Routing integrity in a world of Bandwidth on Demand Dave Wilson DW238-RIPE

Slides:



Advertisements
Similar presentations
IPv6 Near-Unique Site Local Addresses draft-francis-ipngwg-unique-site-local-00.txt.
Advertisements

Transitioning to IPv6 April 15,2005 Presented By: Richard Moore PBS Enterprise Technology.
IPv4 Run Out and Transitioning to IPv6 Marco Hogewoning Trainer, RIPE NCC.
The Case for Enterprise Ready Virtual Private Clouds Timothy Wood, Alexandre Gerber *, K.K. Ramakrishnan *, Jacobus van der Merwe *, and Prashant Shenoy.
Network Layer4-1 Chapter 4: Network Layer r 4. 1 Introduction r 4.2 Virtual circuit and datagram networks r 4.3 What’s inside a router r 4.4 IP: Internet.
Ethernet and switches selected topics 1. Agenda Scaling ethernet infrastructure VLANs 2.
Best Practices for ISPs
IPv6 Addressing – Status and Policy Report Paul Wilson Director General, APNIC.
Week 5: Internet Protocol Continue to discuss Ethernet and ARP –MTU –Ethernet and ARP packet format IP: Internet Protocol –Datagram format –IPv4 addressing.
Integrated Network Services Network Design Almerindo Graziano.
CS 268: Future Internet Architectures Ion Stoica May 1, 2006.
11- IP Network Layer4-1. Network Layer4-2 The Internet Network layer forwarding table Host, router network layer functions: Routing protocols path selection.
CS 268: Future Internet Architectures Ion Stoica May 6, 2003.
Topics 1.Security options and settings 2.Layer 2 vs. Layer 3 connection types 3.Advanced network and routing options 4.Local connections 5.Offline mode.
Campus Networking Best Practices Session 2: Layer 3 Dale Smith University of Oregon & NSRC
Bandwidth on Demand Dave Wilson DW238-RIPE
Fundamentals of Networking Discovery 2, Chapter 6 Routing.
Networking Components Chad Benedict – LTEC
Types of Addresses in IPv4 Network Range
Route Selection in Cisco Routers. Route Selection One of the intriguing aspects of Cisco routers, especially for those new to routing, is how the router.
CECS 5460 – Assignment 3 Stacey VanderHeiden Güney.
© 2006 Cisco Systems, Inc. All rights reserved.Cisco Public 1 Version 4.0 4: Addressing in an Enterprise Network Introducing Routing and Switching in the.
© 2007 Cisco Systems, Inc. All rights reserved.Cisco Public 1 Planning the Addressing Structure Working at a Small-to-Medium Business or ISP – Chapter.
Chapter 4: Managing LAN Traffic
IPv6 Home Networking Architecture - update IETF homenet WG Interim meeting Philadelphia, 6 th Oct 2011 draft-chown-homenet-arch-00.
TCOM 515 Lecture 6.
Lecture 8 Page 1 Advanced Network Security Review of Networking Basics: Internet Architecture, Routing, and Naming Advanced Network Security Peter Reiher.
6rd Sunsetting Mark Townsley, Alexandre Cassen. Operational procedures and CE requirements for incremental migration from 6rd to Native IPv6 Presumes.
6: Routing Working at a Small to Medium Business.
Tussel in Cyberspace Based on Slides by I. Stoica.
Introduction to Network Address Translation
A S I A P A C I F I C N E T W O R K I N F O R M A T I O N C E N T R E Internet Registry allocation and assignment Policies.
EMEA Partners XTM Network Training
Simple Multihoming Experiment draft-huitema-multi6-experiment-00.txt Christian Huitema, Microsoft David Kessens, Nokia.
Transport Layer 3-1 Chapter 4 Network Layer Computer Networking: A Top Down Approach 6 th edition Jim Kurose, Keith Ross Addison-Wesley March 2012  CPSC.
Network Layer4-1 Chapter 4: Network Layer r 4. 1 Introduction r 4.2 Virtual circuit and datagram networks r 4.3 What’s inside a router r 4.4 IP: Internet.
Jennifer Rexford Fall 2014 (TTh 3:00-4:20 in CS 105) COS 561: Advanced Computer Networks BGP.
© 2006 Cisco Systems, Inc. All rights reserved.Cisco Public 1 Version 4.0 4: Addressing in an Enterprise Network Introducing Routing and Switching in the.
© 2007 Cisco Systems, Inc. All rights reserved.Cisco Public 1 Addressing the Network – IPv4 Network Fundamentals – Chapter 6.
Addressing Issues David Conrad Internet Software Consortium.
Chapter 4 Objectives Upon completion you will be able to: Classful Internet Addressing Understand IPv4 addresses and classes Identify the class of an.
Network Layer4-1 Chapter 4: Network Layer r 4. 1 Introduction r 4.2 Virtual circuit and datagram networks r 4.3 What’s inside a router r 4.4 IP: Internet.
2010 paro, bhutan IP Basics IP/ISP Services Workshop July, 2010 Paro, Bhutan.
6: Routing Working at a Small to Medium Business.
Introduction & Vision. Introduction MANTICORE provides a software implementation and tools for providing and managing routers and IP networks as services.
Guidance of Using Unique Local Addresses draft-liu-v6ops-ula-usage-analysis-05 draft-liu-v6ops-ula-usage-analysis-05 Bing Liu(speaker), Sheng Jiang, Cameron.
IPv6 Routing Considerations Masaru Mukai / POWERDCOM Kuniaki Kondo / IIJ.
Analysis and recommendation for the ULA usage draft-liu-v6ops-ula-usage-analysis-00 draft-liu-v6ops-ula-usage-analysis-00 Bing Liu(speaker), Sheng Jiang.
WEEK 11 – TOPOLOGIES, TCP/IP, SHARING & SECURITY IT1001- Personal Computer Hardware System & Operations.
Erik Bais, May 5 th 2011 PP Removal of multihomed requirement for IPv6 Presenter : Erik Bais –
© 2005 Cisco Systems, Inc. All rights reserved. BGP v3.2—5-1 Customer-to-Provider Connectivity with BGP Understanding Customer-to-Provider Connectivity.
Data Communications and Computer Networks Chapter 4 CS 3830 Lecture 19 Omar Meqdadi Department of Computer Science and Software Engineering University.
1/13 draft-carpenter-nvo3-addressing-00 Brian Carpenter Sheng Jiang IETF 84 Jul/Aug 2012 Layer 3 Addressing Considerations for Network Virtualization Overlays.
ITP 457 Network Security Networking Technologies III IP, Subnets & NAT.
TCP/IP Addressing and Subnetting. IP Addressing Roadmap Format of IP Addresses Traditional Class Networks Network Masks Subnetting Supernetting Special.
Copyright (c) 2002 Japan Network Information Center Proposal for IPv6 Policy for Essential Infrastructure in the AP region Izumi Okutani IP Address Section.
1 CS716 Advanced Computer Networks By Dr. Amir Qayyum.
Introduction to Networks
Addressing the Network – IPv4
Working at a Small-to-Medium Business or ISP – Chapter 6
Exposing Link-Change Events to Applications
Discussion on DHCPv6 Routing Configuration
BGP 1. BGP Overview 2. Multihoming 3. Configuring BGP.
Planning the Addressing Structure
CS 457 – Lecture 10 Internetworking and IP
Chapter 3: Dynamic Routing
New Solutions For Scaling The Internet Address Space
Consideration on IPv6 Address Management
Planning the Addressing Structure
Working at a Small-to-Medium Business or ISP – Chapter 6
Presentation transcript:

Routing integrity in a world of Bandwidth on Demand Dave Wilson DW238-RIPE

Agenda The quick introduction The 60 second JRA3 summary The 90 second campus networking guide The problem statement The run-down of the solutions –(and their own problems)

Introduction There's no thrilling new technology here –Afrodite's in another room describing JRA3 –I'm speaking for myself, not any other project Some fairly simple IP routing –Emphasis on observed use over best practice Users might not see this coming, however

60 second guide to the JRA3 project

60 second JRA3 summary NRENs everywhere are working on providing layer 2 services These meet up with GEANT2, which provides its own JRA3 plans to tie these all together

60 second JRA3 summary So the NREN will be able to create layer 2 paths between arbitrary locations JRA3's system will process requests and arrage setup of end-to-end paths Users will have the possibility to connect to "anywhere" in Europe - on layer 2...

60 second JRA3 summary Benefits? Gets the high-demand users off the routed IP network... Tune the IP network toward less conflicting goals.... Gives the user more control...

90 second guide to campus networking

90 second campus networking Every campus is different – Security needs – Regular web/ needs – Research networking needs –"Home" user (campus accommodation) These are conflicting requirements – Ask any CERT Each IT dept reaches its own conclusions

90 second campus networking Then there's the link to "the internet" Often in the past been a single link, with routing policy specified by the NREN –e.g. static routing, BGP, OSPF, RIP,...? Depends on the requirements of the IT dept, and the service spec of the NREN

90 second campus networking Routing policy consists of –list of IP prefixes assigned –info on how those prefixes are routed Some hierarchy is assumed –RIR gives addresses to LIR, LIR to customer Network is built around that hierarchy

Hierarchy is assumed

90 second campus networking Not been the case before that users create arbitrary layer 2 connections Successful Bandwidth on Demand service would change this assumption

These two worlds meet

Conflict of interest The technology exists to connect arbitrary LANs across Europe. Great! The addressing assumes the old hierarchy Addressing isn't as flexible as GE circuits

Fragmentation -> Hierarchy We tried fragmented address allocation – Class A, Class B, Class C,... Doesn't work on a grand scale – Led to setting up of RIPE and the other RIRs You can still get fragmented space – Provider Independent vs. Provider Allocated

Fragmentation -> Hierarchy ISPs (NRENs included) become LIRs Take stewardship of a block of addr space Connectivity for those PA addresses is dependent upon the NREN "All assignments are valid as long as the original criteria on which the assignment was based are still valid" -- RIPE-368

Who is working on this? BoD people are working on the BoD service –Not just in Dante/JRA3, in NREN as well Customers may not have routing expertise –Multidomain routing is a specialist subject RIPE policies are already in place –Not clear if any change there could help That leaves the service providers...

The solutions

The tradeoffs Follows the rules Easy for user to deploy Easy for operator to support Flexible to existing networks

Solution #1 Get an AS number and PI space –Renumber the networks –Run BGP within the campus, and to the NREN

Solution #1 Get an AS number and PI space –Doesn't fit with the on-demand idea –Requires complex IP and BGP expertise –Doesn't exist for IPv6 (at the moment anyway, interesting implications from RIPE meetings) –Everyone hates renumbering  Follows rules  Easy deploy  Easy support  Flexible

Solution #2 Use RFC1918 space –Renumber the networks –Proxies/NATs for outside access

Solution #2 Use RFC1918 space –Networks might not be fully connected –Removes any hope of connecting directly to rest of the internet –Everyone hates renumbering  Follows rules  Easy deploy  Easy support  Flexible

Solution #3 Use existing numbers and hope it works –Directly connect the networks –Static more-specific route on the hosts toward the remote site

Solution #3 Use existing numbers and hope it works –May bridge campus networks, and all the security hilarity that that entails –Difficult to manage, traffic could go the "wrong" way and be blocked or cause trouble –Breaks conditions for IP allocation, so there may be unexpected side effects  Follows rules  Easy deploy  Easy support  Flexible

Solution #4 Subnet, route the subnet –Renumber networks if necessary –Configure routing (not necessarily dynamic) within the campus –Route the more-specific subnet to the remote site over the BoD connection

Solution #4 Subnet, route the subnet – Breaks conditions for IP allocation, so there may be unexpected side effects – Still requires some routing knowledge – Difficult to enforce backup via regular IP network  Follows rules  Easy deploy  Easy support  Flexible

Other possibilities IPv6 gives us a much freer hand –Multiple addresses per interface –Source Address Selection based on application Combine with.1q VLANs –Host chooses which LAN to send traffic one –Requires host to have intelligent routing –Could in principle work for IPv4

To try to reach a common solution... Is this really how we expect BoD to be used? –or is it ok to expect that some routing complexity will have to be dealt with? Tools are there to handle this, but have not been necessary at this scale before For the first time, the network will be more dynamic than the addressing

Thank you! DW238-RIPE