Skip to content

Tutorial 3: Security provider net

Eduard Grasa edited this page Oct 16, 2015 · 20 revisions

Introduction

The goal of this tutorial is to experiment with authentication and SDU protection policies. The scenario to be setup is illustrated in the figure below. This scenario has been tested with the pristine-1.3 branch, using 3 XEN Virtual Machines running in the same Host.

Tutorial 3 scenario

Configuration

Configuration files must be copied to the stack's installation path "etc" folder (e.g. if you installed it in /usr/local/irati, config files must be in /usr/local/irati/etc).

Customer border router

Copy the following files into <installation_path>/etc. The configuration assumes that this system will communicate via the Ethernet interface "eth1", configured with VLAN "300".

Provider border router 1

Copy the following files into <installation_path>/etc. The configuration assumes that this system will communicate via the Ethernet interface "eth1", configured with VLAN "300" and via the Ethernet interface "eth2", configured with VLAN 310.

Provider border router 2

Copy the following files into <installation_path>/etc. The configuration assumes that this system will communicate via the Ethernet interface "eth1", configured with VLAN "310".