Tuesday, November 14, 2017

Anyone using Ethernet shared access for MPLS and Internet service delivery, using sub-interfaces of your edge router?

Original request: new Internet connectivity service delivered in remote branches, for some local (to country/region) Internet resources access (think local office ISP breakout + regional content at the other end), when the rest of traffic gets routed through the Data Centers, via MPLS, for all filters and controls only DCs could provide.

Instead of installing and delivering a new Eth/Internet service, ISP suggests utilizing existing access for remote offices, in order to share the Ethernet service delivery for both MPLS and Internet, by creating sub-interfaces on CPE. How do you configure (as only preferential traffic is supposed to use the Internet, rest defaulting to MPLS cloud) and secure such things? Would ACLs suffice?



No comments:

Post a Comment