You are on page 1of 68

Warfighter Information Network-Tactical

Components of
Joint Network Node (JNN)

TERMINAL LEARNING OBJECTIVE


Action:

Identify JNN Configurations, (COTs) Multiplexers,


Switching equipment, Modems, GPS Timing Options, and
COMSEC equipment and IA operations.

Condition: Given the Student Guide, SBOLBF08-HO01 thru 05,


and are aware of the Contemporary Operational
Environment (COE) factors such as the Hostile and
hazardous environment, extreme weather conditions,
and complex terrain.
Standard: Identify JNN Configurations and associated equipment.

RISK CONTROL MEASURES


Location: Classroom
Safety Hazards: Low
Risk Assessment: Low
Environmental Concerns: None

The WIN-T architecture

Corps/
Division

Brigade
Battalion
FDMA (2-10 Mb/s)
TDMA (5 Mb/s)
Wired
LOS

The WIN-T Network Design


The WIN-T Black Core is a router based network the shared transport of
packets carrying encrypted user information in their payloads. This feature
allows packets at differing classification levels and from multiple end
systems to be carried over the Black Core. In addition, RF links in the
WIN-T core are TRANSEC protected.

SWITCHING SYSTEMS
The JNN, in all its
variant forms, services
users at Echelons
above Corps, Corps,
Division and Brigade
levels.

Warfighter Information Network-Tactical

INCREMENT
1
(FORMELY JNN)
(Networking At-theHalt)
7

JNN (v)4, 5, 6 Joint Network Node Variants


SIPR & NIPR modules provide the IP
capability to provide converged
voice, video and data services
MSE module provides a capability
to connect to and interoperate with
MSE equipment
STEP module provides the
capability to connect to and
interoperate with STEP or Teleport
Transmission module provides the
requisite crypto and modems to
interface with line of sight, satellite
and cable transmission items

Joint Network Node (JNN)


JNN vs-WIN-T Versions

The JNN, in all its variant forms, services users at


Echelons above Corps, Corps, Division and Brigade
levels.

10

WIN-T Inc 1 Distribution Plan


Configuration
Item

Tactical Hub
JNN
STT
BnCPN
SSSv3

BCT/SBC
T

Support
Brigade

Battalion

0
2
2
0
0

0
1
1
0
0

0
0
1
1
0

Division /
Corps

1
3
3
0
0

/
/
/
/
/

0
3
3
0
0

ESB

0
4
28
24
2

Lots 1 9

Configuration
Item

Tactical Hub
JNN v4
JNN v5
JNN v6
STT v1
STT v2
BnCPN
SSSv4

BCT/SBC
T

Support
Brigade

Battalion

0
0
1
1
2
0
0
0

0
0
0
1
1
0
0
0

0
0
0
0
0
1
1
0
Lots 10

Division /
Corps

1
3
0
0
3
0
0
0

/
/
/
/
/
/
/
/

0
3
0
0
3
0
0
0

ESB

0
4
0
0
4
24
24
2
11

WIN-T
The JNN/WIN-T is composed of three primary systems that
support user requirements and provide intra-theater connectivity
which are:
1. Tacticle Hub Node (THN)
2. Joint Network Node (JNN)
3. BN Command Post Node (BnCPN)

12

JNN USER CASES

V
3

V3
V3
13

JNN (V),4,5,6 User Case

Provides Connectivity For 48

VoIP/Host (RJ-45 ports)


Provides Connectivity For 24 Pots
(RJ-11 ports)

14

JNN (V) 4,5,6 User Case


VG-224 Analog Gateway

POTS

24 ANALOG PHONES

48 Port E-Switch

POTS

VOIP

Media
Converter

48 VOIP PHONES

TO JNN SIPR/NIPR
TIER 2 ROUTER

SIPR / NIPR VOICE/DATA CASE

POTS

VOIP

SIPR/NIPR
VOICE CASE

VOIP

JNN

15

BATTLEFIELD VIDEO
TELECONFERENCING (BVTC)
The BVTC/BITS provides the capability to introduce
video teleconference into the JNN system
The JNN will provide one BVTC/BITS interface case
which will connect to the JNN via an HDSL modem
The connection at the JNN is via the CSUM binding
post located on SEP MP2

16

Private Branch Exchange (PBX)?

PBXs are telephone switches that are installed on a


customer's premise to provide tailored telephone service
for the customer.
17

Subscriber Module
24 Loop Lines
DTMF receivers & caller-ID senders & optional
echo cancellers
Provides services for 24 locally connected 2- Wire
POTS Phones

18

IP BLACK VOICE (PBX) NUMBERING PLAN 3/4 EXAMPLE 2


DSN service
GIG

SLX-100

AREA CODE=415

T1/DS0 24/1536 KBs

670-3xxx
#____

TTC-61
REDCOM
T1/1544 KBs

HDX

REDCOM (S)

T1/1544 KBs

TTC-59 (v5)

T1/1544 KBs

TTC-59 (v5)

T1/1544 KBs
T1/1544 KBs

REDCOM (S)

670-0xxx
#____
IP Connection over NT2R/T1
CC11C16-HO1-P3A

REDCOM (S)
TTC-59 (v5)

670-1xxx
#____

REDCOM (S)

670-2xxx
#____

19

Check On Learning

The AN/TTC 59 (JNN), REDCOM Slice Switch provides primary


interface into the _______ service, supporting up to _______
POTs through use of the two Dynamic Line Cards.

1. Defense Switch Network (DSN)


2. 24

20

Check on Learning

What is a Private Branch Exchange (PBX)?

ANSWERS
PBXs are telephone switches that are installed on a
customer's premise to provide tailored telephone service
for the customer.
21

QUESTIONS

Warfighter Information
Network-Tactical
Section 2
22

22

Vantage Switch

23 23

V ANTAGE SWITCH Desc ription

Provides an H323 Gateway between tactical and commercial


networks

Only located on the SIPR network


Ability to connect DNVT/DSVT as long locals (max 8)
Support for both 16 and 32 kb/s telephones

24

QUESTIONS

Warfighter Information
Network-Tactical
Section 3
25

25

IP Telephony Technology

26

CALL MANAGER
Call Manager is a software
based call processing
component providing signaling
and call control services to
Cisco VG-248/224 subscribers,
Cisco IP Phones, or Cisco IP
softphones). It registers with
the Vantage as a gateway. Call
Managers primary functions
are as follows:
call processing
signaling and device control
dial plan administration and
phone
feature administration.
27 27

Virtual LANs (VLANs)


These are a few of the VLANs in use in
the JNN network

VLAN 59 is used for data between the user device


and the Ethernet switch.

VLAN 222 is used for Management.

VLAN 58 is used for voice traffic.

VLAN 175 is used for the TACLANE

28

28

NIPR CM VoIP NETWORK

29

SIPR CM VOICE NETWORK

30

NIPR VOIP Call Manager


Tier 0 Router

663-0xxx

DISN

AREA CODE=614

AC=501

Call Manager

SL100

SAPPER65

JNN (V4)

NN
JNN(V4)

REDCOM (S)

REDCOM
REDCOM
(S)

66301

66301
SABRE
Call Manager

Call Manager

663-3xxx

663-2xxx
Tier 2/1Router

Tier 2/1Router

31

31

SIPR VOIP CallManager


730-0xxx

AREA CODE=901

Tier 2/1 Router

Call Manager
731-0xxx

Call Manager

STEP
Tier 0 Router

Tier 2/1 Router

Call Manager
731-1xxx

32

32

Check On Learning
By using Call Manager (VoIP phones); bandwidth are more
efficiently use than traditional circuit switch network
because________ and ________ can share the same
communications path?
1. Voice
2. Data

33

Check On Learning
The JNN NIPR Call Manager (VoIP phones) interface with the
___________Switch and extends _______ services from the
STEP/RHUB (GIG)sites to the users?
a. PBX
b. DSN

34

QUESTIONS

Warfighter Information
Network-Tactical
Section 4
35

35

Data Switching: The Tiered Network


TIER
TIER00

TIER 0 Routers provide GIG intra-

routing for DISA

TIER 1 routers within the JNN network


TIER
TIER11

provide GIG connectivity for its user


and also tie into Tier 2 routers at the
JNN.

TIER1 LANS
TIER1 LANS

TIER 2
TIER 2
JNN/WIN-T
JNN/WIN-T
TACTICAL NETWORK
TACTICAL NETWORK

TIER 2 routers to extend packet

services to its JNN tactical users for


intra-routing.
36

36

TIER 1 ROUTER

NIPR

SIPR

Provides serial WAN connections


Create security domain
Access lists to create a first line of defense for security
Known as the Gateway/Border router

37 37

TIER 2 ROUTER

NIPR

SIPR

The Tier 2 Routers provide default gateway and routing functions


for locally connected NIPR/SIPR hosts and shelter components.
Additionally, the Tier 2 is the access point for a TACLANE. This
router is commonly called The Backbone router.

38 38

NIPR VPN ROUTER

The NIPR VPN Router is used to establish Virtual Private Network


(VPN) links via the KU TDMA network to Battalion Command posts,
THN and JNN Shelters.

39

Example: NIPR Network


STEP/GIG

Tier 0 Router
SNID 130.0.0.0
Reserve Networks
(130.0.160.0
130.0.250.0)

EBGP

AN/TTC 59

Tier 2/1 Router


BCT
01

Tier 2/1 Router


BCT
02

OSPF

AN/TTC 59

SNID 130.0.32.0
Host Range 130.0.32.1
130.0.47.254
Broadcast
130.0.47.255

SNID 130.0.96.0
Host Range 130.0.111.1
130.0.111.254
Broadcast
130.0.111.255

V PN
BNCPN 1

OSPF

SNID 130.0.48.0
Host Range 130.0.48.1
130.0.63.254
Broadcast 130.0.63.255

BNCPN 2
SNID 130.0.64.0
Host Range 130.0.64.1
130.0.79.254
Broadcast 130.0.79.255

V PN
BNCPN 3

SNID 130.0.80.0
Host Range 130.0.80.1
130.0.95.254
Broadcast 130.0.95.255

OSPF
BNCPN 3
BNCPN 1

SNID 130.0.144.0
Host Range 130.0.144.1
130.0.159.254
Broadcast 130.0.159.255

SNID 130.0.128.0
Host Range 130.0.128.1
130.0.143.254
Broadcast 130.0.143.255

BNCPN 2
SNID 130.0.112.0
Host Range 130.0.112.1
130.0.127.254
Broadcast 130.0.127.255

CC11C16-HO1-P7

40

40

Example: SIPR Network

Tier 0 Router
SNID 130.0.0.0
Reserve Networks
(130.0.160.0
130.0.250.0)

STEP/GIG

EBGP

Tier 2/1 Router

AN/TTC 59

Tier 2/1 Router


BCT
02

BCT
01

AN/TTC 59

SNID 130.0.32.0
Host Range 130.0.32.1
130.0.47.254
Broadcast
130.0.47.255

SNID 130.0.96.0
Host Range 130.0.111.1
130.0.111.254
Broadcast
130.0.111.255

OSPF
BNCPN 1
BNCPN 3
SNID 130.0.48.0
Host Range 130.0.48.1
130.0.63.254
Broadcast 130.0.63.255

BNCPN 2
SNID 130.0.64.0
Host Range 130.0.64.1
130.0.79.254
Broadcast 130.0.79.255

SNID 130.0.80.0
Host Range 130.0.80.1
130.0.95.254
Broadcast 130.0.95.255

BNCPN 3
BNCPN 1

SNID 130.0.144.0
Host Range 130.0.144.1
130.0.159.254
Broadcast 130.0.159.255

SNID 130.0.128.0
Host Range 130.0.128.1
130.0.143.254
Broadcast 130.0.143.255

BNCPN 2
SNID 130.0.112.0
Host Range 130.0.112.1
130.0.127.254
Broadcast 130.0.127.255

CC11C16-HO1-P8

41

41

QUESTIONS

Warfighter Information
Network-Tactical
Section 5
42

42

JNN Command Post (CP) Local Terminations

VG-224
Analog
Gatewa
y

USER ACCESS
3750-48
CASE
Etherne
MC
t
Switch

24
Analog
Telepho
nes
VG-224

48 IP
Subscri
bers
USER ACCESS
3750-48
CASE
Etherne
MC
t
Switch

Analog
Gatewa
y
24
Analog
Telepho
nes
VG-224
Analog
Gatewa
y

48 IP
Subscri
bers

24
Analog
Telepho
nes
VG-224
Analog
Gatewa
y

48 IP
Subscri
bers

24
Analog
Telepho
nes

48 IP
Subscri
bers

USER ACCESS
3750-48
CASE
Etherne
MC
t
Switch

USER ACCESS
3750-48
CASE
Etherne
MC
t
Switch

JNN
JNN Shelter
Shelter
NIPR
Call
Manager
T1
MC
MC
MC
MC

K
V
M

NIPR
Server

REDCOM

NIPR
Tier 2
Router

T1

SIPR
Tier 2
Router

PT
CT
TACLAN
E

SIPR
Server
SIPR
Call
Manager

CTM
100

K
V
M

NIPR
VPN
Router

43

43

Multiplexer FlexMux

Each multiplexer section combines up to 5 synchronous highspeed data streams (8192 kb/s maximum per stream) into a
single aggregate stream at 44.736 Mb/s (DS3 rate) suitable for
transmission via 75-ohm coax or fiber optic link.

The FOM provides output suitable for operation at rates over


16 km of tactical fiber optic cable.

LOS Signal Flow

44

JNN TRANSEC Equipment (COMSEC)


Operation

45

KIV-19

Used in JNN V(1),(2)


and (3) as a Trunk
Encryption Device
(TED) between
switches
Replaced by the KIV7M in JNN V(4),(5) and
(6)

46

KIV-7

KIV-7H used as a Data


Encryption Device to
encrypt SIPR data before
transport over the NIPR
Network in JNN V(1),(2)
and (3)

Replaced by the KIV-7M in


JNN V(4),(5) and (6)

47

KG-175 TACLANE
Used for Tunneling
and Encapsulation
enabling the
transport of SIPR
data and voice
over the NIPR
Network used in all
versions of JNN
48

FILL DEVICES

49

AN/CYZ-10 DTD
Data transfer device
used to transfer
COMSEC Keys
Used with a variety of
equipment from
Radios to JNN COMSEC
Equipment

50

SIMPLE KEY LOADER


Windows Based
Operating System
Replaces the
AN/CYZ-10 DTD

51

QUESTIONS

Warfighter Information
Network-Tactical
Section 6
52

52

OTHER ASSOCIATED DEVICES

53

NODAL TIMING
JNN timing is recovered from the GPS which is
patched to bus port (primary mode)

54

Channel Service Unit Modem (CSUM)

The Channel Service


Modem (CSUM) is capable
of transporting digitized
voice, data and video
signals over existing copper
wire (WF-16) High-bitrate Digital Subscriber
Line (HDSL) transmission
rates of 64 Kbps to 4608
Kbps and planning range of
up to 8 Km.
55

Conditioned Diphase Modems (CDIMs)

CTM-100/C

There are three dual-ports conditioned diphase modems (CDIM) located


in the JNN shelter.
Fiber data rate of up to 18.72 Mbps at 10 Km
CX-11230 data rate of up to 4608 Mbps at 3.2 Km
56

QUESTIONS

Warfighter Information
Network-Tactical
Section 7
57

57

INFORMATION ASSURANCE

58

What is Information Assurance (IA)?

The denial of service to


unauthorized users; or
the provision of service
to authorized users.
IA stacks are installed
in each NCS/UHN
between Tier 1 and Tier
2 router domains on the
NIPRNET and SIPRNET
connections.
59 59

Information Assurance Plan

Network Defense
Network Accreditation packet by unit and location
User Accreditation/User agreement
Encryption Devices (TACLANE, KIV 7 and KIV 19)
MAC address specific DHCP
CAC card reader
NAV and Windows patches
IDS at all JNN switches
ISS Real Secure Network Sensor System
Access Control List on all router and ports designated for
specific MAC addresses

60

Network Threat Analysis

Denial of Service Attacks


Hoax Viruses
Trojan Horses
Worms
Attempts to exploit Operating System
Vulnerabilities
Users Connected via DHCP
Classification Violation SIPR/NIPR/JWICS
External Hard Drives and Removable Media

61

NETWORK MGMT TOOLS - SOLARWINDS

Used to evaluate health of network and ID problems


Features include
Network Discovery
Fault Monitoring
Performance Monitoring
Performance Management applications
Monitors Bandwidth Utilization

62 62

NETWORK MGMT TOOLS - SNMPC

Used to evaluate health of network and ID problems


Features include
Network Discovery
Fault Monitoring
Performance Monitoring
Performance Management applications
Monitors Bandwidth Utilization

63 63

NetOps

Network Operations (OL-761 (v)1-3/T)

BCT & Div Capabilities (OL-761


(v)1-3/T
Network-Wide Planning and
Management
WAN Management
LAN Management
Help Desk Access
Desktop Configuration Management
Additional Div Capabilities (OL761 (v)1/T
Information Assurance Monitoring
and Administration
NetFlow Bandwidth Utilization
NetMRI Call Detail
64 Reporting64
INE Management

NetOps Suite Composition


Domain

Lab
el
A
1

B
C
D
2
E
J
J
S

NetOps Functional Location

Division Main (DMAIN) G6/NetOps Cell


ESB Headquarters Company (HHC)
Corps HQ
Division Tactical CP (DTAC) 1 G6/NetOps
BCT/SBCT Command Post CP1 S6/NetOps
BCT CP2 S6/NetOps
ESB Signal Company
Brigade (BDE) S6/NetOps
Tactical Hub Node (THN)
Joint Network Node (JNN) Nodal Mgt
Single Shelter Switch (SSS) Nodal Mgt
Battalion Command Post Node (BnCPN)
Bn
Nodal Mgt
Autonomous Ops & Interoperability IA

Server Suite

NM Server Suite

Echelon
Division
ESB
Corps
Division
BCT/SBCT
BCT
ESB
Brigade
Division
All JNN Locations
All SSS Locations
All BnCPN
Locations
Pooled at
ESB/DIV
As required

Increment 1

WA Ne WA LA No Ele Ele Ne De Hel Pla NM IA IA IA INE


N tflo N N de me me t skt p nn Cli SM De Cli Mg
Mg w Mg Mg Mg nt nt MR op De er ent
vic ent r
r Col r r r Mg Mg I CM sk La La
e La V1
Ser lec La La La r r
La La pto pto
Mg pto &
ver tor pto pto pto La Ser
pto pto p p
r p INE
p p p pto ver
p p
Ser
p
ver
2
2
2

2
2
2

2
2

2
2

2
2
2

2
2
2

2
2
2

2
2
2

2
2
2

1
1
1

2
2
2

2
2
2

2
2
2

2
2
2

1
1
1

SIPR/NIPR

Secret

Coalition Wide Area


Network

Information security means protecting information and information systems from unauthorized access,
use, disclosure, disruption, modification, perusal, inspection, recording or destruction. 65

65

QUESTIONS

66

66

QUIZ
Check On
Learning

67

67

Warfighter Information Network-Tactical


Components of
Joint Network Node (JNN)

68

You might also like