9 July 2015 - New Customer Reference Posted: Swiss Cisco Gold Partner ITRIS Enterprise AG Showcase LISP VPN Expertise...
"New Customer Reference Posted: Swiss Cisco Gold Partner ITRIS Enterprise AG Showcase LISP VPN Expertise"... Posted here!"...
The use of LISP VPNs can significantly simplify and accelerate modern WAN deployments and migrations, as leading Swiss Cisco Gold Partner ITRIS Enterprise AG recently showcased. ITRIS Enterprise's experience and innovation, and open way of thinking associated with innovation through IT technology has made them successful with their customers in building networks that adapt to the rapidly changing needs and that provide the utmost from their network infrastructures. When developing their next-generation VPN solutions to meet modern requirements, they focused on technologies which could:
- * Allow for any transport type (Internet, MPLS, broadband, mixed, etc.) to improve bandwidth options at favorable cost points, as well as improve resiliency in failure scenarios
- * Allow for virtualization within the enterprise and transport domains to provide segmentation for security and quality of service options
- * Allow for multi-address family operations (IPv4 and IPv6) to provide seamless IPv6 transition strategies
- * Reducing the effort required to maintain the network in order to reduce operational costs was also a primary goal
The pairing of GETVPN with LISP is a natural choice to maintain WAN security, either over the MPLS network or over the Internet anytime. To read about the experiences of ITRIS Enterprise AG and GETVPN and LISP, click [HERE].
19 May 2015 - New Whitepaper Posted: LISP validated design for data center migrations...
"New Whitepaper Posted: LISP validated design for data center migrations"... Posted here!"...
LISP can significantly simplify and accelerate data center migrations. Customers who have adopted the solution presented on this whitepaper were able to execute a DC migration with a much lower risk and much faster. In fact some of them expect to reduce the migration window by up to 95%. The solution described on the whitepaper makes use of LISP running on Cisco’s ASR 1000 routers. The benefits delivered include:
- * Ability to de-couple the server migration activities (planning, affinity group migration, schedules, cut-overs etc.) from network constraints.
- * IP address mobility: IP address, subnet mask, default gateway and hostname of migrated servers do not need to change.
- * Small migration waves: solution enables even single server migration (if required), or the migration of a small group of servers.
- * Lower hardware cost than alternative solution, just four devices required for a two DC migration.
For full details of the solution, including detailed configuration and deployment considerations, please refer to the whitepaper. To download the whitepaper, click [HERE].
05 May 2015 - Cisco LISP VPN provisioning with APIC-EM...
"New Video posted - Cisco LISP VPN provisioning with APIC-EM..."
Our Cisco colleague Markus Harbeck, a Consulting Systems Engineer in Europe, recently prepared a very nice [VIDEO] showing a LISP VPN deployment using the APIC-EM controller. This work with APIC-EM and coding of the LISP VPN deployment was prepared by the LISP Team and introduced at Cisco Live Milan 2015. The Cisco Application Policy Infrastructure Controller Enterprise Module (APIC EM) extends Application Centric Infrastructure (ACI) to the WAN and access edge. ACI is a holistic architecture for centralized automation of policy-based application profiles. The team will be on-hand and showing this demonstration, as well as one based on Tail-f NCS, at Cisco Live San Diego 2015. To learn more about Cisco APIC-EM click [HERE]. To learn more about Cisco APIC-EM click [HERE]
29 September 2014 - New Cisco LISP+OTV Data Center Design Guide posted...
"New Design Guide posted - "Cisco LISP+OTV Data Center Design Example (IOS and NX-OS)"... Posted here!"...
A new document has been posted that illustrates a configuration example of an active active data center based on OTV and LISP multi-hop mobility. It uses Nexus 7000 in data center aggregation as OTV Edge device and LISP First Hop Router and ASR1000 in data center edge as LISP Tunnel Router. This design allows the insertion of stateful devices in the topology and achieves shortest-path symmetric routing for East-West and North-South traffic patterns. To read this document, click[HERE].
18 August 2014 - Third Edition of IPv6 Essentials includes LISP...
"Third Edition of IPv6 Essentials includes LISP"... Excerpt posted here!
A "Third Edition" of "IPv6 Essentials" (by Silvia Hagen, published by O'Reilly") has just released. This version nicely includes a short summary covering LISP as a "Transition Technology" - and the author and publisher have been kind enough to let us post that "excerpt" here. To read this excerpt, click [HERE].
28 June 2014 - New Whitepaper posted - "Deploying a Secure Hybrid Cloud Extension with Cisco CSR 1000V and LISP"...
"Deploying a Secure Hybrid Cloud Extension with Cisco CSR 1000V and LISP"... New white paper posted!
A new whitepaper has just been posted that provides the steps and configuration to deploy a hybrid cloud solution using LISP on CSR. The solution provides IP mobility between the Enterprise and the Cloud, meaning provides the ability to have the same subnet stretched between the enterprise DC and the Cloud (thanks to LISP host mobility) and the ability to move a VM to the cloud without changing its IP configuration (IP/Mask/GW). To read this whitepaper, click [HERE].
05 June 2014 - Cisco Live US 2014 LISP Sessions posted...
Cisco Live US 2014 LISP Sessions posted!
Cisco Live is Cisco’s premier education and training destination for IT professionals worldwide. For Cisco Live US 2014, the LISP Team devlivered a number of highly-attended Techtorials, Breakout Sessions, and Lab Sessions. Links to these and other related resources are [HERE].
07 May 2014 - NxOS 6.2.8 release is now live on cisco.com!...
NxOS 6.2.8 release is now live on cisco.com!
NxOS version 6.2.8 introduces LISP Multi-Hop ESM Mobility, enabling seamless VM mobility in the Data Center with interoperability with stateful devices. With ESM Multi-Hop mobility, the VM presence detection is decoupled from the encapsulation function and can be implemented on any Nexus 7000 or 7700 layer-3 capable line card. Both [Release Notes] and [Configuration Guides] are available for this important feature.
19 April 2014 - Cisco Live US is coming up quickly...
Cisco Live US is coming up quickly - it's early this year! (18-22 May)

The LISP Team is preparing new material for our sessions. The notable LISP sessions are listed [HERE]. If you're planning to attend Cisco Live, be sure to stop by and see us! We really like diving into customer networks and creating solutions and developing new ideas. Be sure to schedule an "MTE" if you can, or hit us up on site. (As usual, there will be time for "after session" work in the great city of San Francisco!) See you in San Francisco!
27 November 2013 - NEW IOS and IOS-XE ENGINEERING BUILDS...
Introducing IOS 15.3(3)XB12 / IOS-XE 15.3(3)S1xb (3.10.01xb.S) with exciting NEW LISP Features!
Adding functionality and improving operational simplicity continue to be our goal with each LISP release. This latest IOS/IOS-XE release includes several new features and enhancements that continue to support this goal. In this release, we have included:
1. LISP Disjointed RLOC Support
When the LISP Disjointed RLOC feature is deployed, LISP sites connected to different RLOC spaces for which
no direct reachability exists are able to communicate with each other. The LISP Disjointed RLOC feature automates
the handling of both LISP control plane and data plane aspects to achieve this communication. Several examples of
disjointed RLOC spaces include: IPv4 and IPv6 Internet, two (or more) MPLS VPN networks, and the Internet and
MPLS VPNs.
2. LISP Local EID Database Route Import Support
When the LISP Local EID Database Route Import feature is deployed, local EID database entires are created,
with locators, priorities, and weights, by direct redistribution from the RIB. The LISP Local EID Database Route
Import feature supports the import of static, connected, BGP, and IGP routes from the RIB. Prior to this feature,
LISP EID prefixes could only be added through static configuration. This feature is useful, for example, on LISP
ETRs to automate the provisioning of LISP EID space.
3. LISP Local Map-Cache Route Import Enhancements
When the LISP Local Map-Cache Route Import feature is deployed, local map-cache entires with the action
'send-map-request' are created by direct redistribution from the RIB. The LISP Local Map-Cache Route Import
feature supports the import of static, connected, BGP, and IGP routes from the RIB. Prior to this enhancement,
only import static and BGP RIB entries could be imported as map-cache (send-map-request) entries. This feature
is useful, for example, on LISP PITRs where it would be used in conjunction with the LISP Map-Server Route
Installation From Site Registration feature.
4. LISP Map-Server Route Installation From Site Registration Support
When a LISP site registers to a Map-Server, the Map-Server can automatically inject the registered EID prefix(es)
into the local RIB. Once in the RIB, these EID prefixes can be redistributed into other routing protocols for
desired use. It is possible to manipulate the administrative distance of the routes inserted by LISP. This feature
is useful, for example, when used in conjunction with the LISP Local Map-Cache Route Import feature for automating
the import of LISP EID prefixes into the LISP map-cache on a LISP PITR.
5. LISP Integrated MS/PITR Map Cache Population From Site Registration Support
When a LISP site registers to a device that is operating concurrently as a LISP Map-Server and as a LISP Proxy
Ingress Tunnel Router (PITR), the Map-Server can automatically create local map-cache entires with the action
'send-map-request' on the PITR. This simplifies the configuration and operational management of the PITR.
To download these NEW LISP images, click on the software links below.
Cisco IOS Release 15.3(3)XB12 Engineering Build
To download Cisco IOS Release 15.3(3)XB12, click
[HERE] New! (Posted 27 November 2013)
Cisco IOS-XE Release 15.3(3)S1xb (3.10.01xb.S) Engineering Build
To download Cisco IOS-XE Release 15.3(3)S1xb (3.10.01xb.S), click
[HERE] New! (Posted 27 November 2013)
25 July 2013 - Introducing LISP Extended Subnet Mode (ESM) Multi-Hop Host Mobility Support...
Introducing LISP Extended Subnet Mode (ESM) Multi-Hop Host Mobility Support
LISP has long included support for host mobility (ESM and ASM). Additional architectural flexibility was requested so that the "first hop router" (i.e. where the host lands when it moves, and the "site gateway router" (i.e. the connection to the core network) can be separated (with other Layer 3 hops in between). However, when LISP ESM Multi-Hop Host mobility is deployed, an IP host (virtual or physical) can to migrate (move) between data centers (or LISP sites) when the subnet or VLAN to which the host migrates is not directly connected to the site LISP xTR.
To download the "brief" LISP ESM Multi-hop Host Mobility Configuration Guide, click:[HERE]
To download LISP images, click on the software links below.
Cisco IOS Release 15.2(4)XB11 Engineering Build NOW AVAILABLE
To download Cisco IOS Release 15.2(4)XB11, click
[HERE] (Posted 19 April 2013)
Cisco IOS-XE Release XE3.9.0xa.S Engineering Build NOW AVAILABLE
To download Cisco IOS-XE Release XE3.9.0xa.S, click
[HERE] (Posted 19 April 2013)
Cisco NX-OS Release 5.2(4.lisp-r8-44) NOW AVAILABLE
To view Cisco NX-OS Release 5.2(4.lisp-r8-44) Bug Fixes and Changes, click
[HERE] (Posted 19 April 2013)
To download Cisco NX-OS Release 5.2(4.lisp-r8-44), click
[HERE] (Posted 19 April 2013)
22 May 2013 - >NEW Catalyst 6500 and ASR9K IOS-XR LISP RELEASES...
Introducing LISP for Catalyst 6500 and ASR9000!
Catalyst 6500 support is for xTR, PxTR, and MS/MR, and for shared and parallel model virtualization. Locator space is restricted to IPv4 only (no encapsulation into IPv6 outer headers). This is a "first release" and we recommend using this release for testing and PoC demonstrations. Production-capable releases will follow (as well as additional LISP feature support.) Also note any hardware requirements for Supervisor and Line Cards for supporting LISP.
To download Cisco IOS Release 15.1(1)SY1 for Cat6K, click
[HERE]
ASR 9000 support is for xTR and PxTR only, and for shared and parallel model virtualization. Locator space is restricted to IPv4 only (no encapsulation into IPv6 outer headers). This is a "first release" and we recommend using this release for testing and PoC demonstrations. Production-capable releases will follow (as well as additional LISP feature support.) Also note any hardware requirements for Supervisor and Line Cards for supporting LISP.
To download Cisco IOS-XR Release XR 4.3.1 for ASR9000, click
[HERE]
30 November 2012 - NEW GETVPN+LISP Configuration Guide...
GETVPN+LISP
The inherent properties of LISP that support multi-homing, virtualization, and host/VM mobility for both IPv4 and IPv6 address families make it an ideal architecture for creating highly efficient, AF-agnostic, Virtual Private Networks (VPNs). Existing IOS encryption support provided by the IPsec and GETVPN features can be used directly with LISP to build encrypted VPNs. The following documents provide detailed configuration guidance for the application of GETVPN to LISP EIDs. Both a config guide and a Lab Guide (useful for hands-on learning and experimentation) are provided below.
To download the GETVPN+LISP Configuration Guide, click:[HERE]
To download the GETVPN+LISP Lab Guide, click:[HERE]
09 November 2012 - NEW IOS, IOS-XE, and NX-OS ENGINEERING BUILDS...
NEW IOS, IOS-XE, and NX-OS ENGINEERING BUILDS ARE NOW AVAILABLE
Cisco IOS Release 15.2(4)XB10 Engineering Build (Posted 09 November 2012)
This release includes:
1. LISP Extended Subnet Mode (ESM) Mobility Support (first time!!). Enables an IP host
(virtual or physical) to migrate (move) between data centers where the subnet or VLAN is
extended between these data centers using OTV or other L2 extension mechanisms
2. SHA2 support. Allows Map-Register and Map-Notify messages to and from a map-server and ETR to use the
SHA-256-128 HMAC algorithm.
To download Cisco IOS Release 15.2(4)XB10, click
[HERE]
Cisco IOS-XE Release XE3.7xb Engineering Build (aka 15.2(4)Sxb) (Posted 09 November 2012)
This release includes:
1. LISP Extended Subnet Mode (ESM) Mobility Support (first time!!). Enables an IP host
(virtual or physical) to migrate (move) between data centers where the subnet or VLAN is
extended between these data centers using OTV or other L2 extension mechanisms
2. SHA2 support. Allows Map-Register and Map-Notify messages to and from a map-server and ETR to use the
SHA-256-128 HMAC algorithm.
To download Cisco IOS-XE Release XE3.7xa, click
[HERE]
Cisco NX-OS Release 5.2(4.lisp-r8-38) (Posted 07 November 2012)
This new release includes the following features:
1. SHA2 support. Allows Map-Register and Map-Notify messages to and from a map-server and ETR to use the
SHA-256-128 HMAC algorithm.
2. LISP-Multicast. Allows source multicast sites and receiver multicast sites to send and receive multicast packets
over a unicast RLOC core.
3. Multi-hop support for VM-mobility. Provides redistribution into IGP of auto-discovered dyn-EIDs, and for xTRs
to redistribute moved-away state into the IGP.
4. Map-Server and ETR Merge support. Permits a LISP site with multipe ETRs to send a Map-Register message
with its own loctors, and then be informed via a Map-Notify message of the locators for the same EID-prefixes
for all ETRs at this same LISP Site.
5. LISP-ELP support. allows (typically) an MS or ETR (or a third-party) to register an ELP which tells an ITR
what the explicit path that an EID takes. The specified intermediate nodes are LISP re-encapsulating tunnel
routers (RTRs), where each RTR is responsible for decapsulating, and then re-encapsulating the packet to the
next hop in along the path.
To download Cisco NX-OS Release 5.2(4.lisp-r8-38), click
[HERE]
16 April 2012 - NEW IOS and NX-OS Virtualization/VPN Configurtion Guides...
LISP Virtualization Guides
Cisco IOS and NX-OS Virtualization/VPN Configurtion Guides(Posted 16 April 2012)
These new configuration guides provide example LISP Shared Model and Parallel Model architectures and configurations.
To download these new configuration guides, click
[HERE]