Project 172 Update Terry Gray 30 April 2003 Director, Networks & Distributed Computing UW Computing & Communications 30 April 2003
Agenda Review Status Issues Discussion
Review Concept: campus-wide private addresses Motivation: campus == UWS + UWT private addresses: 172 range from RFC1918 cross-subnet routing, to/from UW public addrs (but not to/from the Internet) Motivation: Address conservation Reduced external exposure/visibility Option to limit default connectivity Not a replacement for Logical Firewalls
Status Routing enabled in most places Split-view DNS operational DHCP private-address subnet option ready Usage to date: Approx 15 requests Nebula: plans to use for all printers Beginning Phase II: exploring partial Internet access options
Issues Global NAT option: still problematic Need feedback on alternatives: Simple Web proxy? Local NAT boxes? Other?? Current IETF debate on IPv6 “site local”
Discussion / Q&A My Panel of Experts: Marc Hudson: P172 project lead Corey Satten: LFW tool author