IPv6 Are we there yet?. Problem The Internet keeps growing Running out of IPv4 addresses Running out of time!

Slides:



Advertisements
Similar presentations
IPv6 Deployment CANTO Nate Davis, Chief Operating Officer 13 August 2014.
Advertisements

IPv6 at NCAR 8/28/2002. Overview What is IPv6? What’s wrong with IPv4? Features of IPv6 IPv6 will soon be available at NCAR How to use IPv6.
IPv6: Paving the way for next generation networks Tuesday, 16 July 2013 Nate Davis Chief Operating Officer, ARIN.
Transitioning to IPv6 April 15,2005 Presented By: Richard Moore PBS Enterprise Technology.
IPv4 to IPv6 Migration strategies. What is IPv4  Second revision in development of internet protocol  First version to be widely implied.  Connection.
1 May, 2007: American Registry for Internet Numbers (ARIN) “advises the Internet community that migration to IPv6 numbering resources is necessary for.
IPv6: Application perspective Zaid Ali Chairman/President SFBAY ISOC
1 Muhammed Rudman
IPv4 Depletion IPv6 Adoption 3 February /8s Remaining.
IPv6 The Big Move: Transition and Coexistent Frenil V. Dand.
Implementing IPv6 Module B 8: Implementing IPv6
© 2007 Cisco Systems, Inc. All rights reserved.ICND2 v1.0—7-1 Address Space Management Transitioning to IPv6.
© 2008 Cisco Systems, Inc. All rights reserved.Cisco ConfidentialPresentation_ID 1 Introduction to IPv4 Introduction to Networks.
IPv4 Run Out and Transitioning to IPv6 Marco Hogewoning Trainer, RIPE NCC.
1 Introduction "Internet Protocol version 6" Presenter Veena Merz Manager Cisco Networking Area Academy.
Addressing the Network IPv4
Enabling IPv6 in Corporate Intranet Networks
17/10/031 Summary Peer to peer applications and IPv6 Microsoft Three-Degrees IPv6 transition mechanisms used by Three- Degrees: 6to4 Teredo.
CIM 2465 IP Addressing Scheme1 IP Addressing Scheme (Topic 4) Textbook: Networking Basics, CCNA 1 Companion Guide, Cisco Press Cisco Networking Academy.
IP Version 6 Next generation IP Prof. P Venkataram ECE Dept. IISc.
IPv4 Addresses. Internet Protocol: Which version? There are currently two versions of the Internet Protocol in use for the Internet IPv4 (IP Version 4)
Understanding Internet Protocol
An Engineering Approach to Computer Networking
IPv4 Depletion and IPv6 Adoption Today Community Use Slide Deck Courtesy of ARIN May 2014.
Wi-Fi Structures.
1 IPv6 Address Management Rajiv Kumar. 2 Lecture Overview Introduction to IP Address Management Rationale for IPv6 IPv6 Addressing IPv6 Policies & Procedures.
Introduction to IPv6 © J. Liebeherr, 2012, All rights reserved.
بسم الله الرحمن الرحیم. Why ip V6 ip V4 Addressing Ip v4 :: 32-bits :: :: written in dotted decimal :: :: ::
1 26-Aug-15 S Ward Abingdon and Witney College CCNA Exploration Semester 1 Addressing the network IPv4 CCNA Exploration Semester 1 Chapter 6.
Day15 IP Space/Setup. IP Suite of protocols –TCP –UDP –ICMP –GRE… Gives us many benefits –Routing of packets over internet –Fragmentation/Reassembly of.
Windows Internet Connection Sharing Dave Eitelbach Program Manager Networking And Communications Microsoft Corporation.
Introduction to IPv6 NSS Wing,BSNL Mobile Services, Ernakulam 1.
© 2008 Cisco Systems, Inc. All rights reserved.Cisco ConfidentialPresentation_ID 1 IPv6 Introduction to Networks & Routing and Switching Essentials.
KT's IPv6 status and trial service Future Technology Lab Dongjin Kwak, Jaehwa Lee Meeting 2008 at NZ.
Module 3: Designing IP Addressing. Module Overview Designing an IPv4 Addressing Scheme Designing DHCP Implementation Designing DHCP Configuration Options.
IPv6 – What You Need To Know Tom Hollingsworth CCNP,CCVP,CCSP, MCSE.
Sharing a single IPv4 address among many broadband customers
CIT 384: Network AdministrationSlide #1 CIT 384: Network Administration IPv6.
© 2009 Pearson Education Inc., Upper Saddle River, NJ. All rights reserved. © The McGraw-Hill Companies, Inc. IP version 6 Asst. Prof. Chaiporn Jaikaeo,
APNIC Update The state of IP address distribution and IPv6 deployment status Miwa Fujii Senior IPv6 Program Specialist APNIC.
IPv6 for ISP Industry Sify Technologies Ltd Somasundaram Padmanabhan Network Engineering IPv6 Awareness Workshop.
© 2006 Cisco Systems, Inc. All rights reserved.Cisco Public 1 Version 4.0 4: Addressing in an Enterprise Network Introducing Routing and Switching in the.
IPv6. Content  History  IPv4 Downfall  IPv6 Features  IPv6 Addresses  Changes from IPv4  IPv6 Headers/Frames/Packets  Autoconfiguration  Commands.
Ch 6: IPv6 Deployment Last modified Topics 6.3 Transition Mechanisms 6.4 Dual Stack IPv4/IPv6 Environments 6.5 Tunneling.
1 NCM _05_2001_c1 © 2001, Cisco Systems, Inc. All rights reserved. How would you prepare for the technology you need.
Lesson 2 Introduction to IPv6.
IPv6 Autoconfiguration Plug & Play Dream or Security Nightmare.
Deploying IPv6, Now Christian Huitema Architect Windows Networking & Communications Microsoft Corporation.
Cisco Confidential © 2013 Cisco and/or its affiliates. All rights reserved. 1 Cisco Networking Training (CCENT/CCT/CCNA R&S) Rick Rowe Ron Giannetti.
17/10/031 Euronetlab – Implementation of Teredo
PacINET 2011 The state of IP address distribution and its impact Elly Tawhai Senior Internet Resource Analyst/Liaison Officer, Pacific, APNIC 1.
6to4
+ Lecture#4 IPV6 Addressing Asma AlOsaimi. + Topics IPv4 Issues IPv6 Address Representation IPv6 Types.
© 2006 Cisco Systems, Inc. All rights reserved.Cisco Public 1 Addressing the network IPv4 CCNA Exploration Semester 1 – Chapter 6.
IPv6 Security Issues Georgios Koutepas, NTUA IPv6 Technology and Advanced Services Oct.19, 2004.
NT1210 Introduction to Networking
Network Layer IP Address.
IPv6 Status, Management, & Configuration Issues Winter 2013 ESCC meeting January 18, 2013.
IPv6 Adoption Status and Scheduling for Sustainable Development 24 July 2012 Nate Davis Chief Operating Officer, ARIN.
Understand IPv6 Part 2 LESSON 3.3_B Networking Fundamentals.
IPv4 shortage and CERN 15 January 2013
4.3 Network Layer Logical Addressing
Instructor Materials Chapter 7: IP Addressing
Internet ProtoCOL Version 6 I/II
Ipv6 addressing Chapter 5d.
IPv6 Autoconfiguration Plug & Play Dream or Security Nightmare
Introducing To Networking
Planning the Addressing Structure
An Engineering Approach to Computer Networking
Internet Protocol version 6 (IPv6)
Presentation transcript:

IPv6 Are we there yet?

Problem The Internet keeps growing Running out of IPv4 addresses Running out of time!

Problem

Original Design Network of networks Packet-based network Unique addresses End-to-end connectivity Layered design

Quick fixes Address Resource Management CIDR NAT Rethinking IP, start in 1992

Extending IPv4 lifetime NAT – CPE NAT – Carrier-grade CIDR

Internet Resources Addresses (IPv4/IPv6) + ASN Hierarchical manner (top-down) Goals of the Internet Registry System – Uniqueness – Aggregation – Conservation – Registration

IPv4 depletion How many IPv4 addresses? 2 32 = ~4,3 billion IPv4 addresses

What is left? IANA allocates /8 to RIRs 256 /8s is the entire IPv4 Internet Beginning of 2010, IANA had 26 /8s left In February 2011, IANA allocated the last /8 Even RIR’s are running out… –APNIC handed out last /8 in April 2012 –Microsoft – Nortel  trade of IPv4 blocks –Asking legacy holders to become LIR or sponsorship. –Ripe is exhausting rapidly

What is left?

What is left?

IPv6 Islands… Addresses (IPv4/IPv6) + ASN Hierarchical manner (top-down) Goals of the Internet Registry System – Uniqueness – Aggregation – Conservation – Registration

IPv6 to the rescue It is clear that we need a better solution IPv6 to solve address exhaustion Extra features built in IPv6 exists for 16 years Time to act now!

IPv6 to the rescue

Improved features Better support for mobility Security, IPSec Auto-configuration Routing (simpler header, flexible extensions, aggregation) IPv6 Multicast, more addresses

More… …IP addresses !!!!! 128 bits instead of 32 bits addresses, 3.4×10 38 addresses 340 sextiljoen (undecillion) addresses Let’s just say … a lot of addresses Restore end-to end connectivity  Internet as it was meant to be!

IPv6 subnetting

IPv6 addresses 2001:6a8:3c80:8000:222:19ff:fe14:a617/ :06a8:3c80:0000:0000:0000:0000: :6a8:3c80:: Network IDHost ID

IPv6 interoperability / /24 0/0 2001:6a8:2400:8003::/64 ::1 ::2 2001:6a8:24c0::/48 ::/0

Differences Different types and scope of addresses No broadcast, thus no ARP Relies heavily on multicasting Auto-configuration instead of DHCP? Common to have multiple addresses on an interface. What IP will be used to source traffic?

Belnet 2001:6a8::/32 Native, dual-stack since Jan 2003 Multiple IPv6 peerings – Geant – Transit – BNIX – Other IXes Various services already available on IPv6 FTP, DNS, Jabber, NTP, WWW, SMTP, Antispam Pro…

 Text IPv6 assignments

24 Belnet: active use of IPv6 (live traffic) % of the Belnet customer base IPv6: current status

Why you should run IPv6 Belnet: active use of IPv6 (live traffic) /09/2015

IPv6 elsewhere Equipment vendors (routers, firewall, …) Software (OS, applications, …) Networks – Content: google, facebook (IPv6 day 8/06/2011) – IXes – ISPs: Comcast (US), XS4all (NL) – CDNs: Akamai (end of 2010)

Why you should run IPv6 Experimental users Power users Global audience  Get your content available over IPv6

Interesting Sites 9/09/

Enabling IPv6 on your network

Your action plan Equipment inventory Raise awareness Get your assignment Prepare your address plan Get IPv6 on your DMZ Get IPv6 on your LAN

Equipment inventory Routers and firewalls Does it support IPv6? At full performance? Server & Desktop OS Should be no-brainer for recent OSes Application software Does it depend on hard coded IPv4 addresses/ranges? If built on Apache or IIS no other problems expected... Other networked gear Printers? Switches? RA guard, PACL; RA snooping…

Raise awareness Your ICT colleagues/Management Awareness of network changes No surprises End users Migration should be transparent to them Only warn when deployed on LAN and/or Wi-Fi Via Intranets?

Prepare your address plan (1) 2001:6a8:3c80:8004:ca2a:14ff:fe15:9cb6 Belnet /32 Customer /48 Host address assignable /64 ranges L V A A azerty

Prepare your address plan (2) Map your IPv4 address plan into your IPv6 prefix /24 -> 2001:6a8:1234:5060::/64 Easy, but not always a good idea Large networks need a decent IPv6 address plan Use location / VLAN id / type of service :6a8:1234: ::/64 e.g. 2001:6a8:1234:0165::/64 (site 0, vlan 165) 16 bits to play with

Get IPv6 on your DMZ (1) Requirement: firewall support! Use a separate zone if you want to test in advance Use firewall policies similar to IPv4 policies ICMP! Enable IPv6 on your public servers OS + Applications Publish AAAA records in your DNS for IPv6- enabled services

Get IPv6 on your DMZ (2) Sample interface config for JunOS devices: ge-0/0/0 { unit 0 { family inet { address /24; } family inet6 { address 2001:6a8:3d00:8000::1/64; }

Get IPv6 on your DMZ (3) Sample default route for JunOS devices: routing-options { rib { inet6.0 { static { route 0::/0 next-hop 2001:6a8:3d00:8001::2; }

Get IPv6 on your DMZ (4) Sample config for Cisco IOS devices: Router(config)# interface ethernet 0/0 Router(config-if)# ipv6 address 2001:6a8:3d00:8000::1/64 or: Router(config-if)# ipv6 address 2001:6a8:3d00:8000::/64 eui-64 static default route: Router(config)# ipv6 unicast-routing Router(config)# ipv6 route 0::/0 2001:6a8:3d00:8000::2

Get IPv6 on your servers (1) Web servers IIS and Apache: no problem Application-specific, legacy, unknown,… Use reverse-proxy HTTPS: One domain per IP DNS servers Windows 2008’s DNS, BIND: no problem Windows 2003: support very limited But IPv6 DNS server not mandatory to serve AAAA records

Get IPv6 on your servers (2) Mail servers Very few MTA supported Even less antispam software IPv6 blacklisting still experimental Our advise : do not port MTA now Get Belnet Antispam Pro (Fully IPv6 compliant) !

Get IPv6 on your LAN(s) Use a separate zone if you want to test in advance One LAN at a time admin, students, guests, eduroam,... Use firewall policies similar to IPv4 policies Do not forget inbound connections as there is no more NAT! Filtering inbound ports <1024 is good practice Filter everything incoming if you want a perfect match between policies Warn your power users about network changes You want to know if something is no longer working…

Get IPv6 on your LAN (cont'd) Distribution of IPv6 addresses Router advertisement Widely supported Limited autoconfiguration options (only DNS server, if at all) Perfect for dual stack: DHCPv4 + RAdvd DHCPv6 Not widely supported yet (only recent MS products) Can coexist with router advertisement (DNS servers etc) Our advice : go DHCPv4 + RA

Transitioning technologies Tunneling technologies Tunnel broker Belnet hosts a SiXXs.net PoP server Native addresses Specific software on routers/stations 6to4 Built-in in Windows, OSX, Apple Airport & other home routers Teredo Built-in in Windows, Miredo Teredo port for Unix/Linux

Transitioning technologies Native connectivity Dual stack IPv6 and IPv4 on same wire/lan/frames Advantages Easier to put on desktops, routers Control/inspect your traffic Stability, ISP support Our advice : go dual stack

Transitioning technologies (cont'd) NAT64 & DNS64

Briefly Follow the steps Inventory Awareness Network plan DMZ + LAN Go Dual stack On the WAN On the LAN Belnet is a partner Ask us questions !

Thank You

NAT64 + DNS64

NAT64 + DNS64