SlideShare ist ein Scribd-Unternehmen logo
1 von 13
Downloaden Sie, um offline zu lesen
Deployment
 Experiences with IPv6
  Kumar Reddy
  Director, Technical Marketing Engineering
  Cisco Systems
  With thanks to: Andrew Yourtchenko, Alok Wadhwa, Mayur Brahmankar, Jon Woolwine
© 2012 Cisco and/or its affiliates. All rights reserved.
© 2012 Cisco and/or its affiliates. All rights reserved.                            Cisco Confidential   1
Dual Stack

© 2012 Cisco and/or its affiliates. All rights reserved.
© 2012 Cisco and/or its affiliates. All rights reserved.   Cisco Confidential   2
Outside – In
•    Internet Evolution
•    Business Continuity
•    B2C, B2B

                                IPv4 Enterprise                         IPv6 Internet



Inside – Out
•    Globalization
•    Technology Leadership
•    Industry mandate
•    BYOD-Security-Visibility
•    Flatten management plane
                           Dual-Stack Enterprise                       IPv4 Internet

        http://www.cisco.com/en/US/netsol/ns817/networking_solutions_program_home.html
•  Secured broad executive support
•  Progress requires multi-functional teams – not just a networking problem
•  Pursuing Outside-In and Inside-Out in parallel
    •  Coordinated equipment upgrades and software updates with fleet
       upgrade program
    •  Made sure common client configurations were tested
    •  Made operational changes e.g. IPv6-specific security mechanisms and
       monitoring solutions for IPv6 traffic
•  To date
    •  Provided IPv6 access in approximately one-third of global offices –
       tunnel access for interim connectivity
    •  IPv6-enabled 100% of the core network
    •  Observed Happy Eyeballs (RFC 6555) in action
    •  Observed IPv6 attacks
    •  Monitor worldwide usage with 6lab.cisco.com/stats


© 2012 Cisco and/or its affiliates. All rights reserved.         Cisco Confidential   4
38,98% of WiFi devices were Apple devices (13,53% iPhone, 7,28% iPad), 30,56% Intel devices
45,4% are doing 802.11n (up to 144Mbps on 2,4GHz band), 37,25% are doing 802.11n
(300Mbps / 5GHz), 13,88% are doing 802.11g (54Mbps / 2,4GHz), 3,47% are doing 802.11a
(54Mbps / 5GHz)

                                                           Example from IPv6 World Congress, Jan 2012
© 2012 Cisco and/or its affiliates. All rights reserved.                               Cisco Confidential   5
2 privacy addresses




© 2012 Cisco and/or its affiliates. All rights reserved.                         Cisco Confidential   6
Early experiences with
 IPv6-only WiFi on
 2001:db8::d06:f00d/64

© 2012 Cisco and/or its affiliates. All rights reserved.
© 2012 Cisco and/or its affiliates. All rights reserved.   Cisco Confidential   7
•  Scope
    Series of experiments inside Cisco and at Public Conferences (e.g. Cisco Live) with
    IPv6-only WiFi
    Core network dual-stacked
    Access to ‘legacy’ Internet through a NAT64
    Tried both dedicated and shared Access Points with a “try me” IPv6 SSID
•  Logistics
    Volunteer based support – Red T-shirts offered as incentive
    Each event was contained within a (very large) conference room, floor or campus
    building
    Email alias and wiki for support and report issues, findings – limited publicity
    Kept list of applications that worked/didn’t work (user-reported)
    Kept traffic statistics
•  To know more
    http://blogs.cisco.com/borderless/ipv6-at-ciscolive-san-diego/



© 2012 Cisco and/or its affiliates. All rights reserved.                      Cisco Confidential   8
Dual stack topology
Measure: Unique MACs with
                                                           IPv6 LL address
                                                           IPv6 global address
                                                           IPv6 with global EUI address
                                                           IPv4 global address

                                                           Measurements de-duplicate
                                                           privacy addresses



                                                           In 6 months *:
                                                           Dual stack-capable devices
                                                           increased from 47.5% to
                                                           77.5%
                                                           IPv6-using devices increased
                                                           by 87.3%
                                                           * Between IPv6 World Congress, Jan 2012
                                                           And Cisco Live US: June 2012
                                                           Dual stack capable : IPv4 global + IPv6 LL
                                                           IPv6 using : IPv6 global



© 2012 Cisco and/or its affiliates. All rights reserved.                                 Cisco Confidential   10
•  Network and client issues
    •  Different OS policies generate new privacy addresses at different times
    •  DHCPv6 not supported on some OS [versions]
    •  Some mobile OS’ don’t support IPv6-only at all – at best workaround with IPv4 + ACL
    •  Network devices still need IPv4 too
    •  Happy Eyeballs implementation varies across platforms/browsers
    •  Subtle First Hop/RA timer interactions
    •  Certain devices have a high sensitivity to SSID switching (with dual stack too)
    •  Very few mobile clients support IPv6 on radio interfaces

•  Our network setup
    •  An old IPv4 multicast filter impacted RA distribution
    •  Our DNS server address is not easy to remember (next time use eg. 2001:DB8::53)

•  User Experience
    •  Many users couldn’t tell if they were using IPv6 or not
                •       Test-ipv6.com, IPvFOO, IPv6 toolkit app etc are useful
           •         Poor user experience == frequent disconnects and long wait to associate
           •         Recorded 160 applications tried by users (at internal events)
           •         Generally collaboration applications broke through NAT64

© 2012 Cisco and/or its affiliates. All rights reserved.                                       Cisco Confidential   11
•  Before IPv6 turn on
    A fair amount of selling is still required to overcome fear of the unknown
    Knowledge of IPv6 outside core group(s)/enthusiasts can be superficial
•  Support
    No shortage of volunteers (T-shirt effect?) and lots of enthusiasm but actual
    support provided by small groups of usual suspects
    Real debug/troubleshooting skills are poorly distributed – this needs to change
•  Dual stack
    Worked well
•  IPv6 only
     See subtle network / client interactions
     And not so subtle stack differences
     And uncover old design “short-cuts”
     And need changes e.g. security and management planes
     And there are bugs to fix


© 2012 Cisco and/or its affiliates. All rights reserved.                  Cisco Confidential   12
Thank You



© 2012 Cisco and/or its affiliates. All rights reserved.   Cisco Confidential   13

Weitere ähnliche Inhalte

Andere mochten auch

Inicio al Marketing aplicado a las nuevas Tecnologías
Inicio al Marketing aplicado a las nuevas TecnologíasInicio al Marketing aplicado a las nuevas Tecnologías
Inicio al Marketing aplicado a las nuevas Tecnologías
Domestika
 
Virtual team and access to knowledge
Virtual team and access to knowledgeVirtual team and access to knowledge
Virtual team and access to knowledge
Alessandro Guida
 
Aula isomeria prevupe reta final
Aula isomeria prevupe  reta finalAula isomeria prevupe  reta final
Aula isomeria prevupe reta final
Jesrayne Nascimento
 

Andere mochten auch (14)

L135
L135L135
L135
 
Inicio al Marketing aplicado a las nuevas Tecnologías
Inicio al Marketing aplicado a las nuevas TecnologíasInicio al Marketing aplicado a las nuevas Tecnologías
Inicio al Marketing aplicado a las nuevas Tecnologías
 
N3
N3N3
N3
 
Aapex 2013: Meet Made in Korea' this November!
Aapex 2013: Meet Made in Korea' this November!Aapex 2013: Meet Made in Korea' this November!
Aapex 2013: Meet Made in Korea' this November!
 
Mundo lvm 2
Mundo lvm 2Mundo lvm 2
Mundo lvm 2
 
E-procurement
E-procurementE-procurement
E-procurement
 
Kavi internet guvenligi genel sunumu
Kavi internet guvenligi genel sunumuKavi internet guvenligi genel sunumu
Kavi internet guvenligi genel sunumu
 
Mathematical analysis of decahedron with 10 congruent faces each as a right k...
Mathematical analysis of decahedron with 10 congruent faces each as a right k...Mathematical analysis of decahedron with 10 congruent faces each as a right k...
Mathematical analysis of decahedron with 10 congruent faces each as a right k...
 
Virtual team and access to knowledge
Virtual team and access to knowledgeVirtual team and access to knowledge
Virtual team and access to knowledge
 
Ils356
Ils356Ils356
Ils356
 
Du cafe
Du cafeDu cafe
Du cafe
 
Patrimonio cultural
Patrimonio culturalPatrimonio cultural
Patrimonio cultural
 
Aula isomeria prevupe reta final
Aula isomeria prevupe  reta finalAula isomeria prevupe  reta final
Aula isomeria prevupe reta final
 
Setting up an Energy Supply Company - Douglas Jackson (Laurence Gould Partner...
Setting up an Energy Supply Company - Douglas Jackson (Laurence Gould Partner...Setting up an Energy Supply Company - Douglas Jackson (Laurence Gould Partner...
Setting up an Energy Supply Company - Douglas Jackson (Laurence Gould Partner...
 

Mehr von gogo6

Mehr von gogo6 (7)

IoT Field Area Network Solutions & Integration of IPv6 Standards by Patrick G...
IoT Field Area Network Solutions & Integration of IPv6 Standards by Patrick G...IoT Field Area Network Solutions & Integration of IPv6 Standards by Patrick G...
IoT Field Area Network Solutions & Integration of IPv6 Standards by Patrick G...
 
Panel Discussion: Small Steps for USGv6 a giant leap for Internet-kind? with ...
Panel Discussion: Small Steps for USGv6 a giant leap for Internet-kind? with ...Panel Discussion: Small Steps for USGv6 a giant leap for Internet-kind? with ...
Panel Discussion: Small Steps for USGv6 a giant leap for Internet-kind? with ...
 
Panel Discussion: Small Steps for USGv6 a giant leap for Internet-kind? with ...
Panel Discussion: Small Steps for USGv6 a giant leap for Internet-kind? with ...Panel Discussion: Small Steps for USGv6 a giant leap for Internet-kind? with ...
Panel Discussion: Small Steps for USGv6 a giant leap for Internet-kind? with ...
 
Welcome to gogoNET LIVE! 3 - Updates on the CAv6TF and NAv6TF by George Usi a...
Welcome to gogoNET LIVE! 3 - Updates on the CAv6TF and NAv6TF by George Usi a...Welcome to gogoNET LIVE! 3 - Updates on the CAv6TF and NAv6TF by George Usi a...
Welcome to gogoNET LIVE! 3 - Updates on the CAv6TF and NAv6TF by George Usi a...
 
A10 Networks: IPv6 Solutions for Enterprise by Paul Nicholson at gogoNET LIVE...
A10 Networks: IPv6 Solutions for Enterprise by Paul Nicholson at gogoNET LIVE...A10 Networks: IPv6 Solutions for Enterprise by Paul Nicholson at gogoNET LIVE...
A10 Networks: IPv6 Solutions for Enterprise by Paul Nicholson at gogoNET LIVE...
 
Deploying IPv6 in Cisco's Labs by Robert Beckett at gogoNET LIVE! 3 IPv6 Conf...
Deploying IPv6 in Cisco's Labs by Robert Beckett at gogoNET LIVE! 3 IPv6 Conf...Deploying IPv6 in Cisco's Labs by Robert Beckett at gogoNET LIVE! 3 IPv6 Conf...
Deploying IPv6 in Cisco's Labs by Robert Beckett at gogoNET LIVE! 3 IPv6 Conf...
 
Troubleshooting Dual-Protocol Networks and Systems by Scott Hogg at gogoNET L...
Troubleshooting Dual-Protocol Networks and Systems by Scott Hogg at gogoNET L...Troubleshooting Dual-Protocol Networks and Systems by Scott Hogg at gogoNET L...
Troubleshooting Dual-Protocol Networks and Systems by Scott Hogg at gogoNET L...
 

Kürzlich hochgeladen

Why Teams call analytics are critical to your entire business
Why Teams call analytics are critical to your entire businessWhy Teams call analytics are critical to your entire business
Why Teams call analytics are critical to your entire business
panagenda
 

Kürzlich hochgeladen (20)

Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...
 
Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...
Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...
Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...
 
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot TakeoffStrategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
 
Biography Of Angeliki Cooney | Senior Vice President Life Sciences | Albany, ...
Biography Of Angeliki Cooney | Senior Vice President Life Sciences | Albany, ...Biography Of Angeliki Cooney | Senior Vice President Life Sciences | Albany, ...
Biography Of Angeliki Cooney | Senior Vice President Life Sciences | Albany, ...
 
Spring Boot vs Quarkus the ultimate battle - DevoxxUK
Spring Boot vs Quarkus the ultimate battle - DevoxxUKSpring Boot vs Quarkus the ultimate battle - DevoxxUK
Spring Boot vs Quarkus the ultimate battle - DevoxxUK
 
DBX First Quarter 2024 Investor Presentation
DBX First Quarter 2024 Investor PresentationDBX First Quarter 2024 Investor Presentation
DBX First Quarter 2024 Investor Presentation
 
Boost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdfBoost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdf
 
Apidays New York 2024 - Passkeys: Developing APIs to enable passwordless auth...
Apidays New York 2024 - Passkeys: Developing APIs to enable passwordless auth...Apidays New York 2024 - Passkeys: Developing APIs to enable passwordless auth...
Apidays New York 2024 - Passkeys: Developing APIs to enable passwordless auth...
 
Apidays New York 2024 - APIs in 2030: The Risk of Technological Sleepwalk by ...
Apidays New York 2024 - APIs in 2030: The Risk of Technological Sleepwalk by ...Apidays New York 2024 - APIs in 2030: The Risk of Technological Sleepwalk by ...
Apidays New York 2024 - APIs in 2030: The Risk of Technological Sleepwalk by ...
 
Manulife - Insurer Transformation Award 2024
Manulife - Insurer Transformation Award 2024Manulife - Insurer Transformation Award 2024
Manulife - Insurer Transformation Award 2024
 
presentation ICT roal in 21st century education
presentation ICT roal in 21st century educationpresentation ICT roal in 21st century education
presentation ICT roal in 21st century education
 
Connector Corner: Accelerate revenue generation using UiPath API-centric busi...
Connector Corner: Accelerate revenue generation using UiPath API-centric busi...Connector Corner: Accelerate revenue generation using UiPath API-centric busi...
Connector Corner: Accelerate revenue generation using UiPath API-centric busi...
 
FWD Group - Insurer Innovation Award 2024
FWD Group - Insurer Innovation Award 2024FWD Group - Insurer Innovation Award 2024
FWD Group - Insurer Innovation Award 2024
 
Why Teams call analytics are critical to your entire business
Why Teams call analytics are critical to your entire businessWhy Teams call analytics are critical to your entire business
Why Teams call analytics are critical to your entire business
 
How to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected WorkerHow to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected Worker
 
CNIC Information System with Pakdata Cf In Pakistan
CNIC Information System with Pakdata Cf In PakistanCNIC Information System with Pakdata Cf In Pakistan
CNIC Information System with Pakdata Cf In Pakistan
 
Ransomware_Q4_2023. The report. [EN].pdf
Ransomware_Q4_2023. The report. [EN].pdfRansomware_Q4_2023. The report. [EN].pdf
Ransomware_Q4_2023. The report. [EN].pdf
 
Polkadot JAM Slides - Token2049 - By Dr. Gavin Wood
Polkadot JAM Slides - Token2049 - By Dr. Gavin WoodPolkadot JAM Slides - Token2049 - By Dr. Gavin Wood
Polkadot JAM Slides - Token2049 - By Dr. Gavin Wood
 
"I see eyes in my soup": How Delivery Hero implemented the safety system for ...
"I see eyes in my soup": How Delivery Hero implemented the safety system for ..."I see eyes in my soup": How Delivery Hero implemented the safety system for ...
"I see eyes in my soup": How Delivery Hero implemented the safety system for ...
 
Exploring Multimodal Embeddings with Milvus
Exploring Multimodal Embeddings with MilvusExploring Multimodal Embeddings with Milvus
Exploring Multimodal Embeddings with Milvus
 

Enterprise Deployment at Cisco, the Enterprise by Kumar Reddy at gogoNET LIVE! 3 IPv6 Conference

  • 1. Deployment Experiences with IPv6 Kumar Reddy Director, Technical Marketing Engineering Cisco Systems With thanks to: Andrew Yourtchenko, Alok Wadhwa, Mayur Brahmankar, Jon Woolwine © 2012 Cisco and/or its affiliates. All rights reserved. © 2012 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 1
  • 2. Dual Stack © 2012 Cisco and/or its affiliates. All rights reserved. © 2012 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 2
  • 3. Outside – In •  Internet Evolution •  Business Continuity •  B2C, B2B IPv4 Enterprise IPv6 Internet Inside – Out •  Globalization •  Technology Leadership •  Industry mandate •  BYOD-Security-Visibility •  Flatten management plane Dual-Stack Enterprise IPv4 Internet http://www.cisco.com/en/US/netsol/ns817/networking_solutions_program_home.html
  • 4. •  Secured broad executive support •  Progress requires multi-functional teams – not just a networking problem •  Pursuing Outside-In and Inside-Out in parallel •  Coordinated equipment upgrades and software updates with fleet upgrade program •  Made sure common client configurations were tested •  Made operational changes e.g. IPv6-specific security mechanisms and monitoring solutions for IPv6 traffic •  To date •  Provided IPv6 access in approximately one-third of global offices – tunnel access for interim connectivity •  IPv6-enabled 100% of the core network •  Observed Happy Eyeballs (RFC 6555) in action •  Observed IPv6 attacks •  Monitor worldwide usage with 6lab.cisco.com/stats © 2012 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 4
  • 5. 38,98% of WiFi devices were Apple devices (13,53% iPhone, 7,28% iPad), 30,56% Intel devices 45,4% are doing 802.11n (up to 144Mbps on 2,4GHz band), 37,25% are doing 802.11n (300Mbps / 5GHz), 13,88% are doing 802.11g (54Mbps / 2,4GHz), 3,47% are doing 802.11a (54Mbps / 5GHz) Example from IPv6 World Congress, Jan 2012 © 2012 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 5
  • 6. 2 privacy addresses © 2012 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 6
  • 7. Early experiences with IPv6-only WiFi on 2001:db8::d06:f00d/64 © 2012 Cisco and/or its affiliates. All rights reserved. © 2012 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 7
  • 8. •  Scope Series of experiments inside Cisco and at Public Conferences (e.g. Cisco Live) with IPv6-only WiFi Core network dual-stacked Access to ‘legacy’ Internet through a NAT64 Tried both dedicated and shared Access Points with a “try me” IPv6 SSID •  Logistics Volunteer based support – Red T-shirts offered as incentive Each event was contained within a (very large) conference room, floor or campus building Email alias and wiki for support and report issues, findings – limited publicity Kept list of applications that worked/didn’t work (user-reported) Kept traffic statistics •  To know more http://blogs.cisco.com/borderless/ipv6-at-ciscolive-san-diego/ © 2012 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 8
  • 10. Measure: Unique MACs with IPv6 LL address IPv6 global address IPv6 with global EUI address IPv4 global address Measurements de-duplicate privacy addresses In 6 months *: Dual stack-capable devices increased from 47.5% to 77.5% IPv6-using devices increased by 87.3% * Between IPv6 World Congress, Jan 2012 And Cisco Live US: June 2012 Dual stack capable : IPv4 global + IPv6 LL IPv6 using : IPv6 global © 2012 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 10
  • 11. •  Network and client issues •  Different OS policies generate new privacy addresses at different times •  DHCPv6 not supported on some OS [versions] •  Some mobile OS’ don’t support IPv6-only at all – at best workaround with IPv4 + ACL •  Network devices still need IPv4 too •  Happy Eyeballs implementation varies across platforms/browsers •  Subtle First Hop/RA timer interactions •  Certain devices have a high sensitivity to SSID switching (with dual stack too) •  Very few mobile clients support IPv6 on radio interfaces •  Our network setup •  An old IPv4 multicast filter impacted RA distribution •  Our DNS server address is not easy to remember (next time use eg. 2001:DB8::53) •  User Experience •  Many users couldn’t tell if they were using IPv6 or not •  Test-ipv6.com, IPvFOO, IPv6 toolkit app etc are useful •  Poor user experience == frequent disconnects and long wait to associate •  Recorded 160 applications tried by users (at internal events) •  Generally collaboration applications broke through NAT64 © 2012 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 11
  • 12. •  Before IPv6 turn on A fair amount of selling is still required to overcome fear of the unknown Knowledge of IPv6 outside core group(s)/enthusiasts can be superficial •  Support No shortage of volunteers (T-shirt effect?) and lots of enthusiasm but actual support provided by small groups of usual suspects Real debug/troubleshooting skills are poorly distributed – this needs to change •  Dual stack Worked well •  IPv6 only See subtle network / client interactions And not so subtle stack differences And uncover old design “short-cuts” And need changes e.g. security and management planes And there are bugs to fix © 2012 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 12
  • 13. Thank You © 2012 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 13