Service · Networking Engineering

IP Networking Engineering Services

Deep protocol engineering expertise across BGP, OSPF, IS-IS, MPLS, and Segment Routing - from greenfield network design and multi-vendor integration to IPv6 migration, route optimisation, and production-grade troubleshooting at scale.

IP Networking Stack - PalC Coverage
IP Core / WANBGP · MPLS · Segment Routing · SR-MPLS
Data CentreBGP EVPN · VXLAN · eBGP Fabric · ECMP
Edge / MetroOSPF · IS-IS · RSVP-TE · BFD · LDP
IPv6Dual-stack · SRv6
VisibilitygNMI · NetFlow · SNMP · BMP
SecurityRPKI · BGPsec · CoPP
15+Protocols
MultiVendor
ProdValidated
BGPMPLSSREVPNIPv6
15+IP Protocols
MultiVendor Support
BGPProduction Scale

Our Capabilities

What we bring to your IP networking project

PalC has production engineering experience across major IP routing protocols, network designs, and multi-vendor environments - from initial architecture through live network troubleshooting.

BGP Engineering

BGP - Internet & Data Centre

Full-stack BGP expertise from iBGP route reflector design and eBGP peering to BGP EVPN for data centre fabrics and BGP policy engineering for ISP and enterprise WAN.

  • iBGP route reflector hierarchy design
  • eBGP peering and policy engineering
  • BGP EVPN for L2/L3 overlay fabrics
  • BGP communities, route maps, and AS-path manipulation
  • BGP PIC (Prefix-Independent Convergence)

MPLS & Segment Routing

MPLS & SR-MPLS / SRv6

End-to-end MPLS and Segment Routing design - from LDP and RSVP-TE label distribution to SR-MPLS traffic engineering, SRv6 network programming, and fast reroute deployments.

  • LDP and RSVP-TE implementation
  • SR-MPLS - IS-IS / OSPF with SR extensions
  • SRv6 network programming and SRH
  • Traffic engineering and Flex-Algorithm
  • Fast reroute - TI-LFA and MRT

IGP Design

OSPF & IS-IS

Production-grade OSPF and IS-IS designs for enterprise, carrier, and data centre environments - area hierarchy, convergence tuning, summarisation, and multi-instance deployments.

  • OSPF multi-area design and summarisation
  • IS-IS for carrier and data centre backbones
  • Convergence tuning - BFD, timers, SPF optimisation
  • IS-IS / OSPF multi-topology and SR extensions
  • IGP migration and cutover planning

IPv6 & Dual Stack

IPv6 Migration & SRv6

Structured IPv6 transition engineering - dual-stack deployment, 6PE/6VPE for MPLS networks, IPv6-only migrations, and SRv6 as the native IPv6 transport for modern SP networks.

  • IPv4/IPv6 dual-stack network design
  • 6PE and 6VPE over MPLS
  • IPv6-only with NAT64 / 464XLAT
  • SRv6 with TI-LFA fast reroute
  • IPv6 address planning and policy

Routing Security

BGP Security & Route Validation

Hardening routing infrastructure against hijacks, leaks, and misconfiguration - RPKI ROV deployment, BGPsec evaluation, IRR filtering, and control-plane protection policies.

  • RPKI Route Origin Validation (ROV) deployment
  • IRR-based prefix filtering (RIPE, ARIN, APNIC)
  • Bogon filtering and RTBH for DDoS response
  • CoPP - control-plane protection policies
  • BGP TTL-security and MD5 authentication

Multi-Vendor & Interop

Multi-Vendor Network Engineering

Real-world multi-vendor interoperability engineering - SONiC, Cisco IOS-XR, Juniper Junos, Nokia SR OS, and Arista EOS running BGP, MPLS, and EVPN together in production-grade configurations.

  • SONiC BGP / EVPN interoperability
  • Cisco IOS-XR / XE protocol integration
  • Juniper Junos interop and configuration
  • Nokia SR OS MPLS and BGP engineering
  • Arista EOS data centre networking

Proven Engineering

Proven expertise across both control plane and data plane

PalC engineers work at the protocol level - debugging route divergence, tuning convergence behavior, and implementing features from scratch in open-source stacks.

BGP EVPN - Data Centre Fabric

EVPN-VXLAN on SONiC - production fabric

Symmetric IRB with ARP suppression and ECMP across leaf-spine topology - multi-vendor interop validated.

# sonic BGP EVPN with symmetric IRB
neighbor SPINE peer-group neighbor fabric remote-as external
l2vpn evpn address-family advertise-all-vni advertise-svi-ip
VTEP auto-discovery via BGP VNI 10010 rd auto route-target import auto
OverlayVXLAN / SRv6Control PlaneMP-BGP EVPNECMP64-wayARP SuppressionEnabled

Segment Routing - Traffic Engineering

SR-MPLS with TI-LFA fast reroute

IS-IS SR extensions with Topology-Independent LFA - sub-50ms convergence validated on real carrier topologies.

# is-is SR configuration + IS-IS TE metrics
segment-routing mpls traffic-eng prefix-sid index 1
interface GigabitEthernet0/0/0 point-to-point hello-interval 1
hello-multiplier 3 bfd fast-detect 6 Sub-50ms convergence via TI-LFA
Convergence<50ms TI-LFAProtocolIS-IS SR / OSPF SRFRR TypeTI-LFA / MRTBFD3x3ms detection

SRv6 - IPv6 Native Transport

SRv6 with Micro-SID and TI-LFA

SRv6 network programming with uSID compression - replacing MPLS for SP networks migrating to native IPv6 transport.

# sr6v6 config
sid locator EDGE prefix 2001:db8:100::/48
policy color:100 end.DX6 sidlist [2001:db8:100::A5]
End.DT4, End.DT6, End.B6.Encaps, TI-LFA via SRv6
TransportNative IPv6uSIDMicro-SIDServicesL3VPN-EVPNFRRTI-LFA

BGP Security - RPKI ROV

RPKI Route Origin Validation deployment

Full RPKI deployment - ROA creation, validator infrastructure, and BGP policy enforcement to drop or de-prefer invalid prefixes.

# router bgp
rpki server tcp 103.20.60.1 port 3323
prefix-validate disable
route-map RPKI-POLICY permit 20 match rpki invalid
ValidatorRoutinator / OctoRPKIROAsARIN / RIPE / APNICCoverageInvalid -> DropIRR Filterbgpq4 / RIPE DB

Architecture

The IP networking engineering stack

IP networking spans every layer - from hardware forwarding and protocol stacks through control-plane design and operational tooling. PalC covers the full depth.

IP Networking Layers - PalC Engineering Coverage
ServicesL3VPN · EVPN · Internet Exchange · Cloud On-Ramp
Control PlaneBGP · OSPF · IS-IS · MPLS LDP · RSVP-TE
SR / SRv6Segment Routing
Network OSSONiC · IOS-XR · Junos · SR OS · EOS · FRR
SecurityRPKI · CoPP · BGPsec
Forwarding PlaneASIC · P4 · XDP / eBPF · DPDK
IPv6 / IPsecDual-stack · NAT64
Observability & ManagementgNMI · SNMP · NetFlow · BMP · YANG · NETCONF

Routing Protocols

  • Interior GatewayOSPF v2/v3 · IS-IS
  • Exterior GatewayBGP-4 · MP-BGP
  • OverlayEVPN · VXLAN · SRv6
  • MPLS SignalingLDP · RSVP-TE · SR-MPLS
  • Fast RerouteTI-LFA BFD

Supported Platforms

  • Open NOSSONiC · FRR
  • CiscoIOS-XR · IOS-XE · NX-OS
  • JuniperJunos · cRPD
  • NokiaSR OS · SR Linux
  • AristaEOS eOS

Observability Stack

  • Streaming TelemetrygNMI / gRPC
  • Flow CollectionNetFlow · IPFIX · sFlow
  • BGP MonitoringBMP · Grafana · pmacct
  • Config MgmtYANG · NETCONF · RESTCONF
  • NOCGrafana Prometheus

Engagement Methodology

How PalC approaches IP networking engagements

A structured approach - from initial network audit through design, validation, deployment, and handoff to operations.

Phase 1

Network Audit

Existing topology, routing policy, traffic matrix, and device inventory fully assessed.

Phase 2

Design & Modeling

Protocol selection, topology design, IP addressing plan, and routing policy architecture documented.

Phase 3

Lab Validation

Full topology emulation - convergence, failover, and scale testing before any production change.

Phase 4

Staged Deployment

Incremental production rollout with controlled traffic migration and immediate rollback capability.

Phase 5

Ops Handoff

Telemetry integration, runbook delivery, team knowledge transfer, and steady-state support.

Protocol CoverageBGP-4 / MP-BGPOSPF v2 / v3IS-ISSR-MPLSSRv6EVPN-VXLANRPKIBFDIPv6 / Dual-stack

Network Operations

IP networks that are observable and operable - from day one

A well-designed IP network that is not properly instrumented is difficult to operate at scale. PalC builds observability and operational tooling in parallel with the network itself.

  • BGP Monitoring Protocol (BMP) - Real-time BGP RIB visibility via BMP.
  • gNMI Streaming Telemetry - Interface counters, protocol states, adjacency health, and FIB utilization.
  • NetFlow / IPFIX Traffic Analytics - Flow-level visibility across routers for top talkers and anomaly detection.
  • Runbook & Fault Isolation Playbooks - Structured procedures for BGP session drops, OSPF LSA storms, and MPLS LDP failures.
NOC Dashboard & AlertingGrafana · PagerDuty · ServiceNow
Telemetry AggregationPrometheus · InfluxDB · OpenTelemetry
Collection LayergNMI · BMP · NetFlow · SNMP
IP Network LayerCore · DC Fabric · Edge · WAN
Real-timeBGP StatesPer-prefix RIB

Use Cases

Where PalC delivers IP networking expertise

Data Centre BGP Fabric

eBGP unnumbered leaf-spine fabrics with EVPN-VXLAN overlay - designed on SONiC and validated across multi-vendor hardware including Edgecore, Celestica, and Arista.

SP Core & Metro Networks

IS-IS / OSPF IGP design with SR-MPLS and TI-LFA for carrier backbone networks - sub-50ms failover, traffic engineering, and operational telemetry for carrier NOC teams.

Internet Peering & BGP Policy

BGP peering design for IXPs and transit providers - route policy engineering, community-based traffic shaping, RPKI deployment, and IRR prefix filtering.

IPv6 Migration & Dual-Stack

Structured IPv4-to-IPv6 migration for enterprise and carrier networks - dual-stack deployment, 6PE/6VPE over MPLS, SRv6 transport, and NAT64 for IPv6-only environments.

Protocol Development & Testing

Custom routing protocol feature development in FRR, SONiC, and open-source stacks - new YANG model authoring, automated protocol conformance testing, and regression suites.

Routing Security Hardening

End-to-end routing security - RPKI ROV deployment, IRR-based filtering, BGP TTL security, CoPP policies, and route leak prevention across multi-vendor production networks.

ODM PARTNERS

TRUSTED BY LEADING TECHNOLOGY PARTNERS

Bring IP networking expertise to your project

Whether designing a new BGP fabric, migrating to Segment Routing, or hardening routing security, PalC engineers can accelerate your delivery.

Get in touch

Discuss your infrastructure goals with our experts.

Contact Team