已阅读5页,还剩16页未读 继续免费阅读




1、中国电信下一代承载网络China telecom Next Carrier Network(CN2)China Telecom Corporation chinatelecom韦乐平 Wei LepingChallengesTotal voice traffic and revenue decreases by the end of 2019. The mobile phone and IP phone calls have cannibalized part of the voice traffic businessesTraditional communication network is

2、 unable to support China Telecoms strategy to become a Integrated Information Service Provider. This is due to its lack of capability in offering value-added service.High OPEX (Operating Expenses) is required for traditional hetergeneous/multiple networks Existing ChinaNet is not a profit generating

3、 businessOpportunitiesAcceleration of the Information and Communications Technology (ICT) adoption in government and enterprises would drives the demand for telecom servicesAdoption of the SIP-based soft-switch technologyThe impending releases of 3G licenseRapid development of the broadband serviceB

4、ackgroundMigration of voice service from PSTN to soft-switch-based VoIP technologyPreparation for 3G-based mobile servicesAccelerate the development and application of the broadband services base on xDSL access technologyDrive managed service and system integration serviceBuilt an Integated IP/MPLS-

5、based multi-service platform CN2solutionsPhilosophy of Building CN2CN2 strengthnetwork topologyScalable routing architecture Highest level of redundancyHighest level of securityDifferent class serviceAll services have edge functionalityEnd to end control and managment Homogeneous Global Architecture

6、Single Global ASN(AS4809) IP Layer Redundancy Drives AccountabilityISIS level2-only with sub-second convergenceDiffserv-based QOS enabled networkMPLS and multicast enabled networkMPLS FRR with sub-50ms reroute Robust Architecture Allows for Unsurpassed StabilityOffer Layer-2/3 over IP or MPLSLeading

7、 SLAs via Zero Loss & Speed of Light Delays6PE-based IPV6 readyOffer Layer-2/3 over IP or MPLSLeading SLAs via Zero Loss & Speed of Light DelaysEnd to end service provision and fault managementCN2 StrengthSimple Network TopologyCN2 comprises of two functional planes and four structural layers to off

8、er a seamless connectivity for customers. CN2网络包括2个网络功能层面和4个网络结构层次,实现承载和业务提供相对独立The two functional planes are high speed data forwarding plane and service provisioning plane2个功能层面分别是高速转发层和业务提供层The four structural layers are core layer, aggregation layer, edge layer and services connecting layer4个结构层

9、次指核心层、汇聚层、边缘层和业务接入层The high speed data forwarding plane and service offering plane is supported by 4 and 1 vendors respectively. This is to ensure minimum service disruption and better edge services control.高速转发层包括4个厂家设备,业务提供层1个厂家。减少业务互通障碍,保证业务提供,边缘业务管理。Core Aggregation Edge Service 高速转发层业务接入层SR/PES

10、R/PESR/PESimple Network Topology(cont)IP/MPLS NetworkAll-Optical,Dense Wave Division Multiplexing (DWDM)SONET/SDH framingPer flow load-sharing and fail-over load-sharing with ISISMPLS is enabled with traffic to the PE Loopback is tagged. Hence, only VPN traffic is encapsulated in MPLS, all others is

11、 transported native IPMPLSSONET FRAMINGDWDMIPIPScalable route architectureTo ensure networks scalability and security, only infrastructure address blocks are redistributed into the IS-IS (IGP) routing table. Non-infrastructure addresses are redistributed in BGP. Keeping the IS-IS routing table to a

12、minimum would greatly enhance the network stability. 只有中继链路地址和管理地址通过ISIS,其他路由通过BGP,控制IGP路由表的条目,保证网络设备和链路数量的扩展性.Single Global ASN (AS4809),CN2 have two type Route reflectorVPN RR for RFC2547-based VPN service,(VRR)Global RR for internet service(GRR)VPN RR is independent of global RR, both use one lev

13、el Route Reflector(RR) (VRR和GRR是独立设置的,各自专用的)BGP Communities are deployed for routes control and netflow-based traffic monitor Global iBGP: Scaling the Global Internet Routing Table involve the increase in the number of GRR group.通过增加并列的GRR组来分担部分public 路由处理,这样具有很大的扩展性. VPN iBGP: Likewise, scaling the

14、 VPN routing Table involve the increase of VRR group. Example, VPN1-500 is handled by VRR-G1 while VPN501-1000 can be handled by VRR-G2通过增加并列的VRR组来分担部分VPN路由表的处理,比如VPN1-500的路由表有G1转发,VPN501-1000通过G2转发.通过以上两种设计解决网络路由表的扩展性.Scalable route architecture (Cont)Full mesh PeersFull mesh PeersInternetGRR1GRR2G

15、RR3GRR4ClientClientClientClientGroup 1 for part1 routesGroup 2 for Part2 routesInternetSend Part 2 routes to G2Send Part 1 routes to G1Receive Part 1 routes from G1Receive Part 2 routes from G2EBGPEBGPiBGP architecture for global routesScalable route architecture (Cont)Full mesh PeersFull mesh Peers

16、VRR1VRR2VRR3VRR4ClientClientClientClientGroup 1 for VPN 1-500 routesSend/ receive VPN1 routes to/from G1PEPEPEPEGroup 2 for VPN 501-1000 routesSend/ receive VPN501 routes to/from G2iBGP architecture for VPN routesHighest Level of redundancyAll network links are deployed in pairs over diverse facilit

17、iesOnly POS interface are used on backbone interconnection to facilitate faster failures detectionAll network links are active (NOT working and protect)Each PoPs router pair is connected by multiple routers. Link failure protection is the function of IS-IS (layer 3 control) and would not be carried

18、out on transport layer (layer 2 control) (不依赖SDH或者DWDm的传输层保护)IS-IS routing protocolPer flow load sharing between dual pairsFail-over load sharingSub-second fast convergence for gold serviceThree priority LSP flooding and FIB updateMPLS FRR1:1 mode FRR is deployed in core layer for 50 linksSub-50ms r

19、eroute timeBuilt to maintain utilization not to exceed 50% during normal runningAs a congestion-free network, CN2 ensures premium priority for delivery of all packets in the coreHigher Level of securityStrict uRPF is deployed on all customer access interfacesLoose uRPF is deployed on interconnected

20、interface网间互连端口Infrastructure ACLs (iACL) deny external traffic to ALL routers interfaces address. iACL are deployed on edges and borders of the network. 在Cn2网络外部接口互连和用户接口上部署ACL,不允许任何目的Ip地址是CN2网络,也就是网络外部任何人不能到达Cn2设备.Infrastructure routes are distribted to internet or customer隐形网络设计,也就是在其他网络上看不见CN2网络

21、的路由信息All router access control is manage by AAA servers and syslog(所有的操作都通过AAA和syslog) QOS technology would be deployed accordingly to reduce the impact of an attack or worm traffic. 通过QOS机制保证高等级业务不收病毒泛滥等影响,通过QOS控制病毒流量的泛滥Different class service capabilityCN2网络中QOS技术的定位 QOS技术是统一承载网络内部资源分配的手段,从资源占用的角度

22、看,是将统一的IP承载网络逻辑上分为不同的资源子网。比如3G,软交换、MPLS VPN、ATM等都可以单独建网,现在采用IP/MPLS技术建设一个网络,容量是所有网络的叠加,通过QOS技术分配资源给不同的业务。如CN2中软交换和3G语音流量最大可占用50%带宽资源,Vnet应用最大允许占用带宽资源小于15。QOS技术是网络故障或者拥塞情况下,实现业务等级区分的手段,保证高等级业务提供。但在正常情况下,目前的QOS技术不能实现业务等级的质量区分。QOS技术是提高网络资源利用效率的手段。充分利用IP网络统计复用的优势,在保证各等级业务分配资源的前提下,充分利用部分剩余资源。比如软交换业务最大优先占

23、用50的资源,如果实际的软交换业务流量只有20,剩下的30可以被Vnet等其他业务占用。Different class service capabilityCN2 QOS positioning QOS is a technique use to allocate limited network resources to different services. Unlike traditional networks of ATM, Frame Relay, and lease circuit services, CN2 provides an overlay network for all t

24、hese services. To differentiate the services base on the class of importance or contract, QOS is the mechanism in place to segregate and allocate network resources to different class of services. Example of a QOS policy: 3G and soft-switch traffic can be allocated with at least 50% of the available

25、bandwidth while Vnet can only consumed a maximum of 15% of the total bandwidthQOS are also positioned for traffic congestion management. Under the unfortunate circumstances of equipment or circuit failures, QOS helps to manage the limited usable network resources to different classes of services.Bet

26、ter resource utilization is expected from deploying QOS. Having elastic policy to re-allocate the under utilized resources results in efficient resources utilization. Different class service capabilityCN2 QOS设计思路CN2采用基于DiffServ架构的QOS技术体系,基于IP Precedence和MPLS EXP标记位最大支持8个业务等级分类。CN2网络初期实际部署5个业务等级,其中1个

27、等级网络管理控制使用,1个等级中国电信自身业务使用,对外提供3个等级的业务。在用户接入端口上部署流量控制、classification 、marking and remarking、shaping等功能给予不同等级的业务分配不同的资源冗余:比如金业务,配置1:2的资源,银业务配置1:1.5的资源,铜业务配置1:1的资源。由于金的资源冗余比较大,正常情况下由于业务流量突发造成的丢包率小于银和铜。在链路故障情况下,金业务基本不收影响。采用等级化的快速路由收敛技术,CN2部署了3个等级的路由收敛。如故障情况下,金业务路由优先收敛,业务中断时间最短,其次是银和铜。Different class ser

28、vice capability (Cont)QOS design philosophyCN2 adhere to DiffServ framework base on IP precedence and MPLS EXP Bit classification. Thus offering 8 ? classes of serviceInitial CN2 service classification is base on 5 basic classes of services. 1 class for network control traffic1 class for network mai

29、ntenances and operations3 classes for service offeringAll services are classified, remarked, shaped and rate-limited on the edge of the network to ensure a consistent QOS policy enforcement within the CN2 network Service resource allocation is base on class of service. GOLD class of service would be

30、 allocated with 2 times more redundant resources then BRONZE class of serviceConvergence of prefix varies on the traffic class. Prefixes of a GOLD class of traffic would convergence faster then prefixes of BRONZE class of trafficDifferent class service capability表:CN2金、银、铜三个等级业务CN2网络传送质量指标。平均故障切换时间(

31、s)最大故障切换时间(s)中断总时长(分钟/月)中断时长(分钟/次)故障次数(次/月)月可用性(%)金业务3855199.99银业务1520105299.98铜业务2545155399.95QOS标记丢包率(%)MTU(byte)平均延时(ms)最大延时(ms)抖动(ms)金业务50.05150030452银业务30.1150035605铜业务211500407510表四:CN2金、银、铜三个等级业务CN2网络可用性相关指标。Services are enforced and policed on the edges of the network via the SR/PE device. S

32、ervice comprises of soft-switch, video conference, VPN. Internet, ATM/FR/DDN etc.所有业务在边缘实现,只能通过业务路由器(SR/PE)接入,包括软交换、视频会议、VPN业务、互连网专线、ATM/FR/DDN业务接入等等。To ensure core networks stability and security, service provisioning, new service deployment and security control are performed on the edge of the net

33、work.业务升级或者新业务的增加、安全控制等等只须在边缘层进行,保证骨干网络的稳定。The SOLE responsibility of the Core Network is packet switching and forwarding骨干网络只负责数据转发,中国电信内部网络网间互连通过骨干网络,比如城域网互连、IDC等等All services are Edge FunctionsIP/MPLS platformIPSecVPNATM/FR接入宽带接入 SDH/DDN专线接入Corporate DialMPLS L3 VPNQOS边缘Integrated VPNPEPPPEPEPEPE

34、PPPPPPPEPEPEPEPEPEPEPEMPLS L2 VPNAoMPLSNetwork Capacity and Coverage (by the end of 2019):CN2 will provide coverage for 199 cities including Hong Kong, Tokyo, Singapore, London, New York, San Jose, Washington etc. with service offering MPLS/VPN and Internet Services.Cn2网络覆盖国内199个城市,和香港、东京、新加坡、伦敦、法兰克

35、福、纽约、华盛顿、圣何塞、洛杉矶9个海外节点,提供国际VPN、Internet接入和网间互连业务653 routers in total,including 417 P routers,202 PE/SR routers,12 Public RR,and 12 VPN RR1267 relay links with a total link bandwidth of 4.231T(网内中继电路)Over 800 external interlinkage bandwidth(网间互连电路)with 2.8T(网络间互连电路,主要是与城域网互连电路)A total customer access link bandwidth of (用户业务接入电路)650.62G(不包括软交换、3G接入带宽 )Network Capacity and CoverageCN2 VPN capabilitySupport MPLS layer 2/3VPN,RFC2547-based L3 VPNDraft-martini based Ethernet point to point se


  • 1. 本站所有资源如无特殊说明,都需要本地电脑安装OFFICE2007和PDF阅读器。图纸软件为CAD,CAXA,PROE,UG,SolidWorks等.压缩文件请下载最新的WinRAR软件解压。
  • 2. 本站的文档不包含任何第三方提供的附件图纸等,如果需要附件,请联系上传者。文件的所有权益归上传用户所有。
  • 3. 本站RAR压缩包中若带图纸,网页内容里面会有图纸预览,若没有图纸预览就没有图纸。
  • 4. 未经权益所有人同意不得将文件中的内容挪作商业或盈利用途。
  • 5. 人人文库网仅提供信息存储空间,仅对用户上传内容的表现方式做保护处理,对用户上传分享的文档内容本身不做任何修改或编辑,并不能对任何下载内容负责。
  • 6. 下载文件中如有侵权或不适当内容,请与我们联系,我们立即纠正。
  • 7. 本站不保证下载资源的准确性、安全性和完整性, 同时也不承担用户因使用这些下载资源对自己和他人造成任何形式的伤害或损失。


