Security Level:
SmartAX MA5600T Product Description ISSUE 1.0 www.huawei.com
HUAWEI TECHNOLOGIES Co., Ltd.
Huawei Confidential
Contents 1.
GPON Product Architecture Overview
2.
Service Features Overview
3.
Network Application
Copyright © 2010 Huawei Technologies Co., Ltd. All rights reserved.
Page2
GPON Solutions Internet
BTV/VoD
Softswitch
Game
IP/MPLS Core Network
iManager N2000
MA5600T
Enterprise Residential
SOHO/SME Phone
HSI
IPTV
IP Centrex
Game Phone
Video phone
HSI
Copyright © 2006 Huawei Technologies Co., Ltd. All rights reserved.
Page3
HSI
VPN
Video Conference
Huawei GPON Solution OLT
• OLT
Curb
• Middle Level DSLAM for GPON uplink
Building
Home
• xDSL+PO TS MDU
• LAN+PO TS MDU
• Low Capacity OLT • Outdoor Cabinet
•Home Gateway
• Home Gateway +POTS • Outdoor Home Gateway
All the GPON series products can be management by iManager N2000 unified NMS
Copyright © 2006 Huawei Technologies Co., Ltd. All rights reserved.
Page4
OLT Products All levels of OLT adopt for different application.
MA5606T 2 service slots Flexible utility for OLT or MDU MA5603T 6 service slots Compatible with MA5600T service cards MA5600T 16 service slots,4096 ont capacity GE/10GE uplink
Flexible Network Application
Copyright © 2006 Huawei Technologies Co., Ltd. All rights reserved.
Page5
GPON OLT Overview
The MA5600T is a gigabit-capable passive optical network (GPON) access product of Huawei.
The MA5600T provides rich network applications
Fiber to the home (FTTH)
Fiber to the building (FTTB)
IP private line interconnection
Time division multiplexing (TDM) private line interconnection
Copyright © 2006 Huawei Technologies Co., Ltd. All rights reserved.
Page6
MA5600T Configuration Description P R T G P R T G
G P B C
G P B C
G P B C
G P B C
G P B C
G P B C
G P B C
G P B C
S C U L
S C U L
G P B C
G P B C
G P B C
T O P A
E T H A
T O P A
T O P A
G I C T F O P A X 2 C A
Service Ports GPON 2.5Gbit/s downstream 1.25Gbit/s upstream Complies with the ITU-T G.984.2 Indexes of the optical port comply
with Class B+ 1:64 split ratio 20Km transmission reach
Network Ports SCUL: Super control unit GPBC: 4-port GPON service processing unit TOPA: 16E1 uplink board GICF: 2GE optical port uplink unit GICG: 2GE electrical port uplink unit X1CA: 10GE optical port uplink unit X2CA: 2*10GE optical port uplink unit ETHA: 8*GE Ethernet service unit PRTG: power input unit
HUAWEI TECHNOLOGIES CO., LTD.
Huawei Confidential
10GE/2*10GE GE optical/electrical port
Maintenance Port FE RS-232 RS-485
System Capacity Supports 64 GPON ports Supports 4096 GPON users
Page 7
MA5600T System Architecture 4*GE /4*10GE uplink 10GE
GPBC
10GE
•Fully line rate forwarding of GE port •10 GE bus between the GPON board and SCU
GPBC
SCU
GPBC GPBC
Gigabit Ethernet Switching Fabric
GPBC Self-design GMAC 10GE
Serdes
Serdes
… GPON
GPON
Optical Module
Optical Module
GPBC Line Card Full-GE non-blocking switching matrix: 400Gbps Non-blocking dual star bus backplane: 1Tbps 10GE bus bandwidth for each service slot, perfectly guaranteed IPTV service L2/L3 packet forwarding rate: 595Mpps
HUAWEI TECHNOLOGIES CO., LTD.
Huawei Confidential
Page 8
GPON ONU HG850 Overview
Network Interfaces
System Configuration
ITU-T G.984.1, G.984.2, G.984.3, G.984.4 MGCP, SIP, MoIP, FoIP (T.38 Fax Relay)
QoS
PON Interface 2 POTS ports (RJ-11) 4 10/100Base-T ports(RJ-45) Supports OMCI
Protocols
GPON interface: 2.5Gbps/1.25Gbps 3 or 2 wavelength on a single fiber
8 T-CONT queues Local Traffic Mgt. (Physical Ports/L2 based Flow Classification, Queue Mgt., Scheduling) Tagging/Marking, 802.1q/802.1p based Multicasting video supported
Power Supply
100V to 240V AC input, 12V DC output , 2A
HUAWEI TECHNOLOGIES CO., LTD.
Huawei Confidential
Page 9
GPON SBU OT925 Overview
Network Interfaces GPON interface: 2.5Gbps/1.25Gbps 3 or 2 wavelength on a single fiber System Configuration PON Interface 4 E1 ports 4 10/100Base-T ports (RJ-45) 1 1000/100 Base-T port(RJ-45) 1 RF CATV port (75 ohm F coaxial) (optional) Supports OMCI Protocols ITU-T G.984.1, G.984.2, G.984.3, G.984.4 QoS 8 T-CONT queues Local Traffic Mgt. (Physical Ports/L2 based Flow Classification, Queue Mgt., Scheduling) Tagging/Marking, 802.1q/802.1p based Multicasting video supported Power Supply 100V to 240V AC input
HUAWEI TECHNOLOGIES CO., LTD.
Huawei Confidential
Page 10
MDU——MA5620G/MA5626G
Network Interfaces
GPON interface: 2.5Gbps/1.25Gbps
3 or 2 wavelength on a single fiber
System Configuration
PON Interface
24 10/100Base-T ports (RJ-45)
24 POTS ports)
Power: 100V to 240V AC input
Protocols
ITU-T G.984.1, G.984.2, G.984.3, G.984.4
H.248, SIP, MoIP, FoIP (T.38 Fax Relay)
Appearance of the MA5620G
QoS
8 T-CONT queues
Local Traffic Mgt. (Physical Ports/L2 based Flow Classification, Queue Mgt., Scheduling)
Tagging/Marking, 802.1q/802.1p based
Multicasting video supported
Copyright © 2006 Huawei Technologies Co., Ltd. All rights reserved.
Appearance of the MA5626G
Page11
MDU——MA5606T
Network Interfaces
GPON interface: 2.5Gbps/1.25Gbps
3 or 2 wavelength on a single fiber
System Configuration
PON Interface
ADSL2+/VDSL2/SHDSL
FE ports
Temperature:-40℃
Power: 100V to 240V AC input; -
~ 65℃
38.4 V to -57.6 V DC input
QoS
8 T-CONT queues
Local Traffic Mgt. (Physical Ports/L2 based Flow Classification, Queue Mgt., Scheduling)
Tagging/Marking, 802.1q/802.1p based
Multicasting video supported
Copyright © 2006 Huawei Technologies Co., Ltd. All rights reserved.
Page12
Contents 1.
GPON Product Architecture Overview
2.
Service Features Overview
3.
Network Application
Copyright © 2006 Huawei Technologies Co., Ltd. All rights reserved.
Page13
Contents 1.
GPON Product Architecture Overview
2.
Service Features Overview
3.
1.
Service Features
2.
VLAN Features
3.
QoS and Security Introduction
Network Application
Copyright © 2006 Huawei Technologies Co., Ltd. All rights reserved.
Page14
Features of MA5600T Triple Play
Supports Triple-play service
VoIP services with the highest priority
IPTV service compatible with IGMP V2/V3
High bandwidth data service
Multiple Gemports for Multiple services
Security:
User identifier: PPPOE+, DHCP Option 82
Service identifier: DHCP Relay, DHCP Option 60
Strict multicast control
Guaranteed QoS : based on 802.1p traffic classification, supports modifying DSCP/TOS priority
HUAWEI TECHNOLOGIES CO., LTD.
Huawei Confidential
Page 15
GPON Service Mapping Process PC
Internet Data Flow
GET IP by PPPOE
MA5600T
ONT
BRAS
T-CONT1
IPTV
VoD Server
VLAN1 Video Flow T-CONT2
Data Video Voice VLAN2
Middle ware
IP Network
GET IP by DHCP
VLAN3
Softswitch
T-CONT3
SIP Phone
DHCP Server
Voice Flow GET IP by DHCP
VoIP
Services correspond to GEM ports and GEM ports correspond to T-CONTs. Services go upstream through T-CONTs. OLT is able to sense services, facilitating flexible VLAN switching. Services go upstream to the IP network through different VLANs.
HUAWEI TECHNOLOGIES CO., LTD.
Huawei Confidential
Page 16
Features of MA5600T——Multicast
Powerful IPTV service capacity
8 multicast groups are supported for each user
1024 IGMP groups
IGMP V2/V3
800 IGMP packets are processed per second
Channel pre-view, fast-leave
Management:
Management on programs and users based on Multicast VLAN
256 multicast VLAN supported; each multicast VLAN can work in proxy or snooping mode
Each multicast VLAN support difference program creation modes: static and dynamic.
Strict multicast control
Controllable multicast to control users to access to multicast groups
HUAWEI TECHNOLOGIES CO., LTD.
Huawei Confidential
Page 17
Multicast Service from Multi-RSPs RSP X Multicast client of different RSP initiate IGMP session through different M-VLAN
IGMP session packet over different M-VLANs and unicast GEM ports
GEM Port RSP X
VLAN X
RSP Y
VLAN Y
RSP Z
VLAN Z
Bridging
VLAN X
IGMP Proxy IGMP Proxy
RSP Y
VLAN Y
IGMP Snooping
IGMP Proxy ONT
RSP Z
multicast GEM port Independent IGMP Proxy process for different MVLAN (as RSPs).
MA5600T
Multicast Architecture is fully compliant to TR101.
HUAWEI TECHNOLOGIES CO., LTD.
Huawei Confidential
Page 18
VLAN Z
Powerful Multicast Functions OSS
Multicast protocol: IGMP snooping +
Ch1 Ch2 Ch3 Ch4
NMS
IGMP proxy
IP Core
2-level multicast duplication
Multicast Server
Each program sends one copy to
Ch1 Ch2 Ch3 Ch4
service units. GPBC boards completes program
duplication on different ports.
MA5600T
Level 1
Ch1 Ch2 Ch3
ONT filters multicast packets
based on user authority
Multicast stream
Level 2
SCUL Ch3 Ch4 GPBC
GPBC
Ch1 Ch2
Ch3
Ch2 Ch3
Ch3 Ch4
IGMP report Ch1 Ch2 Ch3 Ch4
IP group: 1~4
HUAWEI TECHNOLOGIES CO., LTD.
Huawei Confidential
Page 19
Ch4
Features of MA5600T——VoIP
Flexible VoIP Network Application
MGCP/H.248/SIP compatible for FTTH/FTTB/FTTC
Voice and Video compatible for FTTH/FTTB/FTTC
Management:
Unified management for iManager N2000
Zero Touch VoIP service provisioning for FTTH/FTTB/FTTC
QoS
High Priority and strict service classify
QoS guarantee and strict DBA processing for voice
HUAWEI TECHNOLOGIES CO., LTD.
Huawei Confidential
Page 20
Features of MA5600T——VoIP Soft-switch
IP Core NE40E MA5600T Splitter
HG850 MGCP/SIP
Phone
MA5620G H.248/SIP
Video Phone
Video Phone
Phone
Copyright © 2006 Huawei Technologies Co., Ltd. All rights reserved.
MA5606T H.248/SIP
Phone
Page21
Features of MA5600T——TDM
Native TDM
By using the standard 8 kHz (125μm) frames, the GPON GTC layer is synchronous in nature.
In Native TDM, TDM frames are directly encapsulated to GPON GEM frames in TDMoGEM mode.
This mode features simple encapsulation, small network cost, and guaranteed link quality.
In a GPON network deployment, the traditional TDM service can be delivered over the PSTN network through the Native TDM mode.
Management:
Unified management for iManager N2000
Zero Touch TDM service provisioning
HUAWEI TECHNOLOGIES CO., LTD.
Huawei Confidential
Page 22
Features of MA5600T——TDM
Copyright © 2006 Huawei Technologies Co., Ltd. All rights reserved.
Page23
Contents 1.
GPON Product Architecture Overview
2.
Service Features Overview
3.
1.
Service Features
2.
VLAN Features
3.
QoS and Security Introduction
Network Application
Copyright © 2010 Huawei Technologies Co., Ltd. All rights reserved.
Page24
Features of MA5600T—VLAN Service
VLAN 1
Virtual Local Area Network (VLAN) is a division of a local area network logically rather than physical arrangement of cables A VLAN makes it possible to divide a physical LAN into different broadcast domains logically. IEEE 802.1Q specifies the VLAN implementation scheme
VLAN 1
VLAN 2 VLAN 3
VLAN 2
Copyright © 2006 Huawei Technologies Co., Ltd. All rights reserved.
Page25
VLAN 3
VLAN Types on the MA5600T
The MA5600T provides three types of VLAN:
Types
Description
Standard Only contains standard port in the same Smart
Application Only contain Ethernet ports for
VLAN
subtending
contains multiple upstream ports and multiple
reducing the number of VLANs
service ports. Theservice ports are isolated from occupied each other in terms of traffic.
that contains one or more upstream ports, used when users are
MUX
but contains only one service port. Any
distinguished according to VLANs.
two MUX VLANs are isolated.
Copyright © 2006 Huawei Technologies Co., Ltd. All rights reserved.
Page26
Standard VLANs
A standard VLAN is the VLAN defined by the IEEE 802.1Q standard which has the following features:
The ports in one VLAN are interconnected at layer 2
The ports in different VLANs are isolated at layer 2
Eth port
Standard VLAN
Eth port
On the MA5600T the standard VLAN can contain only standard ports (FE or GE ports of the upstream card), but not the service ports
Copyright © 2006 Huawei Technologies Co., Ltd. All rights reserved.
Page27
Smart VLANs
A Smart VLAN can contain standard ports and service ports
The Smart VLAN is used to partition user groups
Each user group is associated with one Smart VLAN.
When the number of VLANs on a MA5600T is limited, you can use the Smart VLAN to give access to more users than a MUX VLAN.
service port
VLAN 3
X2CA
GPBC
service port
3 Upstream
3 port
service port
3 Tagged packets
Copyright © 2006 Huawei Technologies Co., Ltd. All rights reserved.
Page28
MUX VLANs
A MUX VLAN is a VLAN that can contain multiple standard ports but only one service port
There is a one to one mapping relationship between the VLAN ID and the access user
The MUX VLAN is used to isolate and identify access users
One VLAN ID corresponds with one access connection
Service port VLAN 3
VLAN 5
X2CA
Service port
GPBC
Service port
3 Upstream
5 port
7
VLAN 7
Tagged packets Copyright © 2006 Huawei Technologies Co., Ltd. All rights reserved.
Page29
Features of MA5600T—VLAN Service IP ISP1 SP VLAN1 C VLAN2 VLAN3VLAN2
MA5600T
VLAN3VLAN2
VLAN3VLAN1
SP VLAN1 C VLAN1
MA5600T
ISP2
IP
SP VLAN2C VLAN2
SP VLAN2C VLAN1
MA5600T
VLAN2 VLAN2 VLAN1
Branch office Salesman1 Accountant1
Headquarter Enterprise1
Accountant2 Salesman2
QinQ VLAN - L2 VPN channel
Stacking VLAN-Wholesale Service
Inner VLAN tags identify private network VLANs Outer VLAN tags identify public network VLANs OLT completes adding an outer public network
VLAN; Public network VLAN tag completes forwarding packets on the public network. QinQ service can set up a simple L2 VLAN channel between intranets to complete data switching.
HUAWEI TECHNOLOGIES CO., LTD.
Enterprise2
Huawei Confidential
Inner VLAN tags identify users Outer VLAN tags identify ISPs OLT adds two layers of VLAN tags and then
users can connects to the specified ISP network directly. MA5600T forwards data from enterprise1 to ISP1 network and data from enterprise2 to ISP2 network.
Page 30
Contents 1.
GPON Product Architecture Overview
2.
Service Features Overview
3.
1.
Service Features
2.
VLAN Features
3.
QoS and Security Introduction
Network Application
Copyright © 2010 Huawei Technologies Co., Ltd. All rights reserved.
Page31
QoS Procedure in GPON OLT/ONT Ingress to ONT
GEM
Classifier
Shaper/CAR
Queue
Scheduler
(SP/WRR)
ONT ONU T-CONT
Port
PON Egress from ONT
Scheduler
Queue
(SP/WRR)
802.1P
Classifier
GEM Port
Splitter
Ingress to OLT Classifier
CAR
Queue
Scheduler
802.1P
OLT
GEM Port
PON Egress from OLT
Scheduler
Queue
(SP/WRR)
802.1P
HUAWEI TECHNOLOGIES CO., LTD.
Shaper/CAR
Classifier
GEM Port
Huawei Confidential
Page 32
GPON Flow Control Processing Car
Virtual UNI
IAD
C
C
VLAN 2
A
A
TOS/DSCP
GEM Port
flow
R PON#0
ONU
VLAN
Queues Scheduling(SP+WRR)
VoIP VPN VLAN 101
BRAS VoIP
VLAN 102
Video Video VPN
Car Queues
VLAN 103
Internet
scheduling
PHY PORT
TOS/DSCP
802.1P
IAD
OFA5920
VLAN 1
STB VLAN 3 R
PC
1TCONT 3VLAN
Combinatio
GEM PORT
n
802.1P
C
Internet
VLAN
3TCONT
Combination GEM Port
A STB
R
VoIP traffic flow Video traffic flow Internet traffic flow
PON#N ONU
PC
HUAWEI TECHNOLOGIES CO., LTD.
Huawei Confidential
Page 33
DBA
What is DBA?
DBA, Dynamic Bandwidth Assignment DBA is a scheme facilitating dynamic bandwidth assignment within the interval of ns and us.
Why DBA?
It enhances the uplink bandwidth utilization of PON ports.
More users can be added on a PON port.
Users can enjoy higher-bandwidth services, especially those requiring comparatively greater change in terms of the bandwidth.
Copyright © 2006 Huawei Technologies Co., Ltd. All rights reserved.
Page34
High Availability Solution 1+1 main control board hot backup Main Frame PR TG
DC Power redundancy (1+1)
PR TG
X2CA
G P O N
G P O N
S C U L
S C U L
ETH
• 1+1 uplink redundancy • 1:1 load sharing • Link protection with MSTP Ring • L3 routing with OSPF and RIP 2
ETH
X2CA ETH ETH
Link switchover is independent of main control board ‘s redundancy
Link aggregation (comply with 802.3ad) for load sharing (1:1 future) MSTP for link protection Main control unit backup (1+1) DC power redundancy (1+1)
HUAWEI TECHNOLOGIES CO., LTD.
Huawei Confidential
Page 35
Trusted Security Design Service Security User Security: • PITP/DHCP option82 • IP Address/MAC Address Binding • Anti-MAC Spoofing • Anti-IP Spoofing • 802.1x Access Authentication
Billing System PORTAL
App Server
IN
• Per VLAN per Service to isolate different services • ACL control to filter undesired traffics • IGMP Snooping & Proxy • Controllable multicast
IP core network Access Security Boundary OLT
OLT System Security
GPON Security
• ONT authorization by SN+Key • AES-128 encryption for downstream data
HUAWEI TECHNOLOGIES CO., LTD.
ONT
Huawei Confidential
ONT
• Anti-DOS attack • Anti ICMP/ARP attack • Source Route Filtering • MAC Address Filtering • Firewall Black List
Page 36
Trusted Security Design Service Security User Security: • PITP/DHCP option82 • IP Address/MAC Address Binding • Anti-MAC Spoofing • Anti-IP Spoofing • 802.1x Access Authentication
Billing System PORTAL
App Server
IN
• Per VLAN per Service to isolate different services • ACL control to filter undesired traffics • IGMP Snooping & Proxy • Controllable multicast
IP core network Access Security Boundary OLT
OLT System Security
GPON Security
• ONT authorization by SN+Key • AES-128 encryption for downstream data
HUAWEI TECHNOLOGIES CO., LTD.
ONT
Huawei Confidential
ONT
• Anti-DOS attack • Anti ICMP/ARP attack • Source Route Filtering • MAC Address Filtering • Firewall Black List
Page 37
MA5600T L2/L3 Feature Powerful L2 feature
L2 line rate forwarding
4K 802.1Q VLANs
Smart-VLAN, QinQ and VLAN Stacking
Supports up to 16K MAC address items
Port based MAC address restriction and binding
GE port trunk function
MSTP protocol
PPPoE
We hear you.
Powerful L3 feature
HUAWEI TECHNOLOGIES CO., LTD.
L3 line rate forwarding
DHCP Relay, option 60/82
Static routing, RIP, OSPF protocols
10K routing items
64K IP address items
IP address binding
Huawei Confidential
Page 38
BMS Network Management Manages all devices in a unified manner
3rd NMS/OSS
Provides unified management interface,
easing monitoring, configuration and maintenance of the whole network for users.
SNMP/TL1/CORBA/,,,
iManager N2000 BMS
Provides integrated service management Supports inband and outband
Remote Client
management
Out-band Management
In-band Management SNMP
IP CORE DCN L2/L3
O
CI M MA5600T
MA5600T
….
HUAWEI TECHNOLOGIES CO., LTD.
Huawei Confidential
Page 39
Contents 1.
GPON Product Architecture Overview
2.
Service Features Overview
3.
Network Application
Copyright © 2010 Huawei Technologies Co., Ltd. All rights reserved.
Page40
Huawei FTTx Full-Service Solution Centre Office
FTTH
ODN
...
...
FTTH OLT
...
FTTC
FTTB
Copyright © 2006 Huawei Technologies Co., Ltd. All rights reserved.
Page41
FE POTS RF
FE POTS RF FE POTS RF xDSL
FE GE E1
FTTH Network Application Internet Soft-switch
IPTV Server
NMS
IP Core NE40E
MA5600T
STB
TV
HG850
PC
STB
Phone
Copyright © 2008 Huawei Technologies Co., Ltd. All rights reserved.
TV
HG850
PC
Page42
Phone
FTTB Network Application Internet Soft-switch
IPTV Server
NMS
IP Core NE40E MA5600T Splitter
MA5626G
MA5620G
STB
PC
PC
PC
PC
PC
Phone
Copyright © 2006 Huawei Technologies Co., Ltd. All rights reserved.
PC
Video Phone
Page43
TV
FTTC Network Application Internet Soft-switch
IPTV Server
NMS
IP Core NE40E MA5600T Splitter
MA5606T
MA5606T
Phone ADSL2+/VDSL2/SHDSL
Copyright © 2006 Huawei Technologies Co., Ltd. All rights reserved.
PC
Page44
TV
Questions
Please describe the network application for FTTH ?
Please calculate the maximum capacity of ONT for one MA5600T set ?
Copyright © 2006 Huawei Technologies Co., Ltd. All rights reserved.
Page45
Summary
In this presentation ,we discuss about Huawei GPON FTTx series products and network solution
For FTTH, Huawei GPON solution provide powerful HSI, VoIP, IPTV service.
For FTTB, native TDM can deliver E1 service into PSTN network.
Copyright © 2006 Huawei Technologies Co., Ltd. All rights reserved.
Page46
Thank You www.huawei.com