GARUDA – NKN PARTNERS MEET 15th July, 2011 THANK YOU ► ► ► ► ► ► High Level Committee (HLC) Technical Advisory Committee (TAC) SIAC Member Institutions BSNL/MTNL/POWERGRID/RAILTEL Model Project Page 2 National Knowledge Network Experience life with 1000000000 bps Page 3 National Knowledge Network 9th April 2009 piu@nkn.in Connected Sites Under Initial Phase of NKN Jammu University CDRI, BA-univ, IIT-K, CSAU IMTECH IIT-ropar, PU AAU, IIT-G, ICAR-S, univ-G, IIT-D, IIT-R, JNU,DU,AMU, CSIR, IGIB-N, IGIB-O, NDRI, RML, NSIT, IIITD SAHA, VECC, IIT-P, IIT-KGP ICAR-P, Raj Univ JNKVV, RRCAT IIT-Gnr, AAU, SAC IOP, IIT-BHU IIT-H, CADC-H, AMD, DNA, AGRANGA Univ, BARC, TIFR,CDAC,IIT-B, Anushakti Ngr IIT-M, CDAC-M, IGCAR, Anna Univ, IIMSc, SNEYE NCRA,IITM,CDAC-P, IUCAA , Uni pune, VSSC, CDAC-T, RCC IISC, RRI,CDAC-KP, CDAC-Elec, IIAP, TIFR-bangalore connected -66 no's Page 4 National Knowledge Network Health Universit ICAR y CDAC CSIR IIT. IISC DAE Introduction ► ► ► ► ► NKN will connect Educational Institutes, R&D institutions, Health service facilities, Agricultural institutions and Libraries of the country In March 2010, Government of India allocated a budget of INR 5990 Crore for the Implementation of NKN Implementation plan was finalized by TAC under the guidance of HLC National Informatics Centre (NIC) was appointed as the Project Execution Agency (PEA) On Conclusion of the final Phase NKN would have connected 1500+ institutions Page 5 National Knowledge Network Need of the Hour ► ► ► ► ► ► Need a single infrastructure that supports multitude of applications in a secure manner Provide a scalable solution Provide low hop network Allow core routers/networking devices to switch packets based on some simplified header Keep up to date with the technology Available (24X7X365) Page 6 National Knowledge Network Key Highlights ► ► ► ► The architecture of NKN has been designed for reliability, availability & scalability The network consists of an ultra-high speed core, starting with multiple 2.5/10 G and progressively moving towards 40/100 Gigabits per Second (Gbps) The core is complimented with a distribution layer covering all districts at appropriate speeds The participating institutions at the edge would seamlessly connect to NKN at Gigabit per second speed Page 7 National Knowledge Network National Knowledge Network Research Labs CSIR/DAE/ISRO/ICAR Educational Institutions NTRO Cert-IN EDUSAT National Internet Exchange Points (NIXI) NKN MPLS Clouds INTERNET Connections to Global Networks (e.g. GEANT) Page 8 Broad Band Clouds National / State Data Centers/ Networks National Knowledge Network NKN: On Conclusion of Final Phase ► ► ► ► Page 9 National Knowledge Network At the conclusion of the final phase, NKN shall have presence in more than 500 districts of India with connectivity to major research and education institutions Points of Presence (PoP) Backbone Links Edge links : 31 : 89 : 1500 Technical Overview ► ► ► ► ► The backbone of the network starts from 2.5 Gbps and progressively moves onto 10 Gbps connectivity between 7 Supercore (fully meshed) locations across India. The network is further spread out through Core locations with multiple of 2.5/10 Gbps partially meshed connectivity with Supercore locations. The network architecture and governance structure allows users with options to connect to the distribution layer as well. For special interest groups, NKN enables Virtual Private Networks NKN provides international connectivity to its users for global collaborative research. Presently, NKN is connected to: ► ► Page 10 Trans Eurasia Information Network (TEIN3) Similar connectivity to few other research networks is in the pipeline National Knowledge Network TEIN3 at CDAC, Mumbai Page 11 National Knowledge Network NKN Services S.No 1 Service Type Special Description VPN (L2), VPN (L3), VPN Switching Service, Multicast Streaming * These services may be through a CUG as well 2 3 Page 12 Community Shared Storage, e-Mail List Software Application (LISTSERV), Authentication Service, Session Initiation Protocol (SIP), Collaboration Service, Content Delivery Service, International Collaborations with EU-India Grid, Global Ring Network for Advanced Applications Development (GLORIAD) etc. Generic Internet, e-Mail, e-Mail Gateway, DNS - NKN, DNS Security for NKN Users, Web Hosting, VoIP, MCU based Video Portal, SMS Gateway, Co-Location Services (CPU, Applications & Application Services) National Knowledge Network NKN Infrastructure ► Creation of Virtual Classrooms at IITs Over NKN ► ► ► Page 13 38 Virtual Classrooms are being created at 15 IITs 26 Virtual Classrooms are fully ready and 12 are under preparation All Virtual Classrooms are equipped with state-of-the-art high end teaching cum learning infrastructure IIT, Bhubaneswar IIT, Gandhinagar IIT, Mandi IIT, Ropar National Knowledge Network NKN Infrastructure ► 23 Additional Virtual Classrooms being developed at: ► ► ► ► ► Page 14 Indian Institute of Science (IISC) National Institute of Technology (NIT) Indian Institutes of Science, Education & Research (IISER) Chennai Mathematical Institute (CMI) TIFR Centre for applicable Mathematics National Knowledge Network NKN Connectivity to Medical Institutions ► ► ► NKN will enable doctors, scientists across the country to work in the critical and emerging areas of medical field In Phase-I, out of 550 institutes 58 medical institutions are getting connected with NKN In Phase-II, a total of 244 institutions are getting connected Medical Institutions (Medical + ICMR) Page 15 Phase-I Phase-II 58 244 National Knowledge Network Multi Protocol Label Switching (MPLS) as a Foundation Provider Traffic Provisioned Engineering VPNs IP+ATM IP+Optical GMPLS MPLS Network Infrastructure Page 16 National Knowledge Network Any Transport over MPLS What Is a Virtual Private Network? ► ► VPN is a set of sites or groups which are allowed to communicate with each other VPN is defined by a set of administrative policies ► ► ► Policies established by VPN customers Policies could be implemented completely by VPN service providers Flexible inter-site connectivity ► Page 17 Ranging from complete to partial mesh National Knowledge Network MPLS L3 VPNs IGAR Multicast TIFR JNU IITD IITK Common Services Intranet CRRI VoIP DC IITB IGIB ► ► ► ► ► ► IGCAR IITM Point to cloud single point of connectivity Easy grouping of users and services Enables content hosting inside the network Supports private overlapping IP addresses Scalable to over millions of VPNs Per VPN QoS Page 18 IMT Extranet National Knowledge Network IITC Using Route-Reflector for Scaling iBGP—VPNv4 Label Exchange IITb IIT m VRF VRF IGCAR PE1 IMT P2 P1 LDP LDP ► ► ► ► LDP VRF PE4 VRF BARC PE3 PE2 ► VRF VRF VPN service is enabled on PEs (VRFs are created and applied to VPN site interface) VPN site’s IITm connects to a VRF enabled interface on a PE1 VPN site routing by IITm is distributed to MP-iBGP on PE1 PE1 allocates VPN label for each prefix, sets itself as a next hop and relays VPN site routes to PE4 PE4 distributes IITm’s routes to IITb(Similar happens from IITb’s side) Page 19 National Knowledge Network MPLS Services: Multicast VPNs Multicast Source TIFR IIT D Multicast in the core Multicast Receiver IIT B IIT H MPLS VPN Network BARC VSC Receiver CAT Multicast VRF Multicast Source IIT M Page 20 National Knowledge Network NKN MPLS with VPNs in campus(IIT-M) that span across NKN Cloud IIT M L2 Egress PE NKN MPLS SERVICE Ingress PE v CE VLAN1--VPN Green VLAN1 VLAN2--Blue VLAN2 L3 VLAN3--Red VLAN3 VPN Red Site IIT H Each SubInterface associated with different VPN Bio-Tech Lab VPN Green Site DAE LAB Phy Lab Class Room VPN Blue Site BIO TECH v Multi-VRF 802.1Q Page 21 National Knowledge Network Garuda à NKN Internet Service VPN Red Site IIT H NKN Router NKN Router NKN MPLS SERVICE PE VLAN1--VPN Green VLAN1 VLAN2--Blue VLAN2 VLAN3--Red VLAN3 VPN Blue Site BIO TECH NKN Router VPN Green Site GARUDA LAB Each Sub-Interface associated with different VPN BIO-TECH Project CUG GARUDA CUG Class Room CUG Page 22 VPN Green Site GARUDA LAB National Knowledge Network Layer 2 VPNs ► Similar to L3VPN ► ► ► ► ► ► Page 23 Designate a label for the circuit Exchange that label information with the egress PE Encapsulate the incoming traffic (Layer 2 frames) Apply label (learned through the exchange) Forward the MPLS packet (l2 encapsulated to destination on an LSP) At the egress National Knowledge Network L2 Extension Page 24 National Knowledge Network DAE VPN Physics Department IIT-Mumbai DAE Kokotta PE Router Mumbai PE Router Virtual Circuits / Pseudo wires PE Router VPLS Network Kalapakkam PE Router Indore IIT Chennai DAE Indore Page 25 National Knowledge Network Separate VPNs Physics Department IIT-Mumbai DAE Kokotta PE Router Mumbai PE Router Virtual Circuits / Pseudo wires PE Router VPLS Network Kalapakkam PE Router Indore IIT Chennai DAE Indore Page 26 National Knowledge Network MPLS Layer 3 VPN ► Management VPN – Management of P and PE routers Page 27 National Knowledge Network MPLS Layer 3 VPN ► Management VPN – Management of CE routers Page 28 National Knowledge Network High Availability through Design Page 29 National Knowledge Network Challenges in Initial Phase Delivery TECHNOLOGY ► IP Numbering Schema, ► Multi-Homing ► Hardware compatibility Manageable for short time…. MIND SET ►Why Should I change My OPERATIONAL Setup ► Complexity in existing Network ► Multiple Networks in Institute ►Will the change that we make are permanent. ► No single point of contact in many cases ►Confusing multiple Scheme ► Reluctance to Change Page 30 National Knowledge Network What NKN will provide? ► ► ► ► ► ► ► ► ► ► ► ► Bandwidth, Availability and reliability IP space/ Interface with the APNIC NOC and DC, DR NOC and DC 24X 7 Support operations support Common Services like Web/Mail/ MX/DNS etc. All the MPLS VPN V4 / V6 and L2 VPN support. Guidelines and Procedures to effectively use the NKN. Routing/ Switching equipment at the end node to connect to the NKN. Internet bandwidth Interface with other networks ( EU-GRID..) Any other PORTAL / APPLICATION is deemed fit to be kept at Data center of NKN for efficient usage. Applications like Video on Demand may be hosted on Data Center Page 31 National Knowledge Network Criterion to join NKN ► ► Minimum bandwidth interface will be 100mbps Must comply to the policies of NKN ► IP Usage Policy ► Operations policy ► Security Policy ► Collocation Policy ► NKN PoP MoU ► DNS Caching ► Messaging Gateway Policy ► Malware Filtering Policy Page 32 National Knowledge Network What logistics are expected from End Nodes? ► ► ► ► ► ► ► ► ► Space for equipments. (Router/ switch/ ups/ Racks from NLD) Air- Conditioned Environment UPS (5 KVA & 10 KVA Based on router supplied) 24X7 access to NKN personnel or persons authorized by NKN Seating place for one NKN appointed person Safety of the equipments supplied under NKN Cabling with in the user location for connecting to the NKN router Right of Way with in the User Campus for cabling to be done by the long distance providers Nodal Officer appointed will be the single point of interface for NKN Page 33 National Knowledge Network Immediate Steps for Integration ► ► ► ► Migration plan ( short term) start the discussions with the NKN team for suitable changes at both the ends Procurement of hardware where ever necessary through existing empanelment Workshop only for specific working group to formulate the migration plan Page 34 National Knowledge Network Thank You Page 35 National Knowledge Network