Cisco IOS IPv6 Integration & Co-Existence © 2004 Cisco Systems, Inc. All rights reserved. 1 Cisco IPv6 Technology Strategy Intelligent Services Cisco IOS IPv6 Feature set Innovation Performance IPv6 Hardware Assisted Forwarding © 2004 Cisco Systems, Inc. All rights reserved. Evolutionary Infrastructure IPv6 Solutions Focusing on Integration and Co-Existence 2 www.cisco.com/ipv6 The Introductory Phase Cisco IOS Technology Preview code built the experimental IPv6 Internet – ‘6Bone’ Cisco engineers cochair the IETF IPv6 and Ngtrans WG Comprehensive Cisco Platform support 1st networking company to deliver commercial IPv6 support over the broadest range of routers/switches, including all transition mechanisms IOS 12.3M, 12.2S, 12.3T IPv6 HW FW – C12000, C6500, C7600, C10720 Cisco, a founding member of the IPv6 Forum Cisco gains extensive deployment experience, 1997-2000 2001-2003 © 2004 Cisco Systems, Inc. All rights reserved. Moving IPv6 into Production Service Providers – Asia and Europe Academic institutions Broadband Services Service Providers - US IP Telephony Home Networking Government & Defense Etc. e.g. 6NET 2004 & Beyond 3 3 Phases of Cisco IPv6 Program Phase 1 Phase 2 IPv6 Early Adopters IPv6 Production Deployment Backbone Deployment 1996 2001 2002 © © 2003, 2004 Cisco Cisco Systems, Systems, Inc. Inc. All All rights rights reserved. reserved. Phase 3 Phase 4 IPv6 Enhanced Services IPv6 Solutions Program 2003 2004 2005 & Beyond 4 Cisco IOS IPv6 Status Positioning Cisco IOS Release General Production Core Edge & Enterprise Infrastructure L3 switch 12.3M May 2003 12.0S on 12000, 10720 Feb 2002 12.2S Feb 2003 12.2SX on C6500 Broadband Access 12.2B/12.3B 7200, 7401 12.3T Technology development First FCS Date October 2003 Feb 2003 Aug 2003 Note – as well as 12.2S © 2004 Cisco Systems, Inc. All rights reserved. 5 Cisco IOS IPv6 Phase I – Early Adopters Feature Set 12.2T Also 12.3M 12.0S/ST (*) 12.2S IPv6 Basic specifications (RFC 2460) 12.2(2)T 12.0(22)S/(21)ST 12.2(14)S ICMPv6 (RFC 2463) 12.2(2)T 12.0(22)S/(21)ST 12.2(14)S Neighbor Discovery (RFC 2461) 12.2(2)T 12.0(22)S/(21)ST 12.2(14)S Stateless Auto-Configuration 12.2(2)T 12.0(22)S/(21)ST 12.2(14)S RIPng (RFC 2080) 12.2(2)T 12.0(22)S/(21)ST 12.2(14)S MP-BGP4 (RFC 2545 & 2858) 12.2(2)T 12.0(22)S/(21)ST 12.2(14)S Configured & Automatic Tunnels 12.2(2)T 12.0(22)S/(21)ST 12.2(14)S 6to4 Tunnels (RFC 3056) 12.2(2)T 12.2(4)T 12.0(22)S/(21)ST N/A 12.2(14)S 12.2(14)S GRE Tunnels Data Links (*) Ethernet, FDDI, PPP, HDLC ATM PVC & LAN-E, FR PVC 12.2(2)T 12.0(22)S/(21)ST 12.2(14)S Applications Ping, Traceroute, Telnet, TFTP, DNA AAAA over IPv4, HTTP 12.2(2)T 12.0(22)S/(21)ST 12.2(14)S 12.2(2)T 12.0(22)S/(21)ST 12.2(14)S Standard Access Control List © 2004 Cisco Systems, Inc. All rights reserved. 6 Cisco IOS IPv6 Phase II – Infrastructure Feature Set 12.2T Also 12.3M 12.0S/ST (*) 12.2S IS-IS for IPv6 12.2(8)T 12.0(22)S/(21)ST 12.2(14)S CEFv6/dCEFv6 12.2(13)T 12.0(22)S/(21)ST 12.2(14)S Extended Access Control List 12.2(13)T 12.0(23)S 12.2(14)S IPv6 over MPLS – 6PE 12.2(15)T 12.0(22)S 12.2(14)S NAT-PT (RFC 2766) 12.2(13)T N/A TBD IPv6 MIBs 12.2(15)T 12.0(22)S 12.2(14)S CDP IPv6 Address Family on Neighbor 12.2(8)T N/A 12.2(14)S Static ND Cache entry 12.2(8)T 12.2(4)T 12.0(22)S/(21)ST 12.0(22)S/(21)ST 12.2(14)S 12.2(14)S 12.2(13)T N/A RLS6/7? DNS AAAA over IPv6 12.2(8)T 12.0(22)S/(21)ST 12.2(14)S SSH over IPv6 12.2(8)T 12.0(22)S 12.2(14)S Link-local Address for BGP4+ peering Broadband Access Encapsulation, AAA, Prefix Pools © 2004 Cisco Systems, Inc. All rights reserved. 7 Industry’s Broadest Platform Support Cisco IOS 12.0S 2001 Cisco 12000 Series Routers Cisco 10720 Series Cisco IOS 12.3 2003 Cisco 800 Series Routers Cisco 1700 Series Routers Cisco IOS 12.2S Cisco 2600 Series Routers Cisco 72/7300 Series Routers Cisco 3600 Series Routers Cisco 75/7600 Series Routers Cisco 3700 Series Routers Cisco 10000 Series Routers Cisco 7200 Series Routers Catalyst 3750 Series Cisco 7300 Series Routers Catalyst 4500 Series Cisco 7500 Series Routers Catalyst 6500 Series © 2004 Cisco Systems, Inc. All rights reserved. 2004 Cisco Product Portfolio PIX Firewall 2004 Mobile Wireless, Home Networking, IP Telephony - Radar 8 Cisco IOS IPv6 Phase III – Services Feature Set 12.xT 12.0S 12.2S OSPFv3 (RFC 2740) 12.2(15)T 12.0(24)S 12.2(18)S Multi-Topology IS-IS 12.2(15)T 12.0(26)S 12.2(18)S IPv6 QoS 12.2(13)T 12.0(28)S TBD ISATAP 12.2(15)T N/A 12.2(14)S Multicast I -MLDv1/v2, PIMv2 SM, SSM 12.3(2)T 12.0(26)S 12.2(18)S Multicast II - MP-BPG4, Static mroute 12.3(4)T 12.0(26)S RLS5 IPsec (for OSPFv3 authentication) 12.3(4)T N/A TBD DPT encapsulation Radius RFC 3162 attributes N/A 12.3(4)T 12.0(23)S N/A RLS6 TBD DHCPv6 Prefix Delegation 12.3(4)T N/A RLS6 NAT-PT Phase II – FTP ALG, NATP-PT 12.3(2)T N/A TBD TBD 12.0(27)S TBD SNMP over IPv6 © 2004 Cisco Systems, Inc. All rights reserved. 9 IPv6 Policy Based Routing • (a) Match a packet - extended IPv6 ACL - packet length • (b) Route the matched packet to a specified neighbor, either by next-hop, or • by interface • (c) Mark the matched packet by setting the DSCP Can set DSCP of matched packets. • (d) Select a VRF for matched packet forwarding. Matched packets may be forwarded by a specific VRF. Has a dependency on IPv6 VPN, may not be there at Phase I © 2004 Cisco Systems, Inc. All rights reserved. 10 Cisco IOS IPv6 Multicast feature set • IPv6 Multicast Phase I - Cisco IOS 12.0(26)S, 12.3(2)T and 12.2(18)S Multicast Listener Discovery (MLD) v1 & v2 PIM Sparse Mode (SM) & Source Specific Mode (SSM) Scoping support v6 over v4 tunnels • IPv6 Multicast Phase II – Cisco IOS 12.0(26)S, 12.3(4)T and 12.2S RLS5 IPv6 Multicast address family on MP-BGP Static Mroutes, Embedded RP • IPv6 Multicast Phase III – Cisco 12.3(7)T PIM Bi-Dir © 2004 Cisco Systems, Inc. All rights reserved. 11 Cisco IOS IPv6 for Broadband Access FTTH • IPv6 deployment solutions over Dial and DSL access IPv4 Servers Radius, NMS,… • Complete DSL choice of encapsulations ATM RFC 1483 Routed ADSL RBE for ATM RFC 1483 Bridged PPPoA PPPoE Residential • IPv6 prefix pools /48 • IPv6 AAA attributes Cisco VSA /64 IPv6 prefix, IPv6 route IPv6 ACL {In, Out} RFC 3162 • DHCPv6 Prefix Delegation © 2004 Cisco Systems, Inc. All rights reserved. Telecommuter IPv4/v6 Servers DNS, Web, E-mails, News,… 12 IPv6 Mobility Solutions Mobile Router & Home Agent Réseau Lab. DPR MIPv6 through 802.11b IPv4 GPS Portail IPv4 IPv6 AP Wifi WGB Wifi IPv4 HA IPv4 IPv6 TCU IPv6 MR Modem GPRS IPv4 IPv6 PC IPv4 FT Router (PAT) MIPv6 in GPRS v4 Tunnel IPv4 • Pursuing Innovation on “Networks in Motion”, Mobile Router (MAR 3200) gets IPv6 support for large scale deployment • works over IPv6 or IPv4 infrastructures FT ADSL Modem GPRS Orange © 2004 Cisco Systems, Inc. All rights reserved. Internet IPv4 IPv4 IPv4 WEBRASKA 13 Cisco IPv6 Security Solutions Integration and Coexistence •Secure connectivity Now – IPSec o IPv4 dynamic IPSec to protect IPv6 over IPv4 tunnels with dynamic IPv4 end point o IPv4 IPSec over UDP to offer protection when crossing a firewall or NAT o IPv6 IPSec to authenticate OSPFv3 •Threat protection – Packet filtering IPv6 Firewall Preview Stateful Packet Filtering o Standard, reflexive, extended access control list o Hardware filtering (Cisco 12000 Series IP Service Engine, Catalyst 6500 Series Supervisor Engine 720) Protecting your network for IPv6 © 2004 Cisco Systems, Inc. All rights reserved. 2004 14 Cisco IPv6 Firewall Statement of Direction Cisco’s firewall technology portfolio will support IPv6 firewall implementations to ensure secure deployment of IPv6 networks commencing in 2004. http://www.cisco.com/en/US/products/hw/vp ndevc/ps2030/prod_white_papers_list.html © 2004 Cisco Systems, Inc. All rights reserved. 15 Moving IPv6 to Production, running Cisco IOS Enterprise WAN: 6to4, IPv6 over IPv4, Dual Stack 6to4 Relay Cable Dual Stack Aggregation IPv6 over IPv4 tunnels or Dedicated data link layers IPv6 over IPv4 Tunnels Residential 6Bone DSL, FTTH, Dial Dual Stack or MPLS & 6PE IPv6 over IPv4 tunnels or Dual stack IPv6 over IPv4 tunnels or Dedicated data link layers ISP’s ISATAP Telecommuter IPv6 IX Enterprise © 2004 Cisco Systems, Inc. All rights reserved. 16 IPv6—Conclusion Moving IPv6 to Production? • Core IPv6 specifications are well-tested & stable Some of the advanced features of IPv6 still need specification, implementation, and deployment work • Application, middleware and Scalable Deployment scenario are IPv6 Focus and Challenge. • Plan for IPv6 integration and IPv4-IPv6 co-existence Training, applications inventory, and IPv6 deployment planning • Cisco is committed to deliver advanced IPv6 capabilities to the Internet industry IPv6 Solutions, ABC of IPv6, e-Learning/Training, ISD,… See http://www.cisco.com/ipv6 © 2004 Cisco Systems, Inc. All rights reserved. 17 Questions ? Presentation_ID © 2003, Cisco Systems, Inc. All rights reserved. 18 More Information • CCO IPv6 http://www.cisco.com/ipv6 • The ABC of IPv6 http://www.cisco.com/en/US/products/sw/iosswrel/ios_abcs_ios_ the_abcs_ip_version_6_listing.html • IPv6 Technical documents : http://www.cisco.com/warp/public/732/Tech/ipv6/ipv6_techdoc .shtml © 2004 Cisco Systems, Inc. All rights reserved. 19 Presentation_ID © 2003 Cisco Systems, Inc. All rights reserved. 20