This paper aims at the design and implementation of BGP/ MPLS VPN in Tbit Router, while Multicast supporting Algorithms is researched. The main parts of this paper includes:1. General principles of BGP/MPLS VPN and LDP are Introduced.2. Two important concepts, RD(Router Distinguisher) and RT(Route Target) in BGP/MPLS VPN are discussed. BGP4 protocol and LDP protocol is analyzed in detail.3. The requirements of BGP/MPLS VPN model implementation in Trea-bit router is analyzed.4. The logical module structure of BGP/MPLS VPN, which consists of the control plane and the data plane, is analyzed.5. A policy of BGP/MPLS VPN security enhancement is proposed. The security issues and vulnerabilities of BGP/MPLS VPN facing potential core-attacks are analyzed. Based on the analyses of principles that Provider Router enter BGP/MPLS VPN cloud , a security policy which encrypts/decrypts the Hello Messages is put forward.6. Multicast scheme suppoting QoS in IP environment is applied in BGP/MPLS VPN environment. EECT( Enhanced Edge Clustered Tree ) algorithm, which can reduces the path-cost of multicast distribute tree, is put forward.7. A BGP/ MPLS VPN multicast tree fault recovery Algorithm is also put forward. |