October 3, 2011EITC State1 IPv6 The Saga Continues Dave Funk EITC, October 2011.

Slides:



Advertisements
Similar presentations
Internet Applications INTERNET APPLICATIONS. Internet Applications Domain Name Service Proxy Service Mail Service Web Service.
Advertisements

CPSC Network Layer4-1 IP addresses: how to get one? Q: How does a host get IP address? r hard-coded by system admin in a file m Windows: control-panel->network->configuration-
Worst Current Practice Lutz Donnerhacke IKS GmbH.
Direct Access 2012 Chad Duffey and Tristan Kington Microsoft Premier Field Engineering WSV333.
Implementing IPv6 Module B 8: Implementing IPv6
Sergei Komarov. DNS  Mechanism for IP hostname resolution  Globally distributed database  Hierarchical structure  Comprised of three components.
DirectAccess Infrastructure Planning and Design Published: October 2009 Updated: November 2011.
IPv4 & IPv6 Coexistence & Migration Joe Zhao SW2 Great China R&D Center ZyXEL Communications, Inc.
LMF/TTR Raimo Vuopionperä 6WINIT: Ericsson (Research) Objectives (6WINIT Kick-Off, London) Raimo Vuopionperä (Ph. D.), NomadicLab (LMF/TTR)
Chapter 8 Managing Windows Server 2008 Network Services
Module 4: Configuring Network Connectivity
CSE331: Introduction to Networks and Security Lecture 8 Fall 2002.
Nassau Community College
Discussion Section Week 3 EE122: Introduction to Communication Networks Fall 2006.
588 Section 7 Neil Spring May 18, Schedule Homework 2 review DNS Active Naming.
DirectAccess is an Enterprise Solution: No support for Windows 7 Professional Requires two consecutive public IP addresses Cannot NAT to the DirectAccess.
MCTS Guide to Microsoft Windows Server 2008 Network Infrastructure Configuration Chapter 5 Introduction to DNS in Windows Server 2008.
Sender policy framework. Note: is a good reference source for SPFhttp://
Application Layer. Domain Name System Domain Name System (DNS) Problem – Want to go to but don’t know the IP addresswww.google.com Solution.
Free Powerpoint Templates Page 1 MICROSOFT OFFICE OUTLOOK 2007 PRESENTED BY: BRANDO P. DUMALI.
FIREWALL TECHNOLOGIES Tahani al jehani. Firewall benefits  A firewall functions as a choke point – all traffic in and out must pass through this single.
How to configure the Microsoft Outlook Please click on Start, then click on Programs and Click on the Microsoft Office Outlook 2007.
Installing a DHCP Server role on Windows Server 2008 R2 in a home network. This is intended as a guide to install the DHCP role on a Domain Controller.
Middleboxes & Network Appliances EE122 TAs Past and Present.
11 NETWORK PROTOCOLS AND SERVICES Chapter 10. Chapter 10: Network Protocols and Services2 NETWORK PROTOCOLS AND SERVICES  Identify how computers on TCP/IP.
Module 7: Configuring TCP/IP Addressing and Name Resolution.
Business Internet light TechChange Migration Use Cases November 2011.
Understanding IPv6 Slide: 1 Lesson 2 IPv6 Protocol for the Windows.NET Server Family.
Welcome Today Our Topics are: DNS (The Potential Problem for Complete Anonymity) Transparent DNS Proxy (The Problem & The Solution) How To.
Damian Leibaschoff Support Escalation Engineer Microsoft Becky Ochs Program Manager Microsoft.
Module 3: Configuring Basic TCP/IPv4 Settings. Overview of the TCP/IP Protocol Suite Overview of TCP/IP Addressing Name Resolution Dynamic IP Addressing.
Click Tools, then Account Settings. Click New… Click Microsoft Exchange, POP3,IMAP, or HTTP, then Next.
Internal NetworkExternal Network. Hub Internal NetworkExternal Network WS.
Hands On Networking NAT and Load Balancing Ram P Rustagi, ISE Dept Jnana Sagar, CSE Dept June 30, 2012.
資 管 Lee Lesson 13 IPv6 and Name Resolution. 資 管 Lee Lesson Objectives IPv6 name-to-address and address-to-name resolution IPv6 name resolution support.
NSLOOKUP CNIT 102 Substitute lecture Sam Bowne.
Network Layer4-1 DHCP: Dynamic Host Configuration Protocol Goal: allow host to dynamically obtain its IP address from network server when it joins network.
BY OLIVIA WILSON AND BRITTANY MCDONALD Up Your Shields with Shields Up!
70-291: MCSE Guide to Managing a Microsoft Windows Server 2003 Network Chapter 6: Name Resolution.
70-291: MCSE Guide to Managing a Microsoft Windows Server 2003 Network, Enhanced Chapter 6: Name Resolution.
KT's IPv6 status and trial service Future Technology Lab Dongjin Kwak, Jaehwa Lee Meeting 2008 at NZ.
Chapter 8: Configuring Networking. Exploring the Network and Sharing Center 2.
Internet Ethernet Token Ring Video High Speed Router Host A: Client browser: REQUEST:http//mango.ee.nogradesu.edu/c461.
Deploying a Web Application Presented By: Muhammad Naveed Date:
Construction of Native IPv6 LAN for Enterprise Network Takahiro KUBO KDDI R&D Laboratories Inc.
CSS432: Applications 1 CSS432 Domain Name System Textbook Instructor: Joe McCarthy (based on Prof. Fukuda’s slides)
IPv6, the Protocol of the Future, Today Mathew Harris.
How computer’s are linked together.
5.1 © 2004 Pearson Education, Inc. Exam Designing a Microsoft ® Windows ® Server 2003 Active Directory and Network Infrastructure Lesson 5: Planning.
Day 14 Introduction to Networking. Unix Networking Unix is very frequently used as a server. –Server is a machine which “serves” some function Web Server.
APTLD Meeting APNIC’s Experience with IPv6 24 February 2009, Manila Arth Paulite – APNIC.
Terri Lahey Control System Cyber-Security Workshop October 14, SLAC Controls Security Overview Introduction SLAC has multiple.
Company Confidential 1 ICMPv6 Echo Replies for Teredo Clients draft-denis-icmpv6-generation-for-teredo-00 behave, IETF#75 Stockholm Teemu Savolainen.
* Agenda  What is the DNS ?  Poisoning the cache  Short term solution  Long term solution.
1 Microsoft Windows 2000 Network Infrastructure Administration Chapter 6 Resolving Network Host Names.
Security fundamentals Topic 10 Securing the network perimeter.
Name Resolution. How Names Are Mapped to IP Addresses Name Resolution Service Myself.com Where is the myself.com? Myself.com
6to4
: MobileIP. : r Goal: Allow machines to roam around and maintain IP connectivity r Problem: IP addresses => location m This is important for efficient.
Johan Delimon 26/04/2016 BE-COM E-COMMUNICATIONS EVENT THE INNER WORKINGS OF SKYPE FOR BUSINESS: NETWORKING.
Kittiphan Techakittiroj (25/06/59 19:10 น. 25/06/59 19:10 น. 25/06/59 19:10 น.) Network Address Translation Kittiphan Techakittiroj
Chapter 5c.  Upon completion of this chapter, you should be able to:  Configure IP addresses  Identify & select valid IP addresses for networks  Configure.
Understand Names Resolution
Chapter 7. Identifying Assets and Activities to Be Protected
Implementing Network Access Protection
Computer Network.
Computer Network.
Net 412 (Practical Part) Networks and Communication Department LAB 1.
DHCP and NAT.
Read this to find out how the internet works!
Presentation transcript:

October 3, 2011EITC State1 IPv6 The Saga Continues Dave Funk EITC, October 2011

October 3, 2011EITC State2 World IPv6 Day, June 8, 2011 Lessons learned

October 3, 2011EITC State3 According to: “The Register” World IPv6 Day fails to kill the Internet Publicity stunt over, now the work begins

October 3, 2011EITC State4 In for a Penny, in for a Pound Pick the services to offer then do the full kit For each interface doing v6, provide full-circle DNS

October 3, 2011EITC State5 Need things such as AAAA records in SPF/DKIM mail IN A ; IN AAAA 2620:0:e50:7016::80ff:1219 IN TXT "v=spf1 +a +ip6:2620:0:e50:7016::80ff:1219 -all" IN MX 10 mail-gw.icaen.uiowa.edu.

October 3, 2011EITC State6 Every place you have an IPv4 address, need corresponding IPv6 address Sendmail conf files Sendmail access file Samaba config files etc

October 3, 2011EITC State7 IPv6 firewall is hard to do correctly even Microsoft makes mistakes FE80::/9 isn't same as FE80::/64

October 3, 2011EITC State8 When making configs & firewalls beware of unexpected packet flows EG: global-scope -> local-scope connection: Source addr: [2620:0:e50:7016::80ff:1219] -> [fe80::2]

October 3, 2011EITC State9 Don’t SLAC servers SLAC is OK for clients but servers should have fixed dependable addresses. (even with DDNS). clients may cache server addresses and when they change will cause problems. (Altiris server issue)

October 3, 2011EITC State10 IPv6 what services? Clients infrastructure (DNS, router, etc) Any server that remote clients directly connect to Incoming mail MX (?, whole debate here)