LSP. Khng
cn thit phi chay BGP-4 trn chng d c th trao di thng tin
djnh tuyn cho VPN.
PE giao tip vi thit bj khch hng bin (CE). CE c th l mt host don,
mt switch hay l mt router. Nu CE l mt router, n l mt dim ngang
hng vi tt c cc PE kt ni truc tip vi n. Kt ni gia CE v PE c th
dui bt c dang dng gi no v cng khng cn thit d p dung MPLS.
Hnh trn, mi PE kt ni vi mt s CE v t nht l mt P.
Mi vng thu bao l mt mang c th giao tip vi nhau trong cng mt
mang ring o. Hai vng c th trao di gi IP vi nhau chi khi chng c cng
t nht VPN chung.
Mi vng (c kt ni dn mt PE cu th) cng duoc dnh km vi mt
bng chuyn tip, goi l bng chuyn tip v djnh tuyn VPN (VRF) nhu hnh
dui dy.

Thnh phn mang VPN MPLS/BGP
Phn ph lc


Chuong II: Gii thiu ERX 72
Nu mt s vng thu bao du l thnh vin ca cng mt tp VPN, chng
c th chia s cng mt VRF. H thng tm kim dch dn ca gi trong VRF
duoc dnh km vi giao tip nhn gi.
4.6 Cht luong djch vu QoS
Cht luong djch vu ngy cng tr nn quan trong bi mt s l do sau:
Yu cu bng thng vuot qu mc cc bin v di hi v d uu tin luu
luong; v du cc thu bao thuong mai phi duoc uu tin hon cc thu
bao bnh thung, cc ng dung dc bit phi hon dng d liu best-
effort.
Su hi tu ca cu trc co s ha tng mang, luu luong thoai duoc truyn
qua mang d liu.
Cc nh cung cp djch vu mong mun dem lai cc lp djch vu khc nhau
d gia tng loi ch.
Mt router bin tp trung nhu ERX phi h tro hng chuc ngn hng doi
cho mi line modul bi mi thu bao c th c nhiu hng doi. Hnh dui chi ra
rng mt hng doi ng vo duoc phn knh thnh nhiu hng doi ng ra.

Giao din hng di router bin
4.6.1 Thc thi QoS
Hnh dui cho thy dng cc gi IP di qua h thng ERX. Cc IC chuyn
dung cc line modul s dm nhn x l QoS. Gi duoc phn loai ng vo
Phn ph lc


Chuong II: Gii thiu ERX 73
hay ra ca line modul. Kt qu l cc chnh sch nhu profile gii han tc d,
duoc p dung.

Dng d liu ng vo h thng ERX
V phn loai ng ra ca h thng

4.6.2 Phn lp luu lung
Trong mi trung mang ngy nay, router bin phi dm bo luu luong thi
gian thuc duoc uu tin hon tt c cc loai luu luong khc bi do tnh cht ca
luu luong thi gian thuc l cc ng dung nhu thoai hay video, nhng ng dung
yu cu v d tr v nhiu.
Cc lp c yu cu cao bao gm:
tr nh v nhiu thp cho cc ng dung thoai
Phn ph lc


Chuong II: Gii thiu ERX 74
tr nh cho cc dng ng dung nhu thoai
Ti l li thp, t rt gi cho cc ng dung dc bit cng nhu cc tn hiu
bo hiu hay mang ring o.
H thng ERX h tro dn 8 lp luu luong cho mi giao tip IP bao gm
mt s lp nhu: d tr thp, ti l mt gi nh v best-effort. Mi lp luu luong
c mt profile QoS ring.
4.7 H tro truy cp t xa bng thng rng B-RAS
Mt ng dung khc ca h thng ERX l tp trung ng ra ca cc DSLAM,
cung cp kt cui Point to Point, p dung chnh sch QoS v djnh tuyn luu
luong vo mang truc. ng dung ny duoc goi l Truy cp t xa bng thng
rng.
4.7.1 Giao thc h tr
Mt s giao thc h tro ng dung ny bao gm:
IP/PPP/ATM
IP/PPP/Ethernet/ATM
IP/PPP/Frame Relay
IP/PPP/Ethernet/Frame Relay
Hnh dui l cu trc ca giao thc h tro BRAS. N cho php cu hnh
ERX nhu mt router trung tm h tro tp trung dng gi t cc thit bj CPE
xDSL. Tn hiu h tro duoc cung cp qua cc modul OC3, T3 v E3.

Giao thc h tr B-RAS
4.7.2 Dng luu lung
H thng phi thuc hin mt s yu cu cho thu bao d thit lp cc kt ni:
Phn ph lc


Chuong II: Gii thiu ERX 75
- Thu bao phi duoc kim tra. H thng c th s dung trnh RADIUS vi
PAP v CHAP d kim tra thu bao.
- Kt ni phi duoc dng k bng mt dja chi IP. H thng h tro dng k IP
cho cc user du cui qua DHCP, RADIUS, IP pool.
- Point to Point session phi duoc kt thc. H thng h tro tt c cc dang
dng gi xDSL d h tro tt c cc loai modem xDSL.
- Thu bao s duoc djnh tuyn v p dung cc chnh sch QoS. H thng c
th lm duoc diu ny bng dc tnh phn loai ca chnh n. V du, cc
session, idle v gi trj time out duoc dnh km vi cc session ca thu bao.
- Tnh ton luu luong d liu duoc thuc hin. ( c th tnh cuc)
4.8 H tro VLAN
ERX h tro VLAN giao tip Fast Ethernet v Gigabit Ethernet.C hai
trung duoc thm vo frame Ethernet d xc djnh v uu tin ho luu
luong: VLAN ID v gi trj uu tin ca ngui dng.

Frame Ethernet vi cc trung thm vo
Frame Ethernet dng chun ny th c th tag v duoc xem xt theo
cch mach ATM VC. Khi mt frame duoc gi qua mt line bng thng ln
(v du nhu GE), n duoc djnh ngha theo mt dung LAN o ging nhu
PVC mach ATM.

Phn ph lc


Chuong III: Cc giao thc lin quan 76

Chuong III. Gii thiu mt s khi nim, giao thc s dng
trong router M v E series
1. Giao thc djnh tuyn OSPF
1.1 Gii thiu djnh tuyn dng
C nhiu giao thc djnh tuyn khc nhau trong mt mang ln. Cc mang ny, v du nhu
Internet, s duoc chia thnh nhiu h thng khc nhau m mi h thng d duoc qun l bi
mt chnh sch ring. Mi h thng ny s dung giao thc djnh tuyn ca ring n d giao tip
gia cc router trong mang. Giao thc ny duoc goi l giao thc Interior Gateway (IGP). IGP
ph bin nht l RIP. OSPF l mt IGP mi hon nhm muc dch thay th RIP, dc bit l trong
mang c quy m ln.
OSPF - Open Shortest Path First khc phuc nhng gii han ca RIP. OSPF l mt giao
thc trang thi kt ni khc vi RIP l mt giao thc khong cch vector. Trong giao thc trang
thi kt ni, mi router tu dng test trang thi dung dn ca n vi cc router k cn, ri gi
nhng thng tin ny dn cc router k cn khc. Mi router s nhn thng tin ny v xy dung
nn mt bng djnh tuyn hon chinh. Phuong php ny nhanh hon nhiu so vi giao thc
khong cch vector, dc bit trong trung hop c su thay di dung dn trong mang.
Nhng dc tnh khc vuot tri ca OSPF so vi RIP:
Tc d hi tu nhanh hon bi chi c cc thay di trong bng routing mi gi di thng
bo cho cc router khc trong mang
H tro VLSM
Kch thuc mang c kh nng h tro ln, ln dn 100 router (so vi RIP chi duoc 15
hop)
S dung bng thng hiu qu bng cch chi gi cc bng tin update (LSU) kch
thuc nh v chi gi khi c su thay di trong network
Chon dung di: OSPF s dung thut gii dung di ngn nht vi nhn t bng
thng lm tham s ch khng nhu RIP chi l cc hop.
Chia nhm: c th s dung hiu qu kh nng x l ca cc router OSPF h tro
chia nh mt mang ln thnh cc mang con d qun l v ti uu duoc bng thng.
Mi router OSPF duy tr mt d liu co s ging nhau v cu trc ca mang (topology).
T d liu ny, mt bng djnh tuyn duoc tnh ton dua trn co s dung dn ngn nht.
OSPF s tnh ton lai nhanh chng mt khi c su thay di cu trc.
Phn ph lc


Chuong III: Cc giao thc lin quan 77
OSPF cho php mt tp hop cc mang c th duoc nhm lai vi nhau. Mt nhm nhu
vy goi l mt vng v cu trc ca n duoc che du trong h thng. Mt h thng nhu vy
chnh l mt mang con trong internet.
1.2 Cc thut ng thung s dung
Topology database (link state database) lit k nhng thng tin v cc router trong
vng v cc trang thi dung link ca router d. Area l mt tp cc router duoc xp
thnh mt vng. Cc router trong cng mt vng th c topology database ging
nhau v duoc goi l cc internal router.
Mi router dc lp chay thut gii Dijkstra ly thng tin trn link state database d xc
djnh dung di tt nht (dung c chi ph cho bng thng thp nht). ung ny sau
d duoc add vo bng routing hay cn goi l bng forwarding database.
Adjacency database trong mt router l danh sch nhng router d thit lp lin lac
hai chiu vi n. don gin trong vic trao di thng tin djnh tuyn gia nhiu
neighbor, cc router trong cng mt network (broadcast access) s tin hnh bu DR
(designated router) v mt BDR (backup DR).
1.3 Cc trang thi trong OSPF
- Down state: khng trao di thng tin gia hai router
- Init State: Router gi gi loai 1 (thit lp v duy tr thng tin adjacency vi neighbor)
khong 10s mc djnh mt ln. Khi mt interface nhn duoc bn tin ny ln du tin,
router bit c mt neighbor mi cn thit lp., n chuyn trang thi dn Init state
- Two-way state: Gi tin Hello bao gm danh sch cc router OSPF neighbor. Mt router s
chuyn thnh thnh trang thi two-way state khi n thy chnh mnh trong danh sch ca
neighbor. Mt s trung cn c d d tiu chun thit lp trang thi two-way: cng timer,
password authenticate, v.v(du nm trong bn tin Hello).
- Exstart s dung bn tin DBD ( database description) l bn tin m t ni dung ca link-
state database. trang thi ny hai router s quyt djnh xem ai lm master v slave d
trao di thng tin. Hai router sau d s tin vo trang thi Exchange.
- Exchange state: Router s dung bn tin loai 2 (DBD) d trao di topology cho nhau. Slave
s ly state link database tm tt t master truc sau d s truyn lai state link data base
ca mnh.
- Loading State: Kim tra lai cn thiu nhng thng tin chi tit g. Cc router trong trang thi
ny s dng bn tin loai 3 (LSR) d request v bn tin loai 4 (LSU) d update nhng
thng tin thiu. Bn tin LSU s duoc confirm bng bn tin laoi 5 (LSAck).
Phn ph lc


Chuong III: Cc giao thc lin quan 78
- Full adjacency: khi trang thi Loading d hon thnh mi router gi mt bng danh sch
cc adjacency goi l adj database.
Luu : Nu mang Point to Point (PPP-serial, HDLC) hoc nonbroadcast (FR, X25) th hai
router tip tuc trao di t trang thi two-way d chuyn v trang thi full adjacency. Nu
mang broadcast (LAN, Token ring) th mt trong hai router phi l DR hoc BDR mi chuyn
tip dn cc trang thi khc cn khng th chi dng lai two-way.
1.4 Hoat dng ca OSPF
Mi router cha mt co s s liu. Co s d liu cha thng tin v cc kt ni tai router
dang vn hnh cng nhu thng tin v tnh trang cc router xung quanh n.
Thng tin tp trung cu trc mang vi d thj truc tip. Router v mang hnh thnh nn
dinh ca d thj. Thng tin ny s truyn rng ri theo chu ky dn tt c cc router trong h
thng. Mt router OSPF s tnh ton dung dn ngn nht dn tt c cc router cn lai trong h
thng bao gm c bn thn n xem nhu mt gc.
Tnh linh hoat v hiu qu ca giao thc ny th hin ch n c th tnh ton chi ph
cho tng loai djch vu (TOS). Nu c hai dung dn bng nhau v gi trj, OSPF s diu phi luu
thng mt cch cn bng gia hai dung ny.
Do vn d an ton thng tin ngy cng duoc ch trong, OSPF bao gm c th tuc
authentication. Router phi chju su kim sot ca mt th tuc d thm djnh luu luong.
Nhm lm vic OSPF l khi nim chi h thng vng m d cc mang v my ch nm
lin k nhau duoc xp vo cng nhm. Trong trung hop ny, mi vng vn hnh thut ton
SPF ca ring n. N cng c d thj co s d liu khc vi cc vng khc. Muc dch chia vng
l d cch ly v phn chia h thng v d gim bt luong thng tin m mi router phi duy tr.
iu ny cng c ngha thng tin truyn gia cc router d duy tr bng djnh tuyn OSPF thuc
cht duoc gim xung.
OSPF s dung thut ng backbone d chi phn h thng truyn gi gia cc khu vuc.
OSPF tn dung giao thc Hello d qung b thng tin trang thi gia cc ln cn. Gi
Hello duoc s dung d xc djnh su chp nhn gia cc router trong mt mang chung v quy
djnh thi gian (khong thi gian mt lin lac, thi gian nhn duoc Hello).
Sau dy l mt so d mang tiu biu ca h thng OSPF mu.
Trong cu hnh c nm router duoc thit lp OSPF:
Router A v Router B l cc router trong vng 1
Router C l mt OSPF DR. Vng 1 duoc dng k dn E3 v vng 0 duoc dng k
dn S0.
Phn ph lc


Chuong III: Cc giao thc lin quan 79





Hnh 1.1. So d mt mang h thng
vng OSPF mu





- Sau khi d c duoc mt link-state database hon chinh router s tao bng routing ca
mnh. Mc djnh OSPF c th gi dn 4 route c cost bng nhau cho cng mt dch dn
trong bng routing cho muc dch load balancing.
- Nhm trnh tnh trang flapping trong mang dn dn xut hin lin tuc cc bng tin update,
OSPF dng timer (mc djnh 10s) d luu gi trang thi . Ht timer mi tnh ton lai dung
di
- Khi c mt su thay di v dung truyn mang point to point (khng c DR v BDR),
thng tin s duoc gi dja chi 224.0.0.5 d cp nht cho cc router khc.
- i vi mang broadcast, DR v BDR (duoc bu dua trn d uu tin ca rout, so snh
ly dja chi loopback cao nht ca cc router, nu khng c loopback th ly interface c
dja chi nht dem so snh) s thit lp mi quan h full adjacency vi cc router cn lai
trong mang. Nn nu mt DR /BDR cn gi mt bn tin cp nht trang thi n cng gi
dn dja chi 224.0.0.5. Tuy nhin di vi cc router khc trong mang, do chi c mi quan
h full adjacency vi DR va BDR nn chngchi gi dn DR v BDR qua dja chi broadcast
224.0.0.6. Khi d DR/BDR s tip tuc cp nht thng tin cho cc router cn lai.
1.5 Multiarea OSPF
1.5.1 Cc loai router:
+ Internal: router nm trong mt vng
+ Backbone router: L router nm trn vng backbone, c t nht mt interface connect
dn Area 0 (vng backbone l vng trung tm kt ni dn tt c cc vng khc).
Phn ph lc


Chuong III: Cc giao thc lin quan 80
+ Area Border Router (ABR): Router c cc interface connect dn cc vng khc nhau.
Chng duy tr link state database ring r cho mi vng. ABR sumarize thng tin vng m n
thuc v t link state database vng d, ri phn phi lai thng tin vo vng backbone.
+ Autonomous System Boundary Router (ASBR): Router c t nht mt interface kt ni
dn mang external (khng phi mang OSPF). Nhng router ny c th import thng tin v mang
non-OSPF vo trong mang OSPF v nguoc lai (redistribute).
1.5.2 Cc loai LSA:
+ LSA type 1(O-OSPF): Gi t cc router cng vng m t cost v link state gi dn mt
s router nht djnh
+ LSA type 2(O-OSPF): Ging LSA type 1 tuy nhin duoc sinh ra bi DR chay trong mt
vng nht djnh
+ LSA type 3(IA-OSPF): Gi t 1 ABR di ra khi backbone v dn cc router ABR thuc
vng khc (Thng tin d duoc sumarize).
+ LSA type 4(IA-OSPF): Sinh ra t ABR gi qua vng backbone dn nhng ABRR khc,
m t thng tin dung link dn ASBR trong cng vng
+ LSA type 5(E1-OSPF; E2-OSPF): Sinh ra bi ASBR m t nhng external route; E1 chi
gi trj cost ca nhng exterrnal route khi duoc import cost qua mi hop s tng ln 1; E2- chi gi
trj cost s khng di qua cc hop
+ LSA type 6 (MOSPF): xy dung so d cy multi OSPF
+ LSA type 7(N1-OSPF NSSA, N2-OSPF): Sinh ra bi ASBR kt ni ti mt vng NSSA.
NSSA l vng OSPF khng import thng tin t nhng vng OSPF khc tuy nhin cho php
import nhng route non-OSPF vo trong OSPF routing. Nu router cn di dn dest nm vng
OSPF khc th s dung default route. Do vng NSSA khng chp nhn kiu LSA 5 nn khi
thng tin di vo vng ny s duoc chuyn thnh LSA7.
2. Gii thiu v MPLS
2.1 Tng quan
Khi mt gi thuc giao thc lp mang khng kt ni (connectionless network layer
protocol ) di chuyn t mt router ny ti mt router khc th mi router s ra mt quyt djnh
chuyn tip dc lp cho gi d. Tc l, mi router phn tch thnh phn header ca gi v thi
hnh mt thut ton djnh tuyn lp mang. Sau d, mi router dc lp chon hop k cho gi, dua
trn su phn tch phn header ca gi v dua trn kt qu ca su thi hnh thut ton djnh
tuyn.
Vic chon hop k duoc xem nhu l su cu thnh ca 2 chc nng. Chc nng du tin
l chia ton b cc gi c th thnh mt b cc FEC. Chc nng th 2 l nh xa mi FEC ti
Phn ph lc


Chuong III: Cc giao thc lin quan 81
mt hop k. Cc gi khc nhau nu duoc nh xa vo cng mt FEC s khng cn phn bit. Tt
c cc gi thuc v mt FEC v di chuyn t cng mt node s di theo cng mt con dung
(hoc mt nhm cc dung duoc kt hop vi FEC ).
Trong chuyn tip IP truyn thng, khi gi di qua mang, mi hop s lai kim tra gi v lai
kt hop gi vi mt FEC.
Trong MPLS, su chi djnh mt gi vi mt FEC chi duoc thuc hin mt ln khi gi vo
mang. FEC, m gi duoc kt hop, duoc m ha bng mt gi trj c chiu di c djnh duoc bit
dn nhu l mt nhn (label). Khi mt gi duoc chuyn tip ti hop k, nhn cng duoc gi
km theo n. iu ny c ngha l gi d duoc gn nhn truc khi duoc chuyn tip. Tai cc
hop tip theo, khng cn su phn tch phn header lp mang ca gi. Thm vo d, nhn duoc
s dung nhu l chi s tra bng d tm hop k v nhn mi. Nhn c duoc thay th bng nhn
mi, v gi th duoc chuyn tip dn hop k.
Trong m hnh chuyn tip MPLS, mt khi gi d duoc kt hop vi mt FEC th cc
router tip theo khng cn phi phn tch header na; tt c su chuyn tip by gi duoc thuc
hin nh vo nhn. Vi cch lm ny s cho ta mt s loi ch khi so vi su chuyn tip lp
mang truyn thng:
Su chuyn tip MPLS c th duoc thuc hin bng cc switch, m cc switch ny chi
c kh nng truy tm v thay th nhn, nhung khng c kh nng phn tch header lp mang
hay khng c kh nng phn tch header lp mang mt tc d thch hop.
Trong vic xc djnh su kt hop mt gi vi mt FEC khi gi d vo mang, router li
vo ( ingress router ) c th s dung cc thng tin m n c v gi, thm ch nhng thng tin
ny khng duoc thu thp t header lp mang. Th du, cc gi dn t cc port khc nhau c th
duoc gn vi cc FEC khc nhau. Trong chuyn tip truyn thng chi c th s dung cc thng
tin m chng di km vi gi trong phn header.
Mt gi, khi n di vo mang cc router khc nhau c th duoc gn nhn khc
nhau, kt qu l cc quyt djnh chuyn tip dua vo router li vo c th duoc thuc hin mt
cch d dng. iu ny l khng th di vi su chuyn tip truyn thng, khi m cc dc dim
nhn dang ca router li vo khng th di cng vi gi.
Phn ph lc


Chuong III: Cc giao thc lin quan 82

Hnh 2.1. So snh s chuyn tip IP vi s chuyn tip MPLS
i khi ngui ta mong mun mt gi s theo mt con dung cu th, m con dung
ny duoc lua chon ngay hay truc thi dim gi di vo mang, ch khng phi duoc lua chon
bng cc thut ton djnh tuyn dng thng thung khi gi di qua mang. Trong chuyn tip
truyn thng, diu ny di hi gi phi mang theo m ca con dung. Trong MPLS, nhn c th
duoc s dung d miu t con dung, v vy cc dc dim nhn dang con dung khng cn
phi mang theo gi (packet).
Mt vi router phn tch header lp mang ca gi khng chi don thun l chon hop
k ca gi m cn xc djnh quyn uu tin (precedence) hay lp djch vu (class of service) ca
gi. MPLS cho php ta (nhung khng di hi) xc djnh diu ny mt cch hon ton hay mt
phn t nhn. Trong trung hop ny c th ni rng nhn biu din cho su kt hop ca mt
FEC v mt quyn uu tin hay lp djch vu.
MPLS l t vit tt ca Multiprotocol Label Switching, trong d multi-protocol (da giao
thc) l bi v k thut ca n c th duoc s dung cho bt k giao thc lp mang no. Tuy
nhin dy chi tp trung vo vic s dung giao thc lp mang IP.
Mt router c h tro MPLS th duoc bit dn vi tn goi Label Switching Router, hay
LSR .
2.2 Thut ng
Sau dy l mt s thut ng thung gp v su gii thch so luoc v chng:
Phn ph lc


Chuong III: Cc giao thc lin quan 83
Lp chuyn tip tuong duong: mt nhm cc gi IP m chng duoc chuyn (FEC)
tip theo cng mt kiu (theo cng mt
dung, vi cng mt cch x l)
Nhn (label): mt doan bits ngn, thung c chiu di c djnh dng d
xc djnh (hay nhn dang) mt FEC .
Su hop nht nhn (label merging): su thay th cc nhn dn ca mt FEC bng mt nhn ra
duy nht.
Label swap: mt hoat dng chuyn tip co bn bao gm vic tra bng
cho mt nhn dn d xc djnh nhn ra, su dng gi, port

Label switched hop: hop gia 2 MPLS node, m qua n su chuyn tip duoc
thuc hin bng cch s dung nhn.
Label switching router (LSR): mt MPLS node c kh nng chuyn tip cc gi lp 3 (L3
packets), hay ni cch khc router c h tro MPLS.
Label switched path (LSP): con dung di qua mt hoc nhiu LSRs cng cp, duoc s
dung bi cc gi trong mt FEC
Label stack: mt b c th tu cc nhn.
Merge point: mt node m d c su hop nht nhn.
Min MPLS (MPLS domain): mt b lin tip cc nodes vn hnh vic djnh tuyn v su
chuyn tip MPLS.
MPLS edge node: mt MPLS node, m n kt ni mt min MPLS (MPLS
domain) vi mt node nm ngoi min (domain) ny.
MPLS ingress node: mt MPLS edge node c vai tr nm gi luu luong khi luu
luong di vo min MPLS (MPLS domain).
MPLS egress node: mt MPLS edge node c vai tr nm gi luu luong khi luu
luong ri khi min MPLS (MPLS domain).
MPLS node: mt node dang chay (thi hnh) MPLS. Mt MPLS node c
th nhn thc duoc cc giao thc diu khin MPLS (MPLS
control protocols), c th vn hnh mt hoc nhiu giao
thc djnh tuyn lp 3 v c kh nng chuyn tip cc gi
dua vo nhn.
Phn ph lc


Chuong III: Cc giao thc lin quan 84
MPLS egress node
MPLS ingress node
MPLS domain
MPLS edge node
LSR: label switching router
LSR
LSR
LSR
MPLS egress node
MPLS ingress node
MPLS domain
MPLS edge node
LSR: label switching router
LSR
LSR
LSR

Hnh2.2. Minh ha mt MPLS domain
2.3 Cu trc ca mt MPLS node
Cac goi
IP den
Cac goi duoc
dan nhan den
Mat phang dieu khien
Mat phang chuyen tiep
Ba ng dinh tuye n IP
Label forwarding
information base (LFIB)
Cac giao thuc dinh
tuye n IP
Giao thuc pha n pho i
nhan (LDP)
Cac goi
IP ra
Cac goi duoc
dan nhan ra
Trao doi thong
tin dinh tuyen
Trao doi thong tin
ket noi nhan
Hnh 2.3.
Cu trc ca MPLS node
2.3.1 Mt phng chuyn tip (mt phng d liu)
Mt phng chuyn tip MPLS chju trch nhim cho su chuyn tip cc gi dua trn gi trj
duoc cha trong nhn dnh km. Mt phng chuyn tip s dung LFIB (duoc duy tr bi MPLS
node) d chuyn tip cc gi d duoc dn nhn. Mi MPLS node duy tr 2 bng lin quan ti su
chuyn tip nhn : bng co s thng tin nhn (the label information base - LIB) v bng co s
thng tin chuyn tip nhn (label forwarding information base- LFIB). Bng LIB cha tt c cc
nhn duoc n djnh bi MPLS cuc b v su nh xa ca nhng nhn ny ti nhng nhn nhn
Phn ph lc


Chuong III: Cc giao thc lin quan 85
duoc t cc MPLS node lng ging. Bng LFIB s dung mt tp con cc nhn (cc nhn ny
duoc cha trong bng LIB) cho su chuyn tip thuc su.
2.3.1.1. Nhn MPLS
Nhn l mt b nhn dang c chiu di 32 bit duoc dng d xc djnh mt FEC. Nhn (m
n duoc gn vo mt gi cu th) s dai din cho FEC m gi duoc gn.
Trong trung hop ca ATM , nhn duoc dt trong c trung VCI v VPI ca header.
Trong frame ca Frame Relay, nhn nm trong trung DLCI ca header.
Cc k thut lp 2 nhu Ethernet, Token Ring, FDDI v lin kt point-to-point (dim ni
dim) khng th s dung cc trung dja chi lp 2 ca chng d mang nhn. Nhng k thut ny
mang nhn trong header chn. Header nhn chn (shim label header) duoc chn vo gia lp
lin kt v lp mang, nhu trong Hnh 2.4.. Vic s dung header nhn chn cho php MPLS h
tro hu ht cc k thut lp 2.
20
CoS Label S TTL
3 1 8
Chieu dai (tnh bang bit)
MPLS label

Label: Nhn MPLS (MPLS label) S: Bottom of stack
CoS: Lp djch vu (Class of service) TTL: Time to live
VCI VPI GFC PTI CLP HEC Data
ATM cell header
Label

Layer 2 header Label Layer 3 header Layer 4 header Data
Header chen (Shim header)

Hnh 2.4. Nhn MPLS , header ca ATM cell, header chn
Nhn MPLS cha cc trung sau:
Trung nhn (label field) (20 bit) Mang gi trj tht ca nhn MPLS.
Phn ph lc


Chuong III: Cc giao thc lin quan 86
Trung CoS (3 bit) Tc dng dn hng doi v thut ton loai, b p dung cho gi
khi gi duoc truyn qua mang.
Trung Stack (1bit ) H tro stack nhn c th bc.
Trung TTL (time-to-live) (8 bit) Cung cp chc nng TTL nhu ca IP truyn
thng.
Stack nhn (label stack)
Khi c hon mt header nhn duoc gn vo mt gi IP. Bit nhn duoc set ln 1 chi ra
rng d l dy ca stack. Tt c cc bit nhn khc du duoc dt gi trj 0. Trong MPLS co s gi
(packet-base MPLS ), dinh ca stack xut hin ngay sau header lp lin kt, v dy ca stack
nhn xut hin ngay truc header lp mang. Su chuyn tip nhn duoc thuc hin nh vo gi
trj nhn (label value) ca nhn nm trn dinh ca stack.

Label stack
Label1 MAC Layer 3 Label2 Label3

Hnh 2.5. Stack nhn
Time To Live
Trong chuyn tip IP truyn thng , mi gi mang mt gi trj Time To Live (TTL) trong
header ca n. Mi khi gi di qua mt router , gi trj TTL ca n gim di 1 ; nu TTL dat ti 0
truc khi gi ti duoc dch ca n , th gi s bj loai b. iu ny cung cp mt mc d bo v
no d chng lai cc vng lp chuyn tip (do su hi tu chm ca thut ton djnh tuyn hay do
cu hnh sai).
Trung TTL ca nhn MPLS c chc nng tuong tu nhu trung time-to-live duoc mang
trong header IP . Tuy nhin cn ch l MPLS node chi x l trung TTL trong muc trn dinh
ca stack nhn.
2.3.2 Mt phng diu khin (control plane)
Chc nng chnh ca mt phng diu khin l d thng bo cc nhn, cc dja chi v d
tao su tuong quan gia chng; tc l, d tao kt ni gia cc nhn vi cc dja chi.
Tai mt phng diu khin c th c nhiu hon mt giao thc hoat dng. Th du, RSVP d
duoc m rng, cho php s dung giao thc dng d thng bo, phn phi v kt ni nhn vi
dja chi IP. Su m rng ny duoc goi l RSVP-TE. Mt giao thc, giao thc phn phi nhn
(Label Distribution Protocol-LDP), l mt su lua chon khc cho su thuc thi mt phng diu
Phn ph lc


Chuong III: Cc giao thc lin quan 87
khin. Ngoi ra cn c th c cc giao thc khc nhu l OSPF-E, BGP-E; dy l cc giao thc
m rng ca OSPF, BGP.
Thng dip diu khin duoc trao di gia cc router chuyn mach nhn (LSRs) d thuc
hin nhiu hoat dng khc nhau, bao gm :
Su trao di thng dip gia cc node d thit lp mi quan h (bao gm su tha
thun v bo mt) . Sau khi hoat dng ny hon tt, cc node duoc xem l cc LSR
ngang hng.
Su trao di cc thng dip mang tnh chu k (duoc goi l hellos) d chc chn l cc
node lng ging vn cn dang hoat dng.
Su trao di cc thng dip nhn v dja chi d ni kt cc dja chi vi cc nhn v xy
dung bng chuyn tip (dc bit l bng LFIB) duoc s dung bi mt phng d liu
MPLS d chuyn tip luu luong.
2.3.3 Cc khi nim khc
cc phn truc d gii thiu mt s khi nim, phn ny ta di tm hiu mt s khi
nim thung gp khc, d t d lm tin d cho cc nghin cu v sau.
2.3.3.1. LSR dng ln v LSR dng xung (upstream LSR and downstream
LSR)

Hnh 2.6. Minh ha LSR dng ln v LSR dng xung
Khi nim LSR dng ln , LSR dng xung phu thuc vo dng chy ca luu luong.
Khi mt gi duoc truyn t A dn B qua C th : A l dng ln ca B, B l dng xung ca A v l
dng ln ca C, C l dng xung ca B. Trong cc sch ni v MPLS thung dng k hiu Ru
d biu thj cho LSR dng ln,v dng k hiu Rd d biu thj cho LSR dng xung.


2.3.3.2. Cc giao thc phn phi nhn (Label Distribution Protocols)
Mt giao thc phn phi nhn l mt tp cc th tuc (procedure), m nh n mt LSR c
th thng bo cho mt LSR khc bit v cc lin kt nhnFEC m n d tin hnh.
Phn ph lc


Chuong III: Cc giao thc lin quan 88
Hai LSR, chng s dung mt giao thc phn phi nhn d trao di thng tin lin kt
nhnFEC, duoc goi l cc phn b nhn ngang hng lin quan dn thng tin lin kt m
chng trao di . Nu hai LSR l cc phn phi nhn ngang hng, th ta c th ni rng gia
chng c mt phn phi nhn ln cn.
Trong cu trc MPLS khng cho rng chi c duy nht mt giao thc phn phi nhn. Trn
thuc t, c rt nhiu giao thc phn phi nhn khc nhau d duoc chun ha. Nhiu giao thc
mi d duoc djnh ngha cho muc dch r rng ca su phn phi nhn (v du nhu:
[MPLSCRLDP] , [MPLSLDP] thung hay duoc bit dn vi t vit tt l LDP,).
3. Border Gateway Protocol Version 4 (BGP-4).
BGP-4 l giao thc djnh tuyn ngoai (Exterior Gateway Protocol), giao thc ny cho php
cc router thuc nhng Autonomous system khc nhau trao di thng tin djnh tuyn. BGP-4
cng h tro dc tnh CIDR, cho php qung b thng tin djnh tuyn vi cc dja chi IP c chiu
di IP prefix thay di. Han ch khi nim phn lp trong IP.
BGP-4 dng TCP d trao di thng tin gia cc Autonomous system khc nhau. Cc bn
tin cp nht chi tao ra khi topology mang thay di, v chi lin quan dn cc kt ni bj thay di.
Nh d mang c th han ch duoc luu luong, tit kim bng thng trong vic duy tr d liu
djnh tuyn gia cc router.
BGP-4 l giao thc djnh tuyn kh phc tap, dng d djnh tuyn trong mi trung
Internet, hoc djnh tuyn cho h thng ca cc t chc da quc gia. Mi vng (Area) c th
dng cc giao thc djnh tuyn khc nhau, BGP-4 gip lin kt cc vng d v mt djnh tuyn.
VD: Ngn hng VietcomBank H Ni dng giao thc djnh tuyn RIP.
Ngn hng VietcomBank TP HCM dng giao thc djnh tuyn OSPF.
VietcomBank H Ni kt ni vi VietcomBank TP HCM thng qua mang core VTN
dng giao thc BGP-4.
3.1 Khi nim AS (Autonomous System).
Trong h thng mang, cc router dng chung mt chnh sch, thut ton djnh tuyn, chia
s thng tin djnh tuyn ny vi nhau duoc goi l mt Autonomous System. AS cng c th duoc
xem nhu mt t chc. Trong mt AS, h thng trao di thng tin vi nhau nh giao thc djnh
tuyn IGP (RIP, OSPF..) Khi nim AS duoc m rng khi h thng thuc mt AS c th dng
cng lc nhiu giao thc djnh tuyn IGP, trao di thng tin vi nhau nh k thut
Redistribution.
Khi h thng mang ca mt t chc ho vo mang lui ton cu, h thng d duoc xem
nhu mt AS. Mi AS duoc cp mt m nhn dang (16 bit) bi t chc IANA. AS number duoc
gi km theo thng tin djnh tuyn, c th nhn dang mt t chc, mt quc gia thng qua AS
number ny. Mt AS ln duoc phn cp bng cch chia nh ra thnh nhiu Area.
IANA quy hoch AS number nhu sau:
1- 65000: Global AS number.
Phn ph lc


Chuong III: Cc giao thc lin quan 89
65000 - : Private AS number. (VTN dng AS number 65400)
3.2 c tnh ca BGP-4.
- BGP-4 duoc phn loai path-vector
- Thng tin djnh tuyn ton mang duoc trao di ln du tin khi khi tao, nhng ln sau
chi cp nht nhng thay di.
- Thit lp kt ni vi Peer bng cch thit lp phin kt ni TCP port 179 thng qua ha
tng mang kt ni gia cc Peer ( cc Peer phi kt ni duoc vi nhau nh IGP/EGP
trn ha tng mang ny.)
- BGP-4 djnh tuyn cc traffic flow bi mt metric phc tap goi l Attribute. Tuy nhin,
trong trung hop dng Policy-base routing, BGP-4 lai djnh tuyn cc traffic flow trn
nguyn tc Hop-by-hop.
3.3 Mt s khi nim lin quan dn co ch lm vic ca BGP-4
Internal BGP-4 (IBGP-4): BGP dng trong pham vi mt AS. Trong AS ny c th dng
cc giao thcIGP khc, sau d redistribute thng tin t cc IGP d vo IBGP-4.
External BGP-4 (EBGP-4): BGP lin kt gia cc IBGP-4 AS.
Synchronization: Cc AS mun trao di thng tin djnh tuyn IBGP-4 vi nhau phi duoc
thuc hin thng qua EBGP-4. Mun thuc hin duoc vic ny, thng tin djnh tuyn gia IBGP-4
v EBGP-4 phi dng b vi nhau. y l tnh nng mc djnh khi cu hnh BGP trn h thng.
Tnh nng ny tuong tu thao tc redistribute gia cc giao thc djnh tuyn khc nhau. Tc dung
ca Synchonization:
- Ngn nga trung hop djnh tuyn traffic dn Unreachable Destination.
- Han ch cc traffic khng cn thit.
Trung hop khng dng Synchonization:
- Tt c cc router trong AS du dng BGP-4.
- Cc router trong AS kt ni Full-mesh vi nhau.
- AS dang dng khng phi l transit domain.
Route Aggregation: Trong pham vi AS c nhiu khng gian dja chi lin tuc nhau. Nhng
khng gian dja chi ny c prefix ging nhau. (VD 10.147.40.0/24 v 10.147.41/24 c prefix
10.147.0.0/24 ging nhau). Khi AS qung b thng tin djnh tuyn qua BGP-4, thay v qung b
tng khng gian dja chi, tnh nng route Aggregation cho php AS chi qung b prefix chung
ca nhng khng gian dja chi d.
BGP-4 Policy-Base Routing: Tnh nng ny cho php ngui qun trj mang diu khin
vic djnh tuyn cc traffic flow trong AS. Thng thung BGP djnh tuyn dng dua vo Attribute,
Policy-Base routing c d uu tin cao hon vic djnh tuyn dng ca BGP. y duoc xem nhu
mt hnh thc djnh tuyn tnh, chnh sch djnh tuyn di vi mi loai traffic khc nhau duoc p
dung nh vo co ch loc ca cc Access-list (trong BGP goi l Route-map).
Phn ph lc


Chuong III: Cc giao thc lin quan 90
3.3.1 Quy tc ca Policy-Base Routing:
- Traffic c th duoc djnh tuyn dua vo Source IP Address, Destination IP Address
hoc c hai.
- Policy-Base Routing tr dn Next-hop duoc djnh sn (c djnh).
- Policy-Base Routing khng lm thay di dch dn ca traffic, m chi lm thay di l
trnh t ngun dn dch.
- Policy-Base Routing chi cho php djnh ra l trnh trong pham vi mt AS, khng cho
php traffic vuot qua AS khc.
Tuy nhin khi ng dung Policy-Base Routing cng gp phi mt s han ch:
- Nu Next-hop down, BGP s chuyn sang djnh tuyn dng nu khng c next-hop du
phng.
- H thng hao tn ti nguyn d kim tra cc route-map.

4. Gii thiu tng quan AAA
4.1 Vic s dung AAA trong vn d bo mt v diu khin truy cp m rng
trong mang
Cc nh qun trj mang ngy nay phi diu khin vic truy cp cng nhu gim st thng
tin m ngui dng du cui dang thao tc. Nhng vic lm d c th dua dn thnh cng hay
tht bai ca cng ty. Vi tung d, AAA l cch thc tt nht d gim st nhng g m ngui
dng du cui c th lm trn mang.
Ta c th xc thuc (Authentication) ngui dng, cp quyn (Authorization) cho ngui
dng, cng nhu tp hop duoc thng tin nhu thi gian bt du hay kt thc ca ngui dng
(Accounting). Nhu ta thy, bo mt l vn d rt quan trong.
Vi mc d diu khin, tht d dng d ci dt bo mt v qun trj mang. Ta c th djnh
ngha cc vai tr (role) dua ra cho user nhng lnh m ho cn d hon thnh nhim vu ca ho
v theo di nhng thay di trong mang. Vi kh nng log lai cc su kin, ta c th c nhng su
diu chinh thch hop vi tng yu cu dt ra.
Tt c nhng thnh phn ny l cn thit d duy tr tnh an ton, bo mt cho mang. Vi
thng tin thu thp duoc, ta c th tin don vic cp nht cn thit theo thi gian. Yu cu bo
mt d liu, gia tng bng thng, gim st cc vn d trn mang, tt c du c th tm thy
trn djch vu AAA.
4.2 Tng quan AAA
AAA [1] cho php nh qun trj mang bit duoc cc thng tin quan trong v tnh hnh cng
nhu mc d an ton trong mang. N cung cp vic xc thuc (Authentication) ngui dng nhm
bo dm c th nhn dang dng ngui dng. Mt khi d nhn dang ngui dng, ta c th gii
han thm quyn (Authorization) m ngui dng c th lm. Khi ngui dng s dung mang, ta
cng c th gim st tt c nhng g m ho lm. AAA vi ba phn xc thuc (Authentication), cp
Phn ph lc


Chuong III: Cc giao thc lin quan 91
quyn (Authorization), tnh cuc (Accounting) l cc phn ring bit m ta c th s dung trong
djch vu mang, cn thit d m rng v bo mt mang.
AAA c th dng d tp hop thng tin t nhiu thit bj trn mang. Ta c th kch hoat cc
djch vu AAA trn Router, Switch, firewall, cc thit bj VPN, server,
4.2.1 Xc thc (Authentication)
Xc thuc dng d nhn dang (identify) ngui dng. Trong sut qu trnh xc thuc,
username v password ca ngui dng duoc kim tra v di chiu vi co s d liu luu trong
AAA Server. Tt nhin, ty thuc vo giao thc m AAA h tro m ha dn du, t nht th cng
m ha username v password.
Xc thuc s xc djnh ngui dng l ai. V du: Ngui dng c username l DUNG v mt
khu l VTN2 s l hop l v duoc xc thuc thnh cng vi h thng. Sau khi xc thuc thnh
cng th ngui dng d c th truy cp duoc vo mang. Tin trnh ny chi l mt trong cc
thnh phn d diu khin ngui dng vi AAA. Mt khi username v password duoc chp nhn,
AAA c th dng d djnh ngha thm quyn m ngui dng duoc php lm trong h thng.
4.2.2 Thm quyn (Authorization)
Authorization cho php nh qun trj diu khin vic cp quyn trong mt khong thi
gian, hay trn tng thit bj, tng nhm, tng ngui dng cu th hay trn tng giao thc. AAA
cho php nh qun trj tao ra cc thuc tnh m t cc chc nng ca ngui dng duoc php
lm. Do d, ngui dng phi duoc xc thuc truc khi cp quyn cho ngui d.
AAA Authorization lm vic ging nhu mt tp cc thuc tnh m t nhng g m ngui
dng d duoc xc thuc c th c. V du: ngui dng DUNG sau khi d xc thuc thnh cng c
th chi duoc php truy cp vo server VTN_SERVER thng qua FTP. Nhng thuc tnh ny
duoc so snh vi thng tin cha trong co s d liu ca ngui dng d v kt qu duoc tr v
AAA d xc djnh kh nng cng nhu gii han thuc t ca ngui d. iu ny yu cu co s d
liu phi giao tip lin tuc vi AAA server trong sut qu trnh kt ni dn thit bj truy cp t xa
(RAS).
4.2.3 Tnh cuc (Accounting)
Accounting cho php nh qun trj c th thu thp thng tin nhu thi gian bt du, thi
gian kt thc ngui dng truy cp vo h thng, cc cu lnh d thuc thi, thng k luu luong,
vic s dung ti nguyn v sau d luu tr thng tin trong h thng co s d liu quan h. Ni
cch khc, Accounting cho php gim st djch vu v ti nguyn duoc ngui dng s dung. V
du: thng k cho thy ngui dng c tn truy cp l DUNG d truy cp vo VTN_SERVER bng
giao thc FTP vi s ln l 5 ln. im chnh trong Accounting d l cho php ngui qun trj
gim st tch cuc v tin don duoc djch vu v vic s dung ti nguyn. Thng tin ny c th
duoc dng d tnh cuc khch hng, qun l mang, kim ton s sch.
Phn ph lc


Chuong III: Cc giao thc lin quan 92
4.3 Giao thc s dung cho djch vu AAA
4.3.1 Gii thiu
C hai giao thc bo mt dng trong djch vu AAA d l TACACS (Terminal Access
Controller Access Control System) v RADIUS (Remote Authentication Dial-In User Service). C
hai giao thc du c phin bn ring v thuc tnh ring. Chng han nhu phin bn ring ca
TACACS l TACACS+, tuong thch hon ton vi TACACS. RADIUS cng c su m rng khi
cho php khch hng thm thng tin xc djnh duoc mang bi RADIUS.
TACACS v RADIUS duoc dng t mt thit bj nhu l server truy cp mang (NAS) dn
AAA server. Xem xt mt cuc goi t xa nhu hnh dui dy. Ngui dng goi t PC dn NAS.
NAS s hi thng tin d xc thuc ngui dng. T PC dn NAS, giao thc s dung l PPP, v
mt giao thc nhu l CHAP hay PAP duoc dng d truyn thng tin xc thuc. NAS s truyn
thng tin dn AAA Server d xc thuc. N duoc mang bi giao thc TACACS hoc RADIUS.


4.3.2 Tng quan v TACACS
TACACS l giao thc duoc chun ha s dung giao thc hung kt ni (connection-
oriented) l TCP trn port 49.
TACACS c cc uu dim sau:
- Vi kh nng nhn gi reset (RST) trong TCP, mt thit bj c th lp tc bo cho
du cui khc bit rng d c hng hc trong qu trnh truyn.
- TCP l giao thc m rng v c kh nng xy dung co ch phuc hi li. N c
th tuong thch d pht trin cng nhu lm tc nghn mang vi vic s dung
sequence number d truyn lai.
Phn ph lc


Chuong III: Cc giao thc lin quan 93
- Ton b payload duoc m ha vi TACACS+ bng cch s dung mt kha b
mt chung (shared secret key). TACACS+ dnh du mt trung trong header d
xc djnh xem th c m ha hay khng.
- TACACS+ m ha ton b gi bng vic s dung kha b mt chung nhung b
qua header TACACS chun. Cng vi header l mt trung xc djnh body c
duoc m ha hay khng. Thung th trong ton b thao tc, body ca mt gi
duoc m ha hon ton d truyn thng an ton.
- TACACS+ duoc chia lm ba phn: xc thuc (Authentication), cp quyn
(Authorization) v tnh cuc (Accounting). Vi cch tip cn theo module, ta c
th s dung cc dang khc ca xc thuc v vn s dung TACACS+ d cp
quyn v tnh cuc.
- TACACS+ h tro nhiu giao thc.
- Vi TACACS+, ta c th dng hai phuong php d diu khin vic cp quyn thuc
thi cc dng lnh ca mt user hay mt nhm nhiu user:
+ Phuong php th nht l tao mt mc phn quyn (privilege) vi mt s cu
lnh gii han v user d xc thuc bi Router v TACACS server ri th s duoc
cp cho mc dc quyn xc djnh ni trn.
+ Phuong php th hai d l tao mt danh sch cc dng lnh xc djnh trn
TACACS+ server d cho php mt user hay mt nhm s dung.
+ TACACS thung duoc dng trong mi trung Enterprise. N c nhiu uu dim
v lm vic tt dp ng yu cu qun l mang hng ngy.
4.3.3 Tng quan v RADIUS
RADIUS l giao thc bo mt mang dua theo m hnh client-server. N dng giao thc
UDP. RADIUS server thung chay trn my tnh. Client l cc dang thit bj c th truyn thng
tin dn RADIUS server duoc chi djnh truc v sau d dng vai tr phc dp m n tr v. Giao
tip gia client v RADIUS server duoc xc thuc thng qua vic s dung kha b mt chung
khng duoc truyn qua mang.
Mt s uu dim ca RADIUS l:
- RADIUS c phn overhead t hon so vi TACACS v n s dung UDP, trong
phn overhead khng c dja chi dch, port dch.
- Vi cch thc phn phi dang source code, RADIUS l dang giao thc hon ton
m rng. Ngui dng c th thay di n d lm vic vi bt k h thng bo mt
hin c.
- RADIUS yu cu chc nng tnh cuc (Accounting) m rng.
Phn ph lc


Chuong III: Cc giao thc lin quan 94
RADIUS thung duoc dng d tnh cuc dua trn ti nguyn d s dung. V du nhu ISP s tnh
cuc cho ngui dng v chi ph kt ni. Ta c th ci dt RADIUS Accounting m khng cn s
dung RADIUS d xc thuc v cp quyn. Vi chc nng Accounting m rng, RADIUS cho
php d liu duoc gi t cc thit bj xut pht cng nhu l thit bj dch, t d gip ta theo di
vic s dung ti nguyn (thi gian, s luong cc gi tin, s luong byte,...) trong sut phin lm
vic
5. Cht luong djch vu QoS
5.1 Vai tr ca QoS.
Cc loai ng dung c nhng di hi khc nhau v cch thc gi cc gi tin gia hai du
cui. Ngui dng chp nhn duoc vic ch mt thi gian ngn khi truy cp vo mt trang WEB,
tuy nhin ngui dng khng th chp nhn delay khi nhn cc gi tin t mt Video Stream hoc
mt Voice Stream. i vi mt s ng dung, delay v lost l nhng vn d nhau cm, nh
hung dn thnh bai ca ng dung d.
Truyn gi tin qua mang, cc gi tin gp nhng vn d sau:
Delay: Gi tin truyn t ngun dn dch thung bj tr mt khong thi gian v nhng l
do sau:
- Bng thng, nng luc x l ca h thng khng d kh nng phuc vu tt c cc djch
vu cng lc. Cc gi tin duoc dua vo hng doi d x l tun tu.
- Khi cc gi tin truyn ni tip (serially) qua mang, cc Node mang thuc hin Table
Lookup, sau d mi ra quyt djnh chuyn gi di
Ton b thi gian delay khi truyn gi tin t ngun dn dch duoc goi chung l d tr.
Jitter: Cc gi tin truyn qua mang c d tr, Jitter l hin tuong bin dng d tr. Ni
cch khc, cc gi tin duoc truyn vi d tr khc nhau. i vi nhng ng dung nhu Audio,
Video, hin tuong Jitter gy bp mo cht luong m thanh hnh nh.
Loss: Trong mt vi trung hop, khi ti nguyn mang bj qu ti, mt s gi tin bj Router
loai b. Nhng ng dung dng TCP c co ch truyn lai, cc ng dung khc khng c co ch
ny dn dn hin tuong mt mt thng tin.
Vi nhng l do trn QoS (Quality of Service) duoc dua ra d gii quyt vn d Delay,
Jitter, Loss lin quan dn tng loai djch vu khc nhau trn h thng.
C 3 m hnh QoS duoc p dung trong h thng mang.:
- Best-effort delivery
- Intergrated Services model
- Differentiated Service model
i vi mi loai djch vu, m hnh QoS phi duoc p dung cho tt c cc Node mang kt
ni gia hai dim du v cui.
Phn ph lc


Chuong III: Cc giao thc lin quan 95
5.2 Best Effort Delivery.
y l m hnh cp thp nht ca QoS, cc thit bj mang chi don gin chuyn gi tin ra
Output interface theo trnh tu m n nhn duoc t Input interface. i vi m hnh QoS ny, d
uu tin x l cc gi tin l nhu nhau, bt k gi tin d thuc loai, lp djch vu g (ToS, CoS). Vic
x l gi tin nhanh hay chm tuy thuc vo ti nguyn h thng tai thi dim x l. M hnh QoS
ny khng dm bo phn loai cht luong cc djch vu khc nhau.
5.3 Intergrated Service Model.
tung ca m hnh ny l, di vi mt djch vu di hi d uu tin cao, h thng s dnh
sn mt dung (path) c d uu tin cao,gia hai dim truc khi qu trnh truyn d liu din ra.
Ni cch khc, mt phn ti nguyn h thng duoc dnh ra d phuc vu cho ng dung c d uu
tin cao.
Khi ngun t khuyn nghj RFC 1633, ngui ta pht trin Resource Reservation Protocol
(RSVP), dy l giao thc cho php dng k, chim gi bng thng h thng d phuc vu cc ng
dung c d uu tin cao.
5.4 Differentiated Services Model.
Co ch hoat dng ca Intergrated Service Model t ra khng hiu qu, do vic chim
dung ti nguyn. Do d, ngui ta dua ra mt cch tip cn mi, mm do hon, d l
Differentiated Services Model.
H thng s phn phi ti nguyn dua vo tng gi tin ch khng dnh rin cho lung d
liu no. Mi routers s c mt chnh sch ring d qun l v s tu quyt djnh cch thc
chuyn packet theo cch ring.
Intergrated Service Model s qun l theo kiu per-flow, trong khi Differentiated Services
Model s qun l theo kiu per-hop.
5.5 Phn loai QoS vi DSCP.
Mi gi tin IP du c cha trung IP ToS (Type od Service) 1byte. Byte ny chia nh
thnh 3bit IP Precedence v 4bit ToS. 3bit IP Precedence dng cho vic phn cp dp ng per-
hop QoS ca Router.
Differentiated Services Model dng thng tin t byte IP ToS, Khi xem xt dn hoat dng
ca h thng, byte ny cn c tn goi khc l DSCP (Differentiated Service Code Point).
ToS
Byte
P2 P1 P0 T3 T2 T1 T0 Zero
DS5 DS4 DS3 DS2 DS1 DS0 ECN1 ECN0 DS Byte
(Class Selector) (Drop Precedence)
[nh dang ToS tuong ng vi DSCP

IP Precedence (3bit) DSCP (6bit)
Phn ph lc


Chuong III: Cc giao thc lin quan 96
Name Value Bit Per-hop
Behavio
r
Class
Select
or
Drop
Precedenc
e
Code
Point
DSCP bit
(decimal)
Routine 0 000 Default Default 000 000(0)
1: Low AF11 001
010(10)
2: Medium AF12 001
100(12)
Priority 1 001 AF 1
3: High AF13 001
110(14)
1: Low AF21 010
010(18)
2: Medium AF22 010
100(20)
Immediate 2 010 AF 2
3: High AF23 (22)
1: Low AF31 (26)
2: Medium AF32 (28)
Flash 3 011 AF 3
3: High AF33 (30)
1: Low AF41 (34)
2: Medium AF42 (36)
Flash
Override
4 100 AF 4
3: High AF43 (38)
Critical 5 101 EF EF (46)
Internetwork
Control
6 110 (48-55)
Network
Control
7 111 (56-63)
5.5.1 Class Selector.
3 bit Class Selector (DS5, DS4,DS3) phn loai cc gi tin IP thnh 7 cp d.
- Class 0, Class mc djnh ca tt c cc loai djch vu.
- Class 1, 2, 3, 4 goi l Assured Forward (AF) service level. Chi s AF cng cao, d uu
tin ca cc gi tin cng cao.
- Trong trung hop thiu ti nguyn mang, cc gi tin thuc cc AF cng c th bj loai
b, gi tin c AF thp hon, c nguy co bj loai b cao hon.
- Class 5 goi l Expedited Forwarding (EF). Djch vu thuc Class 5 duoc phuc vu tt nht,
kh nng Drop gi thp. Class 5 thung p dung cho cc ng dung di hi thi gian
thuc (Voice, Video )
Phn ph lc


Chuong III: Cc giao thc lin quan 97
- Class 6, Class 7 dng cho Internetwork Control v Network Control. Class ny c d uu
tin cao nht, v thng tin diu khin dng vai tr rt quan trong trong vic hoat dng n
djnh ca mang.
5.5.2 Drop Precedence.
Mi Class ca DSCP c 3 mc drop precedence quy djnh bi cc bit DS2, DS1, DS0
(DS0 lun bng 0).
- Low (1).
- Medium (2).
- High (3)
Trong pham vi mt Class, gi tin c drop precedence cng cao th kh nng bj Drop khi
c tt nghn cng ln.
* Gi trj ca DSCP duoc th hin dui dang k tu hoc gi trj thp phn tuong ng vi
tng Class v drop precedence trong mi Class.
VD: AF21 hoc DSCP 18 tuong ng vi Class 2, drop precedence 1.
5.6 Thuc thi QoS
5.6.1 Classification, Trust v Marking.
Khi luu luong di vo mang, Router, switch thuc hin dng tc phn loai cc gi tin d p
dt chnh sch QoS cho ph hop. Vic phn loai ny dua vo loai traffic (VD: TCP, UDP, port
number), hoc phn loai cc gi tin dua vo Access-list.
Trong mt IP Packet, IP header mang thng tin ToS, Layer 2 Frame cng mang thng tin
CoS. Khi x l luu luong vo mang, cn phi cho h thng bit nn phn loai cp d uu tin
dua vo tiu ch no (ToS hay CoS, Out-bound hay In-bound).
Sau khi thuc hin phn loai luu luong v chon lua tiu ch gn QoS, h thng c th
dnh du (Mark) cc packet, frame hoc nh xa gi trj QoS nu cn thit.
5.6.2 Policy.
Sau khi phn loai cc gi tin, di vi mi cp d QoS khc nhau, ngui qun trj mang c
th cu hnh cho h thng chnh sch phn chia ti nguyn cho ph hop:
- Bandwidth limit.
- Drop precedence.
5.6.3 Scheduling.
Gi tin vo Input interface duoc xp vo hng doi, goi l Ingress queue. Sau khi x l
thng tin djnh tuyn, thng tin v Security, thng tin QoS, cc gi tin duoc xp vo hng doi d
duoc chuyn mach ra Output interface, hng doi ny goi l Exgress queue.
C nhiu loai Exgress queue, dnh cho cc cp d QoS khc nhau.
- Strict priority queue: gi tin nm trong hng doi ny c d uu tin cao nht, lun duoc
phuc vu du tin. Luu luong thuc cc ng dung nhu VoIP, Video conference thung
duoc xp vo hng doi loai ny.
Phn ph lc


Chuong III: Cc giao thc lin quan 98
- Standard queue: Mc d uu tin ca cc gi tin trong Standard queue thp hon so vi
Strict priority queue.
Gi trj ToS hoc CoS s duoc nh xa vo cc loai Exgress queue khc nhau, nh xa
duoc thuc hin thng qua thao tc Mapping. Thng thung, gi trj ToS t 0 dn 3 duoc nh
xa vo Standard queue, cn ToS gi trj t 4 dn 7 duoc nh xa vo Strict priority queue.
5.6.4 Congestion Avoidance.
Tuy d duoc phn loai hng doi uu tin, nhung nu luu luong trn mt loai hng doi qu
ti, bt buc phi xy ra hin tuong loai b gi nhm ngn chn tt nghn h thng do trn
buffer. C nhiu gii thut lua chon gi tin no cn phi loai b.
- Tail Drop
- Weighted Random Early Detection
Tail Drop: dua vo nguyn l First-in First-out, gi tin vo truc duoc xp vo vj tr
Head, gi tin vo sau duoc xp vo vj tr Tail. Khi c nghn xy ra, cc gi tin Tail bj loai b
truc tin.
Weighted Random Early Detection: Khc vi Tail Drop, phuong php ny lua chon gi
bj loai b mt cch ngu nhin. Tuy cp d QoS m mc ngung loai b gi cng khc nhau.
VD: CoS 0,1 c mc ngung l 50%. CoS 3,4,5 c mc ngung l 75%.

6. Gii thiu v SNMP
Simple Network Management Protocol l mt giao thc lp mang, nm trong b
giao thc TCP/IP. SNMP cho php ngui qun trj c th qun l duoc hoat dng ca
mang, tm v gii quyt cc su c trong network mnh qun l.
CNMP bao gm 3 thnh phn chnh dui dy:
SNMP client (manager): hay cn goi l NMS, l mt thit bj du cui thuc thi ng
dung qun l (management application) giao tip vi SNMP server d gim st v diu
khin cc thnh phn ca network; thng thung l mt my tnh
SNMP server: hay cn goi l agent, l mt thit bj duoc qun l, n c nhim vu
thu thp v luu tr cc thng tin cn cho qun l d dp ng cc SNMP request t client.
ng thi SNMP server cng sinh ra cc trap message d cnh bo client v cc thay
di dng luu trn thit bj; thng thung l mt router,switch hay workstation. SNMP
server hoat dng chi trn UDP/IP, nhn yu cu t bt c dja chi IP no duoc cho php
Phn ph lc


Chuong III: Cc giao thc lin quan 99
trn h thng. SNMP request v response duoc gi v nhn trn port UDP 161. SNMP
trap mc djnh duoc gi t port UDP 162
Management Information Base (MIB): l mt tp cc dc tnh ca mt thit bj no
d. MIB chi r format ca cc data qun l.

Hnh 6.1. Cc thnh phn co bn ca giao thc SNMP












Phn ph lc


Chuong III: Cc giao thc lin quan 100



CC T VIT TAT



AAA authentication, authorization, and accounting
AAAA authentication, authorization, accounting, and address assignment
AAL ATM Adaptation Layer
ABR area border router
ADSL asymmetric digital subscriber
AH authentication header
AIS alarm indication signal
ANSI American National Standards
ARP Address Resolution Protocol
AS boundary
router
autonomous system boundary router

ASCII American Standard Code for Information Interchange
ASIC application-specific integrated circuit
AS number autonomous system number ATM



backup DR backup designated router
BECN backward explicit congestion notification
BER bit error rate
BERT bit error rate test
BGP Border Gateway
Protocol BMA broadcast ultiaccess
BOOTP bootstrap protocol
B-RAS Broadband Remote Access Server



CBR constant bit rate
CC continuity check
CHAP Challenge Handshake Authentication Protocol
CIDR classless interdomain routing
CORBA Common Object Request Broker Architecture CoS class of service
CPE customer premises equipment
CPU central processing unit
CRC cyclic redundancy check
CR-LDP Constraint-based Routed Label Distribution Protocol
CR-LSP constraint-based routed label-switched path
Phn ph lc


Chuong III: Gii thiu cc giao thc 101



DC direct current
DCC Data Country Code
DCD data carrier detect
DES; 3DES Data Encryption Standard; triple DES DF
DHCP Dynamic Host Configuration Protocol
DIS designated intermediate system
DLCI data-link connection identifier
DLCMI data-link connection management interface
DMZ demilitarized zone
DNIS dialed number identification service
DNS Domain Name System
DPD dead peer detection
DR designated router
DS digital signal; DiffServ



EAP Extensible Authentication Protocol
EBGP external Border Gateway Protocol
ECC error checking and correction; error-checking code
ECMP equal-cost multipath
ECP Encryption Control Protocol
EEPROM electrically erasable programmable read-only memory
EF expedited forwarding
EN European Norm EPD early packet discard ES end system
ESP Encapsulating Security Payload
EXP experimental (refers to bits in MPLS shim header)

I

IP Internet Protocol
IPCP Internet Protocol Control Protocol
IPoA Internet Protocol over Asynchronous Transfer Mode
IPSec Internet Protocol Security
IRDP ICMP Router Discovery Protocol
ISAKMP Internet Security Association and Key Management Protocol
ISDN Integrated Services Digital Network
IS-IS Intermediate SystemtoIntermediate System

L

L-LSP label-only-inferred-PSC LSP
LMI local management interface; link management interface
LNS L2TP network server
LOF loss of frame LOP loss of pointer LOS loss of signal
Phn ph lc


Chuong III: Gii thiu cc giao thc 102
LSA link-state advertisement
LSDB link-state database
LSP label-switched path; link-state PDU; link-state protocol
LSR label-switching router



N

NSF nonstop forwarding
NSSA not-so-stubby area (refers to OSPF
routing) NTP Network Time Protocol
NVRAM nonvolatile random-access memory
NVS nonvolatile storage
PIM SM Protocol Independent Multicast sparse mode
PKI public key infrastructure
PLCP physical layer convergence procedure
PM policy manager
PNNI private network-to-network interface
PPP Point-to-Point Protocol



WAN wide area network
WLL wireless local loop
WRED weighted random early detection
WRR weighted round-robin

TI LIEU THAM KHO


- B ti liu: JUNOSe 7-0-1 ca Juniper
- B ti liu: JNCIA, JNCIP Juniper Network
- B ti liu: JUN-OS-57 ca Juniper
- T Internet: www.juniper.net

You might also like