Vous êtes sur la page 1sur 18

INSIDE PACKET

Packet Magazine
CISCO SYSTEMS USERS MAGAZINE
PACKET MAGAZINE
 
  
  

   
  Packet Magazine  
        
        
  
!"
     
  !    "#
$ % 
 
   ()   & 
'# ((#)* 
  # $ % Infrastructure &$ 
!"

()+* , +
 
*     " $ '$(    ) 
  
999/9 
  ,
 28 . 1, !,  #  
- ). )% &#('" *  
! 
&# # # $
 ! !" 10330 )*/ ! $ +# *  #()* &
&('  +, !  &-  
)0++ +#)* & "  #  $ % Service Provider &-
1)$ 
-+)*! 1
'#** !  &(   & *   &#+ + * +, !   
PACKET MAGAZINE #

$
%  %2 % (# &   
&#('" *&*'

 
   ()   #** !  +! * +% 


 .(  
!
  &%& / 
!

1
1. +! ! +2#/01   managed service  
!
 
 0 
-  3 % 1 +0)%$(1(&-  
 &
'() * + 
)

- !4
- '
5 
6* & 
(:;-) + '
5  
$
% Byond Speeds + Feeds &- # $ %$"
=    () '  -+)* )0 Cover Story (## * &
   & '
$! &*  345%
( > *?   *  
 )*  
 / # " 6 ',+
+*&7)  345%$"6
 /+
  (-+)*   ) %   "! 
       3 4 5%  8 
 
%  !    +), *  # $ *$  !#
" 
!" 8
&* 
!
 )0 Feature (# %
 #10 #4$ # $ $ 1$"' 345%
4/(   
#** !   
!& * 9',+

Tech Tips+Training & )0-+)* 1


$ $ 
! Packet Magazine
'   )))*  
** (#  &- *" *"  & * !+7$
! $ +*  )0(
$ #-  !  $# $ %  & (  ' Packet
   
#** ! 
++ Magazine  #  
 " 
! " (  
 6   # 2 2)* 
   " $# $#&/  &*
)*  
 ,  & *   "   $ 1"&$ %
$  &  * # $#  &/   $8

Chalk Talk )0
+#-+)*! 1
' thai-packet@external.cisco.com #
#** ! 

#*"0
  &* ( 

   1
 1., #+  
1 
)*'   #
1 7#** ! +,
  


 
 
  
%8.+ #/40  

PACKET CISCO SYSTEMS 2007 5

p5_Inside.pmd 5 25/1/2550, 10:48


TECH TIPS + TRAINING

 
 
  

     ?

ÇÕ  (Virtual Private Network) 




 
!  
"#$   %  WAN Backbone &'*
* '

!!*$%!! 
%+,-./ *  
& +01/ %2 * * $

 $

* $' '%2
 %!!   ,/&' 
' %!! 
 03'2'
  2 ' 5 &'* Site-to-Site VPN *$ Remote Access VPN # Site-to-Site
VPN $ + $
7%+ 8 %+ 9$2*  
:9; (  $
2, 5 ,  )  
Fixed-Line 
 Remote Access VPN $ %+   9 
7%+ 9  99*$%, +8
<,%,,'&'

* &
 03
 ' ' ! 9 (Tunnel)  
&', ./ + + ! 7%+  8 , !' $

  %==> 9 &
 *+ 8 (  Encapsulation)  
  %==>%+   /$79+?'' *% 
%+  '  ,  %,  *  !!%+  *$  

    
0#@CD 9 (CE H Customer Edge) *$0#@CD  9 
(PE- Provider Edge) %+ 7* * $%==> 9 
%==>  +  !  "#$ !' *$
  ! '
# $ / %==>9 .
03
,
9

/ 72%     ,  ,  


  9 
(Scramble) + 0I,*$/ 9$
%
'

J.+  8 #% +  %"#$03+   + 
%& &'79 
!'  9   '
.
 %
 KUntrusted NetworkM *  & <%,

 5 , 
!  9    Frame 
   
  !"
Relay, ATM  Multiprotocol Label Switching (MPLS) J.+ &   #$ %& "$'(
 ,,9 $9 $ 
 L2 Virtual Circuit, )$(
 *"#


6 PACKET CISCO SYSTEMS 2007

p6-9_Tech Tips.pmd 6 25/1/2550, 11:29


 %!! %+ ,8 * * $%==> J.+%!!  8   L2TP Version 3  Any
9 9*

  /$,' 9 0$:% Transport over MPLS (AToM) $79 2 ,  
KTrusted VPNM !! PPP, Frame Relay, ATM *$ Ethernet
#$%+ IEEE 802.1Q (Q-in-Q) 7   !!-

 Secure VPN $  Trusted VPN %+  Ethernet &' '

 IPsec, Generic Rout-
%==>9$&', 9 
, *$ , ing Encapsulation (GRE) *$ MPLS $ 2 ,
,  '! ,
 
 */ &'*   !!& *$!!   3 + 8
IP Security (IPsec) VPN, Secure Sockets Layer
(SSL) VPN  Layer 2 Tunneling Protocol (L2TP)  Layer 2 Site-to-Site VPN -
*/ 
VPN % +  IPSec  ,,9 03 + $
7%+ *$7&'
%$

 !? *$ ' 
# Site-to-Site VPN %==>9$ '! + $*''  %+ 2 J.+ 0# PE
$
 CE  8 @CD 9  %2 %+  %==>9 !' #
$
 PE  8 @CD9  J.++%+ 9?'' %+ 2   MAC Address 
* , =>9 , CE-to-CE !*$ Frame Relay DLCI
,<
0':, %+  +
$ WAN 7.
   $" (+, "
7%+9 #$%+=>9, PE-to-PE 2 , AToM *$
J 2 L2TPv3 $  #- .  / )
0$ 
!$792,'  *9  !   9   9!! %+ 2 * Point-to- % 1*)"2  )  0$
Point J.+ 203 , Virtual Private "$3 $*"445
# */ )$ "2
Site-to-Site VPN %+ 9 ,'  ,/ 7 Wire Service (VPWS) VPN !' AToM %2 %+    #"'0$ MPLS
,%,*!!&'%,/  %+ 2 *$ 3 = %+ 2 &0  MPLS 

 . %& 

PACKET CISCO SYSTEMS 2007 7

p6-9_Tech Tips.pmd 7 25/1/2550, 11:29


TECH TIPS + TRAINING

7 Label Distribution Protocol (LDP) Sig- IPsec, L2TP *$ SSL/TLS # IPSec VPN
naling 
7.*%
 + 8   Virtual Circuit (VC) *$ L2TP VPN (%+&039' )
Label %+ * * $%==>  2 J.+, 9
 $&J=*
',/

Last-Mile =%+',9 ! 9J J.+ + 7.%, 
 8 <,%9 2,,+ 9%+2,
#$'
, L2TPv3 #,J*%+
 ,8 *$  KSession IDM *$/ ,  %9 ==> 
 SSL VPN (:<J! 
 WebVPN) 
  2 9,
=9 * #$%+ VPWS 7   &'   
'
$&    
VPN + * Point-to-Point ,/ Virtual $
',/ *$,&J=*
03;<
Private LAN Service (VPLS) *$ IP-Only LAN Ser- %,/& Access Control %+*, 
vice (IPLS) VPN $79 2 ,+ * '
#,  /
!  9J7.
Multipoint (Any-to-Any) J.+ VPLS *$ IPLS $;,   <,%
+ '&'%+


&'0 %!!  MPLS, L2TPv3 ' 
J *$+ % 9
 IEEE 802.1Q +   Ethernet *$
IP *, 2', SSL 79,
9  !' '9 0$;
'  (Digital Certificate) *$


 Layer 3 Site-to-Site VPN H
*/  9#9 (Integrity Check) *$,<
+ !?*$ 8 7%+9 
,9 (Confidentiality) '
  
'
, J.+ 0#9  / $' !'  %0  !' 

 5* ,
*'' 
   *$03 %+ 0# , (Secret Key)
PE %+  %==>9 !' #
*'' ?''& +  SSL VPN +  $
! 9J,

 
%+  ,,&
/ $'./  
-
BGP/MPLS IP VPN J.+ ./ ,q IETF RFC ,%*+ ,  #, %/ 2 
4364 (   / + RFC 2547bis) 03%!!  ‚
&'
*, '%+9 77.&'

    3 %+ 9 ,039 ',    J.+ !' #'+ %+  %"ƒ 7.
0# PE $%*$=
''%  9  *$+ 8  J.+   IPSec VPN
2 ,* $
 * , % 9 8 %+  9 %7.%, % &' &
9,/ $&', 0$; 0 # PE % J Policy '8 ./ 
03;<  & 
%,
+ 7.,!'  Multiprotocol Border Gateway Pro- #%+ 9  7.%, 
%+ Clientless VPN
tocol (MP-BGP) *$ *%
 8  BGP & , 
J$'
! '&J=*

* * $*''0J 
%,/% 9 +  *&'  *$     7.  %,  
9* $ 
 K90*M   9  IPSec VPN 0

%   Layer 3 Site-to-Site VPN  2 ,<,%%+ %,/ SSL VPN *$ IPSec VPN
 BGP/MPLS VPN *
,  %!!  Virtual 
'
, :,#„

J!
Router VPN J.+ , 2 ' IETF ~, .+   VPN 3000 Series Concentrator *$ Cisco ASA
%+  +
 KNetwork based IP VPN Architecture us- 5500 Series Adaptive Security Appliance %+ - , 
ing Virtual RoutersM (cisco.com/packet/182_4b1)  '$7%
&'%,/* !'
#/ , 8 $%2* $ ~$ ASA 5500 Seiries %+ 
 *
,
0# PE 2 ,* $
  *$* $, &=
 $0I, (IPS) *$
$ Instance !!03 
*/&
, 0#'
'


  ?
Remote Access VPN  Site-to-Site VPN %+ 9 ,' $&',
!!*$%!!    8 %+  03     ' 
 =>&
0# CE    &=

7 ! *  J
     ,/  0$'

 J% J.+ #/ !

8 PACKET CISCO SYSTEMS 2007

p6-9_Tech Tips.pmd 8 25/1/2550, 11:29


$%'+$
0# CE  8 $  ! "# H  %==> MPLS

  *$%==>99$&', ,' ' Layer 3 VPN *$ L2TP-based VPN   IPSec
!', 
$
$',
0':, '%+' 9*

' + ./ J.+ 2, L2TPv3 7%2 Tunnel Authen-

  3 %+;, 0# CE 0# PE tication *$ %/ 0+ I ,!* Blind Inser-
$& 

 %==> 
9 tion '

 +%+%2   %==>9&0 ,!
*''%+ $ #/ ! $%'  $$%$! H
 7,
+  $
  0 # CE   8 !'  ! ! %==>*,'
,
 & ? 2
IPSec  GRE J.+,/ =>9,  K%2&'M '

  2   BGP/MPLS
/
 Overlay VPN ,
 &'* Overlay VPN %+ IP VPN *$ IPsec Layer 3 VPN %+;, GRE
./!' 
J Frame Relay Tunnel &    %!!   Multicast VPN
 ATM '%+ ./ !'  GRE  IPSec (MVPN) 2 ,# BGP/MPLS IP VPN 
Tunnel 03 Virtual Tunnel Interface (VTI) 2 ,# IPsec VPN
03
* + '%+0# PE 

 %==>
0# CE $ =>9 ,
/  Peer VPN  $$%$ Quality of service (QoS) - %!! 
J.+ $*0 + 9%,$
0# QoS 2*$',  
2, 5      
CE *$ PE *$@… 9 $03@… ,'  *,
 J
'!  *$' &? 

 Peer VPN 9 ,+  MPLS !' 0$;, +  
2,5 
=>' Experimental (EXP)  MPLS Shim Header

  2* 
# IPsec VPN, L2TP VPN,
  Site-to-Site VPN %,/*%+9,'  GRE VPN * * $%==>$.+ +  
 *$ 9 ,'    # =>' Type of Service (ToS)  Router IP Header
2 ',/:
!
!!*$%!! 

 
 H '9

 '%+ #
    ,
J.+ 7,' 9    Site-to-Site VPN
,/ 
03 Point-to-Point  Multipoint  9 ,
&  Remote Access VPN
   /
 5
& ? ,
    BGP/MPLS IP VPN &', ,!' Cisco IOS Software 
$03+  Multipoint (2 ,=>9, J! *9 
 &'  
 %+ ',  !'
K0M) #$%+ IPSec *$ GRE VPN $03 Point-to- 9 9 $ :$%2 IPsec
Point ,<#$~$,
  /  +
  VPN *$ SSL VPN &0 0 #
  
  ,'

 !%!!  8   Full mesh, 
J!   ASA 5500 Series  VPN 3000
Hub-and-Spoke *$ Partial Mesh J.+ Point-to-point Series %2*%&' + + 0$%":
VPN  !%!! %0+ $./ %,*
Point-to-Point  8 %,* #$%+ Multipoint VPN

03 Mesh ,
 *9 

     H '9


   
7. 
       2, '  9 *  *  !9  • Comparing, Designing, and Deploying VPNs
cisco.com/packet/182_4b2
 7  &0%&'  • Troubleshooting Virtual Private Networks
& ?
 %+  / q MPLS %,/  
7. BGP/ cisco.com/packet/182_4b3
MPLS IP VPN *$ AToM VPN ,$2,'%==> • Cisco ASA 5500 Series
cisco.com/packet/182_4b4
 9 #*!%9  * % • Cisco VPN 3000 Concentrators
 
 Layer 3 IPSec *$ GRE $7 cisco.com/packet/182_4b5
*   &0  &*$%&'

PACKET CISCO SYSTEMS 2007 9

p6-9_Tech Tips.pmd 9 25/1/2550, 11:29


AT A GLANGE Streaming media protocol support Cisco Application networking Services Accelerating streaming media performance
 

CHALK TALK
DESIGN STRATEGY


   

    ? !"#$%
&

'" (
)*'
 
'
 + +' ',&

ÈÙ 
  

         !"  #$  %
&'  )

*+,
$
-" . # 
 / 
! +
 & 
*0  
 #% !"+
  /     
  9
!"  +  # 
+,   ('A & 
) &53& 
2+&3
*
& 7# 8  *
!"4  &"! 0 
 /  
 +, *C*1 +, 
 3# 3+!1


   ?
1 !1 ! & 2!   
*.   /     
 / 
!! !"!" 2+&3

34 !" +,% 3++ # 5"% *8 %3*  +  73 !"+-1
 #% - "  3!" **.
4$3 +,# D&  #&  !" !  *& 2&  -1  #
3 7 
  
 
& *6#& 
& 7 !"  +, 7 *973  !"!  + -1 
* 
      !
#
7 ** .
*/ 
5 5" 8 ! 9!
*! #%!1: "#
$%$ & 

! 5  , + &3,*$ !" 4 8 
%
! 
 # 
0  49

 (Load Balancing) 
+, #
30- &3 
*
< 
* # 7
0 +,3* / 

 8 -"
$
534&'
*+,# 8 !" +,
#  5" !" +,3*%*2, 9 !"
  * 9&2! !" *4 5  , + 3
 # $.5" 51 !"  % 0- &   51 !"
!" 7=33+ 5" 3&#&9#  

3!1 5" 4  !" +,  3*


%
!
 
& 7 "! 4  / 

7 +,*% !" 


& 7% + !"  5
99# 
  !"  
&  7  7 5"    #
*

& 7%+ 0 # #
7 0
& 7!# 4"   (! #)
10,000 1 #  &   ! 
&  7  !1 %  0
4 %#$ !"  3&'  5" ! 
$# - "
 49

* &'-"
 5"  !"+

10 PACKET CISCO SYSTEMS 2007

p10-13_Cisco.pmd 10 25/1/2550, 11:31


 

 
   # 8 $% /  
 - " 4   73 
F 
34
 &# 8 $#&  1 #
+ 7  /  


5" 
+,$#& !"4 8  &#75# !" %  !!
3* .
9# #  73 !"

# 7
/ 
 1 4   *        /   
 
0 &'9

& -"  5" '= 7 !"0 + 9
 &
5" &
& 7# 1 # #-1 % 5 +,#5&#7 7 Cisco Catalyst 6500
2+&3# 1 # -1 %  3&' 9
 Series Switch &'= 7
!1$3*0  

& -"  *34 C*2+&3  /  
 7  ,! !" &#7 Catalyst
-"  ,! !"% 7 & /  6500 !"  Redundant 0%  'A 

5  4 ! 9
%'

 #!" & # 1  4  Content Switching Module (CSM -


 Aggregation Switch 3* 4 + ,%'

- " 49



); SSL Services Module (SSLM);
 4 !" 
3& 
%'


8 Instance 
* Firewall Services Module (FWSM) 
 
%  !1 # &+,
!1$3*0  / 
 
 FWSM !" #  -" *3   Cisco VPN/
    
!"  $"%& Security Management Solution (CiscoWorks VMS)
 ' ( F 9 " %  /  
3 #0 -  %0* 9
1  3*
&' ' !"  *3*33*
34
0- %9
3 Catalyst

*&'# 8 3*% !"  (5 6500 Supervisor Engine ,! CSM # Supervi-
!"&  ,!) / 
# 8 !"9 7 sor Engine  0 7   0* 'A & 

 & 13*75"#0-  


*!  &'%
#)! 1  D&# &  
+   & 
*
 53 3!1/ 
   !7

1 #
& 7 &' 
*+,$
34 &
!"75"9 +,# 8 *

 1: %$#$ ($


)
" * #$ +$+
%
#+$$  &,
-$ +
.- $

  /#$( 
$ 
&,
--%"$ +-
&$
%/ /# $ ( 
$ ) 
Aggregation-Layer +$+
$((1+ $2


* & - *% /#$( 
$ +
*% /#$( 
$ & - "
!!# 3-
/#$( 
$ "+"
!!# 3-
/# $ ( 
$ & - 4
 
/#$( 
$)    !2
 !#+ 
 32
 52
"
%#6#7 $
)3$-! $") 3

PACKET CISCO SYSTEMS 2007 11

p10-13_Cisco.pmd 11 25/1/2550, 11:31


CHALK TALK DESIGN STRATEGY

9    $ # &   % 


* 9 
  &  3*- 5+,%'

 !" 4   Layer 3 5"#3



 %''Y3 Catalyst 6500 Series Switch  7  4 "   !" !  #5% 1 !1 FWSM
#$ % &, !"  ,!+ , 1 7+ 5  +  , % '  

 ) 3*1  ,#* 
& $# (Untrusted) /  
(Trusted) 
 
 
 F 5"!  3 ,* !" Aggregation-Layer 
* Access-Layer
$#&   !" 53& 9
- " 3*% &3, Trusted Zone
# 5  !" *3% 9
+ #3* 4%  
-1  951 )
   !" 53&  31 4"  3*0  #%  &#7 Catalyst
0-  $#& - "  (7 %'

) 6500  Aggregation-Layer 9!Y !"



 Entity  .&7. 5 Virtual IP (VIP) Address  CSM - " 4   Routed
2+&3# 8 "  Mode - " CSM 3*09

 $7
# 8 *3% 
  (!$)
  F 9
 1 %  7 VLAN 5" 4 "  0- 7

/ 
  3*-
 &'  CSM 
 CSM $3*9

 4 "

 3 *71  4  % Core-Layer,  1% $&'# 8 -" 0&"!
Aggregation-Layer 
* Access-Layer 9 !" & 7- "  #% 
& 7&' % ,!
# 8 $#& 7 #9

 %'

 5 34
SSL 3*3%  Aggregation-Layer 

<,*!1 4 /  
! 9
 
 5 
<,*!1 ''A !"&" 3$&'-
#
*  Aggregation Switch  1  Access % 
& 7&'3*%9

Switch !"75"# Aggregation Switch 3* 
 -" 3 *!1 
& 7&'34
 Aggregation Module - " 
/  
# #&#)
&' 5"& 3
$ 4%  ! &" Aggregation Module  
 5#. 7 
* CSM $3*9

 4" 
75" #  Core Switch 3 
17

 
3* 79
&&2   1 !1 ! Y4 5"  ''A%
  Catalyst 6500 Switch 4 &9
 9

  + 8 /&  - "  *

 !" &'  0- &%'

 
<,* 75" #%!  #0+%  !:1
 / 
 9
  &#7# 8    9
&# Multilayer Switch Feature

Aggregation-Layer 4 &' !"75"##  Card (MSFC)  &#7 Catalyst 6509-Core-1 


*
Access Switch  #    Aggregation Switch Catalyst 6509-Core-2 75"#& $#.
 
0 7&3  Aggregation Switch ## & 575" #& $#9#
% 5&' 75" #  Aggregation Switch  5 "  *
+ 3*$ MSFC 75" # FWSM

1 9#  VLAN 2
 FWSM 75 " # MSFC  Aggregation Switch
 
    :  VLAN 3
End-to-End Load Balancing  MSFC  Aggregation Switch 75 " # CSM
End-to-End Load Balancing &2!/   VLAN 16
  
!"    8 93*!  #&  #1 FWSM 5    VLAN 49

&'   (17 F 19)
+,%'

 $#&  CSM 


* 3*! !" CSM
SSLM #!" & # 1   Aggregation-Layer 9  75"  #  *  Aggregation   Access

!" 1 3* 9 99


! $#& 7&
3& 
3*&-1 !"   4   Layer 2

Y 1 !1 5# 9



     ! " #$ #
#
* ''A 1  - " ,! !" $&'  4 "  
  3%
$  # 7  3*&"   3 ++,$#&3*%3   8 .5"
& $# (HTTP port 80)  #% 9
%'

 ,! !" +  ,  !  +  , !"   3*0

12 PACKET CISCO SYSTEMS 2007

p10-13_Cisco.pmd 12 25/1/2550, 11:31


4 !" #%  ! 7  &#7 #; vserver ROUTE
%'

 #; Aggregation Switch  # 5 virtual 0.0.0.0 0.0.0.0 any
#   
% Aggregation Switch $# ! serverfarm ROUTE
 4  -" + Cisco Hot Standby persistent rebalance
Routing Protocol (HSRP)  Catalyst 6500 Series inservice
4 '= 7#& /&#7& 0%09 !
3&#7#% # !" %  !"&#7#
 3!1 CSM 
* FWSM  +, 
*#% 5 'A 7  !"! 3 MSFC
* Stateful 3- 4 0*3&#7#  Aggregation Switch:
-" % !#-" 334
#  CSM 
*
FWSM  %%5" 4  !"#5" #  MSFC SVI
 !" 1 !'
## CSM 5 HSRP Group !
IP  Catalyst 6513 MSFC  VLAN 16 interface Vlan16
ip address 10.16.1.2 255.255.255.0
%& ' 
standby 16 ip 10.16.1.1
#% 'A 7 CSM   !" 74 standby 16 priority 150
 # !1:
()#* + !" ,
!   1 !1 #< 

module ContentSwitchingModule 3 !"%'

# $#& -13*Y C*


vlan 16 client * & $#-$&' 1 %
ip address 10.16.1.12 255.255.255.0 
+0- #&#* $ ! 
& 7
gateway 10.16.1.1  !  
*# !  # %$! < 
alias 10.16.1.11 255.255.255.0 
9 7 VLAN Tag  CSM * ''A
!  Aggregation-Layer $5" !" 0 4%
vlan 11 server
ip address 10.11.1.2 255.255.255.0 3!1 'A 7&/< 3 'A 7
alias 10.11.1.1 255.255.255.0 49

  # % 4 CSM
! 40- &' 
*7# 8 !" &' 
vlan 17 server -1 
*5" 3 MSFC 0 75"## 
ip address 10.17.1.2 255.255.255.0 +, CSM  VLAN 16 3- 0! 7
alias 10.17.1.1 255.255.255.0 +,#& !" ! Route Health Injection (RHI) - "
! 4  CSM */ !## VIP Address
vlan 18 server % " 1 $#& % ! 1 +, CSM $#&
ip address 10.18.1.2 255.255.255.0  %+#  7 VIP Address ! 4
alias 10.18.1.1 255.255.255.0  +  , CSM #  !"  -"     !" 9 


! &'  +, CSM # !"  %  ! ,! !"
vlan 19 server +, CSM # !"  1 
ip address 10.19.1.2 255.255.255.0
alias 10.19.1.1 255.255.255.0 4
&"#&!" / 

! 9% !" cisco.com/packet/182_5b1


!
serverfarm ROUTE
no nat server
no nat client
predictor forward
!

PACKET CISCO SYSTEMS 2007 13

p10-13_Cisco.pmd 13 25/1/2550, 11:31


CHALK TALK TROUBLESHOOTING


  
  
  

!"# $ Self-Tunnel




 
    ';/%1. ;  
/:% CUST1 <
 (Redundant Path)  
   !%
/: +' / / &*
    ! 
"#$
!!%&! 2 %,' ISP1 /:% ISP2 /

' *+! %,"#$-.
%&!& %,"#$/  %1. *'9-.
%&!&' %  L9
' %/&  0 
* HSRP (Hot '; 1 .- 0&/
1 /  *+
Standby Router Protocol) /&1% *2 /  
 :2& CUST1  9    +
 %1 ISP1
 
 *301%

 4 ! Cisco IOS Software & ; ISP2 ';  :?   
  '
 12.3 !9, /: Object Tracking for Reliable <!*% track
Static Routing Backup + Tunneling ( 3*
%1!.) ;/  (<.1    
)  
 
 Self-Tunnel
%1.;;/ ' :#=/&

 + *;&   := # !
 ! ;
 *30 IOS 3  12.3 9 !&*301%
 * *    MSelf-TunnelQ (> 2) 9 Self-
&%  % +  


4  Tunnel ,  -9  3  * % 1   !  .   
  
:#=,/&  % ;:. 
 & % !  1%&
*2 . %
/:, CUST1:
  
   

' > 1 ISP1 ; ISP2 *+ 
"#$ /  9 interface Loopback6000
ISP1 :? 
 :2& HSRP 9/&%1 *2 ip address 10.26.247.1 255.255.255.252
*%  track 1     (Serial0/0) &   ! see note
1!/   , ' ;3 = 
  D; !



/:%/
 . *& Tunneling && interface Tunnel1000
!&  CUST1 ; CUST2 *+ 
"#$. * ip address 10.26.247.9 255.255.255.252
9 CUST1 /&1% *2 :?   
 backup interface ser0/0
tunnel source 10.26.247.2
>;:
2 %,  &9   : .  tunnel destination 10.26.247.2
10.26.248.0/24 '; < ISP1 (9/&%1 *2 no keep-alive



: ip route 10.26.248.0 255.255.255.0 ser0/ !
0)
 +    ! CUST1 !%&! ISP1 interface Tunnel2000

14 PACKET CISCO SYSTEMS 2007

p14-15_Cisco.pmd 14 25/1/2550, 11:50


ip address 10.26.247.13 255.255.255.252
backup interface Loopback6000
tunnel source 192.168.60.61
tunnel destination 192.168.60.61
no keep-alive
!
Interface FastEthernet0/0
 2: Self-Tunnel # !"$"% %&'
Ip address 10.26.248.202 255.255.255.0  %(
Standby 1 ip 10.26.248.201
Standby 1 preempt >;:
Tunnel2000 ';   +



Standby 1 priority 105  /, : 192.168.60.60/30 : Y.  
  1  (9
Standby 1 track Serial0/0 :?' 
1 Fa0/0  )  %, *% backup in-
terface ! T2000 '; Loopback6000 %*&
Interface Serial0/0 . ; 
3, Tunnel1000 ';&/:& ( ;
Ip address 172.16.1.2 255.255.255.252 (omit- .: 1  , :?%,
 ;:!3*) ;
ted) Serial0/0 ';   ( ; Serial0/0   :?
1 %   ! Tunnel1000)
ip route 192.168.60.60 255.255.255.252
FastEthernet0/0 ! This subnet is used only
- + & FastEthernet0/0 &!%&! 



to change Tunnel2000 interface status. !
';-. 1 ' 
  1  ; T2000 ';
& < Loopback6000 %1  
ip route 10.26.249.0 255.255.255.0 172.16.1.1 %1 T1000 ;3& Ser0/0 ';&&<!
*% backup interface
+   / ,   -.
   Loopback6000
';
/ :? !  ' 
   CUST1  ' >, % /      !
- 
 / & (%  *+  / *  &  
 
  +  ISP1  ' ;&     %  9  ;
3    -;!



 /, : 10.26.247.0   1% 
 < 30 HSRP :' active :? standby &<!
: Y.
%           10.26.0.0/16 *% track *2 /1     ;
: Y. 
  1  Tunnel1000 ';   D;%, 2 ! !'; : /:  < ISP2 9


& 9 !%&! / Self-Tunnel /)  , :?   

%  


%, :? - 04 9 
 
%1!9, *30'' :?
:;3

* *+& +' Self-Tunnel  
*2 /& 
* CUST1-2 +  
Recursive Lookup  
    :?


 1:  
     !"
 CUST1 #

PACKET CISCO SYSTEMS 2007 15

p14-15_Cisco.pmd 15 25/1/2550, 11:50




   

 Cisco Unified Communications

16 PACKET CISCO SYSTEMS 2007

p16-19_Cisco.pmd 16 25/1/2550, 11:38


COVER STORY

Communications, Product and Technology Marketing


Organization 13   "
 ;
 1 Sage Re-
 ! "#"   search     
 2005 +"
N -
$% "!&
'()  / $ 9.  

"
6 ' -++$

"
 0 $" . %  -  
'"
A


    
  "
. .+
9.
" 0
V 2007 ;# $.
  
 (Unified Communication) /   <2     66 %  
$   9.  
% 
 !"# $"%& %'" %  +' . 
 ,'%&
9!?'''" 


*  "#' %  +   "
 9 # "
 "
1
+  9. "?# 4
'  "# + , - 
  '.$
Unified Communication *
 -'"*' . %-#  
? - 

''" ; # " 


-++$
"%'"  /0
+ % "#
;"
$"

''" %  9.A &
 + 12& % 1*' . ($" 3. %  ) ?
 " 1
"
  -. "%E"
"
  /0
+4  -   /
56
  "  

/ 
  
+, Product and Technology Mar-
keting Organization 13   "
 ,19&  ,
  1


''" 
1

Unified Communications  


+:
+ $"  

/  ";%
'   
  / 
$
-++$-
!
 "    !EA  
"
$
-?; '"/  
;# $ 
- <

+ 
''" 
4   "


   /0
+ ";%

1;# '  
''"  (Presense Services)
  -;/H
' .'
" A $" 
;'-
-
' =
->4  *
;
'3.3" 
;
 %


+/.  # 
% --'" Six Sigma  
$
Cisco Unified Communications ?  
 &

< "; 
 - '"'
% 
!% . /     
   
 '"
A -N &
+:
.3*' . %"'  
 32  ;'09@.%"A 
"
30 +2 +



<

1# 
  E  %

;'09@. '
 %

 
 ;# $ $
E"
  *"!2"
;# $ $
E
   /0
+ -
% 

33 %"
& "#  % *'

" 
 +:

  !EA 1 Cisco Unified Com-
munications   : Y
%
1 Cisco Unified Communications  

$


<1*' . +   

 1# <

+ 
''" 
1;# 
  !?'$
?  +.  " % 
'  
''"  (Presence Information) 32 $"%  $. 
!/  %  

%
+ 
''" ;# '  
''""
<# ''
 - ". ,Cisco Unified Communications !%

$"

''" 
 "# 

+  ;  
1
 
!/  + 

  Session Initiation Protocol (SIP)   !% % G '"
A

<' 
'
# 

 +:

.+'. --++$%"A   *12& & $"+   /0
+
!/ 
  SIP 12& 
 -+;;'
!
1+ 
 
4
 +
  
''"+ 
1 G"#  + * ' .  /

 1 Cisco Voice
 <
 $"
     H+.-# Technology Group %
%*
% %  
Cisco Mobile Connect ?'

 Cisco Unified
 

   Communications
!' $ Unified Communications -! '
" # 
 1

 
*'%E" -'"+ 

'!'&? ,

 
+:
1
""#  '\  91 G "%E"
1
 &
 "'# 
 

 ;# $
 
 <
 2 &'   "
+ 
1
 
$*
';$E 
"

 
!?4   3.. - %
# 
32   <2
& # 

-  . ;#


56

'
 Unified 
 3 & 

"-# 1"-

PACKET CISCO SYSTEMS 2007 17

p16-19_Cisco.pmd 17 25/1/2550, 11:38


COVER STORY

+ 
1

"

$ %

<''"

 H+.
  
& *

$  1 
$ 1
%
'"

+  >3 $
 $ Cisco Unified MeetingPlace Express 


 $    -
!
 " ;"
* (?

-$ . . %;# 1
 $

<%*%
  -
" - 1
"#%
 "
 " ) 1
  (
N+
+ 
 $ H+. Cisco Unified IP Phone 7985 

<

  -%*0
++ A ) 32 !%+ 
%"

&

<%*1'  -!
<2 
-
 . 32 ";%+ 
1
>
1
"
  *

!!"# ! 



     
 Unified Communications Cisco Unified Communications 
H  1"
N  
! "!#$%
  &  '
   +  %' '"<2 ,'4  "!2"
$
Cisco Unified Communications %


<%"A $ " "   9.  
$ & & Cisco Unified Presence Server  


1
% &  <
+ 
1
$    H+.-#  -;-+ "1 # <

+ 
''" 
;"
$"
% *

< 
# 
;"
 1"
 *19 "# 
'"
A 
 9.--++$'"
A    + ' SIP
 + &   E
 E
9 Wi-Fi 1 G $"% # 
"' %   1
& %'  '& "#  1"
 $" Cisco Unified CallManager, Cisco
& %
1 %  9+  
1
$ H+. <   H+. Unity Voice Mail, Cisco Unified MeetingPlace %  Cisco Unified IP
!
-  *

<1$ 
Cisco Mobile Connect ( Phone " %"
Cisco Unified Mobility Manager) +  % H+. +  &   
% N+
    %2 *  "
&  
Cisco Mobile Con- 1# <

+ 
''" 
;"
$"
'"
A 
nect 

<
 

 H+. < 1+ 
1
 
q"#  9. --++$    SIP 32   
 H+.!
 1
"# ! 
' ' "!%
Cisco Unified IP Phone - Cisco Unified Personal Communicator
 %$   + 
  #
$  ;'#  '" % 

 %12& 
%

%* E G9.'


" A  " $&
" ;'#  '"
"# 

- % %*

 & '
" # 
 
1- 1 
"' 3 & Cisco Uni- 1
 
9"
, 
 5 
4 %  ,  1
 < 
fied Communications *$" 

 $'
'
+ 1;4 ?'
-"+ 
1
+1
! 
-> -  $   "
Cisco
Unified Personal Communicator 12& 
 -  *-  <

 , "%E""
<

+ 
''" 
;"
$"
+ 
''";"
$"
'"
A -1#
1;# '  
1

'"
A %
<2 w9"'# & "
{4   .' ;# !
56

"
 $ Cisco Unified Presence Server 2

 H , Cisco Voice Technology Group "
 ,3  1
-
Cisco Unified Communications (#  ,Cisco Unified Personal  "
 "+$"'  


<1
Communicator4)  9.  
1;# $ -'" %  
9.
''" 
 
 $"

''" 
  
'
1;# $
"
'*4  '"
$"   Cisco Unified Presence Server
Cisco Unified Personal Communicator 
 Cisco Unified CallManage * #  
"  1
" $
Cisco Unified Personal  Cisco Unified MeetingPlace 
 -

<$| .$  
Communicator ! ( 
#"%     
)" %  % " *"+  
& ;# $

<+ '% 1 <

+ 

" *"
", -)" ''" 
;"
$"
'"
A '
'
Y1#

+ Cisco Unified
MeetingPlace  ! $ (preference)  Cisco Unified Personal Communicator $" 
"
"!"!#!  #.
  '
%' '"
.% 3.."
& % %
   "

' /  
 0  % % "
)" " 
 12/ !& !/
+)",&&+%"
 <2 10.00 .
   '% 
+ % % ",&&+34 
5/

*"&   ')"6*"&  "#!+$"# Cisco Unity *.3
*"+" * "
", -")  + Preference  )&  ,9 ' 

 Cisco Unified Personal Communicator $"
%+ 


<  
" ''" % "' '";"
$"


18 PACKET CISCO SYSTEMS 2007

p16-19_Cisco.pmd 18 25/1/2550, 11:38



A *4 -  . "
 ,-&
  "
w%
-''
- $" Microsoft Live Communications Server (LCS) %  Lotus
!+
'{4 SameTime --;   A $
 Cisco Unified Presence Server "#
+ 
1 -; *

<$ 9. % -++$1'
! ! $%  
%&'  SIP 1

#1 # <

+ 
''" 
;"
$"
'"
A
Cisco Unified Communications 
$
' =
'"
A "
 SIP, 1+ 
& %
SIMPLE, SOAP %  Ajax + !% 9. 


$ $"
 H+.'& '\  H+. <    %  -  "1
"
* 
;;# ''"
"
 

<!
 "  Cisco Unified Communications $"0
1
%
5
6 
    %"<
 !%  %
*' . -  , 

 " SIP 32 ?


' =

 IETF !%12&&  !%/ +  0 9.  -++$*' . 
"

 
  9.'
" A 
3 $ -   ' - . -  %

  &-++$ -   
+ &=

 3 $ SIP ";% Cisco Unified Communications ?-+'| .    '$.  
' . *  !E
"
& 4 -  "

->32 %;# $ 9.3.   %  -  "1
"

;;# '"
''" 
 & !%;+# :
 
+ 9 ' -!   - - " Cisco Unified Operations Manager  
%"A 1
"
  ,-1 SIP  
!%;#''"  .|3 % 
'

A %
 <'. +  %  - "
5Y


"' "
$ 9.'%"#4 -  . # <
1 "  & %  Cisco Unified Communica-
"
 ,

' 1
  " 
 -  "1
"<2 tions 32    Cisco Unified CallManager, Cisco Unified IP
+ -" H+. < 
<# -? +#''  "  " phones, Cisco Unity Messaging, Cisco Unified MeetingPlace '
  *?4 
' .- '$.       & - 
  1 %"

"  '"
A - . $" 3 .| . Cisco Unified
 3   "


<
  SIP  Cisco Unified CallManager    1
" #  "  H+.  !% ?'
CallManager 5.0, Cisco Unified Call Manager Express 3.4 - Cisco
Unified Survivable Remote Site Telephony 3.4 <2 9. H+. ,;

<'  <
 H+.   *$
 
9"<2
- +
 " -  
& SIP !%
 ?+ ' 
 +Y%
1''"0
1
"
& 4 . *   . ;# -# 
+ & =
 Cisco Unified CallManager    G '"
A '  '& *' . 1 G Warner Pacific Insurance Services 32 $ 
Cisco Unified CallManager

<  "
$ SIP %  SCCP "
  %

!%  Cisco Unified Communications "

"
%2 % $+  & + ' --  SCCP
9  '
"
-'"
    - SIP -3%
    "      - " Cisco Unified Service Monitor 



;#;' 9.

<$
 1
' =

+ 90
+13.  '"
A 1*' . ' -
%. <'
| .$ %"A 0
%    3.3 $ + 

;+/.?- Mean Opinion
Score (MOS)  A %2 

  !E Cisco Unified Communications "+-'" Cisco Unified
CallManager "
&   SIP %
 <2 Cisco Unified &# + + )(
CallManager Express - Cisco Survivable Remote Site Telephony   0
+  %
!E1 Cisco Unified Communica-
(SRST)  32  $.1
+'. SIP  SRST    tions  
$ $.
N 0
+1*' . +  +   /-
 ;
 H+. (Call-Processing) !
$"- 0
+

-
" 
1 !/  & & 3  
0
 1"
 WAN $  %"
3 |.  . Cisco Unified   '.
  G

0-1*- " <2
' =

CallManager  ! 
 "#   " ;# $ *  $ 9.- -> ($" SIP %  SIMPLE) 
-++$

+ 
-++$'
 ' %9    ; - &

 ! () ! # !)!' ) Í‹Ò¹à¾ÔèÁàμÔÁ


 
 &
 Cisco Unified Presence Server   SIP !% • Cisco Unified Communications system


<-"1# <

+ 
''" 
;"
$" cisco.com/go/unified

'"
A 3 |.  .-  <

+ 
''" 
' • Cisco Unified Presence Server video
      SIP   32 !% 
1# <

+  cisco.com/packet/182_6a1
• Podcast with Cisco Distinguished Engineer Cullen Jennings

''" 
1
  ,<
-; %2  G 
''& $
 cisco.com/packet/182_6a2
3 |.  .-  <

+ 
''" 
    SIP "


PACKET CISCO SYSTEMS 2007 19

p16-19_Cisco.pmd 19 25/1/2550, 11:38

Vous aimerez peut-être aussi