1 mobile-ip priority home agents for aerospace and military applications terry bell, will ivancic,...
TRANSCRIPT
1
Mobile-IP Priority Home Agents for Aerospace and Military Applications
Terry Bell, Will Ivancic, Dave Stewart, Dan Shell and Phil Paulsen
2
Outline Mobile-IPv4 Operations Priority Home Agent Implementation Architectural Concepts Field Demonstration Virtual Mission Operations Center Potential Problems and Issues Migration Toward IPv6
3
Mobile-IP Operation
IPv4
Internet or Intranet
Mobile Node“ ”
Home IP 128.183.13.103Care-Off-Address139.88.111.50
Corresponding Node
Access Router
143.232.48.1NASA Ames
143.232.48.1
Home Agent
128.183.13.1NASA Goddard
Mobile-IP (IPv4) Teminology
Foreign Agent
139.88.111.1
139.88.112.1NASA Glenn
1. Advertises Mobile Node’s Network to the world
2. Maintains current location for Mobile Node
3. Tunnels datagrams for delivery to the Mobile Node
1. Provides routing service for Mobile Node while registered with HA
2. Provides temporary address to Mobile Node (Care-off-Address)
3. Detunnels and delivers datagrams to the Mobile Node
1. Mobile Node can be a host or a router
2. Changes its point of attachment from one network or subnetwork to the next
3. Detunnels datagrams is collocated-care-of-address is used (attached to access router)
4. Can be multi-homed (have more than one interface active)
1. Any node that is communicating with the mobile node
2. Can be router or host
1. Provides routing service for Mobile Node while registered with HA
2. Provides temporary address to Mobile Node (Collocated Care-off-Address)
Mobile Node
Foreign Agent Foreign Agent
Home Agent
“ ”
139.88.111.1
143.232.48.1NASA Ames
Corresponding Node
Internet or Intranet
139.88.112.1NASA Glenn
143.232.48.1
Home IP 128.183.13.103Care-Off-Address139.88.111.50
128.183.13.1NASA Goddard
Registration using Foreign Agents
Bi-directional Tunnel
if Reverse Tunneling
Is specified.
Foreign Agent Services
Advertisement
Request for Foreign Agent
Services
Registration
Create Tunnel between FA and
HA
Mobile Node
Foreign Agent Foreign Agent
Home Agent
“ ”
139.88.111.1
143.232.48.1NASA Ames
Corresponding Node
Internet or Intranet
139.88.112.1NASA Glenn
143.232.48.1
Home IP 128.183.13.103Care-Off-Address139.88.111.50
128.183.13.1NASA Goddard
Data Flow using Foreign Agents(Triangular Routing)
Mobile Node
Foreign Agent Foreign Agent
Home Agent
“ ”
139.88.111.1
143.232.48.1NASA Ames
Corresponding Node
Internet or Intranet
139.88.112.1NASA Glenn
143.232.48.1
Home IP 128.183.13.103Care-Off-Address139.88.111.50
128.183.13.1NASA Goddard
Data Flow using Foreign Agents(Reverse Tunneling)
Mobile Node
Access Router Access Router
Home Agent
“ ”
139.88.111.1
143.232.48.1NASA Ames
Corresponding Node
Internet or Intranet
139.88.112.1NASA Glenn
143.232.48.1
Home IP 128.183.13.103Care-Off-Address139.88.111.50
128.183.13.1NASA Goddard
Mobile-IP (IPv4) using Collocated Care-Of-Address
DHCP orConnection Established
Bi-directional Tunnel
if Reverse Tunneling
Is specified.
Mobile Node
Access Router Access Router
Home Agent
“ ”
139.88.111.1
143.232.48.1NASA Ames
Corresponding Node
Internet or Intranet
139.88.112.1NASA Glenn
143.232.48.1
Home IP 128.183.13.103Care-Off-Address139.88.111.50
128.183.13.1NASA Goddard
Data Flow using Collocated Care-Of-Address(Triangular Routing)
Mobile Node
Access Router Access Router
Home Agent
“ ”
139.88.111.1
143.232.52.1NASA Ames
Corresponding Node
Internet or Intranet
139.88.112.1NASA Glenn
143.232.48.1
Home IP 128.183.13.103Care-Off-Address139.88.111.50
128.183.13.1NASA Goddard
Data Flow using Collocated Care-Of-Address(Reverse Tunneling)
Tunnel-0
Tunnel-1
Mobile Router(Mobile Node)
Foreign Agent
Home Agent
Corresponding Node
139.88.112.1Internet WAN
128.184.24.2
128.183.13.1Internet WAN
Internet
10.2.2.1RoamingInterface
128.184.24.1Virtual LANInterface
128.184.25.1HA LoopbackVirtual Interface
139.88.100.1FA WAN
128.184.26.1MR Loopback
Virtual InterfaceCOA 139.88.100.1
Mobile-Router (IPv4)Mobile Router
Second Tunnel Created
between FA and HA
Tunnel Created
between MR and HA
Bi-directional Tunnels
if Reverse Tunneling
Is specified.
Mobile Router(Mobile Node)
Foreign Agent
Home Agent
Corresponding Node
139.88.112.1Internet WAN
Tunnel-0
128.183.13.1Internet WAN
Internet
10.2.2.1RoamingInterface
Tunnel-1
128.184.25.1HA LoopbackVirtual Interface
139.88.100.1FA WAN
Data FlowMobile Router
(Reverse Tunneling)128.184.24.2128.184.24.1
Virtual LANInterface
128.184.26.1MR Loopback
Virtual InterfaceCOA 139.88.100.1
Mobile Router(Mobile Node)
Home Agent
Corresponding Node
139.88.112.1Internet WAN
Tunnel-0
128.183.13.1Internet WAN
10.2.2.1RoamingInterface
Foreign Agent
Tunnel-1
128.184.25.1HA LoopbackVirtual Interface
139.88.100.1FA WAN
Data FlowCollocated Care-Of-Address
(NO reverse tunneling)
Internet No Foreign AgentNo Second Tunnel
128.184.24.2128.184.24.1Virtual LANInterface
128.184.26.1MR Loopback
Virtual InterfaceCOA 139.88.100.1
Mobile Router(Mobile Node)
Home Agent
Corresponding Node
139.88.112.1Internet WAN
Tunnel-0
128.183.13.1Internet WAN
Internet
10.2.2.1RoamingInterface
128.184.25.1HA LoopbackVirtual Interface
139.88.100.1
Mobile-Router (IPv4)Collocated Care-Of-Address
(NO reverse tunneling)
Access Router
128.184.24.2128.184.24.1Virtual LANInterface
128.184.26.1MR Loopback
Virtual InterfaceCOA 139.88.100.1
15
Priority Home Agent Operation
IPv4
16
Secondary Home Agent(reparenting the HA)
PrimaryHome Agent
SecondaryHome Agent
Reparenting Home AgentHelps resolve triangular routing And Route optimizationProblem over long distances
X
Mobile Router
Home Agent #2
Foreign Agent Europe
Home Agent #1
139.88.111.1
152.232.48.1Paris, France
Internet or Intranet
139.88.112.1Frankfort, Germany
Home IP 128.55.100.103
128.183.13.1Virginia, USA
Prioritized Home Agents – Using Access Lists
Registration Request
HA Priority: HA#1 then HA#2
Care-Off-Address139.88.111.1
Acess List: Deny 139.88.111.1Allow 143.232.48.1
Foreign AgentUnited States
143.232.55.1Baltimore, Maryland
143.232.48.1Must be in
same Autonomous System so
route is advertised properly
Acess List: Deny 143.232.48.1Allow 139.88.111.1
Registration RequestDenied
Registration Request to
HA#2
Registration RequestGranted
Establish Tunnels
18
Emergency Backup(Hub / Spoke Network)
If primary control site becomesphysically inaccessible but can be electronically connected, asecondary site can be established.
If primary control site is physically incapacitated, there is no backup capability.
19
Secondary Home Agent(Fully Meshed Network)
1
2
3
4
5
If primary control site is physically incapacitated, a second or third or forth site take over automatically.
Mobile Router
Home Agent #2
Foreign Agent Europe
Home Agent #1
139.88.111.1
152.232.48.1Paris, France
Internet or Intranet
139.88.112.1Frankfort, Germany
Home IP 128.55.100.103
128.183.13.1Virginia, USA
Prioritized Home Agents – Catastrophic Failure
HA Priority: HA#1 then HA#2
Care-Off-Address139.88.111.1
Acess List: Allow All
Foreign AgentUnited States
143.232.55.1Baltimore, Maryland
143.232.48.1Must be in
same Autonomous System so
route is advertised properly
Acess List: Allow All
Registration RequestGranted
CatastrophicFailure
Waiting for Registration
RequestGranted
Registration Request #2
Waiting for Registration
RequestGranted
Registration Request #1Registration Request #3
Waiting for Registration
RequestGranted
Establish Tunnels
Registration Request HA#2
21
Intelligence Control Center
Battle Group Command Center (BGCC)Battle Group Command Center (BGCC)
Primary HA
ReachBack viaSatellite
Tactical data forwarded from surveillance satellites to the BGCC.
Mobile Network
Secondary HA
Foreign Agents
Mobile NetworkMobile Network
Command on the moveTear Down for move to
new location
X X
Secondary HA takes control during move
Access List:Allow FA2Deny FA1
Access List:Allow FA1Deny FA2
WAN connection for Call Manager (VOIP) to operate
at HA2
Protected LANs
Protected LAN
Prioritized HAs
24
Virtual Mission Operations Center
HA2
Open Internet
SSTL DMC Satellite
SSTL Satellite Controllers
Surrey, England
FA1
MR
GSFC Ground StationUniversal
Space Network FA2
Surrey Ground Station
PrimaryVMOC
Virtual Mission Operations Center
Colorado Springs
HA1
Shadow VMOC
GRC
CERES Ground Station
FA3
EOSDIS
Cisco / GRC Researchers
Cleveland
Saturn Ground Station
Space ApplicationTechnology Utility-Research Network
(SATURN)
802.11b link with HAIPE
Mobile Warfighter
Vandenburg
Synchronized Databases
Trusted Network Environment(TNE) at VMOC core
Data Data Data
Virtual Mission Operations Center (VMOC)
VMOC routes operatorrequest to SV and or
Knowledge Data BaseSecure Network
OperationsCenter
InformationProtection
IO/IW Centers
Trusted Gateway
Knowledge BaseData Warehouse
MissionIntegrator
ConditionMonitor
Scheduler
IntelligentMultiplexor /
Demultiplexor
Shadow VMOCEurope
HAUnitedStates
HAEurope
FA
FA
FAFA
FA
FA
FA
CommandAnd Control
Virtual Mission Operations Center For a Global Space Network
26
Potential Problems / Issues Number or registration retries and
time between retries are critical parameters effecting system performance Particularly applicable to VMOC for LEO
spacecraft control Prioritized Home Agents must reside
in the same autonomous systems to ensure mobile routes are advertised with the proper weighting
27
Migration to IPv6 Work is taking place in the Networks in
Motion (NEMO) working group of the Internet Engineering Task Force (IETF)
Bidirectional Tunnels specified in “Basic Implementation” – similar to reverse tunneling. No route optimization in Basic draft
Interoperability with IPv4 specification including IPv4 and NAT transversal
IPv6 Inter-Home Agent draft specification is similar to dynamic Home Agents for IPv4
Mobile Network
Access Router Access Router
Home Agent
Corresponding Node
Internet or Intranet
Basic Mobile Network Support for IPv6
xLink UP
Mobile Network
NodesBindingUpdate
Single Bidirectional Tunnel From
MR to HA
30
31
IPv6 Aeronautical Network Status
IPv6 Mobile Router working over IPv6 and IPv4 WAN networks (including T-Mobile GRPS and Verizon 1xRTT cellular networks).
IPv6 Mobile connectivity between NASA Glenn, Eurocontrol and Computer Networks and Software, Inc.
32
Papers and Presentations
http://roland.grc.nasa.gov/~ivancic/papers_presentations/papers.html
orhttp://roland.grc.nasa.gov/~ivancic/
and pick “Papers and Presentations”
33
Backup Slide
34
Mobile Networking Solutions Routing Protocols
Route Optimization Convergence Time Sharing Infrastructure – who owns the network?
Mobile-IP Route Optimization Convergence Time Sharing Infrastructure Security – Relatively Easy to Secure
Domain Name Servers Route Optimization Convergence Time Reliability