Professional Documents
Culture Documents
Internet-Security: Weaknesses
Internet is an open network i.e. any person from anywhere can access any part of network Internet is a shared network and is not controlled by any single agency No security mechanism has been provided in the network - Network security is left to the customer Customer can adopt different means for data protection depending upon how important the data is?
Internet Devices
Firewalls To avoid unauthorized intrusions
Switches To connect LANs Routers To route the traffic from Source to Destination
Private Networks
Infosys Pune Wipro Mumbai
Infosys Hyderabad
Infosys Mumbai
Leased Lines
Private Network
Advantages:
Leased lines are secured Privacy and QoS Guaranteed
Disadvantages
Leased lines are very expensive No of links required grows exponentially if full mesh connectivity is required and network expands. Tunnels are used to flow traffic from one end to other Network complexity increases as network grows. All existing sites requires reconfiguration in case of a new site addition.
Internet
Shared Infrastructure
Infosys Mumbai
Disadvantages:
Highly insecure environment No guarantee of Privacy and QoS Any unauthorized traffic can enter in private network
8
VPN Tunnels
Tunneling is the mechanism to encapsulate IP datagrams inside another packet so that original datagram is not visible to network. Every packet is authenticated to ensure that it is coming from right source and optionally packets can be encrypted also for data confidentiality if required
X-Y X-Y X-Y X-Y A-B A-B X-Y X-Y X-Y X-YX-YX-YX-Y X-Y X-Y X-Y
Firewall
Internet
Firewall
10
Firewalls
Internet
Infosys Mumbai
Wipro Bangalore
Wipro Chennai
Infosys Bangalore 11
Data Integrity
Ensures that information being transmitted over the link is not altered in any way during transit
Data Confidentiality
Protects the privacy of information being exchanged between communicating parties
12
13
14
Chennai
15
Ernakulam Hyderabad
Chennai
Router Links
16
What is MPLS ?
Multi Protocol Label Switching A technology for speeding up data communication over combined IP (or ATM) networks. MPLS improves the speed of packet processing and enhances performance of the network.
17
Strength of MPLS
MPLS provide a connection-oriented service for transporting data across computer networks Ability to use any physical transmission media allows higher backbone and interface capacity Ultra Fast Forwarding Technology MPLS provides beneficial applications like:
Virtual Private Networking (VPN) Traffic Engineering (TE) Quality of Service (QoS)
19
Advantages of MPLS
MPLS is an initiative that integrates Layer 2 information about network links (bandwidth, latency, utilization) into Layer 3 (IP) within a particular autonomous system--BSNL--in order to simplify and improve IP Packet exchange. MPLS gives network operators (BSNL) a great deal of flexibility to divert and route traffic around link failures, congestion, and bottlenecks.
20
Label Switching Routers (LSR) : - Each IP router that supports the MPLS protocol is called a label switching router (LSR) - Four different types of LSRs: ingress, transit, penultimate, and egress
21
Forwarding Equivalence Class (FEC) FEC is a group of IP packets which are forwarded in the same manner, over the same path, and with the same forwarding treatment. An FEC might correspond to a destination IP subnet. For example, all traffic with a certain value of IP precedence might constitute a FEC.
23
MPLS Network :
24
27
FTP
28
Role of QoS
Protect mission-critical applications
Voice, ERP, data warehouse, sales force automation
A4 Nodes - 10 B1 + B2 Nodes - 47
Shimla
Si
Allahabad
Si
Chandigarh
Shilong
Guwahati Siliguri
Noida
Kalyan Rajkot Ahmedabad
Ranchi Durgapur
Indore
Mumbai
Si
Kolkata
Si
Bhubneshwar Jamshedpur
Surat Vadodara
Nagpur
Si
Pune
Si
Banglore
Chennai
Ernakulam
Coimbtore
Manglore
Si
Vijaywada
Si
Hyderabad Raipur
Nashik
Vizag Rajmundary Tirupati Belgaum Hubli Mysore Kalikat Palghat Trivandrum Trichur
31
32