Cisco IOS IPv6
Integration & Co-Existence
© 2004 Cisco Systems, Inc. All rights reserved.
1
Cisco IPv6 Technology Strategy
Intelligent Services
Cisco IOS IPv6 Feature set
Innovation
Performance
IPv6 Hardware Assisted
Forwarding
© 2004 Cisco Systems, Inc. All rights reserved.
Evolutionary
Infrastructure
IPv6 Solutions
Focusing on Integration
and Co-Existence
2
www.cisco.com/ipv6
The Introductory
Phase
Cisco IOS Technology
Preview code built the
experimental IPv6
Internet – ‘6Bone’
Cisco engineers cochair the IETF IPv6 and
Ngtrans WG
Comprehensive
Cisco Platform
support
1st networking company
to deliver commercial
IPv6 support over the
broadest range of
routers/switches,
including all transition
mechanisms
IOS 12.3M, 12.2S, 12.3T
IPv6 HW FW – C12000,
C6500, C7600, C10720
Cisco, a founding
member of the IPv6
Forum
Cisco gains extensive
deployment experience,
1997-2000
2001-2003
© 2004 Cisco Systems, Inc. All rights reserved.
Moving IPv6
into Production
Service Providers – Asia
and Europe
Academic institutions
Broadband Services
Service Providers - US
IP Telephony
Home Networking
Government & Defense
Etc.
e.g. 6NET
2004 & Beyond
3
3
Phases of Cisco IPv6 Program
Phase 1
Phase 2
IPv6 Early Adopters
IPv6 Production
Deployment
Backbone Deployment
1996
2001
2002
©
© 2003,
2004 Cisco
Cisco Systems,
Systems, Inc.
Inc. All
All rights
rights reserved.
reserved.
Phase 3
Phase 4
IPv6 Enhanced
Services
IPv6 Solutions
Program
2003
2004
2005 & Beyond
4
Cisco IOS IPv6 Status
Positioning
Cisco IOS
Release
General Production
Core
Edge & Enterprise
Infrastructure
L3 switch
12.3M
May 2003
12.0S on 12000,
10720
Feb 2002
12.2S
Feb 2003
12.2SX on C6500
Broadband Access
12.2B/12.3B
7200, 7401
12.3T
Technology development
First FCS Date
October 2003
Feb 2003
Aug 2003
Note – as well as 12.2S
© 2004 Cisco Systems, Inc. All rights reserved.
5
Cisco IOS IPv6 Phase I – Early Adopters
Feature Set
12.2T
Also 12.3M
12.0S/ST (*)
12.2S
IPv6 Basic specifications (RFC 2460)
12.2(2)T
12.0(22)S/(21)ST
12.2(14)S
ICMPv6 (RFC 2463)
12.2(2)T
12.0(22)S/(21)ST
12.2(14)S
Neighbor Discovery (RFC 2461)
12.2(2)T
12.0(22)S/(21)ST
12.2(14)S
Stateless Auto-Configuration
12.2(2)T
12.0(22)S/(21)ST
12.2(14)S
RIPng (RFC 2080)
12.2(2)T
12.0(22)S/(21)ST
12.2(14)S
MP-BGP4 (RFC 2545 & 2858)
12.2(2)T
12.0(22)S/(21)ST
12.2(14)S
Configured & Automatic Tunnels
12.2(2)T
12.0(22)S/(21)ST
12.2(14)S
6to4 Tunnels (RFC 3056)
12.2(2)T
12.2(4)T
12.0(22)S/(21)ST
N/A
12.2(14)S
12.2(14)S
GRE Tunnels
Data Links (*)
Ethernet, FDDI, PPP, HDLC
ATM PVC & LAN-E, FR PVC
12.2(2)T
12.0(22)S/(21)ST
12.2(14)S
Applications
Ping, Traceroute, Telnet, TFTP,
DNA AAAA over IPv4, HTTP
12.2(2)T
12.0(22)S/(21)ST
12.2(14)S
12.2(2)T
12.0(22)S/(21)ST
12.2(14)S
Standard Access Control List
© 2004 Cisco Systems, Inc. All rights reserved.
6
Cisco IOS IPv6 Phase II – Infrastructure
Feature Set
12.2T
Also 12.3M
12.0S/ST (*)
12.2S
IS-IS for IPv6
12.2(8)T
12.0(22)S/(21)ST
12.2(14)S
CEFv6/dCEFv6
12.2(13)T
12.0(22)S/(21)ST
12.2(14)S
Extended Access Control List
12.2(13)T
12.0(23)S
12.2(14)S
IPv6 over MPLS – 6PE
12.2(15)T
12.0(22)S
12.2(14)S
NAT-PT (RFC 2766)
12.2(13)T
N/A
TBD
IPv6 MIBs
12.2(15)T
12.0(22)S
12.2(14)S
CDP IPv6 Address Family on Neighbor
12.2(8)T
N/A
12.2(14)S
Static ND Cache entry
12.2(8)T
12.2(4)T
12.0(22)S/(21)ST
12.0(22)S/(21)ST
12.2(14)S
12.2(14)S
12.2(13)T
N/A
RLS6/7?
DNS AAAA over IPv6
12.2(8)T
12.0(22)S/(21)ST
12.2(14)S
SSH over IPv6
12.2(8)T
12.0(22)S
12.2(14)S
Link-local Address for BGP4+ peering
Broadband Access
Encapsulation, AAA,
Prefix Pools
© 2004 Cisco Systems, Inc. All rights reserved.
7
Industry’s Broadest Platform Support
Cisco IOS 12.0S
2001
Cisco 12000 Series Routers
Cisco 10720 Series
Cisco IOS 12.3
2003
Cisco 800 Series Routers
Cisco 1700 Series Routers
Cisco IOS 12.2S
Cisco 2600 Series Routers
Cisco 72/7300 Series Routers
Cisco 3600 Series Routers
Cisco 75/7600 Series Routers
Cisco 3700 Series Routers
Cisco 10000 Series Routers
Cisco 7200 Series Routers
Catalyst 3750 Series
Cisco 7300 Series Routers
Catalyst 4500 Series
Cisco 7500 Series Routers
Catalyst 6500 Series
© 2004 Cisco Systems, Inc. All rights reserved.
2004
Cisco Product Portfolio
PIX Firewall 2004
Mobile Wireless, Home Networking,
IP Telephony - Radar
8
Cisco IOS IPv6 Phase III – Services
Feature Set
12.xT
12.0S
12.2S
OSPFv3 (RFC 2740)
12.2(15)T
12.0(24)S
12.2(18)S
Multi-Topology IS-IS
12.2(15)T
12.0(26)S
12.2(18)S
IPv6 QoS
12.2(13)T
12.0(28)S
TBD
ISATAP
12.2(15)T
N/A
12.2(14)S
Multicast I -MLDv1/v2, PIMv2 SM, SSM
12.3(2)T
12.0(26)S
12.2(18)S
Multicast II - MP-BPG4, Static mroute
12.3(4)T
12.0(26)S
RLS5
IPsec (for OSPFv3 authentication)
12.3(4)T
N/A
TBD
DPT encapsulation
Radius RFC 3162 attributes
N/A
12.3(4)T
12.0(23)S
N/A
RLS6
TBD
DHCPv6 Prefix Delegation
12.3(4)T
N/A
RLS6
NAT-PT Phase II – FTP ALG, NATP-PT
12.3(2)T
N/A
TBD
TBD
12.0(27)S
TBD
SNMP over IPv6
© 2004 Cisco Systems, Inc. All rights reserved.
9
IPv6 Policy Based Routing
• (a) Match a packet
- extended IPv6 ACL
- packet length
• (b) Route the matched packet to a specified neighbor,
either by next-hop, or
•
by interface
• (c) Mark the matched packet by setting the DSCP
Can set DSCP of matched packets.
• (d) Select a VRF for matched packet forwarding.
Matched packets may be forwarded by a specific VRF. Has a
dependency on IPv6 VPN, may not be there at Phase I
© 2004 Cisco Systems, Inc. All rights reserved.
10
Cisco IOS IPv6 Multicast feature set
• IPv6 Multicast Phase I - Cisco IOS 12.0(26)S, 12.3(2)T and
12.2(18)S
Multicast Listener Discovery (MLD) v1 & v2
PIM Sparse Mode (SM) & Source Specific Mode (SSM)
Scoping support
v6 over v4 tunnels
• IPv6 Multicast Phase II – Cisco IOS 12.0(26)S, 12.3(4)T and 12.2S
RLS5
IPv6 Multicast address family on MP-BGP
Static Mroutes, Embedded RP
• IPv6 Multicast Phase III – Cisco 12.3(7)T
PIM Bi-Dir
© 2004 Cisco Systems, Inc. All rights reserved.
11
Cisco IOS IPv6 for Broadband Access
FTTH
• IPv6 deployment solutions over
Dial and DSL access
IPv4 Servers
Radius, NMS,…
• Complete DSL choice of
encapsulations
ATM RFC 1483 Routed
ADSL
RBE for ATM RFC 1483 Bridged
PPPoA
PPPoE
Residential
• IPv6 prefix pools
/48
• IPv6 AAA attributes
Cisco VSA
/64
IPv6 prefix, IPv6 route
IPv6 ACL {In, Out}
RFC 3162
• DHCPv6 Prefix Delegation
© 2004 Cisco Systems, Inc. All rights reserved.
Telecommuter
IPv4/v6 Servers
DNS, Web, E-mails, News,…
12
IPv6 Mobility Solutions
Mobile Router & Home Agent
Réseau Lab. DPR
MIPv6 through 802.11b
IPv4
GPS
Portail
IPv4 IPv6
AP Wifi
WGB Wifi
IPv4
HA
IPv4 IPv6
TCU
IPv6
MR
Modem
GPRS
IPv4
IPv6
PC
IPv4
FT Router (PAT)
MIPv6 in GPRS v4 Tunnel
IPv4
• Pursuing Innovation on
“Networks in Motion”,
Mobile Router (MAR 3200)
gets IPv6 support for large
scale deployment
• works over IPv6 or
IPv4 infrastructures
FT ADSL Modem
GPRS
Orange
© 2004 Cisco Systems, Inc. All rights reserved.
Internet
IPv4
IPv4
IPv4
WEBRASKA
13
Cisco IPv6 Security Solutions
Integration and Coexistence
•Secure connectivity
Now
– IPSec
o IPv4 dynamic IPSec to protect IPv6 over IPv4
tunnels with dynamic IPv4 end point
o IPv4 IPSec over UDP to offer protection when
crossing a firewall or NAT
o IPv6 IPSec to authenticate OSPFv3
•Threat protection
– Packet filtering
IPv6 Firewall
Preview
Stateful Packet
Filtering
o Standard, reflexive, extended access control list
o Hardware filtering (Cisco 12000 Series IP
Service Engine, Catalyst 6500 Series Supervisor
Engine 720)
Protecting your network for IPv6
© 2004 Cisco Systems, Inc. All rights reserved.
2004
14
Cisco IPv6 Firewall Statement of Direction
Cisco’s firewall technology portfolio will
support IPv6 firewall implementations to
ensure secure deployment of IPv6
networks commencing in 2004.
http://www.cisco.com/en/US/products/hw/vp
ndevc/ps2030/prod_white_papers_list.html
© 2004 Cisco Systems, Inc. All rights reserved.
15
Moving IPv6 to Production, running Cisco IOS
Enterprise
WAN: 6to4, IPv6
over IPv4, Dual Stack
6to4 Relay
Cable
Dual Stack
Aggregation
IPv6 over IPv4 tunnels or
Dedicated data link layers
IPv6 over IPv4 Tunnels
Residential
6Bone
DSL,
FTTH,
Dial
Dual Stack or MPLS & 6PE
IPv6 over IPv4 tunnels
or Dual stack
IPv6 over IPv4 tunnels or
Dedicated data link layers
ISP’s
ISATAP
Telecommuter
IPv6 IX
Enterprise
© 2004 Cisco Systems, Inc. All rights reserved.
16
IPv6—Conclusion
Moving IPv6 to Production?
• Core IPv6 specifications are well-tested & stable
Some of the advanced features of IPv6 still need specification,
implementation, and deployment work
• Application, middleware and Scalable Deployment scenario are
IPv6 Focus and Challenge.
• Plan for IPv6 integration and IPv4-IPv6 co-existence
Training, applications inventory, and IPv6 deployment planning
• Cisco is committed to deliver advanced IPv6 capabilities to the
Internet industry
IPv6 Solutions, ABC of IPv6, e-Learning/Training, ISD,…
See http://www.cisco.com/ipv6
© 2004 Cisco Systems, Inc. All rights reserved.
17
Questions ?
Presentation_ID
© 2003, Cisco Systems, Inc. All rights reserved.
18
More Information
• CCO IPv6
http://www.cisco.com/ipv6
• The ABC of IPv6
http://www.cisco.com/en/US/products/sw/iosswrel/ios_abcs_ios_
the_abcs_ip_version_6_listing.html
• IPv6 Technical documents :
http://www.cisco.com/warp/public/732/Tech/ipv6/ipv6_techdoc
.shtml
© 2004 Cisco Systems, Inc. All rights reserved.
19
Presentation_ID
© 2003 Cisco Systems, Inc. All rights reserved.
20