Presentation is loading. Please wait.

Presentation is loading. Please wait.

The Operator Neutral Access At KistaIP. KistaIP ? Is a student dorm with 144 apartments.

Similar presentations


Presentation on theme: "The Operator Neutral Access At KistaIP. KistaIP ? Is a student dorm with 144 apartments."— Presentation transcript:

1 The Operator Neutral Access At KistaIP

2 KistaIP ? Is a student dorm with 144 apartments.

3 KistaIP ? Is a student dorm with 144 apartments. Each apartment have a fiber connection to the router room at KistaIP.

4 KistaIP ? Is a student dorm with 144 apartments. Each apartment have a fiber connection to the router room at KistaIP. The student obtains a fiber-to-Ethernet converter which is used to connect the fiber to a computer.

5 The Network Infrastructure Each room is connected by a multimode fiber to one of the Dynarc 1124 routers.

6 The Network Infrastructure Each room is connected by a multimode fiber to one of the Dynarc 1124 routers. There are 6 Dynarc 1124 routers with 24 ports providing 6*24=144 connections.

7

8 The Network Infrastructure Each room is connected by a multimode fiber to one of the Dynarc 1124 routers. There are 6 Dynarc 1124 routers with 24 ports providing 6*24=144 connections. The 6 routers are connected to the Dynarc 5116 router at Electrum by a singlemode fiber.

9 The Network Infrastructure Each room is connected by a multimode fiber to one of the Dynarc 1124 routers. There are 6 Dynarc 1124 routers with 24 ports providing 6*24=144 connections. The 6 routers are connected to the Dynarc 5116 router at Electrum by a singlemode fiber. The 7 routers build together a dual DTM ( Dynamic synchronous Transfer Mode) ring.

10 The Network Infrastructure

11 Problems & solutions? How to provide operator neutral access.

12 Problems & solutions? How to provide operator neutral access. Introduce the use of VLANs.

13 Problems & solutions? How to provide operator neutral access. To provide an easy way to change between the providers. Introduce the use of VLANs.

14 Problems & solutions? How to provide operator neutral access. To provide an easy way to change between the providers. Introduce the use of VLANs. Provide server side software.

15 Problems & solutions? How to provide operator neutral access. To provide an easy way to change between the providers. Software free from the client side. Introduce the use of VLANs. Provide server side software.

16 Problems & solutions? How to provide operator neutral access. To provide an easy way to change between the providers. Software free from the client side. Introduce the use of VLANs. Provide server side software. Use a form of web based login and control

17 VLAN ? Virtual Local Area Network (VLAN).

18 VLAN ? Virtual Local Area Network (VLAN). Devices on different LANs that joins the same VLAN have the ability to communicate with each other as if they were at the same broadcast domain.

19 VLAN ? Virtual Local Area Network (VLAN). Devices on different LANs that joins the same VLAN have the ability to communicate with each other as if they were at the same broadcast domain. Can be used to divide a LAN to different small LANs (VLANs), limiting the broadcast traffic and making the network more manageable.

20 Method Each provider belongs to a VLAN.

21 Method Each provider belongs to a VLAN. Users connect to a “VLAN changer” to switch between ISPs.

22 Method Each provider belongs to a VLAN. Users connect to a “VLAN changer” to switch between ISPs. A server side software called vpch is used to change VLANs on each port on the Dynarc 1124 routers.

23 Method Each provider belongs to a VLAN. Users connect to a “VLAN changer” to switch between ISPs. A server side software called vpch is used to change VLANs on each port on the Dynarc 1124 routers. The “VLAN changer” provides vpch with the information necessary.

24 Method Each provider belongs to a VLAN. Users connect to a “VLAN changer” to switch between ISPs. A server side software called vpch is used to change VLANs on each port on the Dynarc 1124 routers. The “VLAN changer” provides vpch with the information necessary. The oasis software is used to authenticate and open the firewall on the providers side.

25

26 The main components of the KistaIP neutral network Auth and VLAN changer. DHCP and Auth machine on the providers side

27 Auth and VLAN changer DHCP to provide a private network (VLAN 100) for the students where they are able to use to change ISPs.

28 Auth and VLAN changer DHCP to provide a private network (VLAN 100) for the students where they are able to use to change ISPs. A database to provide the vpch with information on each user, as well as for security reasons. [Password, lgh, building, room, MAC, router (IP), interface, oldvlan]

29 Auth and VLAN changer DHCP to provide a private network (VLAN 100) for the students where they are able to use to change ISPs. A database to provide the vpch with information on each user, as well as for security reasons. [Password, lgh, building, room, MAC, router (IP), interface, oldvlan] A second database with information about the ISPs. [isp (name), vlan, ip (redirection page)]

30 Auth and VLAN changer DHCP to provide a private network (VLAN 100) for the students where they are able to use to change ISPs. A database to provide the vpch with information on each user, as well as for security reasons. [Password, lgh, building, room, MAC, router (IP), interface, oldvlan] A second database with information about the ISPs. [isp (name), vlan, ip (redirection page)] The vpch application, which connects to the routers and changes the VLAN on users port.

31 Auth and VLAN changer DHCP to provide a private network (VLAN 100) for the students where they are able to use to change ISPs. A database to provide the vpch with information on each user, as well as for security reasons. [Password, lgh, building, room, MAC, router (IP), interface, oldvlan] A second database with information about the ISPs. [isp (name), vlan, ip (redirection page)] The vpch application, which connects to the routers and changes the VLAN on users port. An Authentication mechanism.

32 Auth and VLAN changer DHCP to provide a private network (VLAN 100) for the students where they are able to use to change ISPs. A database to provide the vpch with information on each user, as well as for security reasons. [Password, lgh, building, room, MAC, router (IP), interface, oldvlan] A second database with information about the ISPs. [isp (name), vlan, ip (redirection page)] The vpch application, which connects to the routers and changes the VLAN on users port. An Authentication mechanism. A registration form to register new users.

33 ISP side configuration An authentication protocol (e.g. kerberos, radius).

34 ISP side configuration An authentication protocol (e.g. kerberos, radius). Web based authentication forms.

35 ISP side configuration An authentication protocol (e.g. kerberos, radius). Web based authentication forms. The Oasis software package: Provides a mechanism for authentication. Opens and closes firewall rules. Ability to detect inactive users. Support many kinds of authentication protocols by using PAM (Pluggable Authentication Modules).

36


Download ppt "The Operator Neutral Access At KistaIP. KistaIP ? Is a student dorm with 144 apartments."

Similar presentations


Ads by Google