Specifications

10-24
Cisco IGX 8400 Series Provisioning Guide, Release 9.3.3 and Later Releases
OL-1166-04
Chapter 10 Cisco IGX 8400 Series IP Service
IP Service—Functional Overview
Figure 10-10 VPN Network
The VPN network must be able to recognize traffic by application type, such as voice, mission-critical
applications, or e-mail. The network should easily separate traffic based on its associated VPN without
configuring complex, point-to-point meshes.
The network must be VPN aware so that the service provider can easily group users and services into
intranets or extranets with the services they need. In such networks, VPNs offer service providers a
technology that is highly scalable and allows subscribers to quickly and securely provision extranets to
new partners. MPLS brings VPN awareness to switched or routed networks. It enables service
providers to quickly and cost-effectively deploy secure VPNs of all sizes over the same infrastructure.
VPN Quality of Service
As part of their VPN services, service providers can offer premium services defined by SLAs to expedite
traffic from certain customers or applications. QoS in IP networks gives devices the intelligence to
preferentially handle traffic as dictated by network policy.
The QoS mechanisms give network managers the ability to control the mix of bandwidth, delay, jitter,
and packet loss in the network. QoS is not a device feature; it is an end-to-end system architecture. A
robust QoS solution includes a variety of technologies that interoperate to deliver scalable,
media-independent services throughout the network, with system-wide performance monitoring
capabilities.
Note VPNs can be used with the CoS feature for MPLS. MPLS-VPN does not require use of MPLS CoS.
MPLS-VPNs with CoS are supported on the URM-LSC but are not supported on the URM-LSR.
Partner B
IPSec client
software
Cisco service
management
Secure MPLS intranet VPN1
Secure MPLS intranet VPN2
VPN2
site C
VPN1
site B
25094
Partner B Partner C
Secure extranet Public Internet
VPN1
site C
VPN1
site A
VPN2
site B
VPN2
site A