A Practical Approach to IPv6 Vietnam IPv6 Day Boonchareon Chong Global Solution Architect - Service Provider Boon@f5.com
The move to IPv6 The Data Tsunami in Service Providers and Enterprises IP Everything Multimedia devices Smart grid Machine-to-machine Video surveillance Multimedia Content Video on demand Cloud computing VoIP Social media F5 Networks, Inc 2
IPv6 Driven by Consumerization of IT 4.3B IP Address INFINITE 73% Penetration >90% Penetration 450M Smartphones > 800M Smartphones F5 Networks, Inc 3
What s your name?.. I Meant What s your IP Address? F5 Networks, Inc 4
IPv6 What it means to you.the Impact Service Providers Subscriber Acquisition Revenue Growth New Value Added Services Enterprise Consumer User Experience Launch of New Business Applications Encourage Enterprise Application Usage F5 Networks, Inc 5
What Can you Do The Approach? IPv4 Island IPv6 Internet IPv6 Dominate IPv4 Island IPv6 Island IPv6 Island IPv4 Internet IPv6 Island Transition IPv6&IPv4 Co-Exist IPv4 Internet (Getting ready for the rest of the world to be ready while IPv6 Internet maintaining business as usual) IPv4 Dominate F5 Networks, Inc 6
Moving To IPv6 Considerations Service Providers Subscribers Accessing the Internet Subscribers are issued IPv6 Addresses or/and Private IPv4 Wide Varieties of Subscribers Types iphone, Android, ipad, Smartphone, PC, Windows XP, Mac etc Not all are IPv6 or Dual Stack Enabled Should not affect and Transparent to Subscribers Existing Condition and Usability F5 Networks, Inc 7
What can you do Service Providers F5 Recommends To Start With NAT Dual Stack Tunneling NAT Pros Easiest green field deployment, Eventual Environment Pros Easiest Transport Solution No Application Awareness Pros No impact on legacy systems Seamless any device any app connection Cons Issues with Legacy applications and devices Too much to do at once Cons IPv4 and IPv6 environment isolation Too much Changes to the Subscribers devices eg Residential gateways need to be updated. NAT (eg NAT64 is still required regardless of tunnelling Need of ALG Cons Session and NAT density termination stress F5 Networks, Inc 8
IPv4 to IPv6 Subsriber s Migration Strategies Introduce NAT44 Enable Dual-Stack Migrate NAT44 to DS-Lite IPv4 address exhaustion IPv6 service introduction Gradual migration to IPv6 only architecture Introduce NAT44 Enable Dual-Stack Migrate NAT44 to NAT64 Phasing mainly driven by IPv4 exhaustion urgency and network equipment readiness F5 Networks, Inc 9
How about non-ipv6 friendly applications? e.g. Hardcoded IPv4 address within a page. ERROR: CONTENT NOT FOUND F5 Networks, Inc 10
F5 Application Fluent IPv6 Translation can fix non-ipv6 friendly applications F5 Networks, Inc 11
Real World Case Study Service Provider Approach With F5 F5 Networks, Inc 12
Mobile SP - Before Mobile Smart Devices 3G PC/Laptop HSPA/HSDPA 3G F5 Internet IPv4 IPv4(Pub) GGSN Traffic Steering Mobile Optimization F5 Networks, Inc 13
The Problem: Uncompleted request No more IPv4 to assign The Impact: Subscribers are unhappy because they cannot reach the Internet F5 Networks, Inc 14
The Fix with F5: - Assign Private IP to fix the current issue - NAT44 (NAPT, DNAT, PBA, IPBA, ALG) - Logging NAPT 2013-Feb-28 11:41:59.27 - MSISDN: 006591823216, IMSI: 310150123456789, C-IP/P: 10.26.63.48:30073, XIP/P: 202.56.93.49:33687, DIP/P: 8.8.4.4:53 PBA 2013-Feb-28 11:41:59.27 - MSISDN: 006591823216, IMSI: 310150123456789, C-IP/P: 10.26.63.48:30073, Assigned XIP/P: 202.56.93.49:1024-2024 for 10 minutes F5 Networks, Inc 15
We should do this progressively: Now - 10% Private, 90% Public 1 Week - 50% Private, 50% Public 1 Month - 100% Private, 0% Public F5 Networks, Inc 16
Mobile SP Broken Lets Fix It - Now Mobile Smart Devices 3G IPv4(Pri) IPv4(Pub) PC/Laptop HSPA/HSDPA 3G Destination IPv4 F5 NAT44 F5 Destination IPv4 Internet IPv4 GGSN Traffic Steering Mobile Optimization F5 Networks, Inc 17
Mobile SP After NAT44 1 Month Mobile Smart Devices 3G IPv4(Pri) IPv4(Pub) PC/Laptop HSPA/HSDPA 3G Destination IPv4 F5 NAT44 F5 Destination IPv4 Internet IPv4 GGSN Traffic Steering Mobile Optimization F5 Networks, Inc 18
What s Next? We don t just have a problem in our mobile environment but also in our wire line lets tap on this infra. F5 Networks, Inc 19
Mobile and Wireline SP After NAT44 Mobile Smart Devices 3G IPv4(Pri) PC/Laptop HSPA/HSDPA 3G Destination IPv4 F5 NAT44 F5 Destination IPv4 Internet IPv4 GGSN Traffic Steering IPv4(Pri) Mobile Optimization BRAS Broadband F5 Networks, Inc 20
What s the progression? - IPv6 - LTE/4G F5 Networks, Inc 21
Mobile and Wireline SP After NAT44 Mobile Smart Devices 3G IPv4(Pri) IPv6(Pub) PC/Laptop HSPA/HSDPA 3G Destination IPv4 Destination IPv4 F5 NAT44 NAT64 F5 Destination IPv4 Destination IPv4 Internet IPv4 GGSN 4G Traffic Steering IPv4(Pri) Mobile Optimization (Flash networks) BRAS Broadband F5 Networks, Inc 22
Mobile and Wireline SP After NAT44 Mobile Smart Devices 3G IPv4(Pri) IPv6(Pub) PC/Laptop HSPA/HSDPA 3G GGSN Destination IPv4 Destination IPv4 F5 NAT44 NAT64 F5 DS-Lite Destination IPv4 Destination IPv4 Internet IPv4 4G Traffic Steering IPv6(Pub) IPv4(Pri) Mobile Optimization (Flash networks) BRAS Broadband F5 Networks, Inc 23
F5 has migrated the SP network to be IPv6 ready to switch, obsolete or remove IPv4 anytime or when the world is ready for an all IPv6 world. F5 Networks, Inc 24
Moving To IPv6 Considerations Enterprise Users Accessing the Application (Intranet, CRM, E-Banking, E-Shop etc) Applications to move to IPv6 Addresses Allow Users to access IPv6 Natively without depending on the Service Providers to handle Translation Should not affect and Transparent to User Existing Condition and Usability 3 Steps Build an IPv6 Network Rewrite/Recode Applications To Be IPv6 Ready Migrate to IPv6 F5 Networks, Inc 25
What can you do Enterprise F5 Recommends Dual Stack Gateway Dual Stack Dual Stack Gateway Pros Easiest green field deployment Eventual Environment Pros No impact on legacy systems Seamless any device any app connection Cons Issues with Legacy applications and devices Too much to do at once Cons Need of application awareness Session and NAT density termination stress F5 Networks, Inc 26
Practical Approach To IPv6 Enterprise IPv4 Infra Datacenter Internet IPv4 Mobile Smart Devices IPv6 Infra Internet IPv6 PC/Laptop HSPA/HSDPA Windows 7/Mac Smart Devices F5 Networks, Inc 27
Facebook IPv6 Enablement Case Study http://sites.google.com/site/ipv6implementors/2010/agenda V4 Environment F5 Networks, Inc 28
Facebook IPv6 Enablement Case Study http://sites.google.com/site/ipv6implementors/2010/agenda V6 Enablement F5 Networks, Inc 29
Facebook IPv6 Enablement Case Study http://sites.google.com/site/ipv6implementors/2010/agenda Application Enablement F5 Networks, Inc 30
Facebook IPv6 Enablement Case Study http://sites.google.com/site/ipv6implementors/2010/agenda Sample Configuration F5 Networks, Inc 31
Facebook IPv6 Enablement Case Study http://sites.google.com/site/ipv6implementors/2010/agenda F5 Networks, Inc 32
F5 BIG-IP CGNAT Value Delivered Meeting and exceeding customer requirements High-scale and performance with modular platform (Viprion chassis) High speed and reliable logging (syslog) with integrated load balancing to syslog server pool Inter-chassis NAT state synchronization for high availability Deterministic NAT mappings Flexible, application-aware header enrichment combined with NAT44 traffic processing Cell-optimized TCP stack on the Gi side for increased performance over the radio network Inspection of RADIUS traffic to learn subscriber context irules for full customization of traffic processing Ability to integrate WAP gateway function Ability to integrate NAT64 for IPv6 migration purposes Ability to add additional traffic steering functions (e.g., CDN, caching, video optimization) Ability to add additional control-plane load balancing functions (e.g. Diameter) F5 Networks, Inc 33
Benefits of F5 s IPv4 Management and IPv6 Migration Solution High capacity & Scalable on demand High-speed logging for legal data retention TCP Optimization and HTTP Header enrichment Optimize Secure Application and network firewall functions Cost-effective and scalable NAT services Lower CapEx / Opex by offloading security features from firewalls Incremental Revenue in an IPv6 network Monetize Mitigate IPv4 address depletion with F5 s scalable CGNAT functionality and migrate seamlessly to IPv6. F5 improves network efficiency and delivers services more cost-effectively through service consolidation and context-awareness. F5 Networks, Inc 34
Manage IPv4 migration while Embracing IPv6 Manage the depletion of IPv4 Addresses - CGNAT helps mitigate IPv4 depletion Plan the transition to IPv6 - Dual-Stack - Dual-Stack Lite Monetize your network on IPv6 - Deploy new applications and services enabled on IPv6 - Video / Tele-presence / E-learning / Interactive games F5 Networks, Inc 35
Essential Guidance for an IPv6 Strategy IPv6 Migration should be: Zero disruption to application service. Simple architecture Seamless and non-intrusive Investment protection Application Fluent Highly scalable F5 Networks, Inc 36