IPv6 Road map for IPv6 Migration in an Organization 4/13/2015 1 Agenda • IPv4 to IPv6 Migration Module – – – – – – – – Migration Plan Migration approach Migration Options Pilot Implementation IPv6 Test bed for large organization IPv6 Training IPv6 Compliance and Certification IPv6 Auditing • Case Study 2 Migration Plan • Study the network and gather information on network infrastructure, key network equipment, servers, appliances and computers, • Gather information on critical applications, • Prepare plan to migrate to a dual stack IPv4/IPv6 network with minimal impact on existing critical applications, and • Prepare a set of strategies covering IT equipment acquisition, new critical applications, manpower resource planning and network policies to prepare for IPv6 compliance audits based on Global Standards 4/13/2015 3 Migration approach • Inventory of current IPv4 addresses and time to address exhaustion. • Identification of IPv4 assets including routers, applications, servers and hosts. • Complexity of existing IPv4 networks Migration Options APPLICATION Host/Router - IPv4/IPv6 Dual Stack Networks - Tunneling Gateway - IPv4/IPv6 Translation TCP/UDP IPv4 IPv6 DRIVER IPv4 IPv6 Network IPv6 Network IPv6 IPv4 Tunnel Translator IPv6 Network IPv4 Network 5 Pilot Implementation • Approach for Large Organization 1. High cost of Migration 2. Up-gradation of hardware and software 3. High cost of application software migration • Approach for Small to Medium Sized Organization 1. Medium or low cost of Migration 2. Cost can be reduced if hardware, software upgradation is done thru regular upgrade cycle IPv6 Test bed for large organization • Creates scaled version of the network in an isolated and controlled environment. • Test bed must have – Flexibility – Isolation – Partnership – Interoperability – Network 4/13/2015 7 IPv6 Training • • • • Benefits of IPv6 especially to the organization concerned. Technical specifications of IPv6. Transition mechanisms available as well as their pros and cons. Routing schemes and algorithms and how do they differ from IPv4. • Security benefits i.e. IPSec; its uses, benefits and how to set it up. • Security considerations having both IPv4 and IPv6 on the network. • Understanding risks that may have cropped into the upper layer protocols due to bugs introduced in them during the porting. 4/13/2015 8 Course modules on IPv6 IP v6 Awareness Courses IPv6 Advance Courses Learning IP v6 Client & servers configuration in IPv6 IPv6 Basic Courses IPv6 Compliance and Certification • New procurement of ICT equipment must be IPv6 Ready • Compliance test of products on conformance to the standards set by the IPv6 Forum. • Organization and Solution providers may work jointly sharing the responsibilities 4/13/2015 10 IPv6 Compliance and Certification 4/13/2015 11 IPv6 Audit • Objective – The audit’s objective is to produce an unbiased validation of the IPv6 self compliant status based of the nine suggested RFCs. – To provide consultation on the deployment of IPv6 networks for future setup. 4/13/2015 12 IPv6 Audit • Decision to be taken – Identify any changes that may be needed to our network infrastructure. – Identify hardware used and their level of support of IPv6. – Review existing network diagram to better plan IPv6 deployment. 4/13/2015 13 Summary • Migration Module • Different methodology for Large, medium and small organization • Training • Joint working of service providers and organization 4/13/2015 14 Case Study of Network of ALTTC Different Links 20 Mbps IPv4 Internet Link on OFC 2 Mbps IPv6 internet Link on copper 2Mbps CDR Link on copper cable MPLS VPN Link on copper cable Global IP POOLS AT ALTTC IPv4 pool: 210.212.90.0/27 IPv6 pool: 2001:4490:D930::/56 10.192.16.1 255.255.248.0 Global-210.212.90.6 Local-10.192.24.1 Same IP POOL 10.10.0.0/16 Staff Position in ALTTC No. of Technical staff No. of supporting staff Total No of Staff 4/13/2015 103 134 237 26 Training requirement Course Faculty Staff IPv6 Basic Course Mobile 15 NGN 7 NP 5 OFC 7 BB 6 IT 3 IT 6 IPv6 Advance Course Software App 4/13/2015 27 Network equipment Equipment Quantity IPv6 Readiness Router 24 Yes L3 switch 2 Yes L2 Switch 30 N/A WiFi devices 8 No Node 350 Partly Printer 15 No 4/13/2015 28 Migration Cost Item Nature of Cost Range Check IPv6 compliance Labour Low Enable IPv6 routing Hardware Upgradation / Labour Medium Manpower Training Labour High Enable IPv6 peering Labour Low Application Software Migration Software Upgradation / Labour High Transition to IPv6: A Case Study for IIT Kanpur Indian Institute of Technology Kanpur Kanpur INDIA Architecture 32 Network Study S.No. 1. Type Backbone Switch Model Cisco 6509 IOS Version 12.2(17r)S2 Remarks IPv6 support available 2. Data Centre Switch Cisco 6509 12.2(17r)SX5 IPv6 support available 3. Distribution Switch Cisco 3750 12.2(25r)SE1 IPv6 support not available 4. Access Switch Cisco 2960 5. UTM Fortigate 360A 6. Gateway Router Cisco 7206 12.2(25r)SEE1 IPv6 support available IPv6 support not available 12.3(4r)T3 IPv6 support available 33 Migration Roadmap •Check IPv6 compliance: Study the existing network Recommend upgrade of the equipment Software upgrade or hardware upgrade/replacement. All future equipment purchase must ensure that the equipment is IPv6 ready •Plan IPv6 addressing: Take IPv6 addresses from APNIC or ISP. Make IPv6 Address allocation policy and plan IPv6 addressing for the entire network. •Enable IPv6 routing: Configure all Layer 3 switches and routers Enable static/dynamic routing inside the network. 34 Migration Roadmap •Setup IPv6 Application Servers: Upgrade the Domain Name servers Upgrade web servers, mail servers, network management servers •Enable IPv6 peering: Enable BGP (Border Gateway Protocol) routing for IPv6 peering with ISP to provide Internet access over IPv6. •Migrate Services on IPv6: Test services like Internet access, Email, VoIP, IPTv etc. on IPv6 and migrate the services to support both IPv6 and IPv4. 35 Migration Cost Item Nature of Cost Range Check IPv6 compliance Labour Low Plan IPv6 addressing: Labour Low Enable IPv6 routing Hardware Upgradation / Labour High /Medium Setup IPv6 Application Servers Software Upgradation / Labour High Enable IPv6 peering Labour Low Migrate Services on IPv6 Labour Low Case Study 3 : Universiti Sains Malaysia Cost Model I N F R A S T R U C T U R E C O S T TRANSITION COST