SlideShare ist ein Scribd-Unternehmen logo
1 von 8
Downloaden Sie, um offline zu lesen
Best Common Practices
for IXPs
Franck Simon – France IX Services
fsimon@franceix.net
BCP for IXPs - PoPs
•  Neutral	
  coloca+on	
  (ideally	
  datacenters)	
  for	
  PoPs	
  
•  Layer-­‐2	
  infrastructure	
  (either	
  na+ve	
  Ethernet	
  or	
  VPLS	
  
based)	
  
•  Resiliency	
  and	
  scalability	
  :	
  
– Equipment	
  redundancy	
  or	
  spare	
  equipment	
  for	
  
PoPs	
  
– When	
  mul+-­‐PoPs	
  architecture	
  :	
  edge	
  PoPs	
  &	
  core	
  
PoPs	
  vs	
  full-­‐mesh	
  design	
  
– Use	
  of	
  passive	
  WDM	
  for	
  PoPs	
  interconnec+ons	
  
(when	
  appropriate	
  and	
  possible)	
  
2	
  
BCP for IXPs - NOC
•  NOC	
  (outsourced	
  or	
  run	
  internally)	
  and	
  
technical	
  support	
  
3	
  
BCP for IXPs – Peering
LAN
•  Same	
  VLAN	
  for	
  Unicast	
  IPv4/IPv6:	
  
– IPv4	
  &	
  IPv6	
  
•  Specific	
  VLAN	
  for	
  Mul+cast	
  (if	
  needed)	
  
•  Specific	
  VLANs	
  for	
  private	
  peering	
  (closed	
  user	
  
groups)	
  
4	
  
BCP for IXPs – Technical
requirements
•  Provide	
  na+ve	
  layer-­‐2	
  (or	
  fully	
  transparent	
  layer-­‐2	
  
infrastructure)	
  
•  Block	
  spanning-­‐tree	
  on	
  all	
  members	
  ports	
  
•  Allow	
  only	
  authorized	
  EtherTypes	
  (IPv4,	
  IPv6,	
  ARP)	
  	
  
•  Limit	
  MAC	
  learning	
  (one	
  MAC/port)	
  and	
  apply	
  MAC	
  filtering	
  	
  
•  Use	
  storm	
  control	
  (broadcast/mul+cast)	
  or	
  apply	
  rate-­‐limi+ng	
  
filters	
  to	
  limit	
  broadcast	
  
•  Allow	
  LACP	
  
•  Quaran+ne	
  VLAN	
  (mainly	
  for	
  new	
  members)	
  
=>	
  Don’t	
  	
  connect	
  a	
  new	
  member	
  on	
  the	
  IXP	
  without	
  running	
  a	
  
strict	
  valida+on	
  procedure	
  
5	
  
BCP for IXPs – Main
services
•  NTP	
  service	
  
•  DNS	
  servers,	
  DNS	
  root	
  servers	
  
•  Routes	
  servers	
  
•  Routes	
  collector	
  
•  Web	
  portal:	
  
–  Looking-­‐glass	
  
–  Intranet	
  
–  Stats	
  (at	
  least	
  SNMP	
  stats,	
  but	
  ideally	
  sFlow/Ne_low	
  stats)	
  
–  TTS	
  
•  Members	
  mailing-­‐list	
  
	
   6	
  
Cf.	
  Euro-­‐IX	
  document	
  :	
  	
  
haps://www.euro-­‐ix.net/documents/1391-­‐euro-­‐ix-­‐
ixp-­‐bcops-­‐221014-­‐pdf?download=yes	
  
7	
  
BCP for IXPs
 
	
  
Ques+ons	
  ???	
  
8	
  
BCP for IXPs

Weitere ähnliche Inhalte

Mehr von France IX Services

Résilience de l'internet, point de vue de l'opérateur de point d'échange Fran...
Résilience de l'internet, point de vue de l'opérateur de point d'échange Fran...Résilience de l'internet, point de vue de l'opérateur de point d'échange Fran...
Résilience de l'internet, point de vue de l'opérateur de point d'échange Fran...
France IX Services
 

Mehr von France IX Services (15)

Extreme networks - Multi-Pathing L2 & SDN
Extreme networks - Multi-Pathing L2 & SDNExtreme networks - Multi-Pathing L2 & SDN
Extreme networks - Multi-Pathing L2 & SDN
 
Case Study France-IX InterCloud
Case Study France-IX InterCloudCase Study France-IX InterCloud
Case Study France-IX InterCloud
 
Résilience de l'internet, point de vue de l'opérateur de point d'échange Fran...
Résilience de l'internet, point de vue de l'opérateur de point d'échange Fran...Résilience de l'internet, point de vue de l'opérateur de point d'échange Fran...
Résilience de l'internet, point de vue de l'opérateur de point d'échange Fran...
 
White Paper on Peering in France
White Paper on Peering in FranceWhite Paper on Peering in France
White Paper on Peering in France
 
Etude cas France-IX InterCloud
Etude cas France-IX InterCloudEtude cas France-IX InterCloud
Etude cas France-IX InterCloud
 
Le livre Blanc du Peering en France
Le livre Blanc du Peering en FranceLe livre Blanc du Peering en France
Le livre Blanc du Peering en France
 
Barracuda - AG France IX - Juin-2011
Barracuda - AG France IX - Juin-2011Barracuda - AG France IX - Juin-2011
Barracuda - AG France IX - Juin-2011
 
Brocade - AG France IX - 30 Juin 2011
Brocade - AG France IX - 30 Juin 2011Brocade - AG France IX - 30 Juin 2011
Brocade - AG France IX - 30 Juin 2011
 
France IX - AG Juin 2011
France IX - AG Juin 2011France IX - AG Juin 2011
France IX - AG Juin 2011
 
France IX - AG Septembre 2011
France IX - AG Septembre 2011France IX - AG Septembre 2011
France IX - AG Septembre 2011
 
Integra - AG France IX - 30 Septembre 2011
Integra - AG France IX - 30 Septembre 2011Integra - AG France IX - 30 Septembre 2011
Integra - AG France IX - 30 Septembre 2011
 
LU-CIX - AG France IX - 30 Septembre 2011
LU-CIX - AG France IX - 30 Septembre 2011LU-CIX - AG France IX - 30 Septembre 2011
LU-CIX - AG France IX - 30 Septembre 2011
 
Cube optics - AG France IX - 30 Septembre 2011
Cube optics - AG France IX - 30 Septembre 2011Cube optics - AG France IX - 30 Septembre 2011
Cube optics - AG France IX - 30 Septembre 2011
 
France IX - FRnOG 18
France IX - FRnOG 18France IX - FRnOG 18
France IX - FRnOG 18
 
France IX - Presentation
France IX - PresentationFrance IX - Presentation
France IX - Presentation
 

Kürzlich hochgeladen

Why Teams call analytics are critical to your entire business
Why Teams call analytics are critical to your entire businessWhy Teams call analytics are critical to your entire business
Why Teams call analytics are critical to your entire business
panagenda
 
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
?#DUbAI#??##{{(☎️+971_581248768%)**%*]'#abortion pills for sale in dubai@
 

Kürzlich hochgeladen (20)

Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
 
Boost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdfBoost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdf
 
Why Teams call analytics are critical to your entire business
Why Teams call analytics are critical to your entire businessWhy Teams call analytics are critical to your entire business
Why Teams call analytics are critical to your entire business
 
Scaling API-first – The story of a global engineering organization
Scaling API-first – The story of a global engineering organizationScaling API-first – The story of a global engineering organization
Scaling API-first – The story of a global engineering organization
 
🐬 The future of MySQL is Postgres 🐘
🐬  The future of MySQL is Postgres   🐘🐬  The future of MySQL is Postgres   🐘
🐬 The future of MySQL is Postgres 🐘
 
AWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of TerraformAWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of Terraform
 
Boost PC performance: How more available memory can improve productivity
Boost PC performance: How more available memory can improve productivityBoost PC performance: How more available memory can improve productivity
Boost PC performance: How more available memory can improve productivity
 
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
 
MINDCTI Revenue Release Quarter One 2024
MINDCTI Revenue Release Quarter One 2024MINDCTI Revenue Release Quarter One 2024
MINDCTI Revenue Release Quarter One 2024
 
The 7 Things I Know About Cyber Security After 25 Years | April 2024
The 7 Things I Know About Cyber Security After 25 Years | April 2024The 7 Things I Know About Cyber Security After 25 Years | April 2024
The 7 Things I Know About Cyber Security After 25 Years | April 2024
 
Connector Corner: Accelerate revenue generation using UiPath API-centric busi...
Connector Corner: Accelerate revenue generation using UiPath API-centric busi...Connector Corner: Accelerate revenue generation using UiPath API-centric busi...
Connector Corner: Accelerate revenue generation using UiPath API-centric busi...
 
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
 
Exploring the Future Potential of AI-Enabled Smartphone Processors
Exploring the Future Potential of AI-Enabled Smartphone ProcessorsExploring the Future Potential of AI-Enabled Smartphone Processors
Exploring the Future Potential of AI-Enabled Smartphone Processors
 
Partners Life - Insurer Innovation Award 2024
Partners Life - Insurer Innovation Award 2024Partners Life - Insurer Innovation Award 2024
Partners Life - Insurer Innovation Award 2024
 
Strategies for Landing an Oracle DBA Job as a Fresher
Strategies for Landing an Oracle DBA Job as a FresherStrategies for Landing an Oracle DBA Job as a Fresher
Strategies for Landing an Oracle DBA Job as a Fresher
 
Manulife - Insurer Innovation Award 2024
Manulife - Insurer Innovation Award 2024Manulife - Insurer Innovation Award 2024
Manulife - Insurer Innovation Award 2024
 
Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024
Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024
Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024
 
2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...
 
Powerful Google developer tools for immediate impact! (2023-24 C)
Powerful Google developer tools for immediate impact! (2023-24 C)Powerful Google developer tools for immediate impact! (2023-24 C)
Powerful Google developer tools for immediate impact! (2023-24 C)
 
Tata AIG General Insurance Company - Insurer Innovation Award 2024
Tata AIG General Insurance Company - Insurer Innovation Award 2024Tata AIG General Insurance Company - Insurer Innovation Award 2024
Tata AIG General Insurance Company - Insurer Innovation Award 2024
 

IXP Best Common Practices trilogy - For the IXP

  • 1. Best Common Practices for IXPs Franck Simon – France IX Services fsimon@franceix.net
  • 2. BCP for IXPs - PoPs •  Neutral  coloca+on  (ideally  datacenters)  for  PoPs   •  Layer-­‐2  infrastructure  (either  na+ve  Ethernet  or  VPLS   based)   •  Resiliency  and  scalability  :   – Equipment  redundancy  or  spare  equipment  for   PoPs   – When  mul+-­‐PoPs  architecture  :  edge  PoPs  &  core   PoPs  vs  full-­‐mesh  design   – Use  of  passive  WDM  for  PoPs  interconnec+ons   (when  appropriate  and  possible)   2  
  • 3. BCP for IXPs - NOC •  NOC  (outsourced  or  run  internally)  and   technical  support   3  
  • 4. BCP for IXPs – Peering LAN •  Same  VLAN  for  Unicast  IPv4/IPv6:   – IPv4  &  IPv6   •  Specific  VLAN  for  Mul+cast  (if  needed)   •  Specific  VLANs  for  private  peering  (closed  user   groups)   4  
  • 5. BCP for IXPs – Technical requirements •  Provide  na+ve  layer-­‐2  (or  fully  transparent  layer-­‐2   infrastructure)   •  Block  spanning-­‐tree  on  all  members  ports   •  Allow  only  authorized  EtherTypes  (IPv4,  IPv6,  ARP)     •  Limit  MAC  learning  (one  MAC/port)  and  apply  MAC  filtering     •  Use  storm  control  (broadcast/mul+cast)  or  apply  rate-­‐limi+ng   filters  to  limit  broadcast   •  Allow  LACP   •  Quaran+ne  VLAN  (mainly  for  new  members)   =>  Don’t    connect  a  new  member  on  the  IXP  without  running  a   strict  valida+on  procedure   5  
  • 6. BCP for IXPs – Main services •  NTP  service   •  DNS  servers,  DNS  root  servers   •  Routes  servers   •  Routes  collector   •  Web  portal:   –  Looking-­‐glass   –  Intranet   –  Stats  (at  least  SNMP  stats,  but  ideally  sFlow/Ne_low  stats)   –  TTS   •  Members  mailing-­‐list     6  
  • 7. Cf.  Euro-­‐IX  document  :     haps://www.euro-­‐ix.net/documents/1391-­‐euro-­‐ix-­‐ ixp-­‐bcops-­‐221014-­‐pdf?download=yes   7   BCP for IXPs
  • 8.     Ques+ons  ???   8   BCP for IXPs