MA5616 Service Configuration For HSI+IPTV (ADSL)
MA5616 Service Configuration For HSI+IPTV (ADSL)
MA5616 Service Configuration For HSI+IPTV (ADSL)
MA5616 Service
Configuration for
ADSL2+ (HSI+IPTV)
www.huawei.com
Huawei Confidential
Objectives
Upon completion of this course, you will be able to:
Understand the principles of services implementation in
MA5616U
Provision ADSL2+ port, uplink Ethernet port
Provision VLAN, QoS
Provision basic high speed internet service
Provision basic multicast service
Huawei Confidential
Page 2
Contents
1. Multi-service Principle
Huawei Confidential
Page 3
Contents
1. Multi-service Principle
Huawei Confidential
Page 4
PC
DSLAM
CPE
ATM/
PTM
IPTV
VLAN600
IPTV Traffic
VLAN99+
VOD VLAN
IP
Network
VoD Server
Middle
ware
VLAN100
Softswitch
SIP Phone
Service
sense
engine
Policy
engine
Forwarding
Engine
DHCP
Server
VoIP
Huawei Confidential
Page 5
Huawei Confidential
Page 6
Token
VLAN switching
Traffic
classifi
cation
Queue 1
CAR
Queue 2
PQ
WRR
PQ+WRR
Transmit
Priority
processing
Transparent
transmission
.
.
.
Queue n
MA5616 has a strong capability to classify the services from the CPE
side
MA5616 forwards and guarantees services with different VLAN polices
and QoS policies
Huawei Confidential
Page 7
Service
awareness
Different users
Different services
C-VLAN
PVC
802.1P
Ether-Type
Encapsulation
type
Priority
scheduler
Service
isolation
Based on user
Based on port
Based on flow
Traffic
control
Different users
Different services
PQ
WRR
PQ+WRR
Based on user
Based on port
Based on flow
Huawei Confidential
Page 8
Contents
1. Multi-service Principle
Huawei Confidential
Page 9
Contents
2. Physical Layer Provisioning
2.1 ADSL2 Port Provisioning
2.2 Ethernet Port Provisioning
Huawei Confidential
Page 10
Line
INP
SNR Margin
Rate
Interleaving
Lineprofile
Extendprofile
ADSL2+ Line
Huawei Confidential
Page 11
No
Extend profile
Bonding?
Yes
Bonding group
Huawei Confidential
Page 12
Huawei Confidential
Page 13
Huawei Confidential
Page 14
Huawei Confidential
Page 15
Huawei Confidential
Page 16
Huawei Confidential
Page 17
Huawei Confidential
Page 18
Huawei Confidential
Page 19
1 Deactivated
Disable
1
1
2 Deactivated
Disable
1
1
21 Deactivated
1
1
22 Deactivated
Disable
1
1
31 Deactivated
Disable
1
1
24 Deactivated
Disable
1
1
--------------------------------------------------------------------------------------------
Huawei Confidential
Page 20
MA5616(config-if-ADSL-0/2)#deactivate
{portid<U><0,31>|all<K>}:0
MA5616config-if-ADSL-0/2)#deactivate 0
MA5616(config-if-ADSL-0/2)#activate
{portid<U><0,31>|all<K>}:0
{<cr>|Profile-index<K>|Profile-name<K>}:Profile-index
{profile-index<U><1,128>}:11
MA5616(config-if-ADSL-0/2)#activate 0 profile-index 11
Huawei Confidential
Page 21
Contents
2. Physical Layer Provisioning
2.1 ADSL2+ Port Provisioning
2.2 Ethernet Port Provisioning
Huawei Confidential
Page 22
Huawei Confidential
Page 23
MA5616(config)#interface eth
{ frameid/slotid<S><Length 1-15> }:0/0
MA5616(config-if-eth-0/0)#
MA5616(config-if-eth-0/0)#network-role
{ portid<U><0,1> }:1
{ role-type<E><uplink,cascade> }:uplink
MA5616(config-if-eth-0/0)#undo shutdown
{ all<K>|portid<U><0,15> }:1
Huawei Confidential
Page 24
Summary
Ethernet port physical parameters can set the port speed, duplex mode
and mdi.
Huawei Confidential
Page 25
Contents
1. Multi-service Principle
Huawei Confidential
Page 26
Contents
3. Data Link Layer Provisioning
3.1 Service Classification
3.2 VLAN Provisioning
3.3 QoS Provisioning
3.4 Link Aggregation
Huawei Confidential
Page 27
Service Classification
Service virtual port
A virtual channel used to forward the user traffic from the user
side to the device
used to classify the different services traffic and then mapping to
the upstream VLAN
Support two encapsulation mode: ATM and PTM
PC
IPTV
IPTV Traffic
VLAN 600
VLAN 99+VOD VLAN
VLAN 100
CPE
DSLAM
IP Phone
Huawei Confidential
Page 28
Contents
3. Data Link Layer Provisioning
3.1 Service Classification
3.2 VLAN Provisioning
3.3 QoS Provisioning
3.4 Link Aggregation
Huawei Confidential
Page 29
CCU
Standard
Port
Upstream
AD
VLAN
port
Huawei Confidential
ADSL2+
Port
ADSL2+
Port
ADSL2+
Port
ADSL2+
Port
Page 30
Service
Virtual
Ports
Description
Application
Standard
Smart
MUX
Attribute
QinQ
Stacking
Description
Application
Huawei Confidential
Page 31
Definition
A smart VLAN is a VLAN that contains multiple upstream ports and multiple service
ports. These service ports are isolated from each other.
Specifications
There is no limit to the number of the upstream ports and the number of the service
ports in each smart VLAN.
AD
CCU
NSP1
NSP
Backbone
NSP1 VLAN
NSP1
NSP
Backbone
NSP2
Upstream
port
Service port-4
Huawei Confidential
Service port-2
Service port-3
NSP2 VLAN
NSP2
Service port-1
Page 32
Service port-5
Definition
A MUX VLAN is a VLAN that contains one or more upstream ports, but contains
only one service port.
The traffic streams of any two MUX VLANs are isolated.
One-to-one mapping can be set up between a MUX VLAN and an access user.
AD
CCU
Service port-1
NSP1
C VLAN 1
NSP
Backbone
C VLAN 1
Upstream
Service port-2
port
NSP
Backbone
C VLAN 3
C VLAN 3
NSP2
Huawei Confidential
Page 33
Service port-3
VLAN Switching
S VLAN
Untagged
S VLAN
C VLAN
Up layer
network
MA5616
VTU-R
S VLAN
+C VLAN
C VLAN
S VLAN
+C VLAN
Untagged
Huawei Confidential
Page 34
Add VLAN
Huawei Confidential
Page 35
VLAN Provisioning
Setp1: Add one VLAN or multiple VLANs of a same type
in batches
Huawei Confidential
Page 36
Questions
1. Which types of VLAN can access xDSL services and reduce the number of
VLANs occupied?
A. mux
B. smart
C. stand
D. QinQ
E. Stacking
A. uplink port
C. maintenance port
D. serial port
Huawei Confidential
Page 37
Contents
3. Data Link Layer Provisioning
3.1 Service Classification
3.2 VLAN Provisioning
3.3 QoS Provisioning
3.4 Link Aggregation
Huawei Confidential
Page 38
QoS Overview
Qos Guarantee
Physical layer
Traffic table
Rate
Rate
Delay
Priority
Priority policy
Rate
Huawei Confidential
Page 39
Huawei Confidential
Page 40
Huawei Confidential
Page 41
MA5616(config)#line-rate
{inbound<K>|outbound<K>}:inbound
{ integer<U><64,1000000> }:51200
{ port<K> }:port
{ frameid/slotid/portid<S><Length 5-15> }:0/0/0
Huawei Confidential
Page 42
Drop priority =1
CIR
Drop priority =0
Drop Red
Drop Green
Drop Yellow
Dual drop threshold (green and yellow) for queue, while traffic congestion, the
packets with yellow color will be dropped first.
Huawei Confidential
Page 43
{}
{priority-policy<K>}:priority-policy
{priority-policy<E><Local-Setting,Tag-In-Package>}:local-
Setting
Local-Setting: DSLAM no trust the Priority in the SVLAN from MANE but schedule according the local setting.
Tag-In-Package: DSLAM trust the Priority in the SVLAN from MANE.
Huawei Confidential
Page 44
{cir<K>|index<K>|modify<K>|name<K>}:index
{row-index<U><0,127>}:11
{cir<K>|name<K>}:name
{name<S><Length 1-32>}:HSI
{cir<K>}:cir
{cir<U><64,524288>|off<K>}:off
{pir<U><64,524288>|off<K>}:pir off
{color-mode<K>|priority<K>}:priority
{prival<U><0,7>|user-cos<K>|user-tos<K>}:0
{priority-policy<K>}:priority-policy
{priority-policy<E><Local-Setting,Tag-In-Package,CTag-InPackage>}:local-Setting
Huawei Confidential
Page 45
{cir<K>|index<K>|modify<K>|name<K>}:index
{row-index<U><0,127>}:12
{cir<K>|name<K>}:name
{name<S><Length 1-32>}:IPTV
{cir<K>}:cir
{cir<U><64,524288>|off<K>}:off
{pir<U><64,524288>|off<K>}:pir off
{color-mode<K>|priority<K>}:priority
{prival<U><0,7>|user-cos<K>|user-tos<K>}:4
{priority-policy<K>}:priority-policy
{priority-policy<E><Local-Setting,Tag-In-Package,CTag-InPackage>}:local-Setting
Huawei Confidential
Page 46
Contents
3. Data Link Layer Provisioning
3.1 Service Classification
3.2 VLAN Provisioning
3.3 QoS Provisioning
3.4 Link Aggregation
Huawei Confidential
Page 47
The Link Aggregation Control Protocol (LACP) is the control protocol that is
specified in the IEEE 802.3ad standard for implementing link aggregation.
Through LACP, the Ethernet ports of different devices can be automatically
aggregated without interventions from the user, and the link layer failure of
the ports can be detected, so as to implement control over link aggregation
control.
Huawei Confidential
Page48
Introduction to LACP
Device B
Device A
LAG
Port1
Port1
Port2
Port2
Port3
Port3
Port4
Port4
Huawei Confidential
Page49
Link Aggregation
Huawei Confidential
L2/L3 aggregator
Aggregation
LACP
Page 50
MA5616(config)#link-aggregation
{ frame/slot<S><3,4> }:0/0
{ port-list<S><1,255> }:0-1
{ frame/slot<S><3,4>|mode<E><ingress,egress-ingress> }:ingress {
<cr>|workmode<K> }:workmode
{ lacp-static<K> }:lacp-static
MA5616(config)#link-aggregation add-member
{ frameid/slotid/portid<S><Length 5-7> }:0/0/0
{ frame/slot<S><Length 3-4> }:0/0
{ port-list<S><Length 1-255> }:1
{ <cr>|frame/slot<S><Length 3-4> }:
Huawei Confidential
Page 51
Questions
A. line profile
B. channel profile
C. traffic table
D. alarm profile
C. discard
D. transparent
Huawei Confidential
Page 52
Summary
Service port is used to classify the different service stream from the
user side. Service port supports two escalation modes: ATM and PTM.
Different VLAN types are used in the different application. smart VLAN
is for the Intelligent Bridge Mode, MUX VLAN is for the cross connection
mode.
The QoS is guaranteed in the different layers. The physical layer QoS
use the ADSL2+ profiles to set the rate and delay parameters, and data
link layer QoS use the traffic table to set the priority level.
Link aggregation is used for the uplink port to increase the bandwidth
Huawei Confidential
Page 53
Contents
1. Multi-service Principle
Huawei Confidential
Page 54
Add Extend
profile(optional)
Bonding?
No
Yes
Provision QoS
Activate port
Add traffic table
Add VLAN
Provision VLAN
Huawei Confidential
Page 55
Data
VLAN ID: 600
Uplink port :0/0/0
Security control: enable unknown unicast limitation
Subscriber port : 0/2/0
Security control :
1. each subscriber can access 10 MAC address;
2. The subscriber can not use BRAS MAC address;
3. Enable Anti-DOS feature at subscriber;
4. Enable Loop detecting feature at subscriber;
5. Enable Anti-MAC spoofing feature at subsciber.
BRAS
WAN
Traffic
profile
Index: 11
CIR: off kbit/s ,PIR: off kbit/s
Priority: 0 ,Priority policy: Local-Setting
Line Profile index: 11
Line
template
Huawei Confidential
Page 56
Huawei Confidential
Page 57
Huawei Confidential
Page 58
We can choose depend on the requirement from VNPT, currently we deploy Level3 for MA5600.
Huawei Confidential
Page 59
At last, we can bind the VLAN profile to the HSI VLAN, the Anti-Macspoofing feature will be enable at HSI
service.
MA5616(config)#vlan bind service-profile 600 profile-name HSI
Huawei Confidential
Page 60
Prevent the end-user attack the Server/BRAS with the same MAC address of Server, otherwise the whole
Internet service of that VLAN will be affected.
huawei(config)#security mac-filter
{ mac_addr<P><XXXX-XXXX-XXXX> }:1010-1010-3020
Command:
security mac-filter 1010-1010-3020
Note: System can configure 4 different Security MAC-Filter in total.
Huawei Confidential
Page 61
At last, we can bind the VLAN profile to the HSI VLAN, the PITP feature will be enable at HSI service.
Huawei Confidential
Page 62
Data
VLAN ID: 1100,BTV VLAN: 99
Uplink port :0/0/0
Subscriber port : 0/2/0
Security control :
1. Enable Anti-MAC spoofing feature at subscriber.
2. Enable DHCP-OPTION82 feature at subscriber.
VASC
WAN
Traffic
profile
Index: 12
CIR: off kbit/s ,PIR: off kbit/s
Priority: 4 ,Priority policy: Local-Setting
Profile index: 12
Extend-profile: Index: 1
Line
template
Huawei Confidential
Page 63
Huawei Confidential
Page 64
Huawei Confidential
Page 65
At last, we can bind the VLAN profile to the IPTV VLAN, the Anti-Macspoofing feature will be enable at IPTV
service.
Huawei Confidential
Page 66
At last, we can bind the VLAN profile to the IPTV VLAN, the DHCP-OPTION82 feature will be enable at IPTV service.
Huawei Confidential
Page 67
Note: The BTV user under BTV mode can join the channel at differnet MVLAN.
Huawei Confidential
Page 68
Data
VLAN ID: 1102,BTV VLAN: 99
Uplink port :0/0/0
Subscriber port : 0/2/0
Security control :
1. Enable Anti-MAC spoofing feature at subscriber.
2. Enable DHCP-OPTION82 feature at subscriber.
VTC
WAN
Traffic
profile
Index: 12
CIR: off kbit/s ,PIR: off kbit/s
Priority: 4 ,Priority policy: Local-Setting
Line Profile index: 12
Extend-profile: Index: 1
Line
template
Huawei Confidential
Page 69
Huawei Confidential
Page 70
Huawei Confidential
Page 71
At last, we can bind the VLAN profile to the IPTV VLAN, the Anti-Macspoofing feature will be enable at IPTV
service.
Huawei Confidential
Page 72
At last, we can bind the VLAN profile to the IPTV VLAN, the DHCP-OPTION82 feature will be enable at IPTV
service.
Huawei Confidential
Page 73
MA5616(config)#multicast-vlan 99
MA5616(config-mvlan99)# igmp mode proxy
MA5616(config-mvlan99)# igmp version v2
MA5616(config-mvlan99)# igmp uplink-port
MA5616(config-mvlan99)# igmp program add
MA5616(config-mvlan99)# igmp program add
MA5616(config-mvlan99)# igmp program add
MA5616(config-mvlan99)#btv
MA5616(config-btv)#igmp proxy router gen-query-interval 30
MA5616(config-btv)#igmp proxy router robustness 1
MA5616(config-btv)#igmp user add service-port 1102 no-auth
MA5616(config-btv)#multicast-vlan 99
MA5616(config-mvlan99)#igmp multicast-vlan member service-port 1102
0/0/0
name program1 ip 239.1.1.1
name program2 ip 239.1.1.2
name program3 ip 239.1.1.3
Note: The BTV user under BTV mode can join the channel at differnet MVLAN.
Huawei Confidential
Page 74
Questions
A. line profile
B. channel profile
C. traffic table
D. alarm profile
Huawei Confidential
Page 75
Summary
High speed internet service is the basic service for the customer.
Provision the HSI service should flow the main procedure: provision
ADSL2+ port, provision Qos and VLAN.
If the user need two ADSL2+ lines to increase the bandwidth, then add
the ADSL2+ bonding group.
Huawei Confidential
Page 76
Contents
1. Multi-service Principle
Huawei Confidential
Page 77
Mirror Concept
A sniffing
monitor
Ingres
s
Egress
Purpose
Mirror is a Debugging and
troubleshooting tool
Mirror port
Mirror traffic
A sniffing
monitor
Filter
Mirror traffic
Huawei Confidential
Page 78
For example:
A sniffing
monitor
Copy
Destination
port
Source port
Huawei Confidential
Page 79
For example:
Huawei Confidential
Page 80
traffic-mirror { inbound | outbound } { user-group access-listnumber1 [ rule rule-id ] | { ip -group access-list-number2 [ rule
rule-id ] | link-group access-list-number3 [ rule rule-id ] } * } port
frameid1/slotid1/portid1 [ to port frameid2/slotid2/portid2 ]
For example:
Huawei Confidential
Page 81
Debugging
Purpose
monitoring the system message when a fault occurs and you
need to locate or monitor the problem
Procedure
Setp1: Debugging system
MA5616(config)#debugging
{all<K>|dns<K>|firewall<K>|hwtacacs<K>|igmp<K>|ip<K>|lacp<K>|ntpservice<K>|rawip<K>|rawlink<K>|rm<K>|rsa<K>|stp<K>|tcp<K>|udp<K>
}:
For example:
MA5616(config)#debugging igmp
{ user<K> }:user
{ all<K>|user-index<U><0,255> }:all
Huawei Confidential
Page 82
Debugging
Step2: Display the debugging information to the CLI terminal
MA5616(config)#terminal debugging
MA5616(config)#terminal monitor
Huawei Confidential
Page 83
Questions
1. How to copy the traffic stream from one port to another port ?
A. port mirror
B. debugging
C. both
D. none
2. How to filter the specify destination IP address packet from the uplink
port to another port ?
A. ACL rule
B. port mirror
C. traffic mirror
D. debugging
Huawei Confidential
Page 84
Summary
MA5616 can mirror all the traffic from one port to another port, also
support mirror specify packed from one port to another port through the
ACL rules.
Huawei Confidential
Page 85
Glossary
Huawei Confidential
Page 86
Glossary
Huawei Confidential
Page 87
Thank you
www.huawei.com