You are on page 1of 75

CC(P !

outing

!"#$% v7 Ch&'ter 1
© 2007 – 2016, Cisco Systems, Inc. All rights reserved. Cisco Pulic 1
Topics
 )&sic (et*or+ &nd !outing Conce'ts
 %I!P
 "SP-
 &ni'ul&ting !outing #'d&tes
 Im'lementing P&th Control
 %nter'rise Internet Connectivity
 )P
 !outer &nd !outing Protocols /&rdening

Ch&'ter 1
© 2007– 2016,CiscoSystems,Inc.Allrights reserved. CiscoPulic 2
Ch&'ter 1
)&sic (et*or+ &nd !outing
Conce'ts

CCNP ROUTE: Implementing IP Routing

!"#$% v7 Ch&'ter 1
© 2007 – 2016, Cisco Systems, Inc. All rights reserved. Cisco Pulic 
Chapter 1 Objectives
 3i44erenti&ting )et*een 3yn&mic !outing Protocols

 /o* 3i44erent $r&44ic $y'es, (et*or+ $y'es, &nd "verl&ying


(et*or+ $echnologies In4luence !outing

 3i44erenti&ting )et*een the 5&rious )r&nch Connectivity


"'tions &nd 3escriing $heir Im'&ct on !outing Protocols

 /o* to Con4igure !outing In4orm&tion Protocol (et


ener&tion !IPng8

Ch&'ter 1
© 2007– 2016,CiscoSystems,Inc.Allrights reserved. CiscoPulic 
3i44erenti&ting

)et*een
3yn&mic !outing
Protocols

Ch&'ter 1
© 2007– 2016,CiscoSystems,Inc.Allrights reserved. CiscoPulic 9
Dierentiating !et"een D#namic Routing Protocols

 %nter'rise (et*or+ In4r&structure


 3yn&mic !outing Protocols in the %nter'rise (et*or+
In4r&structure
 Choosing & o4 3yn&mic !outing Protocols
 IP &nd %P !outing Protocols
 $y'es o4 !outing Protocols
 Im'ort&nce o4 convergence
 !oute summ&ri:&tion
 3escrie *h&t in4luences routing 'rotocol sc&l&ility

Ch&'ter 1
© 2007– 2016,CiscoSystems,Inc.Allrights reserved. CiscoPulic 6
Enterprise net"or$ inrastructure
Enterprise Campus
 An enter'rise c&m'us 'rovides &ccess to the
net*or+ communic&tions services &nd
resources to end users &nd devices.
 It is s're&d over & single geogr&'hic loc&tion,
s'&nning & single 4loor, uilding, or sever&l
uildings in the s&me loc&lity.
 $he c&m'us is commonly designed using &
hier&rchic&l model ; com'rising the core,
distriution, &nd &ccess l&yers;cre&ting &
sc&l&le in4r&structure.

Enterprise E%ge
 An enter'rise edge 'rovides users &t
geogr&'hic&lly dis'erse remote sites *ith
&ccess to the s&me net*or+ services &s users
&t the m&in site.
 $he net*or+ edge &ggreg&tes 'riv&te <A(
lin+s th&t &re rented 4rom service 'roviders,
&nd it en&les individu&l users to est&lish
5P( connections.
 In &ddition, the net*or+ edge &lso 'rovides
Internet connectivity 4or c&m'us &nd r&nch
users.
Ch&'ter 1
© 2007– 2016,CiscoSystems,Inc.Allrights reserved. CiscoPulic 7
D#namic Routing Protocols in the Enterprise Net" or$
Inrastructure
 It is & est 'r&ctice th&t you use one
IP routing 'rotocol throughout the
enter'rise, i4 'ossile.
 "ne common e&m'le o4 *hen
multi'le routing 'rotocols &re used is
*hen the org&ni:&tion is multihomed.
 In this scen&rio, the most com monly
used 'rotocol to ech&nge routes
*ith the service 'rovider is )order
&te*&y Protocol )P8, *here&s
*ithin the org&ni:&tion, "'en
Shortest P&th -irst "SP-8 or
%nh&nced Interior &te*&y !outing
Protocol %I!P8 is ty'ic&lly used.
 In & single>homed in4r&structures
st&tic routes &re commonly used
et*een the customer &nd the ISP.

Ch&'ter 1
© 2007– 2016,CiscoSystems,Inc.Allrights reserved. CiscoPulic =
Choosing a o D#namic Routing Protocols

Input re&uirements 
 Si:e o4 net*or+
 ultivendor su''ort
 @no*ledge level o4 s'eci4ic 'rotocol

Protocol characteristics 
 $y'e o4 routing &lgorithm
 S'eed o4 convergence
 Sc&l&ility

Ch&'ter 1
© 2007– 2016,CiscoSystems,Inc.Allrights reserved. CiscoPulic ?
I'P an% E'P Routing Protocols

An &utonomous system AS8 re'resents & collection o4 net*or+ devices


under & common &dministr&tor.

!outing 'rotocols c&n e divided &sed on *hether they ech&nge routes


*ithin &n AS or et*een di44erent &utonomous systems

Interior 'ate"a# Protocols (I'P)


 Su''ort sm&ll, medium>si:ed, &nd l&rge org&ni:&tions, ut their sc&l&ility
h&s its limits. -&st convergence, &nd &sic 4unction&lity is not com'le to
con4igure. $he most commonly used IPs in enter'rises &re %I!P,
"SP- &nd !IP is r&rely used. IS>IS is &lso commonly 4ound &s ISP IP
E*terior 'ate"a# Protocols (E'P)
 #sed to ech&nge routes et*een di44erent &utonomous systems. )P is
the only %P th&t is used tod&y. $he m&in 4unction o4 )P is to ech&nge
& huge numer o4 routes et*een di44erent &utonomous systems.

Ch&'ter 1
© 2007– 2016,CiscoSystems,Inc.Allrights reserved. CiscoPulic 10
T#pes o Routing Protocols

Distance vector protocols


 $he dist&nce vector routing &''ro&ch determines the direction vector8 &nd dist&nce such &s lin+
cost or numer o4 ho's8 to &ny lin+ in the net*or+. $he only in4orm&tion th&t & router +no*s &out &
remote net*or+ is the dist&nce or metric to re&ch this net*or+ &nd *hich '&th or inter4&ce to use to
get there. 3ist&nce vector routing 'rotocols do not h&ve &n &ctu&l m&' o4 the net*or+ to'ology.
+in$,state protocols
 $he lin+>st&te &''ro&ch uses the Shortest P&th -irst SP-8 &lgorithm to cre&te &n &str&ct o4 the
e&ct to'ology o4 the entire net*or+ or &t le&st *ithin its &re&. A lin+>st&te routing 'rotocol is li+e
h&ving & com'lete m&' o4 the net*or+ to'ology. $he m&' is used to determine est '&th to &
destin&tion.
Path vector protocols
 P&th in4orm&tion is used to determine the est '&ths &nd to 'revent routing loo's. Simil&r to dist&nce
vector 'rotocols, '&th vector 'rotocols do not h&ve &n &str&ct o4 the net*or+ to'ology. P&th vector
'rotocols indic&te direction &nd dist&nce, ut &lso include &ddition&l in4orm&tion &out the s'eci4ic
'&th o4 the destin&tion.

Ch&'ter 1
© 2007– 2016,CiscoSystems,Inc.Allrights reserved. CiscoPulic 11
Importance o Convergence
 $he 'rocess o4 *hen
routers notice ch&nge in
the net*or+, ech&nge
the in4orm&tion &out
the ch&nge, &nd 'er4orm
necess&ry c&lcul&tions
to reev&lu&te the est
routes.

$o minimi:e
ch&nges, do*ntime
& 4&st &nd uic+ly
convergence res'ond
time is desired.to net*or+
Ch&'ter 1
© 2007– 2016,CiscoSystems,Inc.Allrights reserved. CiscoPulic 12
Route -ummari.ation
 !oute summ&ri:&tion
reduces routing
overhe&d &nd
im'rove st&ility &nd
sc&l&ility o4 routing
y reducing the
&mount o4 routing
in4orm&tion th&t is
m&int&ined &nd
ech&nged et*een
routers.

Less frequent and smaller updates, as a result of


route summarization, also lower convergence time.
Ch&'ter 1
© 2007– 2016,CiscoSystems,Inc.Allrights reserved. CiscoPulic 1
Routing Protocol -calabilit#
Sc&l&ility 4&ctors include
 (umer o4 routes
 (umer o4 &dB&cent neighors
 (umer o4 routers in the net*or+

(et*or+ design
 -reuency o4 ch&nges
 Av&il&le resources CP# &nd memory8

 $he sc&l&ility o4 the routing 'rotocol &nd its con4igur&tion


o'tions to su''ort & l&rger net*or+ c&n 'l&y &n im'ort&nt

role *hen ev&lu&ting routing 'rotocols &g&inst e&ch other.


Ch&'ter 1
© 2007– 2016,CiscoSystems,Inc.Allrights reserved. CiscoPulic 1
#nderst&nding (et*or+
$echnologies

Ch&'ter 1
© 2007– 2016,CiscoSystems,Inc.Allrights reserved. CiscoPulic 19
Un%erstan%ing Net"or$ Technologies
 3i44erenti&te tr&44ic ty'es
 3i44erenti&te IPv6 &ddress ty'es
 3escrie ICPv6 neighor discovery
 (et*or+ $y'es
 ()A (et*or+s

Ch&'ter 1
© 2007– 2016,CiscoSystems,Inc.Allrights reserved. CiscoPulic 16
Dierentiate traic t#pes

Ch&'ter 1
© 2007– 2016,CiscoSystems,Inc.Allrights reserved. CiscoPulic 17
Dierentiate traic t#pes
Unicast
 #nic&st &ddresses &re used in & one>to>one contet. #nic&st tr&44ic is ech&nged
only et*een one sender &nd one receiver.
/ulticast
 ultic&st &ddresses identi4y & grou' o4 inter4&ces &cross di44erent devices. $r&44ic
th&t is sent to & multic&st &ddress is sent to multi'le destin&tions &t the s&me time.
 IPv6 reserved multic&st &ddresses 22.0.0.0–2?.299.299.299.
 IPv6 reserved multic&st &ddresses h&ve the 're4i --00=.
0n#cast
 An &nyc&st &ddress is &ssigned to &n inter4&ce on more th&n one node. <hen &
'&c+et is sent to &n &nyc&st &ddress, it is routed to the ne&rest inter4&ce th&t h&s
this &ddress. $he ne&rest inter4&ce is 4ound &ccording to the me&sure o4 dist&nce o4
the '&rticul&r routing 'rotocol.
!roa%cast
 IPv ro&dc&st &ddresses &re used *hen sending tr&44ic to &ll devices in the sunet.
Doc&l ro&dc&st &ddress 299.299.299.299.
 IPv6 does not use & ro&dc&st &ddress, ut uses multic&st &ddresses inste&d

Ch&'ter 1
© 2007– 2016,CiscoSystems,Inc.Allrights reserved. CiscoPulic 1=
ell,$no"n IPv2 an% 0ssigne% IPv3 /ulticast 0%%resses

Ch&'ter 1
© 2007– 2016,CiscoSystems,Inc.Allrights reserved. CiscoPulic 1?
Dierentiate IPv3 a%%ress t#pes

Ch&'ter 1
© 2007– 2016,CiscoSystems,Inc.Allrights reserved. CiscoPulic 20
Describe IC/Pv3 neighbor %iscover#
Router -olicitation (R-)
 Sent y & device to the &ll IPv6 routers multic&st to reuest & !outer Advertisement
mess&ge 4rom the router.
Router 0%vertisement (R0)
 Sent y &n IPv6 router to the &ll IPv6 devices multic&st. Includes lin+ in4orm&tion
such &s 're4i, 're4i>length, &nd the de4&ult g&te*&y &ddress.
 $he !A &lso indic&tes to the host *hether it needs to use & st&teless or st&te4ul
3/CPv6 server.
Neighbor -olicitation (N-)
 Sent y & device to the solicited node multic&st &ddress *hen it +no*s the IPv6
&ddress o4 & device ut not its %thernet AC &ddress. $his is simil&r to A!P 4or
IPv.
Neighbor 0%vertisement (N0)
 Sent y & device usu&lly in res'onse to & (eighor Solicit&tion mess&ge.
Re%irect
 $his h&s simil&r 4unction&lity &s in IPv. Sent y & router to in4orm the source o4 &
'&c+et o4 & etter net>ho' router on the lin+ th&t is closer to the destin&tion.

Ch&'ter 1
© 2007– 2016,CiscoSystems,Inc.Allrights reserved. CiscoPulic 21
Net"or$ T#pes

Ch&'ter 1
© 2007– 2016,CiscoSystems,Inc.Allrights reserved. CiscoPulic 22
Net"or$ T#pes
Point,to,point net"or$
 A net*or+ th&t connects & single '&ir o4 routers.
 A seri&l lin+ is &n e&m'le o4 & 'oint>to>'oint connection.
!roa%cast net"or$
 A net*or+ th&t c&n connect m&ny routers &long *ith the c&'&ility to
&ddress & single mess&ge to &ll o4 the &tt&ched routers.
 %thernet is &n e&m'le o4 & ro&dc&st net*or+.
Nonbroa%cast /ultiaccess (N!/0) net"or$
 A net*or+ th&t c&n su''ort m&ny routers ut does not h&ve ro&dc&st
c&'&ility.
 $he sender needs to cre&te &n individu&l co'y o4 the s&me '&c+et 4or
e&ch reci'ient i4 it *ishes to in4orm &ll connected '&c+et c&n e
tr&nsmitted.
 -r&me !el&y &nd Asynchronous $r&ns4er ode A$8 &re e&m'les o4 &n
()A net*or+ ty'e.

Ch&'ter 1
© 2007– 2016,CiscoSystems,Inc.Allrights reserved. CiscoPulic 2
N!/0 Net"or$s Issues
-plit hori.on
 Prevents & routing u'd&te th&t is received on &n inter4&ce
4rom eing 4or*&rded out o4 the s&me inter4&ce.

Ch&'ter 1
© 2007– 2016,CiscoSystems,Inc.Allrights reserved. CiscoPulic 2
N!/0 Net"or$s Issues
Neighbor %iscover#
 "SP- over ()A neighors &re not &utom&tic&lly discovered.
 Eou c&n st&tic&lly con4igure neighors, ut &n &ddition&l
con4igur&tion is reuired to m&nu&lly con4igure the hu &s &
3esign&ted !outer 3!8.
 "SP- tre&ts &n ()A net*or+ li+e %thernet y de4&ult
!roa%cast replication
 <ith routers th&t su''ort multi'oint connections over & single
inter4&ce th&t termin&tes &t multi'le P5Cs, the router must
re'lic&te ro&dc&st '&c+ets.
 $hese re'lic&ted ro&dc&st '&c+ets consume &nd*idth &nd
c&use signi4ic&nt l&tency v&ri&tions in user tr&44ic.

Ch&'ter 1
© 2007– 2016,CiscoSystems,Inc.Allrights reserved. CiscoPulic 29
N!/0 Net"or$s Issues
Point,to,point subinteraces
 %&ch suinter4&ce, *hich 'rovides connectivity et*een t*o
routers, uses its o*n sunet 4or &ddressing.
Point,to,multipoint subinteraces
 "ne sunet is sh&red et*een &ll virtu&l circuits.
 )oth %I!P &nd "SP- need &ddition&l con4igur&tion to
su''ort this underlying technology.

Ch&'ter 1
© 2007– 2016,CiscoSystems,Inc.Allrights reserved. CiscoPulic 26
Connecting Remote
+ocations "ith
4ea%&uarters

Ch&'ter 1
© 2007– 2016,CiscoSystems,Inc.Allrights reserved. CiscoPulic 27
Connecting Remote +ocations "ith
4ea%&uarters
 Identi4y o'tions 4or connecting r&nch o44ices &nd remote
loc&tions
 3escrie the use o4 st&tic &nd de4&ult st&tic routes
 3escrie &sic PPP con4igur&tion on 'oint>to>'oint seri&l lin+s

3escrie &sic -r&me !el&y on 'oint>to>'oint seri&l lin+s
 %'l&in 5!- Dite
 3escrie the inter&ction o4 routing 'rotocols over PDS 5P(s
 %'l&in the use o4 !% 4or r&nch connectivity
 3escrie 3yn&mic ulti'oint virtu&l 'riv&te net*or+s
 3escrie multi'oint !% tunnels
 3escrie the (et /o' !esolution Protocol

Identi4y the role o4 IPsec in 35P( solutions
Ch&'ter 1
© 2007– 2016,CiscoSystems,Inc.Allrights reserved. CiscoPulic 2=
Principles o -tatic Routing
0 static route can be use% in the ollo" ing circumstances
 <hen it is undesir&le to h&ve dyn&mic routing u'd&tes
4or*&rded &cross slo* &nd*idth lin+s, such &s & di&lu' lin+.
 <hen the &dministr&tor needs tot&l control over the routes used
y the router.
 <hen & &c+u' to & dyn&mic&lly recogni:ed route is necess&ry.
 <hen it is necess&ry to re&ch & net*or+ &ccessile y only one
'&th & stu net*or+8.
 <hen & router connects to its ISP &nd needs to h&ve only &
de4&ult route.
 <hen & router is under'o*ered &nd does not h&ve the CP# or
memory resources necess&ry to h&ndle & dyn&mic routing
'rotocol.
Ch&'ter 1
© 2007– 2016,CiscoSystems,Inc.Allrights reserved. CiscoPulic 2?
Coniguring an IPv2 -tatic Route
ip route prefix mask F address G interface H address J H %hcp  H distance 
H name next-hop-name  H permanent G trac$ number  H tag tag 

Ch&'ter 1
© 2007– 2016,CiscoSystems,Inc.Allrights reserved. CiscoPulic 0
Coniguring a -tatic Deault Route

Ch&'ter 1
© 2007– 2016,CiscoSystems,Inc.Allrights reserved. CiscoPulic 1
!asic PPP Overvie"
 Point>to>Point Protocol PPP8 h&s sever&l &dv&nt&ges over
its 'redecessor /igh>Devel 3&t& Din+ Control /3DC8.
K Authentic&tion
K ulti>lin+

K Com'ression
K Lu&lity

Ch&'ter 1
© 2007– 2016,CiscoSystems,Inc.Allrights reserved. CiscoPulic 2
PPP 0uthentication Overvie"
!outercon4ig>i48M ppp authentication F chap G chap pap G
pap chap 5 pap J H if-needed H list-name G %eault  H callin 

Ch&'ter 1
© 2007– 2016,CiscoSystems,Inc.Allrights reserved. CiscoPulic 
PPP Coniguration E*ample

Ch&'ter 1
© 2007– 2016,CiscoSystems,Inc.Allrights reserved. CiscoPulic 
PPPoE

Ch&'ter 1
© 2007– 2016,CiscoSystems,Inc.Allrights reserved. CiscoPulic 9
!asic 6rame Rela# Overvie"
 -r&me !el&y 'rovides sever&l ene4its over tr&dition&l 'oint>to>'oint
le&sed lines
K (o need 4or se'&r&te 'hysic&l inter4&ce 'er connection on the router
K )&nd*idth cost is much more 4leile
 -r&me !el&y is & s*itched <A( technology *here virtu&l circuits 5Cs8
&re cre&ted y & service 'rovider SP8 through the net*or+.
K $he 5Cs &re ty'ic&lly P5Cs th&t &re identi4ied y & d&t&>lin+ connection identi4ier
3DCI8
 )y de4&ult, & -r&me !el&y net*or+ is &n ()A net*or+.
K $o emul&te the DA( ro&dc&st c&'&ility th&t is reuired y IP routing 'rotocols Cisco
I"S im'lements 'seudo>ro&dc&sting
K 3yn&mic m&'s &l*&ys &llo* 'seudo>ro&dc&sting.
 3yn&mic m&'s cre&ted vi& -r&me !el&y Inverse Address !esolution
Protocol I(A!P8 4or IPv or -r&me !el&y Inverse (eighor 3iscovery
I(38 4or IPv6

S'lit hori:on is dis&led y de4&ult on -r&me !el&y 'hysic&l inter4&ces.

Ch&'ter 1
© 2007– 2016,CiscoSystems,Inc.Allrights reserved. CiscoPulic 6
6rame Rela# Topologies

Ch&'ter 1
© 2007– 2016,CiscoSystems,Inc.Allrights reserved. CiscoPulic 7
!asic 6rame Rela# Coniguration

Ch&'ter 1
© 2007– 2016,CiscoSystems,Inc.Allrights reserved. CiscoPulic =
7PN Connectivit# Overvie"
 PDS>&sed 5P(s
 $unneling 5P(s
K !%
K I'sec
K 35P(

Ch&'ter 1
© 2007– 2016,CiscoSystems,Inc.Allrights reserved. CiscoPulic ?
+8 /P+- 7PNs

 $r&44ic 4or*&rding through the PDS &c+one is &sed on


l&els th&t &re 'reviously distriuted &mong the core routers.
 <ith & D&yer  PDS 5P(, the service 'rovider '&rtici'&tes in
customer routing.

$he service 'rovider est&lishes routing 'eering et*een the
P% &nd C% routers.
 $hen customer routes th&t &re received on the P% router &re
redistriuted into P>)P &nd conveyed over the PDS
&c+one to the remote P% router.
 "n the remote P%, these customer routes &re redistriuted
&c+ 4rom P>)P into & remote P%>C% routing 'rotocol.
 !outing 'rotocols et*een P%>C% routers on the loc&l &nd
remote sites m&y e tot&lly di44erent.
Ch&'ter 1
© 2007– 2016,CiscoSystems,Inc.Allrights reserved. CiscoPulic 0
+9 /P+- 7PNs
 A D&yer 2 PDS 5P( C% router interconnects *ith the P%
router &t D&yer 2 using &ny D&yer 2 'rotocol *ith %thernet
eing the most common.
 D&yer 2 tr&44ic is sent et*een P% routers, over & 're>

est&lished 'seudo*ire.
 Pseudo*ire emul&tes & *ire et*een P% routers th&t c&rries
D&yer 2 4r&mes &cross the IP>PDS &c+one.
 $here &re t*o &sic D&yer 2 PDS 5P( service &rchitectures.
K 5irtu&l Priv&te <ire Service 5P<S8 is & 'oint>to>'oint technology th&t
&llo*s the tr&ns'ort o4 &ny D&yer 2 'rotocol &t the P%.
K $he second ty'e o4 D&yer 2 PDS 5P( is 5irtu&l Priv&te DA( Service
5PDS8, *hich emul&tes &n %thernet multi&ccess DA( segment over the
PDS core &nd 'rovides multi'oint> to>multi'oint service.

Ch&'ter 1
© 2007– 2016,CiscoSystems,Inc.Allrights reserved. CiscoPulic 1
Tunneling 7PNs
'RE
 $unneling 'rotocol develo'ed y Cisco th&t en&les enc&'sul&tion o4
&ritr&ry D&yer  'rotocols inside & 'oint>to>'oint, tunnel>over>IP net*or+.
 $r&44ic th&t is tr&ns'orted over the !% tunnel is not encry'ted
 !% tr&44ic is usu&lly enc&'sul&ted *ithin IPsec.
IPsec
 Is & 4r&me*or+ th&t uses & set o4 cry'togr&'hic 'rotocols to secure tr&44ic
&t D&yer .
D/7PN
 $his solution o44ers the c&'&ility to dyn&mic&lly est&lish hu>to>s'o+e
&nd s'o+e>to>s'o+e IPsec tunnels, thus reducing l&tency &nd o'timi:ing
net*or+ 'er4orm&nce.
 35P( su''orts dyn&mic routing 'rotocols et*een hu &nd s'o+es &s
*ell &s IP multic&st. It is &lso suit&le 4or environments *ith dyn&mic IP
&ddresses on 'hysic&l inter4&ces such &s 3SD or c&le connections.

Ch&'ter 1
© 2007– 2016,CiscoSystems,Inc.Allrights reserved. CiscoPulic 2
Routing 0cross /P+- 7PNs

 $he D&yer 2 PDS 5P( &c+one solution is 'roviding the D&yer 2


service &cross the &c+one, *here !1 &nd !2 &re connected
together directly using the s&me IP sunet.
 I4 you de'loy & routing 'rotocol over the D&yer 2 PDS 5P(,
neighor &dB&cency is est&lished et*een your !1 &nd !2 routers.
$he 4igure 'resents the connectivity through the &c+one, *hich
c&n e illustr&ted &s one ig s*itch.
Ch&'ter 1
© 2007– 2016,CiscoSystems,Inc.Allrights reserved. CiscoPulic 
Routing 0cross /P+- 7PNs

 $he D&yer  PDS 5P( &c+one solution is 'roviding the D&yer


 service &cross the &c+one, *here !1 &nd !2 &re connected
to ISP edge routers.
 A se'&r&te IP sunet is used on e&ch side. I4 you de'loy & routing
'rotocol over this 5P(, service 'roviders need to '&rtici'&te in it.
 (eighor &dB&cency is est&lished et*een your !1 &nd the
closest P% router &nd et*een your !2 &nd itNs closest P% router.
Ch&'ter 1
© 2007– 2016,CiscoSystems,Inc.Allrights reserved. CiscoPulic 
Routing Over 'RE Tunnel

 A passenger protocol or enc&'sul&ted 'rotocol, such &s


IPv or IPv6 th&t is eing enc&'sul&ted.
 A carrier protocol, !% in this e&m'le, th&t is de4ined y
Cisco &s & multi'rotocol c&rrier 'rotocol.

A transport protocol, such &s IP, th&t c&rries the


enc&'sul&ted 'rotocol.
Ch&'ter 1
© 2007– 2016,CiscoSystems,Inc.Allrights reserved. CiscoPulic 9
D#namic /ultipoint 7irtual Private Net"or$

Ch&'ter 1
© 2007– 2016,CiscoSystems,Inc.Allrights reserved. CiscoPulic 6
D/7PN
The primar# beneits o D/7PNs ollo":
 4ub router coniguration re%uction
K $r&dition&lly, the individu&l con4igur&tion o4 & !% tunnel &nd IPsec *ould need to
e de4ined 4or e&ch individu&l s'o+e router. $he 3P5( 4e&ture en&les the
con4igur&tion o4 & single m!% tunnel inter4&ce &nd & single IPsec 'ro4ile on the
hu router to m&n&ge &ll s'o+e routers
 0utomatic IPsec initiation
K !% uses (/!P to con4igure &nd resolve the 'eer destin&tion &ddress. $his
4e&ture &llo*s IPsec to e immedi&tely triggered to cre&te 'oint>to>'oint !%
tunnels *ithout &ny IPsec 'eering con4igur&tion.
 -upport or %#namicall# a%%resse% spo$e routers
K <hen using 'oint>to>'oint !% &nd IPsec hu>&nd>s'o+e 5P( net*or+s, it is
im'ort&nt to +no* the 'hysic&l inter4&ce IP &ddress o4 the s'o+e routers *hen
con4iguring the hu router.
K 35P( en&les s'o+e routers to h&ve dyn&mic 'hysic&l inter4&ce IP &ddresses
&nd uses (/!P to register the dyn&mic 'hysic&l inter4&ce IP &ddresses o4 the
s'o+e routers *ith the hu router.

Ch&'ter 1
© 2007– 2016,CiscoSystems,Inc.Allrights reserved. CiscoPulic 7
/ultipoint 'RE
The main characteristics o the m'RE coniguration are as ollo"s:
 "nly one tunnel inter4&ce needs to e con4igured on & router to su''ort
multi'le remote !% 'eers
 $o le&rn the IP &ddresses o4 other 'eer, devices using m!% reuire
(/!P to uild dyn&mic !% tunnels.
 m!% inter4&ces &lso su''ort unic&st, multic&st, &nd ro&dc&st tr&44ic.

Ch&'ter 1
© 2007– 2016,CiscoSystems,Inc.Allrights reserved. CiscoPulic =
N4RP

Ch&'ter 1
© 2007– 2016,CiscoSystems,Inc.Allrights reserved. CiscoPulic ?
N4RP

Ch&'ter 1
© 2007– 2016,CiscoSystems,Inc.Allrights reserved. CiscoPulic 90
IPsec
IPsec provi%es our important securit# services:
 Coni%entialit# (encr#ption)
K (o one c&n e&vesdro' on the communic&tion. I4 the communic&tion is
interce'ted, it c&nnot e re&d.

Data integrit#
K $he receiver c&n veri4y th&t the d&t& *&s tr&nsmitted through the '&th
*ithout eing ch&nged or &ltered in &ny *&y.
 0uthentication
K Authentic&tion ensures th&t the connection is m&de *ith the desired
communic&tion '&rtner. IPsec uses Internet @ey %ch&nge I@%8 to
&uthentic&te users &nd devices th&t c&n c&rry out communic&tion
inde'endently.
 0ntirepla# protection
K Antire'l&y 'rotection veri4ies th&t e&ch '&c+et is uniue &nd not du'lic&ted.

Ch&'ter 1
© 2007– 2016,CiscoSystems,Inc.Allrights reserved. CiscoPulic 91
!outing
$CPIP&nd
"'er&tions

Ch&'ter 1
© 2007– 2016,CiscoSystems,Inc.Allrights reserved. CiscoPulic 92
Routing an% TCPIP Operations
 SS, -r&gment&tion, &nd P$#3
 IPv -r&gment&tion &nd P$#3
 )&nd*idth 3el&y Product
 $CP St&rv&tion
 D&tency
 ICP !edirect

Ch&'ter 1
© 2007– 2016,CiscoSystems,Inc.Allrights reserved. CiscoPulic 9
/--; 6ragmentation; an% P/TUD
 An IPv '&c+et h&s & m&imum si:e o4 69,99 ytes
 An IPv6 '&c+et *ith & ho'>y>ho' etension he&der &nd the
Bumo '&ylo&d o'tion c&n su''ort u' to ,2?,?67,2?9
ytes

/o*ever, most tr&nsmission lin+s en4orce & sm&ller
m&imum '&c+et length c&lled the maximum transmission
unit $#8.
 <hen & router receives &n IPv '&c+et l&rger th&n the $#
o4 the egress or outgoing inter4&ce, it must 4r&gment the
'&c+et unless the 3- 3onNt -r&gment8 it is set in the IPv
he&der.

Ch&'ter 1
© 2007– 2016,CiscoSystems,Inc.Allrights reserved. CiscoPulic 9
/--; 6ragmentation; an% P/TUD
6ragmentation causes several issues inclu%ing the
ollo"ing:
 CP# &nd memory overhe&d in 4r&gment&tion o4 the '&c+et
 CP# &nd memory overhe&d in destin&tion devices during
re&ssemly o4 '&c+ets
 !etr&nsmission o4 the entire '&c+et *hen one 4r&gment is
dro''ed
 -ire*&lls th&t do D&yer  through D&yer 7 4iltering m&y h&ve
troule 'rocessing IPv 4r&gments correctly

Ch&'ter 1
© 2007– 2016,CiscoSystems,Inc.Allrights reserved. CiscoPulic 99
IPv2 6ragmentation an% P/TUD
 $CP &imum Segment Si:e SS8 de4ines the l&rgest &mount
o4 d&t& th&t the receiving device is &le to &cce't in & single $CP
segment.
 $o &void 4r&gment&tion o4 &n IPv '&c+et, the selection o4 the
$CP SS is the minimum u44er si:e &nd $# o4 the outgoing
inter4&ce minus 0 ytes. $he 0 ytes t&+e into &ccount the 20>
yte IPv he&der &nd the 20>yte $CP he&der.
 $he $CP SS hel's &void 4r&gment&tion &t the t*o ends o4 the
$CP connection ut it does not 'revent 4r&gment&tion due to &
sm&ller $# on & lin+ &long the '&th.
 P&th $# 3iscovery P$#38 *&s develo'ed 4or the 'ur'ose o4
determining the lo*est $# &long & '&th 4rom the '&c+etNs
source to destin&tion.

P$#3 is only su''orted y $CP.
Ch&'ter 1
© 2007– 2016,CiscoSystems,Inc.Allrights reserved. CiscoPulic 96
IC/P Re%irect
 ICP5 !edirect mess&ges &re used y routers to noti4y the sender o4
& '&c+et th&t there is & etter route &v&il&le 4or & '&rticul&r destin&tion.
 Simil&r to IPv, !1 *ill 4or*&rd the IPv6 '&c+et to PC), ut unli+e ICP
4or IPv, it *ill send &n ICPv6 redirect mess&ge to PCA in4orming the
source o4 the etter route. PCA c&n no* send suseuent IPv6 '&c+ets
directly to PC) even though it is on & di44erent IPv6 net*or+.

Ch&'ter 1
© 2007– 2016,CiscoSystems,Inc.Allrights reserved. CiscoPulic 60
Implementing RIPng
 3escrie gener&l !IP ch&r&cteristics
 3escrie ho* to con4igure &nd veri4y &sic !IPng
 3escrie ho* to con4igure !IPng to sh&re de4&ult routes
 An&ly:e the !IPng d&t&&se

Ch&'ter 1
© 2007– 2016,CiscoSystems,Inc.Allrights reserved. CiscoPulic 61
RIP Overvie"
 !IP is &n IP th&t is used in sm&ller net*or+s.
 It is & dist&nce vector routing 'rotocol th&t uses ho' count
&s & routing metric.
 $here &re three versions o4 !IP !IPv1, !IPv2, &nd !IPng.
!IPv1 &nd !IPv2 route in IPv net*or+s.
 !IPng routes in IPv6 net*or+s.
 !IP is & st&nd&rdi:ed IP routing 'rotocol th&t *or+s in &
mied>vendor router environment.

Ch&'ter 1
© 2007– 2016,CiscoSystems,Inc.Allrights reserved. CiscoPulic 62
RIP Overvie"

 !IP uses ho' count, the numer o4 routers, &s the metric.
 I4 & device h&s t*o '&ths to the destin&tion net*or+, the '&th
*ith 4e*er ho's *ill e chosen &s the '&th to 4or*&rd tr&44ic.
 I4 & net*or+ is 16 or more ho's &*&y, the router considers it

unre&ch&le.
Ch&'ter 1
© 2007– 2016,CiscoSystems,Inc.Allrights reserved. CiscoPulic 6
RIP Overvie"
 As & routing loo'>'revention techniue, !IP im'lements
s'lit hori:on. S'lit hori:on 'revents routing in4orm&tion 4rom
eing sent out the s&me inter4&ce 4rom *hich it *&s
received.

S'lit hori:on *ith 'oison reverse is & simil&r techniue ut
sends the u'd&te *ith & metric o4 16, *hich is considered
unre&ch&le y !IP.
 !IP is &lso c&'&le o4 lo&d &l&ncing tr&44ic over eu&l>cost
'&ths.
 $he de4&ult is 4our eu&l>cost '&ths.
 I4 the m&imum numer o4 '&ths is set to one, lo&d
&l&ncing is dis&led.

Ch&'ter 1
© 2007– 2016,CiscoSystems,Inc.Allrights reserved. CiscoPulic 6
Comparing 6eatures in RIPv9 an% RIPng

Ch&'ter 1
© 2007– 2016,CiscoSystems,Inc.Allrights reserved. CiscoPulic 69
RIPv9 Coniguration

Ch&'ter 1
© 2007– 2016,CiscoSystems,Inc.Allrights reserved. CiscoPulic 66
RIPv9 Coniguration
 )y de4&ult, !IPv2 &utom&tic&lly summ&ri:es net*or+s &t m&Bor
net*or+ ound&ries, summ&ri:ing routes to the cl&ss4ul
net*or+ &ddress
 <hen route summ&ri:&tion is dis&led, the so4t*&re sends

sunet routing in4orm&tion &cross cl&ss4ul net*or+ ound&ries.


Router(config-router)# no auto-summary

 $he ip summar#,a%%ress rip ip-address network-mask


inter4&ce comm&nd is used to summ&ri:e &n &ddress or sunet
under & s'eci4ic inter4&ce.

Router(config-if)# ip summary-address rip 10.2.0.0 255.255.0.0

Ch&'ter 1
© 2007– 2016,CiscoSystems,Inc.Allrights reserved. CiscoPulic 67
Coniguring RIPng

R2(config)# ipv6 router rip CCNP_RIP

Ch&'ter 1
© 2007– 2016,CiscoSystems,Inc.Allrights reserved. CiscoPulic 6=
7eri# RIPng Coniguration

Ch&'ter 1
© 2007– 2016,CiscoSystems,Inc.Allrights reserved. CiscoPulic 6?
RIPng -ummari.ation

Ch&'ter 1
© 2007– 2016,CiscoSystems,Inc.Allrights reserved. CiscoPulic 70
Propagating a Deault Route

R1(config-if)# ipv6 rip name default-information srcinate | only

Ch&'ter 1
© 2007– 2016,CiscoSystems,Inc.Allrights reserved. CiscoPulic 71
RIPng 7eriication Comman%s

Ch&'ter 1
© 2007– 2016,CiscoSystems,Inc.Allrights reserved. CiscoPulic 72
RIPng 7eriication Comman%s

Ch&'ter 1
© 2007– 2016,CiscoSystems,Inc.Allrights reserved. CiscoPulic 7
Investigating the RIPng Database

 $he !IP 'rocess there c&n e multi'le !IPng 'rocesses on & single router8.
 $he route 're4i.
 $he route metric, in *hich !IPng uses ho' count &s & metric. In the e&m'le, &ll three routes
h&ve & metric o4 2. $his me&ns the destin&tion net*or+ is 2 ho's &*&y, counting itsel4 &s & ho'.
 Inst&lled &nd e'ired, in *hich the +ey*ord Oinst&lled me&ns the route is in the routing t&le. I4
& net*or+ ecomes un&v&il&le, the route *ill ecome Oe'ired &4ter the de&d timer e'ires.
An e'ired route v&lue in seconds8, during *hich the route *ill e &dvertised &s e'ired, is
listed.
 %'ires in, in *hich i4 the countdo*n timer re&ches 0, the route is removed 4rom the routing
t&le &nd m&r+ed e'ired. $his timer, the de&d timer, is y de4&ult three times the hello timer;
1=0 seconds.

Ch&'ter 1
© 2007– 2016,CiscoSystems,Inc.Allrights reserved. CiscoPulic 7
Chapter 1 -ummar#
 $he role o4 st&tic routes &nd dyn&mic routing 'rotocols in enter'rise net*or+s.
 $he di44erences et*een IP &nd %P routing 'rotocols.
 $he three ty'es o4 routing 'rotocols dist&nce vector, lin+>st&te &nd '&th vector.
 $he im'ort&nce o4 convergence time &nd ho* route summ&ri:&tion reduced convergence time &nd
im'roves sc&l&ility.
 $he 4our tr&44ic ty'es unic&st, multic&st, &nyc&st, &nd ro&dc&st.

$he di44erences et*een 'oint>to>'oint, ro&dc&st, &nd ()A net*or+s.


 /o* 'oint>to>'oint suinter4&ces &re used to overcome the limit&tions o4 ()A net*or+s.
 /o* 5P(s &re used to 'rovide security o4 & 'ulic Internet.
 Common ty'es o4 5P(s PDS>&sed 5P(s, !%QIPsec, &nd 35P(.
 /o* & customer est&lishes connectivity *ith & service 'rovider using & routing 'rotocol &nd &
l&yer  PDS 5P(.
 /o* st&tic !% tunnels c&n est&lish virtu&l 'oint>to>'oint lin+s &nd su''ort dyn&mic routing
'rotocols.
 #sing 35P( to 'rovide 4ully meshed 5P( connectivity *ith & sim'le hu>&nds'o+e con4igur&tion.
 /o* 35P( relies on (/!P, m!%, &nd IPsec.
 $he di44erences &nd simil&rities et*een !IPv2 &nd !IPng.
 /o* to con4igure !IPng.
 /o* to 'ro'&g&te & de4&ult route in !IPng.

Ch&'ter 1
© 2007– 2016,CiscoSystems,Inc.Allrights reserved. CiscoPulic 79
Chapter 1 +abs
 CCNPv<=ROUTE=+ab1,1=RIPng

Ch&'ter 1
© 2007– 2016,CiscoSystems,Inc.Allrights reserved. CiscoPulic 76
Ch&'ter 1
© 2007– 2016,CiscoSystems,Inc.Allrights reserved. CiscoPulic 77
0c$no"le%gment
K Some o4 im&ges &nd tets &re 4rom Im'lementing Cisco IP !outing !"#$%8
-ound&tion De&rning uide y 3i&ne $e&re, )o 5&chon &nd !ic+ r&:i&ni
19=72096=8
K Co'yright © 2019 – 2016 Cisco Systems, Inc.
K S'eci&l $h&n+s to Bruno Silva

Ch&'ter 1
© 2007– 2016,CiscoSystems,Inc.Allrights reserved. CiscoPulic 7=

You might also like