36
Ethern M., Lin Academia Sinica Computing Centre 6, July, 2007 IPv6/IPv4 Transition 8 th IP Open Policy Meeting TWNIC The experience sharing of Tunnel Broker deployment

IPv6/IPv4 Transition: The experience sharing of Tunnel Broker deployment

Embed Size (px)

DESCRIPTION

IPv6/IPv4 Transition: The experience sharing of Tunnel Broker deployment

Citation preview

Page 1: IPv6/IPv4 Transition: The experience sharing of Tunnel Broker deployment

Ethern M., LinAcademia Sinica Computing Centre

6, July, 2007

IPv6/IPv4 Transition

8th IP Open Policy MeetingTWNIC

The experience sharing of

Tunnel Broker deployment

Page 2: IPv6/IPv4 Transition: The experience sharing of Tunnel Broker deployment

Outline Introduction The roadmap of IPv6 transition The role of Tunnel Broker The O&M of ASCC IPv6 applications

Page 3: IPv6/IPv4 Transition: The experience sharing of Tunnel Broker deployment

Introduction

Page 4: IPv6/IPv4 Transition: The experience sharing of Tunnel Broker deployment

Introduction Just experience sharing, not advertisement! Solving the access problems in end-user side. Combine with RADIUS, provide SSO. Minimize the cost in operation and

management for IPv6/IPv4 Transition. Easy to use for end-users.

Page 5: IPv6/IPv4 Transition: The experience sharing of Tunnel Broker deployment

The roadmap of IPv6 transition

Page 6: IPv6/IPv4 Transition: The experience sharing of Tunnel Broker deployment

Transition stages(1) Stage 1

IPv4 backbone + IPv4 customers Get IPv6 Address; IPv6 Connectivity to

Upstream or peers; IPv6 transit; IPv6 IX

Stage 2 Backbone support IPv6/IPv4

Software/hardware upgrade; Tunnel could help customer to connect to IPv6

Customers support IPv6/IPv4 Tunnel; IPv6 overlay network(6PE)

Page 7: IPv6/IPv4 Transition: The experience sharing of Tunnel Broker deployment

Transition stages(2) Stage 3

IPv6/IPv4 backbone + IPv6/IPv4 customers

Import IPv6 features for yourself Routine or scheduled evolution Get IPv6 features in all new equipments.

Page 8: IPv6/IPv4 Transition: The experience sharing of Tunnel Broker deployment

Transition actions(1) Backbone

IPv6 connectivity to upstream or peers Enable IPv6 function to IPv6 network

components Upgrade regular network management and

monitoring applications Connect dual-stack customers through IPv4

backbone Backbone from IPv4 to dual-stack

Page 9: IPv6/IPv4 Transition: The experience sharing of Tunnel Broker deployment

Transition actions(2) Customers connection

IPv6 customers <-> IPv4 network <-> IPv6 backbone

IPv4 customer link -> dual stack

Network and service operation Extend customer management(e.g., RADIUS) to

enable IPv6 Accounting, billing etc., Implement security

Page 10: IPv6/IPv4 Transition: The experience sharing of Tunnel Broker deployment

Backbone transition steps Backbone transition

Transition path: IPv4 Only -> Tunnel + dedicated IPv6 Link -> Dual-Stack

IPv6-over-MPLS

Backbone gears’ configuration Routing Issues

Performance, cost, upgradable

Page 11: IPv6/IPv4 Transition: The experience sharing of Tunnel Broker deployment

Customers connection transition steps(1) Tunneling, prefix is

the key Configured/automated

Tunneling ISATAP [RFC 4214] 6to4 [RFC 3056] Teredo [RFC 4380]

Small sites Dual stack ->

configured tunneling -> automated tunneling

Large sites Dual stack ->

Configured tunneling Customer premise equipment

Too much to manual configured DHCPv6 or stateless mechanism

Page 12: IPv6/IPv4 Transition: The experience sharing of Tunnel Broker deployment

Customers connection transition steps(2)

Issues Firewall, NAT, dynamic IP assigned User authentication/access control Traceability Ingress filtering, uRPF Multi-homing

developing; multi-connection Quality of Service

Page 13: IPv6/IPv4 Transition: The experience sharing of Tunnel Broker deployment

Network and service operation action

IPv6 network device configuration IPv6 network management IPv6 monitoring IPv6 customers management IPv6 network and service operation security

Page 14: IPv6/IPv4 Transition: The experience sharing of Tunnel Broker deployment

How does ASCC proceed? At the outset -> Tunneling

IPv6/IPv4 Tunnel w/ BGP4+

Where is the Dual-Stack exist? Campus, WAN

Native and pure IPv6 Link IPv6 IX, dedicated IPv6 Link with other networks

Transition mechanism 6to4, Tunnel broker

Page 15: IPv6/IPv4 Transition: The experience sharing of Tunnel Broker deployment

The role of Tunnel Broker

Page 16: IPv6/IPv4 Transition: The experience sharing of Tunnel Broker deployment

Where is Tunnel Broker?

Page 17: IPv6/IPv4 Transition: The experience sharing of Tunnel Broker deployment

Implementation case (1)

Page 18: IPv6/IPv4 Transition: The experience sharing of Tunnel Broker deployment

Implementation case (1)

Page 19: IPv6/IPv4 Transition: The experience sharing of Tunnel Broker deployment

Implementation case (2)

Page 20: IPv6/IPv4 Transition: The experience sharing of Tunnel Broker deployment

Implementation case (3)

Page 21: IPv6/IPv4 Transition: The experience sharing of Tunnel Broker deployment

Implementation case (3)

Page 22: IPv6/IPv4 Transition: The experience sharing of Tunnel Broker deployment
Page 23: IPv6/IPv4 Transition: The experience sharing of Tunnel Broker deployment

The operation and managementof ASCC

Page 24: IPv6/IPv4 Transition: The experience sharing of Tunnel Broker deployment

What are we doing in IPv6? Cooperate with VoIPv6 Task Force

http://www.ipv6.artdio.com.tw/

Multimedia service(trial) IPv6 streaming for conference

ADSLv6 service DHCPv6, Tunnel Broker.

IPv6 Multicasting

Page 25: IPv6/IPv4 Transition: The experience sharing of Tunnel Broker deployment

VoIPv6連線使用方式

** Reference from VoIPv6 Task Force

Page 26: IPv6/IPv4 Transition: The experience sharing of Tunnel Broker deployment

They are glories of Taiwan

Page 27: IPv6/IPv4 Transition: The experience sharing of Tunnel Broker deployment

The pros and cons of Tunnel Broker (1)

pros To solve the network that can’t get IPv6 access

for the time being, and minimize the cost for IPv6 upgrade.

Easy for end-user; avoiding the single point of failure.

One account, many services. Dynamic DNS Update. Work for both end-user and organization. Configured and automated tunneling.

Page 28: IPv6/IPv4 Transition: The experience sharing of Tunnel Broker deployment

The pros and cons of Tunnel Broker (2)

cons Realm can’t be supported yet. IPv6 Multicast don’t work yet. Allow IPv6-over-IPv4 Tunnel(protocol number

41) & TCP/UDP port 3653 in Firewall device. Local database sync. problem. IPv6 network performance issue.

Page 29: IPv6/IPv4 Transition: The experience sharing of Tunnel Broker deployment

IPv4 traffic statistics

Page 30: IPv6/IPv4 Transition: The experience sharing of Tunnel Broker deployment

IPv6 traffic statistics

Page 31: IPv6/IPv4 Transition: The experience sharing of Tunnel Broker deployment

IPv6 users statistics

Page 32: IPv6/IPv4 Transition: The experience sharing of Tunnel Broker deployment

IPv6 applications

Page 33: IPv6/IPv4 Transition: The experience sharing of Tunnel Broker deployment

Other IPv6 stuff IPv6 Applications

http://www.deepspace6.net/docs/ipv6_status_pag

http://anf.ne.kr/~ipv6/application_list.htm e_apps.html

IPv6 Services http://www.ipv6style.jp/en/statistics/services/inde

x.shtml http://www.ipv6day.org/action.php?

n=En.Services

Page 34: IPv6/IPv4 Transition: The experience sharing of Tunnel Broker deployment

IPv6 Application Listshttp://www.deepspace6.net/docs/ipv6_status_pagIPv6 Application Listshttp://www.deepspace6.net/docs/ipv6_status_pagIPv6 Serviceshttp://www.ipv6day.org/action.php?n=En.ServicesIPv6 Serviceshttp://www.ipv6day.org/action.php?n=En.Services

Page 35: IPv6/IPv4 Transition: The experience sharing of Tunnel Broker deployment

Tunnel Broker List SixXS

http://www.sixxs.net/

XS26 http://www.xs26.net/Project/

AARNet http://broker.aarnet.net.au/

Mytbs http://tbroker.mybsd.org.my/

BT exact https://tb.ipv6.btexact.com/

Page 36: IPv6/IPv4 Transition: The experience sharing of Tunnel Broker deployment

Thank youFor

Your participation ! !