Multiplay Architecture, Overview of Services (PDF)

Summary

This document provides an overview of multiplay architecture, focusing on the services offered and security aspects. It explains the concepts of triple play, broadband multiplay, and associated technologies. The document mentions various services like video on demand, radio, and television channels. It also details network connectivity and broadband multiplay components.

Full Transcript

JTO Ph-II (DNIT) Multiplay Architecture, Overviewof Services offered, Security Aspects 3 MULTIPLAY ARCHITECTURE, OVERVIEW OF SERVICES OFFERED, SECURITY ASPECT 3.1 LEARNING OBJECTIVES The objecti...

JTO Ph-II (DNIT) Multiplay Architecture, Overviewof Services offered, Security Aspects 3 MULTIPLAY ARCHITECTURE, OVERVIEW OF SERVICES OFFERED, SECURITY ASPECT 3.1 LEARNING OBJECTIVES The objectives of this chapter is to understand i) What is Broadband Multiplay ii) Network Components iii) Network architecture iv) Services on Broadband Multiplay 3.2 INTRODUCTION With the evolution of services and applications those demand high bandwidth at last mile, ISPs were forced to redesign their access network. Broadband Multiplay project of BSNL is an establishment of a Broadband access network in parallel to the access network established vide NIB-II project 2,2 (Broadband remote access Network). It has been established to further expand and enhance the connection capacity and bandwidth of the network at the last mile. It has been designed in such a manner so that it provides protection against transmission media cut by use of RPR ring technology, so that any OFC media breakdown at the level of Tier-1 and tier-2 level, will not affect the forwarding of customer traffic. It supports a bouquet of services and application that demand high bandwidth. 3.3 BROADBAND MULTIPLAY  Multiplay is an extension of Triple-Play technology, meaning, running all sorts of services on the same medium.  Multiplay aims to make your telephone wire carry multiple applications of voice, data and video through the Set Top Box.  Multiplay will strive to be your one stop solution for all your information, communication and entertainment needs.  Services like Video-On-Demand, Radio, Television Channels, T-Education, T- commerce, Virtual Shopping, Video-Conferencing, Audio-On-Demand and many more. JTO Ph-II Version 3.0 Aug 2021 Page 24 of 103 For Restricted Circulation JTO Ph-II (DNIT) Multiplay Architecture, Overviewof Services offered, Security Aspects Network Connectivity (BroadBand) AAA LDAP Core Core Provisioning router NOC Broadband BB SSSS RAS Tier1 GigE ADSL Aggregation terminals SW GigE..DSLAM.. Tier 2 LAN Switch FE FE FE X-ge C X-ge E X-ge D X-ge F..DSLAM.. X-ge B..DSLAM....DSLAM.. X-ge A ADSL ADSL ADSL ADSL ADSL terminals terminals terminals ADSL terminals terminals terminals Figure 8: Network Connectivity Diagram of Broadband 3.4 BROADBAND MULTIPLAY The triple play service means providing the following service to the customer: -  Data (Internet)  Voice (VoIP and not the PSTN which is already provided on broadband also)  Video (IPTV, VoD or in general live broadcast and stored broadcasting using video streaming protocols)  Multiplay is an extension of Triple-Play technology, meaning, running all sorts of services on the same medium. Multiplay aims to make your telephone wire carry multiple applications of voice, data and video through the Set Top Box. Multiplay will strive to be your one stop solution for all your information, communication and entertainment needs. 3.5 BROADBAND MULTIPLAY PROJECT COMPONENTS  L3PE (MCR / PE Router of NIB-2 Project 1 – Supplied by HCL)  BNG – Broadband Network Gateway  Connects Multiplay Network to NIB2 Backbone (Project 1)  RPR Tier-1 Switch  Provides connectivity from BNG to Connects JTO Ph-II Version 3.0 Aug 2021 Page 25 of 103 For Restricted Circulation JTO Ph-II (DNIT) Multiplay Architecture, Overviewof Services offered, Security Aspects  RPR Tier-2 Switch  OC LAN Tier-2 Switch  DSLAM  DSL Tester  Installation Related Material CUSTOMER PREMISES EQUIPMENT ( CPE):  It is consist of Two part. One part is Splitter which separate the voice data and Internet data and an ADSL modem based on ADSL2+ Standard which send/ Received customer request to DSLAM.  Data Between Modem & DSLAM Follow ATM Protocol. DSLAM:  It is a digital subscriber line Access Multiplexer. It mux and demux the voice and data packets and Change packets from ATM packet to VLAN (Ethernet packets ).  It send the packet to customer virtual LAN which is established between BRAS/BNG and DSLAM during set up of connection. TIER-2 SWITCH  This is aggregation switch which aggregate the packets coming from different DSLAM. TIER 1 SWITCH : This is aggregation switch which aggregate the packets coming from different Tier 2 Switch. BROAD BAND NETWORK GATEWAY ( BNG) : This is intelligent router which is responsible for routing the packets, allotting the dynamic/static public IP to customer, start the session, stop the session, control the customer speed, communicate with Authentication server, DNS server etc. This is a intelligent router which is responsible for routing the packets, allotting the dynamic/static public IP to customer, start the session, stop the session, control the customer speed, communicate with Authentication server, DNS server etc. All connectivity are build using fibers up to DSLAM Level. Only the connectivity between DSLAM and CPE is on the Copper wire. BNG act as Gateway of the broadband traffic towards the MPLS core. It is a comprehensive IP routing foundation required for the evolving Multi-Play broadband services. It offers a diverse range of interface options: Ethernet, Packet over SONET (PoS) and channelized connections. JTO Ph-II Version 3.0 Aug 2021 Page 26 of 103 For Restricted Circulation JTO Ph-II (DNIT) Multiplay Architecture, Overviewof Services offered, Security Aspects BB Multi-Play Multi-Play is the convergence of voice, video and data services. Switched Broadband Broadcast IP Voice Video Data Figure 9: Broadband Multiplay 3.6 NETWORK ARCHITECTURE OF BROADBAND MULTIPLAY Broadband Network Architecture Core Metro Core Distribution Access JTO Ph-II Version 3.0 Aug 2021 Page 27 of 103 For Restricted Circulation JTO Ph-II (DNIT) Multiplay Architecture, Overviewof Services offered, Security Aspects Figure 10: Broadband Multiplay Network Network Architecture in A Cities MPLS Mega POP MPLS Nation wide Core Layer Edge Server Edge Server STM-16 Regional Server RPR 10 G Aggregation 10 G RPR Layer RPR GE PE Router Tier 1 Sw Broadband Network‘ Tier 2 Sw Gateway (BNG) Figure 11: Broadband Multiplay Network in A cities JTO Ph-II Version 3.0 Aug 2021 Page 28 of 103 For Restricted Circulation JTO Ph-II (DNIT) Multiplay Architecture, Overviewof Services offered, Security Aspects Network Architecture in B Cities with BNG MPLS Nation wide Core GE MPLS Layer GE RPR Aggregation 1G Layer RPR GE PE Router Tier 1 Sw BNG Tier 2 Sw Figure 12: Broadband Multiplay Network in B cities with BNG Network Architecture in B Cities without BNG MPLS Nation wide Core MPLS Layer GE RPR Aggregation 1G Layer RPR GE PE Router Tier 1 Sw BNG Tier 2 Sw Figure 13: Broadband Multiplay Network in B cities without BNG JTO Ph-II Version 3.0 Aug 2021 Page 29 of 103 For Restricted Circulation JTO Ph-II (DNIT) Multiplay Architecture, Overviewof Services offered, Security Aspects Network Architecture in Other Cities Core router BNG GigE BB FE Tier 1 LAN SDH RING Switch OC city OC city RPR Tier 2 LAN To nearest A/B cities with BNG Switch Ethernet on GE GE Dark fibre X-ge C X-ge D X-ge A X-ge B ADSL ADSL terminals terminals Figure 14: Broadband Multiplay Network in Other Cities (OC) 3.7 FEATURES OF BROADBAND MULTIPLAY Multiplay Broadband provides voice, data and streaming video services. Maximum download speed can go up to 24 Mbps. On demand services like Audio on Demand (AoD),Games on Demand (GoD), Video on Demand (VoD), Video Conferencing, IPTV etc. can be easily planned through Multiplay Broadband. 3.8 SERVICES ON BROADBAND MULTIPLAY Multiplay Broadband Services Figure 15: Broadband Mutiplay Services JTO Ph-II Version 3.0 Aug 2021 Page 30 of 103 For Restricted Circulation JTO Ph-II (DNIT) Multiplay Architecture, Overviewof Services offered, Security Aspects 3.9 RESILIENT PACKET ROUTING (RPR) TECHNOLOGY Best suited for a broadband core network. Pure Data Ring on fiber. Dual counter rotating ring topology. Inner (Outer) ring carries inner (outer) ring data and control signal for outer (inner) ring. This technology is used to form the ring between Tier 2 Switches and Tier-1 switch. Multiplay Broadband Network N1 N2 Tier 2 Ring N255 Ni Fibre grids to support high Bandwidth with resilience Figure 16: RPR Ring between Tier-2 Switches and Tier –I Switch Figure 17: Inner & Outer ring 3.10 BROADBAND MUTIPLAY SERVICES The Broadband Mutiplay network is most suitable for bandwidth intensive services like Video-On-Demand, Radio, Television Channels, T-Education, T-commerce, Virtual Shopping, Video-Conferencing, Audio-On-Demand etc. JTO Ph-II Version 3.0 Aug 2021 Page 31 of 103 For Restricted Circulation JTO Ph-II (DNIT) Multiplay Architecture, Overviewof Services offered, Security Aspects The most common commercial services on Broadband Mutiplay platform are: Basic Broadband IPTV Video On Demand Bandwidth on Demand Gaming On Demand Audio on Demand Video Conferencing Video telephony VoIP Multiplay Broadband User End Figure 18: Broadband Multiplay End user Setup TVOIP  TVOIP (also called as IPTV) delivers television programming to households via broadband connection using Internet protocols.  Internet Protocol Television (IPTV) is expected to change the way people watch TV. As the name suggests, IPTV is television programs delivered to subscribers through the Internet  It requires a subscription and IPTV set-top box (STB).  IPTV is typically bundled with other services like Video on Demand (VOD), Voice Over IP (VOIP) or digital Phone, and Web access.  IPTV viewers will have full control over functionality such as rewind, fast-forward, pause, and so on. JTO Ph-II Version 3.0 Aug 2021 Page 32 of 103 For Restricted Circulation JTO Ph-II (DNIT) Multiplay Architecture, Overviewof Services offered, Security Aspects  IPTV (Internet Protocol Television) is a system where a digital television service is delivered by using Internet Protocol over a network.  If you've ever watched a video clip on your computer, you've used an IPTV system in its broadest sense.  For residential users, IPTV is provided with Video On Demand and may be bundled with Internet services such as Web access and VoIP.  Microsoft is one of the many companies developing solutions to support the Internet Protocol TV (IPTV) market.  IPTV is an emerging technology and will evolve into a completely interactive experience in the future!  First things first: the Set-Top Box (STB), on its way out in the cable world, will make resurgence in IPTV systems.  The box will connect to the home DSL line and is responsible for reassembling the packets into a video stream and then decoding the contents.  The video stream is broken up into IP packets and dumped into the core network, which is a massive IP network that handles all sorts of other traffic (data, voice, etc.) Figure 19: IPTV Service BNG JTO Ph-II Version 3.0 Aug 2021 Page 33 of 103 For Restricted Circulation JTO Ph-II (DNIT) Multiplay Architecture, Overviewof Services offered, Security Aspects VOIP  The technology used to transmit voice conversations over a data network using the Internet Protocol.  A category of hardware and software that enables people to use the Internet as the transmission medium for telephone calls.  VoIP works through sending voice information in digital form in packets,  VoIP also is referred to as Internet telephony, IP telephony, or Voice over the Internet (VOI) IP Telephony Services Video Traffic Voice Traffic Data Traffic Media MPLS Gateway 5. Voice Traffic CORE L3PE forwarded to Media Gateway VOICE by L3PE through VLAN MPLS Core 4. BNG Removes the VLAN tag, BNG maps the traffic to BNG corresponding context and 1. CPE configured forwards to L3PE with proper VOIP to sent Data / RPR – T1 VLAN upstream VLAN Tag Voice / Video Traffic as 3. RPR / OCLAN Switch specific ATM 2. DSLAM adds forwards the traffic RPR – T2 PVCs Corresponding in VLAN with proper VLAN to the QoS Mapping VOIP TV Voice Traffic VLAN DSLAM PC STB RPR – T2 CPE Phone VOIP VLAN 3 PVCs for 3 Services RPR – T2 RPR – T2 In Association with Technology PartnersUTStarcom Confidential 65 Figure 20: VOIP Service Benefits of VoIP  Cost reduction  Toll by-pass  WAN Cost Reduction  Operational Improvement  Common network infrastructure  Simplification of Routing Administration Business Tool Integration JTO Ph-II Version 3.0 Aug 2021 Page 34 of 103 For Restricted Circulation JTO Ph-II (DNIT) Multiplay Architecture, Overviewof Services offered, Security Aspects  Voice mail, email and fax mail integration  Web + Call  Mobility using IP VoIP Protocols  H.323:  ITU-T standard, latest version v4  Peer-to-peer protocol that supports terminals communicating over packet based networks  SIP:  IETF standard, RFC 3261  Peer-to-peer protocol for initiation, modification termination of communication sessions between users  MGCP:  ITU-T and IETF collaboration, RFC 3435  Master/slave protocol for media gateway controller to control media gateway. 3.11 3.12 Figure 21: VOIP Service 3.13 SECURITY ASPECTS DSL connectivity is provided between a single point of entry and the telephone central office. While multiple users may exist behind that point of entry, e.g., behind a small 2-interface router and DSL modem, there is a "virtual private circuit" created between the two points, without vying for resources with other connections. This connection can be further secured by authentication with a trusted host after passing through the telephone central office onto the Internet to its destination. Finally, the major attraction is the development of JTO Ph-II Version 3.0 Aug 2021 Page 35 of 103 For Restricted Circulation JTO Ph-II (DNIT) Multiplay Architecture, Overviewof Services offered, Security Aspects extranets using VPN technology and protocols that will allow for secure connectivity and transmissions between two points (tunneling), when one exists outside the trusted network. This gives rise not only to the potential to secure connections with the home or small office, but also to the ability to conduct e-commerce with customers and business-to-business transactions without compromising security.  Security for the DSL environment is dependent on the user as well as the technology. A "24 x 7" connectivity with a static IP address via a modem to an internal network makes for a juicy target.  Protect by means of a VPN solution incorporating 128-bit encryption and secure tunneling to a corporate site. The IPSec standard protocol is preferable to PPTP and other protocols. It should be noted that compatibility issues exist between the Microsoft Proprietary IPSec used in Windows and the generic IPSec standard used in certain current VPN solutions. IPSec can only be used in Native Mode Windows 2000 implementations, not Mixed Mode. Additionally, MS VPN utilizes PPTP tunneling with DUN 1.3 or 1.4 (Dial Up Networking).  The most recent operating system and application service packs and patches must be applied and logged. Communication with IT security or periodic vendor website review is essential.  Provide Perimeter Defense with a router that has IOS Firewall software and a strong script for packet filtering. Use of conduits, a warning banner, secure encrypted passwords, non-default password-strength community names, and directional ACLs should be implemented. A proxy server software (often incompatible with router firewall software) is another alternative. 2 NIC cards (internal and external) are another alternative for sharing resources.  For the individual user, a personal firewall and encryption solution should be added to the user's PC. For portables and laptops, hard disk encryption should be added.  In the small office or networked home office, a mini-NATting solution can hide additional devices behind 1 IP address. Commercial software is available for this.  A beta version of Microsoft's IE 5.5 had additional privacy and cookie protection built in, and is available for download from the IE Explorer downloads page. Third-party privacy software exist, often in conjunction with antivirus, encryption and personal firewall solutions.  Turn off File and Print Sharing via the Control Panel, Network, File and Print Sharing button. Both options for giving others access to your files and letting others print to your printer should be changed to unchecked boxes, unless in a shared office environment. 3.14 CONCLUSION Broadband Multiplay network provides voice, data and video services, and hence called multiplay (Multiple Services). Major components CPE, DSLAM, RPR Switches, monitoring each and every packet and its quality parameters and accordingly provides services to end users. JTO Ph-II Version 3.0 Aug 2021 Page 36 of 103 For Restricted Circulation

Use Quizgecko on...
Browser
Browser