[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

<PPVPN> <draft-wang-cevpn-group-00.txt>





A New Internet-Draft is available from the on-line Internet-Drafts
directories.


	Title		: VPN Group Support for CE-based IPsec VPN
	Author(s)	: C. Wang
	Filename	: draft-wang-cevpn-group-00.txt
	Pages		: 
	Date		: 16-Nov-01

A URL for this Internet-Draft is:
http://www.ietf.org/internet-drafts/draft-wang-cevpn-group-00.txt



Summary:
	
IPsec tunneling provides a site-to-site connection when building a 
CE-based IPsec VPN. In a large scale VPN deployment, especially when 
a service provider manages a large number VPNs, there is a need to 
manage IPsec tunnels on a group basis, instead of on a tunnel basis.  
This document describes the definition of a VPN group, its 
attributes, and usage of VPN group when managing IPsec tunnels. By 
grouping IPsec tunnels and sites into an IPsec VPN group, service 
providers can design, provision, and manage the IPsec-based CE VPN 
at both group level and tunnel/site level. This gives service 
providers more flexibility and provides more aggregation capability 
to reduce operation complexity.


    
Where does it fit in the Picture of the Sub-IP Work 
    
   This work fits squarely in the PPVPN box. 
    
    
Why is it Targeted at this WG 
    
   This draft describes definition of a VPN group, its attributes, and 
   usage of VPN group when managing IPsec tunnels for CE-based IPsec-
   based VPNs.  
    
   Under the current PPVPN WG charter, Provider Provisioned CE-based 
   VPNs fits the scope of the WG, as stated from the following charter 
   extract: 
   "This working group is responsible for defining and specifying a 
   limited number of sets of solutions for supporting provider-
   provisioned virtual private networks (PPVPNs). The work effort will 
   include the development of a framework document, a service 
   requirements document and several individual technical approach 
   documents that group technologies together to specify specific VPN 
   service offerings. The framework will define the common components 
   and pieces that are needed to build and deploy a PPVPN. Deployment 
   scenarios will include provider-managed VPN components located on 
   customer premises." 
 
    
    
Justification 
 
   This draft is justified since it introduces the concept and usage of 
   VPN group, which aims to enhance the provisioning and management of 
   CE-based VPNs identified as a specific type of PPVPNs both in the WG 
   charter and the general framework I-D. CE-based VPN has its own 
   characteristics and operation requirements, among which ease of 
   management and provisioning is one. 
 
 




ATT14719

<ftp://internet-drafts/>
Transfer-mode: ftp.ietf.org