SlideShare a Scribd company logo
1 of 34
The Case for IPv6: Paving the Way for
the Internet of Things
www.netuf.net
expert network architecture, engineering
deployment and training
twitter: @netuf
© 2011 - 2014 Network Utility Force, LLC.
Who We Are / What We Do
● Founded in December of 2011, and headquartered in Atlanta, GA, Network
Utility Force, LLC. (NUF)
● Created by highly experienced network and security architects
● Address complex and difficult infrastructure problems (wired and wireless),
with an emphasis on design and deployment for international service
providers, government agencies and large enterprises, including higher
education institutions.
www.netuf.net | 404-635-6667 | info@netuf.net
© 2011 - 2014 Network Utility Force, LLC.
Expertise
● Architecture & Design
● Audit/recommendations
● Configuration
● BGP
● Data Center Design
● DNS
● Fabric Deployment
● IPv6
● MPLS/GMPLS
● Optimization/Repair
● Peering
● SDN
● Security
● Training
● Virtualization
● Wireless and Wi-Fi
© 2011 - 2014 Network Utility Force, LLC.
www.netuf.net | 404-635-6667 | info@netuf.net
Relationship with KINBER
● Architecture
● Design
● Lab Testing
● Configuration
© 2011 - 2014 Network Utility Force, LLC.
www.netuf.net | 404-635-6667 | info@netuf.net
© 2011 - 2014 Network Utility Force, LLC.
www.netuf.net | 404-635-6667 | info@netuf.net
© 2011 - 2014 Network Utility Force, LLC.
www.netuf.net | 404-635-6667 | info@netuf.net
© 2011 - 2014 Network Utility Force, LLC.
www.netuf.net | 404-635-6667 | info@netuf.net
It’s Not Just Our Prediction
© 2011 - 2014 Network Utility Force, LLC.
www.netuf.net | 404-635-6667 | info@netuf.net
http://www.potaroo.net/tools/ipv4/
Timelines Just Got Shorter!
© 2011 - 2014 Network Utility Force, LLC.
www.netuf.net | 404-635-6667 | info@netuf.net
IPv6 Enabled Networks (as of Today)
© 2011 - 2014 Network Utility Force, LLC.
www.netuf.net | 404-635-6667 | info@netuf.net
ripe.net
Waiting for IPv6 Traffic Myth
© 2011 - 2014 Network Utility Force, LLC.
www.netuf.net | 404-635-6667 | info@netuf.net
IPv6 is Faster
© 2011 - 2014 Network Utility Force, LLC.
www.netuf.net | 404-635-6667 | info@netuf.net
Lee Howard, IPv6 Performance Bonus: https://www.youtube.com/watch?v=Ftoy2tp4kDM
IoT Demands IPv6
© 2011 - 2014 Network Utility Force, LLC.
www.netuf.net | 404-635-6667 | info@netuf.net
What are the Costs?
● See Lee Howard’s talks on IPv6 deployment costs (and costs of NOT
deploying IPv6) (http://www.youtube.com/watch?v=vXf8ZIew1j0)
● A good estimate for the cost of renumbering existing devices to free up
IPv4 space is $2.50/device
● Sale of an IPv4 address is likely to bring in $10-15 per address for the next
year or two
● After ARIN free space run-out, each IPv4 address is likely to bring in twice
that, $20-30, and up
© 2011 - 2014 Network Utility Force, LLC.
www.netuf.net | 404-635-6667 | info@netuf.net
Paying for the Deployment
● Many institutions have large address allocations
○ Some math for an example institution that has a /16 (historically called
a “Class B”)
○ /16 = 65,384 addresses
○ Let’s assume that by renumbering ¼ of that address space, that ½ of it
will be freed
○ ¼ of 65,384 is 16,346
○ ½ of 65,384 is 32,692
○ It costs $2.50 to renumber 16,346 devices. 2.50*16346=$40,865
○ At sale, addresses fetch $20 each. 20*32,692=$5,081,730
○ Net proceeds: $5,081,730-$40,865=$5,040,865!!!
●
© 2011 - 2014 Network Utility Force, LLC.
www.netuf.net | 404-635-6667 | info@netuf.net
Still Not Convinced?
RFC 6540
- IPv6 Support Required for All IP-Capable Nodes -
Given the global lack of available IPv4 space, and limitations in IPv4 extension and
transition technologies, this document advises that IPv6 support is no longer considered
optional. It also cautions that there are places in existing IETF documents where the
term "IP" is used in a way that could be misunderstood by implementers as the term "IP"
becomes a generic that can mean IPv4 + IPv6, IPv6-only, or IPv4-only, depending on
context and application.
© 2011 - 2014 Network Utility Force, LLC.
www.netuf.net | 404-635-6667 | info@netuf.net
I’m Convinced; What’s Next?
“Okay, my organization is convinced it’s time to begin IPv6
planning and deployment, what do I need to consider?”
© 2011 - 2014 Network Utility Force, LLC.
www.netuf.net | 404-635-6667 | info@netuf.net
Best Practices
The fundamentals haven’t changed a bit for IPv6, consider:
• Security
• Maintainability
• Scalability
• Performance
• Flexibility
© 2011 - 2014 Network Utility Force, LLC.
www.netuf.net | 404-635-6667 | info@netuf.net
Apply the Fundamentals
What areas need the most attention?
• Addressing plan
• Interconnectivity
• Bootstrapping/AAA
• Security issues
• Staff training
• Transition
© 2011 - 2014 Network Utility Force, LLC.
www.netuf.net | 404-635-6667 | info@netuf.net
© 2011 - 2014 Network Utility Force, LLC.
www.netuf.net | 404-635-6667 | info@netuf.net
IPv4 vs IPv6
Length in Bits 32 128
Amount of Addresses 232
4,294,967,296
2128
340,282,366,920,939,463,374,607,431,768
,211,456
Address Format Dotted Decimal
192.168.100.1
Hexadecimal
Dynamic Addressing DHCP SLAAC/DHCPv6
IPSec Optional Mandatory
Header Length Variable Fixed
Minimal Packet Size 576 bytes (fragmented) 1280 bytes
Header Checksum Yes No
Header Options Yes No (extensions)
Flow No Packet Flow Label
IPv6 Address Space is Vast
● “IPv6 uses a 128-bit address, allowing 2128, or approximately 3.4×1038
addresses, or more than 7.9×1028 times as many as IPv4, which uses 32-
bit addresses.” (Wikipedia)
● That’s 340 Undecillion!
● Undecillion is a number with 36 zeros.
● We must change our thinking about how to allocate address space to meet
our best practice goals
© 2011 - 2014 Network Utility Force, LLC.
www.netuf.net | 404-635-6667 | info@netuf.net
Addressing Plan
● Depends on the type of network, the size of the network, and problem to be
solved
● Points to consider
○ Documentation
○ Ease of troubleshooting
○ Aggregation
○ Standards compliance
○ Growth
○ SLAAC
○ Existing IPv4 addressing plan
○ Human factors
© 2011 - 2014 Network Utility Force, LLC.
www.netuf.net | 404-635-6667 | info@netuf.net
Algorithmic Approaches
● Interop took an algorithmic approach to IPv6 numbering
● Encode every IPv4 address in your network in an IPv6 address
○ 10.10.10.10 (A0A0A0A)
○ 2001:DB8:A0A:A0A::
© 2011 - 2014 Network Utility Force, LLC.
www.netuf.net | 404-635-6667 | info@netuf.net
Interconnectivity
● Routing protocols have been updated, but the fundamental concepts
remain the same
○ Run routing protocols such that they fail when the underlying transport
fails
■ That means separate v4 and v6 protocols
○ For ease of management, configure IPv4 and IPv6 connectivity to
follow the same paths
○ Also use the same routing policies whenever possible
● Ask your Internet traffic peers, suppliers, partners and clients to begin
transporting IPv6 traffic
© 2011 - 2014 Network Utility Force, LLC.
www.netuf.net | 404-635-6667 | info@netuf.net
Bootstrapping/AAA
● Some fundamental changes have been made to the bootstrap process to
join an IPv6 network, all part of the Neighbor Discovery process
○ Router Advertisements (RA) – Tells potential clients about the routers
and prefixes available on the network
○ StateLess Address Auto Configuration (SLAAC)
■ New in IPv6, allows a device to generate it’s own address
■ Supported universally
○ Dynamic Host Configuration Protocol v6 (DHCPv6)
■ Very similar to v4, can distribute address, DNS server, other
information about the network
■ Good support, but far from universal
© 2011 - 2014 Network Utility Force, LLC.
www.netuf.net | 404-635-6667 | info@netuf.net
Security Issues
● Use the same diligence you used for IPv4
● Ask equipment vendors to support specific protections in IPv6
○ RA-Guard – prevents an attacker from sending rogue RAs into the
network and becoming a man-in-the-middle
○ DHCP-Shield – similar to RA-Guard in that it blocks fake DHCP servers
from giving out false information
● Ensure equipment supports all IPv4 features you use in IPv6 as well such
as ACLs, anti-spoof filtering (RPF), etc. Why should v6 be any different in
these areas?
● Where firewalls are needed, ensure your choice of firewall supports v6 as
well as v4.
● NAT is NOT a security feature and v6 doesn’t have it
© 2011 - 2014 Network Utility Force, LLC.
www.netuf.net | 404-635-6667 | info@netuf.net
Transition Technologies
● 3 Types
○ Dual Stack
■ most common
■ Simply means running both v4 and v6 at the same time
○ Tunneling
■ Putting either IPv4 packets inside IPv6 packets or vice versa, depending on the
situation
■ Can be useful to solve problems in certain areas, but in general, tunneling hurts
performance and should be avoided when possible
■ Examples: 6rd, 6in4, 4in6, DS-Lite, MAP
○ Translation
■ Converting an IPv4 packet into an IPv6 packet or vice versa
■ Like in tunnels, can be useful in certain circumstances, especially for rapid
deployment of IPv6 on public facing services such as web servers
■ Example: NAT64
© 2011 - 2014 Network Utility Force, LLC.
www.netuf.net | 404-635-6667 | info@netuf.net
Training
● Find an experienced organization to provide training
● Service providers require a different level of scalability and maintainability
than enterprise, use a trainer that understands SP’s unique challenges
● Build a lab and experiment
© 2011 - 2014 Network Utility Force, LLC.
www.netuf.net | 404-635-6667 | info@netuf.net
Lab Testing
● Build a lab
● Stock it with the identical equipment you have in the field
● Replicate identical configurations and software versions of what is in the
field
● Can’t afford to buy all that equipment?
○ Make a vendor do it
○ Hire a consulting firm
© 2011 - 2014 Network Utility Force, LLC.
www.netuf.net | 404-635-6667 | info@netuf.net
© 2011 - 2014 Network Utility Force, LLC.
Conclusions
● IPv6 works in the real world
● There are challenges to implementing IPv6, but nothing show-stopping
● Much of the Internet’s content is reachable over IPv6 (and growing fast) including all
of Google, FaceBook and 3000 other sites
● A much smaller percentage of Internet users have IPv6 connectivity (though this
may change quickly with IPv4 depletion)
© 2011 - 2014 Network Utility Force, LLC.
www.netuf.net | 404-635-6667 | info@netuf.net
Resources
● ARIN.net
● ipv6forum.com
● internetsociety.org/deploy360/ipv6
● ipv6actnow.org
● Lee Howard, IPv6 Performance Bonus:
○ https://www.youtube.com/watch?v=Ftoy2tp4kDM
● Lee Howard, Total Cost of Ownership (TCO) of IPv6:
○ https://www.youtube.com/watch?v=vXf8ZIew1j0
● ripe.net
● potaroo.net/tools/ipv4
● gogo6.com
● netuf.net/p/ipv6.html (infographic)
© 2011 - 2014 Network Utility Force, LLC.
www.netuf.net | 404-635-6667 | info@netuf.net
Questions
© 2011 - 2014 Network Utility Force, LLC.
www.netuf.net | 404-635-6667 | info@netuf.net
Brandon Ross
CEO and Chief Network Architect
bross@netuf.net
404-635-6667
Download this presentation now:
© 2011 - 2014 Network Utility Force, LLC.
Thank You
www.netuf.net | 404-635-6667 | info@netuf.net

More Related Content

What's hot

IPv6 Deployment Architecture for Broadband Access Networks
IPv6 Deployment Architecture for Broadband Access NetworksIPv6 Deployment Architecture for Broadband Access Networks
IPv6 Deployment Architecture for Broadband Access NetworksAPNIC
 
Network State Awareness & Troubleshooting
Network State Awareness & TroubleshootingNetwork State Awareness & Troubleshooting
Network State Awareness & TroubleshootingAPNIC
 
Welcome to the APNIC Member Gathering, Mongolia
Welcome to the APNIC Member Gathering, MongoliaWelcome to the APNIC Member Gathering, Mongolia
Welcome to the APNIC Member Gathering, MongoliaAPNIC
 
IPv6 Adressvergabe und Adressierung
IPv6 Adressvergabe und AdressierungIPv6 Adressvergabe und Adressierung
IPv6 Adressvergabe und AdressierungSwiss IPv6 Council
 
IPv6 translation methods
IPv6 translation methodsIPv6 translation methods
IPv6 translation methodsAhmad Hijazi
 
IPv6 introduction
IPv6 introductionIPv6 introduction
IPv6 introductionGuider Lee
 
Tutorial: IPv6-only transition with demo
Tutorial: IPv6-only transition with demoTutorial: IPv6-only transition with demo
Tutorial: IPv6-only transition with demoAPNIC
 
464XLAT Tutorial
464XLAT Tutorial464XLAT Tutorial
464XLAT TutorialAPNIC
 
Simplified IPv6 Subnetting. Understanding What’s What.
Simplified IPv6 Subnetting. Understanding What’s What.Simplified IPv6 Subnetting. Understanding What’s What.
Simplified IPv6 Subnetting. Understanding What’s What.SolarWinds
 
IPV6 Deployment for Broadband Internet by Azura Mat Salim
IPV6  Deployment for Broadband Internet by Azura Mat SalimIPV6  Deployment for Broadband Internet by Azura Mat Salim
IPV6 Deployment for Broadband Internet by Azura Mat SalimMyNOG
 
IPv6 Deployment: Why and Why not?
IPv6 Deployment: Why and Why not?IPv6 Deployment: Why and Why not?
IPv6 Deployment: Why and Why not?apnic_slides
 
VNIX-NOG 2021: IPv6 Deployment Update
VNIX-NOG 2021: IPv6 Deployment UpdateVNIX-NOG 2021: IPv6 Deployment Update
VNIX-NOG 2021: IPv6 Deployment UpdateAPNIC
 
Upcoming internet challenges
Upcoming internet challengesUpcoming internet challenges
Upcoming internet challengesIvan Pepelnjak
 
OARC 26: Scoring the Root Server System
OARC 26: Scoring the Root Server SystemOARC 26: Scoring the Root Server System
OARC 26: Scoring the Root Server SystemAPNIC
 
Content over IPv6: no excuses
Content over IPv6: no excusesContent over IPv6: no excuses
Content over IPv6: no excusesIvan Pepelnjak
 
CHT IPv6 Measurement and Deployment
CHT IPv6 Measurement and DeploymentCHT IPv6 Measurement and Deployment
CHT IPv6 Measurement and DeploymentAPNIC
 
APNIC Update
APNIC Update APNIC Update
APNIC Update APNIC
 

What's hot (20)

IPv6 Deployment Architecture for Broadband Access Networks
IPv6 Deployment Architecture for Broadband Access NetworksIPv6 Deployment Architecture for Broadband Access Networks
IPv6 Deployment Architecture for Broadband Access Networks
 
Network State Awareness & Troubleshooting
Network State Awareness & TroubleshootingNetwork State Awareness & Troubleshooting
Network State Awareness & Troubleshooting
 
Welcome to the APNIC Member Gathering, Mongolia
Welcome to the APNIC Member Gathering, MongoliaWelcome to the APNIC Member Gathering, Mongolia
Welcome to the APNIC Member Gathering, Mongolia
 
IPv6 Adressvergabe und Adressierung
IPv6 Adressvergabe und AdressierungIPv6 Adressvergabe und Adressierung
IPv6 Adressvergabe und Adressierung
 
IPv6 translation methods
IPv6 translation methodsIPv6 translation methods
IPv6 translation methods
 
IPv6 introduction
IPv6 introductionIPv6 introduction
IPv6 introduction
 
Tutorial: IPv6-only transition with demo
Tutorial: IPv6-only transition with demoTutorial: IPv6-only transition with demo
Tutorial: IPv6-only transition with demo
 
464XLAT Tutorial
464XLAT Tutorial464XLAT Tutorial
464XLAT Tutorial
 
IPv6 Transition
IPv6 TransitionIPv6 Transition
IPv6 Transition
 
Ipv6
Ipv6Ipv6
Ipv6
 
Simplified IPv6 Subnetting. Understanding What’s What.
Simplified IPv6 Subnetting. Understanding What’s What.Simplified IPv6 Subnetting. Understanding What’s What.
Simplified IPv6 Subnetting. Understanding What’s What.
 
IPV6 Deployment for Broadband Internet by Azura Mat Salim
IPV6  Deployment for Broadband Internet by Azura Mat SalimIPV6  Deployment for Broadband Internet by Azura Mat Salim
IPV6 Deployment for Broadband Internet by Azura Mat Salim
 
IPv6 Deployment: Why and Why not?
IPv6 Deployment: Why and Why not?IPv6 Deployment: Why and Why not?
IPv6 Deployment: Why and Why not?
 
Ipv6 routing
Ipv6 routingIpv6 routing
Ipv6 routing
 
VNIX-NOG 2021: IPv6 Deployment Update
VNIX-NOG 2021: IPv6 Deployment UpdateVNIX-NOG 2021: IPv6 Deployment Update
VNIX-NOG 2021: IPv6 Deployment Update
 
Upcoming internet challenges
Upcoming internet challengesUpcoming internet challenges
Upcoming internet challenges
 
OARC 26: Scoring the Root Server System
OARC 26: Scoring the Root Server SystemOARC 26: Scoring the Root Server System
OARC 26: Scoring the Root Server System
 
Content over IPv6: no excuses
Content over IPv6: no excusesContent over IPv6: no excuses
Content over IPv6: no excuses
 
CHT IPv6 Measurement and Deployment
CHT IPv6 Measurement and DeploymentCHT IPv6 Measurement and Deployment
CHT IPv6 Measurement and Deployment
 
APNIC Update
APNIC Update APNIC Update
APNIC Update
 

Viewers also liked

How to Plan and Conduct IPv6 Field Trials
How to Plan and Conduct IPv6 Field TrialsHow to Plan and Conduct IPv6 Field Trials
How to Plan and Conduct IPv6 Field TrialsNetwork Utility Force
 
Tapping The Benefits Of I Pv6
Tapping The Benefits Of I Pv6Tapping The Benefits Of I Pv6
Tapping The Benefits Of I Pv6justkhoi
 
Network Utility Force IPv6 training brochure
Network Utility Force IPv6 training brochureNetwork Utility Force IPv6 training brochure
Network Utility Force IPv6 training brochureNetwork Utility Force
 

Viewers also liked (6)

How to Plan and Conduct IPv6 Field Trials
How to Plan and Conduct IPv6 Field TrialsHow to Plan and Conduct IPv6 Field Trials
How to Plan and Conduct IPv6 Field Trials
 
Tapping The Benefits Of I Pv6
Tapping The Benefits Of I Pv6Tapping The Benefits Of I Pv6
Tapping The Benefits Of I Pv6
 
GEN6 IPv6 pilot on energy consumption in schools
GEN6 IPv6 pilot on energy consumption in schoolsGEN6 IPv6 pilot on energy consumption in schools
GEN6 IPv6 pilot on energy consumption in schools
 
Network Utility Force IPv6 training brochure
Network Utility Force IPv6 training brochureNetwork Utility Force IPv6 training brochure
Network Utility Force IPv6 training brochure
 
Telefonica i pv6_smartcity
Telefonica i pv6_smartcityTelefonica i pv6_smartcity
Telefonica i pv6_smartcity
 
IPv6
IPv6IPv6
IPv6
 

Similar to The Case for IPv6: Paving the Way for the Internet of Things

The IPv6-Only Network
The IPv6-Only NetworkThe IPv6-Only Network
The IPv6-Only NetworkAPNIC
 
Roadmap to Next Generation IP Networks: A Review of the Fundamentals
Roadmap to Next Generation IP Networks: A Review of the FundamentalsRoadmap to Next Generation IP Networks: A Review of the Fundamentals
Roadmap to Next Generation IP Networks: A Review of the FundamentalsNetwork Utility Force
 
Whitepaper what enterprises should do about i pv6 in 2011 cisco_eric.vyncke
Whitepaper what enterprises should do about i pv6 in 2011 cisco_eric.vynckeWhitepaper what enterprises should do about i pv6 in 2011 cisco_eric.vyncke
Whitepaper what enterprises should do about i pv6 in 2011 cisco_eric.vynckeNTTE_France
 
Running head NEW INTERNET PROTOCOL PAPER1NEW INTERNET PROTOC.docx
Running head NEW INTERNET PROTOCOL PAPER1NEW INTERNET PROTOC.docxRunning head NEW INTERNET PROTOCOL PAPER1NEW INTERNET PROTOC.docx
Running head NEW INTERNET PROTOCOL PAPER1NEW INTERNET PROTOC.docxtoltonkendal
 
12 steps for IPv6 Deployment in Governments and Enterprises
12 steps for IPv6 Deployment in Governments and Enterprises12 steps for IPv6 Deployment in Governments and Enterprises
12 steps for IPv6 Deployment in Governments and EnterprisesAPNIC
 
IPv6 - A Real World Deployment for Mobiles
IPv6 - A Real World Deployment for MobilesIPv6 - A Real World Deployment for Mobiles
IPv6 - A Real World Deployment for MobilesAPNIC
 
IPv6 Adoption by ASEAN Government Agencies
IPv6 Adoption by ASEAN Government AgenciesIPv6 Adoption by ASEAN Government Agencies
IPv6 Adoption by ASEAN Government AgenciesAPNIC
 
Operational Challenges into the future
Operational Challenges into the futureOperational Challenges into the future
Operational Challenges into the futureAPNIC
 
VNIX-NOG 2023: IPv6 Deployment in government networks
VNIX-NOG 2023: IPv6 Deployment in government networksVNIX-NOG 2023: IPv6 Deployment in government networks
VNIX-NOG 2023: IPv6 Deployment in government networksAPNIC
 
IPv6 Deployment: Why and Why not? - HostingCon 2013
IPv6 Deployment: Why and Why not? - HostingCon 2013IPv6 Deployment: Why and Why not? - HostingCon 2013
IPv6 Deployment: Why and Why not? - HostingCon 2013APNIC
 
Hypes? Fanfares? Fads? Wading through the muddy IPv6 puddle
Hypes? Fanfares? Fads? Wading through the muddy IPv6 puddleHypes? Fanfares? Fads? Wading through the muddy IPv6 puddle
Hypes? Fanfares? Fads? Wading through the muddy IPv6 puddleAPNIC
 
You are a well-known expert in the design and security of corpor.docx
You are a well-known expert in the design and security of corpor.docxYou are a well-known expert in the design and security of corpor.docx
You are a well-known expert in the design and security of corpor.docxavaforman16457
 
ARM 7: TOT IPv6 Deployment Experiences
ARM 7: TOT IPv6 Deployment ExperiencesARM 7: TOT IPv6 Deployment Experiences
ARM 7: TOT IPv6 Deployment ExperiencesAPNIC
 
IPv6 Single Stack Now or Later? - The Ultimate Carrier Conundrum
IPv6 Single Stack Now or Later? - The Ultimate Carrier ConundrumIPv6 Single Stack Now or Later? - The Ultimate Carrier Conundrum
IPv6 Single Stack Now or Later? - The Ultimate Carrier ConundrumAPNIC
 

Similar to The Case for IPv6: Paving the Way for the Internet of Things (20)

The IPv6-Only Network
The IPv6-Only NetworkThe IPv6-Only Network
The IPv6-Only Network
 
Roadmap to Next Generation IP Networks: A Review of the Fundamentals
Roadmap to Next Generation IP Networks: A Review of the FundamentalsRoadmap to Next Generation IP Networks: A Review of the Fundamentals
Roadmap to Next Generation IP Networks: A Review of the Fundamentals
 
Kinber ipv6-education-healthcare
Kinber ipv6-education-healthcareKinber ipv6-education-healthcare
Kinber ipv6-education-healthcare
 
I pv6
I pv6I pv6
I pv6
 
Adressing IPv6 strategy
Adressing IPv6 strategyAdressing IPv6 strategy
Adressing IPv6 strategy
 
Final Assignment On IPv4 vs IPv6
Final Assignment On IPv4 vs IPv6Final Assignment On IPv4 vs IPv6
Final Assignment On IPv4 vs IPv6
 
Whitepaper what enterprises should do about i pv6 in 2011 cisco_eric.vyncke
Whitepaper what enterprises should do about i pv6 in 2011 cisco_eric.vynckeWhitepaper what enterprises should do about i pv6 in 2011 cisco_eric.vyncke
Whitepaper what enterprises should do about i pv6 in 2011 cisco_eric.vyncke
 
Running head NEW INTERNET PROTOCOL PAPER1NEW INTERNET PROTOC.docx
Running head NEW INTERNET PROTOCOL PAPER1NEW INTERNET PROTOC.docxRunning head NEW INTERNET PROTOCOL PAPER1NEW INTERNET PROTOC.docx
Running head NEW INTERNET PROTOCOL PAPER1NEW INTERNET PROTOC.docx
 
12 steps for IPv6 Deployment in Governments and Enterprises
12 steps for IPv6 Deployment in Governments and Enterprises12 steps for IPv6 Deployment in Governments and Enterprises
12 steps for IPv6 Deployment in Governments and Enterprises
 
IPv6 - A Real World Deployment for Mobiles
IPv6 - A Real World Deployment for MobilesIPv6 - A Real World Deployment for Mobiles
IPv6 - A Real World Deployment for Mobiles
 
IPv6 Can No Longer Be Ignored
IPv6 Can No Longer Be IgnoredIPv6 Can No Longer Be Ignored
IPv6 Can No Longer Be Ignored
 
IPv6 Adoption by ASEAN Government Agencies
IPv6 Adoption by ASEAN Government AgenciesIPv6 Adoption by ASEAN Government Agencies
IPv6 Adoption by ASEAN Government Agencies
 
Operational Challenges into the future
Operational Challenges into the futureOperational Challenges into the future
Operational Challenges into the future
 
VNIX-NOG 2023: IPv6 Deployment in government networks
VNIX-NOG 2023: IPv6 Deployment in government networksVNIX-NOG 2023: IPv6 Deployment in government networks
VNIX-NOG 2023: IPv6 Deployment in government networks
 
IPv6 Deployment: Why and Why not? - HostingCon 2013
IPv6 Deployment: Why and Why not? - HostingCon 2013IPv6 Deployment: Why and Why not? - HostingCon 2013
IPv6 Deployment: Why and Why not? - HostingCon 2013
 
Getting The World IPv6 Enabled
Getting The World IPv6 EnabledGetting The World IPv6 Enabled
Getting The World IPv6 Enabled
 
Hypes? Fanfares? Fads? Wading through the muddy IPv6 puddle
Hypes? Fanfares? Fads? Wading through the muddy IPv6 puddleHypes? Fanfares? Fads? Wading through the muddy IPv6 puddle
Hypes? Fanfares? Fads? Wading through the muddy IPv6 puddle
 
You are a well-known expert in the design and security of corpor.docx
You are a well-known expert in the design and security of corpor.docxYou are a well-known expert in the design and security of corpor.docx
You are a well-known expert in the design and security of corpor.docx
 
ARM 7: TOT IPv6 Deployment Experiences
ARM 7: TOT IPv6 Deployment ExperiencesARM 7: TOT IPv6 Deployment Experiences
ARM 7: TOT IPv6 Deployment Experiences
 
IPv6 Single Stack Now or Later? - The Ultimate Carrier Conundrum
IPv6 Single Stack Now or Later? - The Ultimate Carrier ConundrumIPv6 Single Stack Now or Later? - The Ultimate Carrier Conundrum
IPv6 Single Stack Now or Later? - The Ultimate Carrier Conundrum
 

Recently uploaded

20240509 QFM015 Engineering Leadership Reading List April 2024.pdf
20240509 QFM015 Engineering Leadership Reading List April 2024.pdf20240509 QFM015 Engineering Leadership Reading List April 2024.pdf
20240509 QFM015 Engineering Leadership Reading List April 2024.pdfMatthew Sinclair
 
在线制作约克大学毕业证(yu毕业证)在读证明认证可查
在线制作约克大学毕业证(yu毕业证)在读证明认证可查在线制作约克大学毕业证(yu毕业证)在读证明认证可查
在线制作约克大学毕业证(yu毕业证)在读证明认证可查ydyuyu
 
20240510 QFM016 Irresponsible AI Reading List April 2024.pdf
20240510 QFM016 Irresponsible AI Reading List April 2024.pdf20240510 QFM016 Irresponsible AI Reading List April 2024.pdf
20240510 QFM016 Irresponsible AI Reading List April 2024.pdfMatthew Sinclair
 
Nagercoil Escorts Service Girl ^ 9332606886, WhatsApp Anytime Nagercoil
Nagercoil Escorts Service Girl ^ 9332606886, WhatsApp Anytime NagercoilNagercoil Escorts Service Girl ^ 9332606886, WhatsApp Anytime Nagercoil
Nagercoil Escorts Service Girl ^ 9332606886, WhatsApp Anytime Nagercoilmeghakumariji156
 
Abu Dhabi Escorts Service 0508644382 Escorts in Abu Dhabi
Abu Dhabi Escorts Service 0508644382 Escorts in Abu DhabiAbu Dhabi Escorts Service 0508644382 Escorts in Abu Dhabi
Abu Dhabi Escorts Service 0508644382 Escorts in Abu DhabiMonica Sydney
 
哪里办理美国迈阿密大学毕业证(本硕)umiami在读证明存档可查
哪里办理美国迈阿密大学毕业证(本硕)umiami在读证明存档可查哪里办理美国迈阿密大学毕业证(本硕)umiami在读证明存档可查
哪里办理美国迈阿密大学毕业证(本硕)umiami在读证明存档可查ydyuyu
 
best call girls in Hyderabad Finest Escorts Service 📞 9352988975 📞 Available ...
best call girls in Hyderabad Finest Escorts Service 📞 9352988975 📞 Available ...best call girls in Hyderabad Finest Escorts Service 📞 9352988975 📞 Available ...
best call girls in Hyderabad Finest Escorts Service 📞 9352988975 📞 Available ...kajalverma014
 
APNIC Updates presented by Paul Wilson at ARIN 53
APNIC Updates presented by Paul Wilson at ARIN 53APNIC Updates presented by Paul Wilson at ARIN 53
APNIC Updates presented by Paul Wilson at ARIN 53APNIC
 
20240508 QFM014 Elixir Reading List April 2024.pdf
20240508 QFM014 Elixir Reading List April 2024.pdf20240508 QFM014 Elixir Reading List April 2024.pdf
20240508 QFM014 Elixir Reading List April 2024.pdfMatthew Sinclair
 
一比一原版(Curtin毕业证书)科廷大学毕业证原件一模一样
一比一原版(Curtin毕业证书)科廷大学毕业证原件一模一样一比一原版(Curtin毕业证书)科廷大学毕业证原件一模一样
一比一原版(Curtin毕业证书)科廷大学毕业证原件一模一样ayvbos
 
Leading-edge AI Image Generators of 2024
Leading-edge AI Image Generators of 2024Leading-edge AI Image Generators of 2024
Leading-edge AI Image Generators of 2024SOFTTECHHUB
 
Sensual Call Girls in Tarn Taran Sahib { 9332606886 } VVIP NISHA Call Girls N...
Sensual Call Girls in Tarn Taran Sahib { 9332606886 } VVIP NISHA Call Girls N...Sensual Call Girls in Tarn Taran Sahib { 9332606886 } VVIP NISHA Call Girls N...
Sensual Call Girls in Tarn Taran Sahib { 9332606886 } VVIP NISHA Call Girls N...kumargunjan9515
 
Research Assignment - NIST SP800 [172 A] - Presentation.pptx
Research Assignment - NIST SP800 [172 A] - Presentation.pptxResearch Assignment - NIST SP800 [172 A] - Presentation.pptx
Research Assignment - NIST SP800 [172 A] - Presentation.pptxi191686
 
Russian Escort Abu Dhabi 0503464457 Abu DHabi Escorts
Russian Escort Abu Dhabi 0503464457 Abu DHabi EscortsRussian Escort Abu Dhabi 0503464457 Abu DHabi Escorts
Russian Escort Abu Dhabi 0503464457 Abu DHabi EscortsMonica Sydney
 
一比一原版奥兹学院毕业证如何办理
一比一原版奥兹学院毕业证如何办理一比一原版奥兹学院毕业证如何办理
一比一原版奥兹学院毕业证如何办理F
 
2nd Solid Symposium: Solid Pods vs Personal Knowledge Graphs
2nd Solid Symposium: Solid Pods vs Personal Knowledge Graphs2nd Solid Symposium: Solid Pods vs Personal Knowledge Graphs
2nd Solid Symposium: Solid Pods vs Personal Knowledge GraphsEleniIlkou
 
一比一原版(Flinders毕业证书)弗林德斯大学毕业证原件一模一样
一比一原版(Flinders毕业证书)弗林德斯大学毕业证原件一模一样一比一原版(Flinders毕业证书)弗林德斯大学毕业证原件一模一样
一比一原版(Flinders毕业证书)弗林德斯大学毕业证原件一模一样ayvbos
 
Story Board.pptxrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrr
Story Board.pptxrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrStory Board.pptxrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrr
Story Board.pptxrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrHenryBriggs2
 
Indian Escort in Abu DHabi 0508644382 Abu Dhabi Escorts
Indian Escort in Abu DHabi 0508644382 Abu Dhabi EscortsIndian Escort in Abu DHabi 0508644382 Abu Dhabi Escorts
Indian Escort in Abu DHabi 0508644382 Abu Dhabi EscortsMonica Sydney
 
Tadepalligudem Escorts Service Girl ^ 9332606886, WhatsApp Anytime Tadepallig...
Tadepalligudem Escorts Service Girl ^ 9332606886, WhatsApp Anytime Tadepallig...Tadepalligudem Escorts Service Girl ^ 9332606886, WhatsApp Anytime Tadepallig...
Tadepalligudem Escorts Service Girl ^ 9332606886, WhatsApp Anytime Tadepallig...meghakumariji156
 

Recently uploaded (20)

20240509 QFM015 Engineering Leadership Reading List April 2024.pdf
20240509 QFM015 Engineering Leadership Reading List April 2024.pdf20240509 QFM015 Engineering Leadership Reading List April 2024.pdf
20240509 QFM015 Engineering Leadership Reading List April 2024.pdf
 
在线制作约克大学毕业证(yu毕业证)在读证明认证可查
在线制作约克大学毕业证(yu毕业证)在读证明认证可查在线制作约克大学毕业证(yu毕业证)在读证明认证可查
在线制作约克大学毕业证(yu毕业证)在读证明认证可查
 
20240510 QFM016 Irresponsible AI Reading List April 2024.pdf
20240510 QFM016 Irresponsible AI Reading List April 2024.pdf20240510 QFM016 Irresponsible AI Reading List April 2024.pdf
20240510 QFM016 Irresponsible AI Reading List April 2024.pdf
 
Nagercoil Escorts Service Girl ^ 9332606886, WhatsApp Anytime Nagercoil
Nagercoil Escorts Service Girl ^ 9332606886, WhatsApp Anytime NagercoilNagercoil Escorts Service Girl ^ 9332606886, WhatsApp Anytime Nagercoil
Nagercoil Escorts Service Girl ^ 9332606886, WhatsApp Anytime Nagercoil
 
Abu Dhabi Escorts Service 0508644382 Escorts in Abu Dhabi
Abu Dhabi Escorts Service 0508644382 Escorts in Abu DhabiAbu Dhabi Escorts Service 0508644382 Escorts in Abu Dhabi
Abu Dhabi Escorts Service 0508644382 Escorts in Abu Dhabi
 
哪里办理美国迈阿密大学毕业证(本硕)umiami在读证明存档可查
哪里办理美国迈阿密大学毕业证(本硕)umiami在读证明存档可查哪里办理美国迈阿密大学毕业证(本硕)umiami在读证明存档可查
哪里办理美国迈阿密大学毕业证(本硕)umiami在读证明存档可查
 
best call girls in Hyderabad Finest Escorts Service 📞 9352988975 📞 Available ...
best call girls in Hyderabad Finest Escorts Service 📞 9352988975 📞 Available ...best call girls in Hyderabad Finest Escorts Service 📞 9352988975 📞 Available ...
best call girls in Hyderabad Finest Escorts Service 📞 9352988975 📞 Available ...
 
APNIC Updates presented by Paul Wilson at ARIN 53
APNIC Updates presented by Paul Wilson at ARIN 53APNIC Updates presented by Paul Wilson at ARIN 53
APNIC Updates presented by Paul Wilson at ARIN 53
 
20240508 QFM014 Elixir Reading List April 2024.pdf
20240508 QFM014 Elixir Reading List April 2024.pdf20240508 QFM014 Elixir Reading List April 2024.pdf
20240508 QFM014 Elixir Reading List April 2024.pdf
 
一比一原版(Curtin毕业证书)科廷大学毕业证原件一模一样
一比一原版(Curtin毕业证书)科廷大学毕业证原件一模一样一比一原版(Curtin毕业证书)科廷大学毕业证原件一模一样
一比一原版(Curtin毕业证书)科廷大学毕业证原件一模一样
 
Leading-edge AI Image Generators of 2024
Leading-edge AI Image Generators of 2024Leading-edge AI Image Generators of 2024
Leading-edge AI Image Generators of 2024
 
Sensual Call Girls in Tarn Taran Sahib { 9332606886 } VVIP NISHA Call Girls N...
Sensual Call Girls in Tarn Taran Sahib { 9332606886 } VVIP NISHA Call Girls N...Sensual Call Girls in Tarn Taran Sahib { 9332606886 } VVIP NISHA Call Girls N...
Sensual Call Girls in Tarn Taran Sahib { 9332606886 } VVIP NISHA Call Girls N...
 
Research Assignment - NIST SP800 [172 A] - Presentation.pptx
Research Assignment - NIST SP800 [172 A] - Presentation.pptxResearch Assignment - NIST SP800 [172 A] - Presentation.pptx
Research Assignment - NIST SP800 [172 A] - Presentation.pptx
 
Russian Escort Abu Dhabi 0503464457 Abu DHabi Escorts
Russian Escort Abu Dhabi 0503464457 Abu DHabi EscortsRussian Escort Abu Dhabi 0503464457 Abu DHabi Escorts
Russian Escort Abu Dhabi 0503464457 Abu DHabi Escorts
 
一比一原版奥兹学院毕业证如何办理
一比一原版奥兹学院毕业证如何办理一比一原版奥兹学院毕业证如何办理
一比一原版奥兹学院毕业证如何办理
 
2nd Solid Symposium: Solid Pods vs Personal Knowledge Graphs
2nd Solid Symposium: Solid Pods vs Personal Knowledge Graphs2nd Solid Symposium: Solid Pods vs Personal Knowledge Graphs
2nd Solid Symposium: Solid Pods vs Personal Knowledge Graphs
 
一比一原版(Flinders毕业证书)弗林德斯大学毕业证原件一模一样
一比一原版(Flinders毕业证书)弗林德斯大学毕业证原件一模一样一比一原版(Flinders毕业证书)弗林德斯大学毕业证原件一模一样
一比一原版(Flinders毕业证书)弗林德斯大学毕业证原件一模一样
 
Story Board.pptxrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrr
Story Board.pptxrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrStory Board.pptxrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrr
Story Board.pptxrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrr
 
Indian Escort in Abu DHabi 0508644382 Abu Dhabi Escorts
Indian Escort in Abu DHabi 0508644382 Abu Dhabi EscortsIndian Escort in Abu DHabi 0508644382 Abu Dhabi Escorts
Indian Escort in Abu DHabi 0508644382 Abu Dhabi Escorts
 
Tadepalligudem Escorts Service Girl ^ 9332606886, WhatsApp Anytime Tadepallig...
Tadepalligudem Escorts Service Girl ^ 9332606886, WhatsApp Anytime Tadepallig...Tadepalligudem Escorts Service Girl ^ 9332606886, WhatsApp Anytime Tadepallig...
Tadepalligudem Escorts Service Girl ^ 9332606886, WhatsApp Anytime Tadepallig...
 

The Case for IPv6: Paving the Way for the Internet of Things

  • 1. The Case for IPv6: Paving the Way for the Internet of Things www.netuf.net expert network architecture, engineering deployment and training twitter: @netuf © 2011 - 2014 Network Utility Force, LLC.
  • 2. Who We Are / What We Do ● Founded in December of 2011, and headquartered in Atlanta, GA, Network Utility Force, LLC. (NUF) ● Created by highly experienced network and security architects ● Address complex and difficult infrastructure problems (wired and wireless), with an emphasis on design and deployment for international service providers, government agencies and large enterprises, including higher education institutions. www.netuf.net | 404-635-6667 | info@netuf.net © 2011 - 2014 Network Utility Force, LLC.
  • 3. Expertise ● Architecture & Design ● Audit/recommendations ● Configuration ● BGP ● Data Center Design ● DNS ● Fabric Deployment ● IPv6 ● MPLS/GMPLS ● Optimization/Repair ● Peering ● SDN ● Security ● Training ● Virtualization ● Wireless and Wi-Fi © 2011 - 2014 Network Utility Force, LLC. www.netuf.net | 404-635-6667 | info@netuf.net
  • 4. Relationship with KINBER ● Architecture ● Design ● Lab Testing ● Configuration © 2011 - 2014 Network Utility Force, LLC. www.netuf.net | 404-635-6667 | info@netuf.net
  • 5. © 2011 - 2014 Network Utility Force, LLC. www.netuf.net | 404-635-6667 | info@netuf.net
  • 6. © 2011 - 2014 Network Utility Force, LLC. www.netuf.net | 404-635-6667 | info@netuf.net
  • 7. © 2011 - 2014 Network Utility Force, LLC. www.netuf.net | 404-635-6667 | info@netuf.net
  • 8. It’s Not Just Our Prediction © 2011 - 2014 Network Utility Force, LLC. www.netuf.net | 404-635-6667 | info@netuf.net http://www.potaroo.net/tools/ipv4/
  • 9. Timelines Just Got Shorter! © 2011 - 2014 Network Utility Force, LLC. www.netuf.net | 404-635-6667 | info@netuf.net
  • 10. IPv6 Enabled Networks (as of Today) © 2011 - 2014 Network Utility Force, LLC. www.netuf.net | 404-635-6667 | info@netuf.net ripe.net
  • 11. Waiting for IPv6 Traffic Myth © 2011 - 2014 Network Utility Force, LLC. www.netuf.net | 404-635-6667 | info@netuf.net
  • 12. IPv6 is Faster © 2011 - 2014 Network Utility Force, LLC. www.netuf.net | 404-635-6667 | info@netuf.net Lee Howard, IPv6 Performance Bonus: https://www.youtube.com/watch?v=Ftoy2tp4kDM
  • 13. IoT Demands IPv6 © 2011 - 2014 Network Utility Force, LLC. www.netuf.net | 404-635-6667 | info@netuf.net
  • 14. What are the Costs? ● See Lee Howard’s talks on IPv6 deployment costs (and costs of NOT deploying IPv6) (http://www.youtube.com/watch?v=vXf8ZIew1j0) ● A good estimate for the cost of renumbering existing devices to free up IPv4 space is $2.50/device ● Sale of an IPv4 address is likely to bring in $10-15 per address for the next year or two ● After ARIN free space run-out, each IPv4 address is likely to bring in twice that, $20-30, and up © 2011 - 2014 Network Utility Force, LLC. www.netuf.net | 404-635-6667 | info@netuf.net
  • 15. Paying for the Deployment ● Many institutions have large address allocations ○ Some math for an example institution that has a /16 (historically called a “Class B”) ○ /16 = 65,384 addresses ○ Let’s assume that by renumbering ¼ of that address space, that ½ of it will be freed ○ ¼ of 65,384 is 16,346 ○ ½ of 65,384 is 32,692 ○ It costs $2.50 to renumber 16,346 devices. 2.50*16346=$40,865 ○ At sale, addresses fetch $20 each. 20*32,692=$5,081,730 ○ Net proceeds: $5,081,730-$40,865=$5,040,865!!! ● © 2011 - 2014 Network Utility Force, LLC. www.netuf.net | 404-635-6667 | info@netuf.net
  • 16. Still Not Convinced? RFC 6540 - IPv6 Support Required for All IP-Capable Nodes - Given the global lack of available IPv4 space, and limitations in IPv4 extension and transition technologies, this document advises that IPv6 support is no longer considered optional. It also cautions that there are places in existing IETF documents where the term "IP" is used in a way that could be misunderstood by implementers as the term "IP" becomes a generic that can mean IPv4 + IPv6, IPv6-only, or IPv4-only, depending on context and application. © 2011 - 2014 Network Utility Force, LLC. www.netuf.net | 404-635-6667 | info@netuf.net
  • 17. I’m Convinced; What’s Next? “Okay, my organization is convinced it’s time to begin IPv6 planning and deployment, what do I need to consider?” © 2011 - 2014 Network Utility Force, LLC. www.netuf.net | 404-635-6667 | info@netuf.net
  • 18. Best Practices The fundamentals haven’t changed a bit for IPv6, consider: • Security • Maintainability • Scalability • Performance • Flexibility © 2011 - 2014 Network Utility Force, LLC. www.netuf.net | 404-635-6667 | info@netuf.net
  • 19. Apply the Fundamentals What areas need the most attention? • Addressing plan • Interconnectivity • Bootstrapping/AAA • Security issues • Staff training • Transition © 2011 - 2014 Network Utility Force, LLC. www.netuf.net | 404-635-6667 | info@netuf.net
  • 20. © 2011 - 2014 Network Utility Force, LLC. www.netuf.net | 404-635-6667 | info@netuf.net IPv4 vs IPv6 Length in Bits 32 128 Amount of Addresses 232 4,294,967,296 2128 340,282,366,920,939,463,374,607,431,768 ,211,456 Address Format Dotted Decimal 192.168.100.1 Hexadecimal Dynamic Addressing DHCP SLAAC/DHCPv6 IPSec Optional Mandatory Header Length Variable Fixed Minimal Packet Size 576 bytes (fragmented) 1280 bytes Header Checksum Yes No Header Options Yes No (extensions) Flow No Packet Flow Label
  • 21. IPv6 Address Space is Vast ● “IPv6 uses a 128-bit address, allowing 2128, or approximately 3.4×1038 addresses, or more than 7.9×1028 times as many as IPv4, which uses 32- bit addresses.” (Wikipedia) ● That’s 340 Undecillion! ● Undecillion is a number with 36 zeros. ● We must change our thinking about how to allocate address space to meet our best practice goals © 2011 - 2014 Network Utility Force, LLC. www.netuf.net | 404-635-6667 | info@netuf.net
  • 22. Addressing Plan ● Depends on the type of network, the size of the network, and problem to be solved ● Points to consider ○ Documentation ○ Ease of troubleshooting ○ Aggregation ○ Standards compliance ○ Growth ○ SLAAC ○ Existing IPv4 addressing plan ○ Human factors © 2011 - 2014 Network Utility Force, LLC. www.netuf.net | 404-635-6667 | info@netuf.net
  • 23. Algorithmic Approaches ● Interop took an algorithmic approach to IPv6 numbering ● Encode every IPv4 address in your network in an IPv6 address ○ 10.10.10.10 (A0A0A0A) ○ 2001:DB8:A0A:A0A:: © 2011 - 2014 Network Utility Force, LLC. www.netuf.net | 404-635-6667 | info@netuf.net
  • 24. Interconnectivity ● Routing protocols have been updated, but the fundamental concepts remain the same ○ Run routing protocols such that they fail when the underlying transport fails ■ That means separate v4 and v6 protocols ○ For ease of management, configure IPv4 and IPv6 connectivity to follow the same paths ○ Also use the same routing policies whenever possible ● Ask your Internet traffic peers, suppliers, partners and clients to begin transporting IPv6 traffic © 2011 - 2014 Network Utility Force, LLC. www.netuf.net | 404-635-6667 | info@netuf.net
  • 25. Bootstrapping/AAA ● Some fundamental changes have been made to the bootstrap process to join an IPv6 network, all part of the Neighbor Discovery process ○ Router Advertisements (RA) – Tells potential clients about the routers and prefixes available on the network ○ StateLess Address Auto Configuration (SLAAC) ■ New in IPv6, allows a device to generate it’s own address ■ Supported universally ○ Dynamic Host Configuration Protocol v6 (DHCPv6) ■ Very similar to v4, can distribute address, DNS server, other information about the network ■ Good support, but far from universal © 2011 - 2014 Network Utility Force, LLC. www.netuf.net | 404-635-6667 | info@netuf.net
  • 26. Security Issues ● Use the same diligence you used for IPv4 ● Ask equipment vendors to support specific protections in IPv6 ○ RA-Guard – prevents an attacker from sending rogue RAs into the network and becoming a man-in-the-middle ○ DHCP-Shield – similar to RA-Guard in that it blocks fake DHCP servers from giving out false information ● Ensure equipment supports all IPv4 features you use in IPv6 as well such as ACLs, anti-spoof filtering (RPF), etc. Why should v6 be any different in these areas? ● Where firewalls are needed, ensure your choice of firewall supports v6 as well as v4. ● NAT is NOT a security feature and v6 doesn’t have it © 2011 - 2014 Network Utility Force, LLC. www.netuf.net | 404-635-6667 | info@netuf.net
  • 27. Transition Technologies ● 3 Types ○ Dual Stack ■ most common ■ Simply means running both v4 and v6 at the same time ○ Tunneling ■ Putting either IPv4 packets inside IPv6 packets or vice versa, depending on the situation ■ Can be useful to solve problems in certain areas, but in general, tunneling hurts performance and should be avoided when possible ■ Examples: 6rd, 6in4, 4in6, DS-Lite, MAP ○ Translation ■ Converting an IPv4 packet into an IPv6 packet or vice versa ■ Like in tunnels, can be useful in certain circumstances, especially for rapid deployment of IPv6 on public facing services such as web servers ■ Example: NAT64 © 2011 - 2014 Network Utility Force, LLC. www.netuf.net | 404-635-6667 | info@netuf.net
  • 28. Training ● Find an experienced organization to provide training ● Service providers require a different level of scalability and maintainability than enterprise, use a trainer that understands SP’s unique challenges ● Build a lab and experiment © 2011 - 2014 Network Utility Force, LLC. www.netuf.net | 404-635-6667 | info@netuf.net
  • 29. Lab Testing ● Build a lab ● Stock it with the identical equipment you have in the field ● Replicate identical configurations and software versions of what is in the field ● Can’t afford to buy all that equipment? ○ Make a vendor do it ○ Hire a consulting firm © 2011 - 2014 Network Utility Force, LLC. www.netuf.net | 404-635-6667 | info@netuf.net
  • 30. © 2011 - 2014 Network Utility Force, LLC.
  • 31. Conclusions ● IPv6 works in the real world ● There are challenges to implementing IPv6, but nothing show-stopping ● Much of the Internet’s content is reachable over IPv6 (and growing fast) including all of Google, FaceBook and 3000 other sites ● A much smaller percentage of Internet users have IPv6 connectivity (though this may change quickly with IPv4 depletion) © 2011 - 2014 Network Utility Force, LLC. www.netuf.net | 404-635-6667 | info@netuf.net
  • 32. Resources ● ARIN.net ● ipv6forum.com ● internetsociety.org/deploy360/ipv6 ● ipv6actnow.org ● Lee Howard, IPv6 Performance Bonus: ○ https://www.youtube.com/watch?v=Ftoy2tp4kDM ● Lee Howard, Total Cost of Ownership (TCO) of IPv6: ○ https://www.youtube.com/watch?v=vXf8ZIew1j0 ● ripe.net ● potaroo.net/tools/ipv4 ● gogo6.com ● netuf.net/p/ipv6.html (infographic) © 2011 - 2014 Network Utility Force, LLC. www.netuf.net | 404-635-6667 | info@netuf.net
  • 33. Questions © 2011 - 2014 Network Utility Force, LLC. www.netuf.net | 404-635-6667 | info@netuf.net
  • 34. Brandon Ross CEO and Chief Network Architect bross@netuf.net 404-635-6667 Download this presentation now: © 2011 - 2014 Network Utility Force, LLC. Thank You www.netuf.net | 404-635-6667 | info@netuf.net