Cisco MPLS based VPNs: Equivalent to the security of Frame Relay and ATM
ثبت نشده
چکیده
The purpose of this white paper is to present discussion and findings that conclude that Cisco MPLS-based VPNs are as secure as their layer 2 counterparts such as FrameRelay and ATM. This document details a series of tests were carried out on a Cisco router test bed validating that MPLS based VPNs (MPLS-VPN) provide the same security as Frame-Relay or ATM. ATM and Frame-Relay have a reputation in the industry as being secure foundations for enterprise connectivity. Essential items that make ATM and Frame-Relay a secure network were considered and tested on an MPLS-VPN. • Address and routing separation equivalent to layer 2 models • A service provider core network that is not visible to the outside world • A network that is resistant to attacks The test results show that MPLS-VPNs provide the previous features at or above the level of a layer 2 VPN such as Frame-Relay or ATM. As described in greater detail through out this paper a test bed of 22 Cisco routers was used, includingtwo 1200 GSRs, two 7505s, four 7206 VXRs, five 3640s, five 2611s, and four 1750s running IOS version (12.0) and (12.1) to implement the necessary functions to provide a stable and secure MPLS core.
منابع مشابه
RFC 4381 Security of BGP / MPLS IP VPNs February
This document analyses the security of the BGP/MPLS IP virtual private network (VPN) architecture that is described in RFC 4364, for the benefit of service providers and VPN users. The analysis shows that BGP/MPLS IP VPN networks can be as secure as traditional layer-2 VPN services using Asynchronous Transfer Mode (ATM) or Frame Relay. Behringer Informational [Page 1] RFC 4381 Security of BGP/M...
متن کاملEnhancing Converged MPLS Data Networks with ATM, Frame Relay and Ethernet Interworking
Virtual Private Networks (VPN) are a popular way for enterprises to interconnect remote sites. Traditionally, VPNs have been based on Frame Relay, Asynchronous Transfer Mode (ATM) or Time Division Multiplex (TDM) private lines, using the service provider's ATM core network, and accounting for the majority of their data service revenues. However, the influences of a highly dynamic telecommunicat...
متن کاملRFC 4368 MPLS LC ATM and FR MIBs January 2006 3
This memo defines two MIB modules and corresponding MIB Object Definitions that describe how label-switching-controlled Frame-Relay and Asynchronous Transfer Mode (ATM) interfaces can be managed given the interface stacking as defined in the MPLS-LSR-STD-MIB and MPLS-TE-STD-MIB.
متن کاملRFC 6624 BGP Auto - Discovery and Signaling for L 2 VPN
Layer 2 Virtual Private Networks (L2VPNs) based on Frame Relay or ATM circuits have been around a long time; more recently, Ethernet VPNs, including Virtual Private LAN Service, have become popular. Traditional L2VPNs often required a separate Service Provider infrastructure for each type and yet another for the Internet and IP VPNs. In addition, L2VPN provisioning was cumbersome. This document...
متن کاملMultiprotocol Label Switching (MPLS)
Multiprotocol label switching (MPLS) is a versatile solution to address the problems faced by present-day networks—speed, scalability, quality-of-service (QoS) management, and traffic engineering. MPLS has emerged as an elegant solution to meet the bandwidth-management and service requirements for nextgeneration Internet protocol (IP)–based backbone networks. MPLS addresses issues related to sc...
متن کامل