"MPLS-based VPN scores hands down over IPSec"

author-image
Voice&Data Bureau
New Update

Some of the latest advancements in better QoS provisions for ISP packet
exchanges are the MPLS-based IP VPN, Frame Relay and ATM set-ups. US-based
AT&T has contributed to this significantly by joining hands with VSNL’s
ISP services. This step offers to address the connectivity issues for customers
struggling for more bandwidth and greater download speeds. As MPLS is
increasingly being deployed by other SPs, VSNL also sees a lucrative opportunity
to make use of the technology.

Advertisment

Sanjiv Bhagat, country GM, AT&TWhat
are the primary features and advantages of MPLS-based IP VPN, Frame Relay and
ATM over the conventional Frame Relay, ATM networks?


MPLS is a high-performance packet forwarding technology that integrates the
performance and traffic management capabilities of Layer 2 switching with the
scalability, flexibility, and performance of Layer 3 routing. It serves to
control traffic flow in the network, reduce congestion in the network, and make
best use of network resources. All our label edge routers used for labeling
packets and switches for forwarding labeled packets are Cisco products.

The speed availability could range from 8 kbps to 155 kbps. For dial-up
users, we have separate dial-up servers for secure IP dial. MPLS-based VPNs are
capable of supporting private IP addresses on WAN and thus provides cost saving
in terms of owning public IP from registered authorities. Also, we provide VoIP
services particularly to the enterprises for their internal networks or
intranet, allowing secure IP services or packet exchange. MPLS VPN advantages
over traditional WAN networks like Frame Relay or ATM are that the MPLS VPN
model is highly scalable and can accommodate increasing numbers of sites and
customers.

Which is the other VPN architecture that competes with the MPLS-based IP
VPN architecture?

Two complementary VPN architectures based on IP Security (IPsec) and
Multiprotocol Label Switching (MPLS) technologies are emerging fast. While IPSec-based
VPNs are very popular among all service providers, MPLS-based VPNs are a more
sophisticated network capable of supporting transparent application support
across diverse platforms. MPLS-based VPN is capable of supporting tens of
thousands VPN groups over the same network since no site-to-site peering is
required. This contrasts with IPSec-based VPNs where large-scale deployment
requires proper planning and coordination issues on key distribution, key
management and peering configuration.

Advertisment

What is the security structure provision for MPLS-based VPN?

An MPLS-based VPN architecture separates traffic between the customer, thus
offering standard security as any trusted Frame Relay or ATM network
environment. Each VPN is isolated from others, thus making it difficult to spoof
IP addresses, as packets are processed only when they arrive from actual user
ports. This ensures security without the need for using encryption, as in IPSec
VPN security techniques.

Which are the areas where MPLS is going to be deployed for improved VSNL
connectivity?

We have currently deployed MPLS-based IP VPN and Frame Relay at two nodes,
Bangalore and Mumbai for VSNL and are also working on installing the equipment
in Delhi and shall get it done by the next quarter. We shall definitely deploy
our bases in lucrative areas further, mostly metro cities.

Which are the potential markets where MPLS can ideally fit in?

MPLS is the ideal device for emerging services such as e-commerce, application
hosting, multimedia applications and businesses that need almost 100 percent
uptime like banking, defense and others.

Advertisment

Rajneesh De