IPv6 transition: moving into the campus Tim Chown University of Southampton.

Slides:



Advertisements
Similar presentations
1 IPv6 and IPv4 Interoperation and Transition Tony Hain co-chair IETF ngtrans WG
Advertisements

NAT, firewalls and IPv6 Christian Huitema Architect, Windows Networking Microsoft Corporation.
IPv6 TF-NGN 8 Berlin, 2 nd July Agenda Review GTPv6 status D9.6 GEANT deliverable Presentations from participants –JOIN, RENATER, POZNAN 6NET –Outputs,
IPv4 - IPv6 Integration and Coexistence Strategies Warakorn Sae-Tang Network Specialist Professional Service Department A Subsidiary.
Transitioning to IPv6 April 15,2005 Presented By: Richard Moore PBS Enterprise Technology.
IPv4 to IPv6 Migration strategies. What is IPv4  Second revision in development of internet protocol  First version to be widely implied.  Connection.
IPv6: The Next Generation Internet Protocol CEOS WGISS 18: Beijing, China September 2004 Dave Hartzell Computer Sciences Corp, NASA Ames
Project by: Palak Baid (pb2358) Gaurav Pandey (gip2103) Guided by: Jong Yul Kim.
Implementing IPv6 Module B 8: Implementing IPv6
1 Teredo - Tunneling IPv6 through NATs Date: Speaker: Quincy Wu National Chiao Tung University.
Enabling IPv6 in Corporate Intranet Networks
Module 4: Configuring Network Connectivity
Understanding Internet Protocol
Configuring and Troubleshooting Network Connections
Southampton Open Wireless Network The Topology Talk.
1 Chapter 2: Networking Protocol Design Designs That Include TCP/IP Essential TCP/IP Design Concepts TCP/IP Data Protection TCP/IP Optimization.
IPv6 Address Provisioning In IPv6 world there are three provisioning aspects wich are independent of whether the IPv6 node is a Host or CE router: IPv6.
IPv6 Management Methods and Tools for Managing IPv6 Networks Georgios Koutepas, NTUA “IPv6 Technology and Advanced Services” Oct. 19, 2004.
CCSE NETWORK STRUCTURE. CCSE NETWORK OUTLINE Mid-sized Building Network spanning over Building 22 and Building 23. Autonomous from ITC’s KFUPM Domain.
1 Integration of IPv6 Services. 2 Integration of IPv6 Services The Ubiquitous Internet Large Address Space Auto-Configuration Enhanced Mobility.
© 2007 Cisco Systems, Inc. All rights reserved.Cisco Public 1 Version 4.0 Addressing the Network – IPv4 Network Fundamentals – Chapter 6.
1 In VINI Veritas: Realistic and Controlled Network Experimentation Jennifer Rexford with Andy Bavier, Nick Feamster, Mark Huang, and Larry Peterson
Linux+ Guide to Linux Certification, Second Edition Chapter 14 Network Configuration.
Subnetting.
Virtual Private Network (VPN) © N. Ganesan, Ph.D..
Lecture slides prepared for “Business Data Communications”, 7/e, by William Stallings and Tom Case, Chapter 8 “TCP/IP”.
ITGS Networks Based on the textbook “Information Technology in a Global Society for the IB Diploma” by Stuart Gray.
Network Services Lesson 6. Objectives Skills/ConceptsObjective Domain Description Objective Domain Number Setting up common networking services Understanding.
資 管 Lee Lesson 11 Coexistence and Migration. 資 管 Lee Lesson Objectives Coexistence and migration overview Coexistence mechanisms ◦ Dual Stack ◦ Tunneling.
Chapter 7: Using Windows Servers to Share Information.
DHCP: Dual-Stack Issues draft-ietf-dhc-dual-stack-01 Tim Chown dhc WG, IETF 60, San Diego, August 2, 2004.
LONG: Laboratories Over Next Generation Networks. LONG: Laboratories Over Next Generation Networks Project: IST LONG WP2 – Network Design and.
CSE 8343 Group 3 Advanced OS Inter Operability Between IPv4 and IPv6 Team Members Aman Preet Singh Rohit Singh Nipun Aggarwal Chirag Shah Eugene Novak.
Coexistence and Migration
© 2006 Cisco Systems, Inc. All rights reserved.Cisco PublicITE I Chapter 6 1 Implementing IP Addressing Services Accessing the WAN – Chapter 7.
Module 9: Planning Network Access. Overview Introducing Network Access Selecting Network Access Connection Methods Selecting a Remote Access Policy Strategy.
111 © 2003, Cisco Systems, Inc. All rights reserved.
© 2008 Cisco Systems, Inc. All rights reserved.Cisco ConfidentialPresentation_ID 1 Chapter 10: DHCP Routing & Switching.
Altai Certification Training Backend Network Planning
IPv6 Renumbering Tim Chown Alan Ford Mark Thompson Stig Venaas University of Southampton (UK)
Objectives Configure routing in Windows Server 2008 Configure Routing and Remote Access Services in Windows Server 2008 Network Address Translation 1.
Guide to TCP/IP Fourth Edition
IPv6 and IPv4 Coexistence Wednesday, October 07, 2015 IPv6 and IPv4 Coexistence Motorola’s Views for Migration and Co-existence of 3GPP2 Networks to Support.
Module 3: Designing IP Addressing. Module Overview Designing an IPv4 Addressing Scheme Designing DHCP Implementation Designing DHCP Configuration Options.
Draft-ietf-v6ops-scanning-implications-00 IPv6 Implications for Network Scanning Tim Chown University of Southampton (UK) IETF 66,
1 Chapter 12: VPN Connectivity in Remote Access Designs Designs That Include VPN Remote Access Essential VPN Remote Access Design Concepts Data Protection.
Windows Small Business Server 2003 Setting up and Connecting David Overton Partner Technical Specialist.
Linux+ Guide to Linux Certification, Second Edition Chapter 14 Network Configuration.
Draft-chown-v6ops-campus-transition-00 Tim Chown v6ops WG, IETF 60, San Diego, August 2, 2004.
IPv6 for ISP Industry Sify Technologies Ltd Somasundaram Padmanabhan Network Engineering IPv6 Awareness Workshop.
Network and Perimeter Security Paula Kiernan Senior Consultant Ward Solutions.
Hosting Providers and IPv6.  Managed Service Providers and Hosting Providers are an often overlooked player  Neither a traditional ISP or a traditional.
Draft-vandevelde-v6ops-addcon-00.txt IPv6 Unicast Address Assignment Considerations Gunter Van de Velde (editor) Tim Chown Ciprian Popoviciu IETF 65, March.
IPv6 transition strategies IPv6 forum OSAKA 12/19/2000 1/29.
Ch 6: IPv6 Deployment Last modified Topics 6.3 Transition Mechanisms 6.4 Dual Stack IPv4/IPv6 Environments 6.5 Tunneling.
Cisco 3 - Switch Perrine. J Page 111/6/2015 Chapter 5 At which layer of the 3-layer design component would users with common interests be grouped? 1.Access.
Draft-chown-v6ops-campus-transition-03 IPv6 Campus Transition Scenario Description and Analysis Tim Chown University of Southampton (UK)
1 NCM _05_2001_c1 © 2001, Cisco Systems, Inc. All rights reserved. How would you prepare for the technology you need.
W&L Page 1 CCNA CCNA Training 3.4 Describe the technological requirements for running IPv6 in conjunction with IPv4 Jose Luis Flores /
Deploying IPv6, Now Christian Huitema Architect Windows Networking & Communications Microsoft Corporation.
1 © 2004 Cisco Systems, Inc. All rights reserved. Session Number Presentation_ID Early vs. Cautious IPv6 deployment Issues and trade-offs Tony Hain Cisco.
IPv6 - The Way Ahead Christian Huitema Architect Windows Networking & Communications
APAN 24, August 28, 2007, Xi’an IPv6Deployment in European Academic Networks Tim Chown School of Electronics and Computer Science University of Southampton.
APNIC IPv6 Allocation Update IPv6 SIG APNIC 14, Kitakyushu, Japan 4 September 2002.
1 Objectives Identify the basic components of a network Describe the features of Internet Protocol version 4 (IPv4) and Internet Protocol version 6 (IPv6)
Draft-chown-v6ops-vlan-usage-01 Tim Chown v6ops WG, IETF 60, San Diego, August 2, 2004.
IPv6 Security Issues Georgios Koutepas, NTUA IPv6 Technology and Advanced Services Oct.19, 2004.
COMP1321 Digital Infrastructure Richard Henson March 2016.
KAPLAN SCHOOL OF INFORMATION SYSTEMS AND TECHNOLOGY IT375 Window Enterprise Administration Course Name – IT Introduction to Network Security Instructor.
Unit 27: Network Operating Systems
Presentation transcript:

IPv6 transition: moving into the campus Tim Chown University of Southampton

Agenda Basics of transition Where is IPv6 deploying? NREN transition Campus transition Case studies 6NET involvement

Transition aspects Two key aspects to deploying IPv6 in the European research networks Enabling IPv6 in the National Research and Education Networks (NRENs) Enabling IPv6 in the university (campus) networks Also interested in IPv6 access for researchers and students in commercial networks, e.g. ADSL, wifi hotspots Need tools to facilitate IPv6 availability

Views of transition User Should be unaware of IP version Application developer Should write IP version independent code Stack/router developer Offer protocols for both stacks NREN/campus network operator/admin Support specific transition tools

Various approaches Tunnels (“connecting IPv6 clouds”) Running IPv6 encapsulated over IPv4 links IPv6 packet is data payload of IPv4 packet May be automatic or manually configured tunnels Translation methods (“IPv4 IPv6 services”) Layer 3: Rewriting IP header information Layer 4: Rewriting TCP headers Layer 7: Application layer gateways (ALGs) Dual Stack Servers/devices speaking both protocols Choose the protocol available in the target system

Transition toolbox Plethora of methods available To the NRENs To the campuses No single method fits all NRENs Largely concerned with deploying dual-stack Also support services: 6to4 relay, tunnel broker Campuses Also largely interested in dual-stack But much higher complexity in the systems being used

Where is IPv6 deploying? In the academic research networks European NRENs, GÉANT, Internet 2, CA*net4, WIDE (Japan), Korea, China and links between Heralded at recent Global IPv6 Launch event In research projects 6NET, Euro6IX In pre-commercial networks and pilots Moonv6 (including US DoD sites) See the SubTLA allocation list Full commercial deployment still lacking

How is it deploying? Almost universally dual-stack On the NREN backbone networks first Challenge now is early enterprise adopters Dual-stack? So what do we gain? An enhanced environment where NATv4 + IPv6 is deployed (use IPv4 for mail, www, and IPv6 for new apps) An environment for future IPv6-only devices What’s the catch? Service and application interaction considerations Performance issues

6NET: NREN case studies Offering IPv6 transport across an NREN Most common method is dual-stack Two NRENs have deployed parallel infrastructure Two have used 6PE (MPLS) Reported in D2.2.3 (see Includes theory and scenarios IETF ISP transition analysis Three NREN case studies Survey of NREN solutions Most NRENs have a service, as does GEANT Deployment issue now pushed to the edge

6NET: Campus case studies Undertaking transition at sites including Southampton Lancaster Muenster (JOIN project) Collaborating with Euro6IX project partners UPM UMU Current status in 6NET document D2.3.3-bis1 See for text

Campus scenarios Aggregating experience at the sites Some overlaps for common technology, some differences The more sites to draw experience from, the better Producing detailed studies Scenarios and analyses Contribute to 6NET D2.3.4 (“site transition cookbook”) Plain language campus transition white paper IETF drafts for IPv6 Operations WG Knowledge base for transition “SWOT” team

Transition methodology Analyse current IPv4 systems scenario Identify gaps Work around gaps if possible Evaluate the limitations where barriers are firm Obtain IPv6 address space Obtain external IPv6 connectivity Deploy IPv6 “on the wire” internally Perhaps using protocol VLANs, perhaps ISATAP Enable IPv6 in services and management tools Ensure policy and security issues are covered

Transition components Network Address allocation Management and monitoring Services Host and device platforms User tools

Network components Internal physical links Ethernet Wireless LAN Routing and logical subnets Typically /24 - /26 sized subnets Firewall Stateful usually required Remote access Dialup, VPN Uplink connectivity to campus/MAN

Address allocation Network prefix allocation Hierarchical, provider assigned Address allocation Address plan Address management Manual Stateful DHCPv6 Stateless address autoconfiguration RFC3041 privacy addresses (Need to consider site policy here)

Management and monitroing Device configuration and monitoring SNMP Statistical monitoring MRTG, Cisco Netflow RIPE NCC Test Traffic server Service monitoring Nagios Intrusion detection (IDS) Snort Authentication systems For WLAN: 802.1x

Service/server components (1) Sendmail, MS Exchange, WU-IMAP Web hosting Apache 1, Apache 2, IIS 4, IIS 5 Databases MySQL, MS SQL Directory services NIS, LDAP, Active Directory, RADIUS DNS BIND

Service/server components (2) NTP Dedicated hardware, RIPE NCC Test Traffic server Usenet News server dnews Multicast PIM-SM (not using SSM for IPv4) Remote login sshd File serving NFS, samba

Host and device platforms Server platforms Windows 2000, 2003, NT Solaris 8, 9 Linux SGI Desktop systems Windows 98, 2000, ME, XP Linux, MacOS/X PDAs Windows CE/.NET, PalmOS, Linux, Zaurus

User tools (1) Dedicated hardware Printers Webcams Mail clients Outlook, Eudora, Mutt, Pine Web browsers MSIE, Mozilla, Safari, Opera Conferencing tools AccessGrid H.323 (NetMeeting, GnomeMeeting, OpenMCU)

User tools (2) Other collaboration tools IRC, Jabber, MSN Messenger, cvs Login clients ssh NTP clients ntp.org tools USENET News client nn, Mozilla Host communications X11, vnc, PC Anywhere

Gap analysis (1) Layer 3 functions on Layer2/3 switching equipment IPv6 injected into VLANs via parallel IPv6 routers NFS/samba IPv6 support MS Exchange, Outlook, Eudora AccessGrid IPv4 only Some Apache 2 modules lack 1.3 functionality IPv6 support in MS Active Directory Use of OpenLDAP? IPv6 dnews support IPv6 for WLAN access control (web redirect, 802.1x)

Gap analysis (2) IPv6 support for Windows 98, ME, 2000 Must upgrade to Windows XP DHCPv6 implementations Required for DNS resolver discovery, at least IPv6 support for Irix IPv6 support for various PDA platforms Reverse DNS wildcards? Sendmail wants to reverse lookup IP addresses MLDv2 snooping in Ethernet switches IPv6 for X11 (xfree has copyright issues)

Planned outputs Specific detailed cookbook Within 6NET, by December 2004 (D2.3.4) Generalised campus transition white paper Jointly with Euro6IX, around October 2004 Paper aimed at senior management in universities The detailed 6NET cookbook is aimed at administrators IETF contributions Campus scenario, initial analysis, by August IETF Knowledge base for “SWOT” team During January - June 2005, as 6NET extension

Southampton status IPv6 available internally Using parallel IPv6 routers (BSD) Injecting IPv6 into IPv4 VLANs (congruent subnets) Dual-stack services DNS servers done (BIND9), web and now New IPv6 services Mobile IPv6 deployment (linking community network) Want to share experiences! Please contact us Also looking for sites to join the 6NET case study