Tuesday, May 23, 2017

Configuring IPv6 Services in the FTTB/C (No HGWs) Scenario

Application Scenarios
The FTTB/C (no HGW) networking supports the access of IPv6 HSI services. Generally, no
IPTV services will be deployed when there is no HGW.
As shown in Figure below, the ONU, which is installed in a corridor or street optical
distribution box, transmits services to users through category-5 cables (LAN access) or
twisted pairs (xDSL access). Huawei OLT MA5600T and ONU work with upper-layer devices to support
Huawei DS+NAT+PPPoE/DS+NAT+IPoE HSI IPv6 solutions.

  • For voice services: The ONU with a built-in voice module can directly provide VoI services for users. The ONU processes VoIP services using the IPv4 protocol instead of the IPv6 protocol.
  • For Internet access services: Users connect to the ONU through category-5 cables (LAN access) or the modem and twisted pairs (xDSL access). The PC and BRAS support the IPv4/IPv6 DS and can be connected in the PPPoE or IPoE mode. Huawei OLT and Huawei ONU implement Layer 2 forwarding, irrespective of whether the access service is IPv4 or IPv6. Service configurations for IPv4 and IPv6 are the same. Only the ACL, anti-IP spoofing, and DHCP option configurations for IPv4 and IPv6 are different
Data Planning
This section describes the security, device management data, QoS, Internet service data, and
voice service data planning.
Security Planning
Security planning includes system security, user security, and service security, ensuring that
user services are provided properly from different dimensions.
In the FTTB/C (no HGW) networking scenario, the data for IPv6 and IPv4 security planning
differs only in anti-IP spoofing and DHCP option.
Anti-IP spoofing: This function needs to be configured separately for IPv6 services.
The anti-IP spoofing function can be enabled or disabled at three levels. This function takes
effect only when it is enabled at all the three levels.
1. Global level: Run the security anti-ipv6spoofing enable command in global config
mode.
2. VLAN level: Run the security anti-ipv6spoofing enable command in VLAN service
profile mode.
3. Service port level: Run the security anti-ipv6spoofing service-port serviceport-id
enable command.
DHCP option: The DHCP option for IPv4 is DHCPv4 option 82 and for IPv6 is DHCPv6
option 18/37.
The DHCPv6 option18 and option37 functions can be enabled or disabled at two levels. This
function takes effect only when it is enabled at both levels.
1. Global level: Run the dhcpv6 option enable command in global config mode.
2. VLAN level: Run the dhcpv6 option enable command in VLAN service profile mode.


No comments:

Post a Comment