How Cisco IT Is Accelerating Adoption of IPv6

Similar documents
How Cisco IT Is Implementing IPv6: Progress Update

How Cisco ASR 1000 Enables Cisco Business Strategies by Providing Capacity and Resiliency for Collaborative Applications

How Cisco IT Deployed Enterprise Messaging on Cisco UCS

How Cisco IT Simplified Network Growth with EIGRP

Inside Cisco IT: Making the Leap to IPv6

Federal Agencies and the Transition to IPv6

IPv6 Implementation Best Practices For Service Providers

Executive Summary...1 Chapter 1: Introduction...1

IPv6 Enablement for Enterprises. Waliur Rahman Managing Principal, Global Solutions April, 2011

Sony Adopts Cisco Solution for Global IPv6 Project

Encouraging the deployment of IPv6 in the developing countries

Accelerate Your Enterprise Private Cloud Initiative

How Cisco IT Improved Development Processes with a New Operating Model

How Cisco Expedites IT Integration of an Acquisition

How Cisco IT Migrated TDM Local Access from SONET to OC-192 Infrastructure

How Cisco IT Deployed Cisco Firewall Services Modules at Scientific Atlanta

How Cisco India Simplified VoIP and PSTN calls with Logical Partitioning for Cisco Unified Communications Manager

The Regional Internet Registries

Guide to TCP/IP Fourth Edition. Chapter 11: Deploying IPv6

How Cisco IT Introduced Cisco Jabber

How Cisco Employees Communicate Visually with Anyone, Anywhere

Workshop on the IPv6 development in Saudi Arabia 8 February 2009; Riyadh - KSA

Networking for a dynamic infrastructure: getting it right.

Integrated DHCP, DNS & IP Address Management

VMware vsphere 4 and Cisco Nexus 1000V Series: Accelerate Data Center Virtualization

Global Voic Cutover

Shaw Communications IPv6 Deployment

Gain Control Over Your Cloud Use with Cisco Cloud Consumption Professional Services

How Cisco Deploys Video Conferencing for Employee Collaboration

SYMANTEC: SECURITY ADVISORY SERVICES. Symantec Security Advisory Services The World Leader in Information Security

BUILDING the VIRtUAL enterprise

Case Study: Professional Services Firm Ensures Secure and Successful IPv6 Deployments for Customers with the OptiView XG Network Analysis Tablet

Akamai's V6 Rollout Plan and Experience from a CDN Point of View. Christian Kaufmann Director Network Architecture Akamai Technologies, Inc.

IP Addressing Modes for Cisco Collaboration Products

IPv6 Readiness in the Communication Service Provider Industry

Why is Office 365 the right choice?

IPv4 Exhaustion at ARIN

Media-Ready Network Transcript

How Cisco Multilayer Director Switch Operates with Other SAN Switches During SAN Migration

Take a Confident Step towards Migration to Microsoft Skype for Business

MIGRATING TO INTERNET PROTOCOL VERSION 6 (IPV6)

How Cisco IT Implemented Organizational Change and Advanced Services for Operational Success

Accelerate Your Cloud Journey

What does IPv6 mean to me and my organization?

Akamai's V6 Rollout Plan and Experience from a CDN Point of View. Christian Kaufmann Director Network Architecture Akamai Technologies, Inc.

IPv6 support. Chris Mitchell. Program Manager Microsoft Corporation Windows Networking & Communications IPv6

IP Addressing Modes for Cisco Collaboration Products

How Cisco IT Improves Commerce User Experience by Securely Sharing Internal Business Services with Partners

How Cisco IT Designed a Separate Network to Test Cisco Alpha Equipment

IPv6 Deployment Survey. Based on responses from the RIPE community during June 2009 Maarten Botterman RIPE 59, Lisbon, 6 October 2009

Networking for a smarter data center: Getting it right

DATA CENTRE SOLUTIONS

Run the business. Not the risks.

Why, When & How? Asela Galappattige Sri Lanka Telecom PLC

Cisco Preparing Its Datacenters for the Next Generation of Virtualization and Hybrid Cloud with Its Application Centric Infrastructure

Kunal Mahajan Microsoft Corporation

Key Steps in the Transition to IPv6 WHITE PAPER

EUROPEAN ICT PROFESSIONAL ROLE PROFILES VERSION 2 CWA 16458:2018 LOGFILE

Cisco Virtual Experience Infrastructure for Government. Virtualize Your Desktop and Increase Agency Efficiency

Deploy CGN to Retain IPv4 Addressing While Transitioning to IPv6

Lunch with John Curran. President and CEO, ARIN

IPv6 in Campus Networks

A large-scale International IPv6 Network. A large-scale International IPv6 Network.

Contents. The Workshop IPv6 Collaborations in ASEAN Framework..8. The Results of IPv6 Collaborations in ASEAN..19. Conclusion and Recommendation 20

Cloud solution consultant

Predictive Insight, Automation and Expertise Drive Added Value for Managed Services

21ST century enterprise. HCL Technologies Presents. Roadmap for Data Center Transformation

Transform your network and your customer experience. Introducing SD-WAN Concierge

Cloud Computing. January 2012 CONTENT COMMUNITY CONVERSATION CONVERSION

New Zealand Government IBM Infrastructure as a Service

Technical Overview of DirectAccess in Windows 7 and Windows Server 2008 R2. Microsoft Windows Family of Operating Systems

IPv6 in Internet2. Rick Summerhill Associate Director, Backbone Network Infrastructure, Internet2

Internet Protocol Version 6

ORACLE SERVICES FOR APPLICATION MIGRATIONS TO ORACLE HARDWARE INFRASTRUCTURES

Cloud solution consultant

Uptime and Proactive Support Services

IPv6 Deployment Experiences. John Jason Brzozowski

Making hybrid IT simple with Capgemini and Microsoft Azure Stack

ProDeploy Suite. Accelerate enterprise technology adoption with expert deployment designed for you

IPv6 Migration Framework Case of Institutions in Ethiopia

I D C T E C H N O L O G Y S P O T L I G H T

Features. HDX WAN optimization. QoS

Planning IPv4 addressing Configuring an IPv4 host Managing and troubleshooting IPv4 network connectivity

Sonatel: An IPv6 Experience

Networking with Windows Server 2016

Cloud Services. Infrastructure-as-a-Service

Transitioning to Symyx

DaaS Market Report Workspace Services and Desktops-as-a-Service Global Market Trends: The Service Provider Perspective

Migration Technologies. Dual Stack and Tunneling Using GRE, 6to4, and 6in4.

Network Visibility and Segmentation

Holistic IPv6 Transition Yanick Pouffary HP Distinguished Technologist HP IPv6 Global Leader, HP Technology Services Office of the CTO

Evolution For Enterprises In A Cloud World

WORLD TELECOMMUNICATION STANDARDIZATION ASSEMBLY Hammamet, 25 October 3 November 2016

Get your business Skype d up. Lessons learned from Skype for Business adoption

SIEM: Five Requirements that Solve the Bigger Business Issues

IPv6 Network Management

Unit 5 - IPv4/ IPv6 Transition Mechanism(8hr) BCT IV/ II Elective - Networking with IPv6

Griffith University IPv6 Guidelines. IPv6 Guidelines

Taking Back Control of Your Network With SD-LAN

FREQUENTLY ASKED QUESTIONS ABOUT IPv6

Transcription:

Cisco IT Case Study How Cisco IT Is Accelerating Adoption of IPv6 Priority projects are IPv6-based public website and end-to-end reference implementation. Cisco IT Case Study / Borderless Networks / IPv6: American Registry for Internet Numbers (ARIN) is encouraging companies to support IPv6 addresses by January 1, 2012. Cisco IT has been making the shift gradually, adopting a dual-stack approach to simultaneously support IPv4 and IPv6 traffic. The team s first project was enabling IPv6 for As Cisco continues its journey towards a borderless enterprise, our IPv6 deployment is enabling many of the infrastructure requirements mandated by our present and future business strategies. It has now become clear that for enterprises large and small, IPv6 is not just a side thought, but a core technology evolution that will play an important role in the future of business and IT strategies. John Manville, Vice President, Network and Data Center Services, Cisco IT the cisco.com public website. This case study explores the decisions that Cisco IT has made to support IPv6, the current architecture, and design steps. Cisco customers can draw on Cisco IT's real-world experience in this area to plan their own strategy for IPv6 adoption. Background The original Internet Protocol, known as IPv4, uses 32-bit addresses and can support 4.3 billion devices connected directly to the Internet. IPv6, in contrast, uses 128-bit addresses and supports a practically unlimited number of devices: 2 to the 128th power. Based on the projections from the Internet Assigned Numbers Authority and the various Regional Internet Registries, IPv4 addresses are nearly certain to run out by the end of 2011. Some organizations regard Internet continuity as the main justification for IPv6 adoption, especially if they have a significant Internet business presence. Other organizations create a business case based on national competitiveness, education, or complying with regulatory requirements. For Cisco, as with other technology companies, IPv6 adoption is also important to give R&D and product teams a realworld testing ground for new solutions. Challenge Cisco IT has been planning the shift from the IPv4 to IPv6 address space since 2002, balancing the project with other IT priorities, such as data center virtualization and continuing adoption of Cisco TelePresence and other collaboration technologies. The migration became more urgent as the IPv4 address space approached depletion. Compliance requirements from governments where we do business, lack of new IPv4 addresses (especially in emerging markets( and proliferation of mobile devices are driving the business case for our internal IPv6 adoption, says John Manville, vice president of network and data center services for Cisco IT. In addition, Cisco needs an IPv6 infrastructure to develop and test IPv6-compliant solutions in a real-world environment for customers planning their own migration. The IPv6 migration project is far-reaching, affecting network devices in 400 Cisco offices, in 90 countries. More than 180,000 people connect to the Cisco corporate network, including 72,000 employees, 20,000 channel partners, 100- plus application service providers, and approximately 200 development partners. All contents are Copyright 2011 Cisco Systems, Inc. All rights reserved. This document is Cisco Public Information. Page 1 of 8

Like other companies, Cisco expects IPv4 devices to coexist with newer IPv6 devices for many years. To accomplish the transition to IPv6 while continuing to support IPv4, Cisco IT needed to: Bring together a cross-functional program team Acquire IPv6 address space Decide which IPv6 approaches to use: tunneling, proxy servers, and dual-stack Perform a readiness assessment, including network devices as well as the Cisco IOS Software on those devices Work with service provider partners to support IPv6 with service-level agreements (SLAs) equivalent to the existing IPv4 SLAs Develop an IPv6 version of the Cisco public website The cross-functional team extends beyond our core networking experts and data center services organization, to include application, security, and web teams, says Clyde Kennedy, IT program manager. Solution Project Planning Discussions about IPv6 began with the Cisco IT networking team and are now spreading to other infrastructure and application teams (Figure 1). Now that customers are beginning to access content and application with IPv6-enabled devices, the conversation is more meaningful, says Keith Brumbaugh, a Cisco IT lead architect for the project. We re building a cross-functional roadmap for IPv6 support in Cisco IT. Figure 1. Framework for IPv6 Adoption at Cisco At the outset of the project, the cross-functional team agreed on goals for IPv6 integration and migration: The overriding principle was to do no harm, says Khalid Jawaid, Cisco IT network engineer. Design principles are: Do not jeopardize existing IPv4 services and applications, such as cisco.com and the internal corporate network All contents are Copyright 2011 Cisco Systems, Inc. All rights reserved. This document is Cisco Public Information. Page 2 of 8

Preserve the cisco.com brand and control over the cisco.com experience Do not compromise the corporate security posture Re-use existing infrastructure, capabilities, content, and application environments whenever possible Compile lessons learned to share with customers Acquiring an IPv6 Address Space Cisco started with a smaller block of IPv6 addresses, later acquiring a /32 address space (Figure 2). We gave careful thought on how to carve up the address space for different geographies, following the same principles we did for IPv4 addresses, says Jon Woolwine, Cisco IT lead architect for the IPv6 program. Anticipated growth in each region played a big role in our decisions. Figure 2. Cisco IPv6 Breakout Plan Cisco IT uses a dedicated web-based application, modified to support IPv6, to manage the IP address space. The IT team also added support for IPv6 in the company s domain name system (DNS) services. Early on, we enabled our DNS infrastructure to advertise AAAA records, so that domain names can be resolved to IPv6 addresses, says Woolwine. Now we re in the planning stages of enabling DHCPv6. Until then, we ll use SLAAC [Stateless Address Auto Configuration] for dynamic IPv6 address assignment. Selecting an Approach to IPv6 Integration When Cisco began IPv6 integration in 2002, the IT team built dedicated IPv6 environments for various business uses, such as testing. The environments connected through IPv6-over-IPv4 tunnels. On the client side, the team relied on Intra-Site Automatic Tunnel Addressing Protocol (ISATAP) tunnels for IPv6-enabled endpoints. Today, Cisco IT is moving towards a dual-stack approach, meaning that devices can simultaneous support IPv4 and IPv6. All network services, including quality of service (QoS) and multicast, apply to both IPv4 and IPv6. The dualstack strategy is enabling us to move one step at a time toward end-to-end IPv6, says Brumbaugh. All contents are Copyright 2011 Cisco Systems, Inc. All rights reserved. This document is Cisco Public Information. Page 3 of 8

Cisco uses Enhanced Interior Gateway Routing Protocol (EIGRP) for IPv4 and will continue to use EIGRP with IPv6. It s a good idea to use the same routing protocol for IPv4 and IPv6 to simplify support activities for operational teams, says Woolwine. Priority Projects: Reference Architecture and IPv6 Internet Presence Two IPv6 projects are nearly complete. We re implementing an end-to-end IPv6 infrastructure as a reference for public sector customers that will also satisfy their compliance requirements, says Jawaid. We have also created an IPv6 Internet presence on cisco.com that operates in parallel with our IPv4 presence. The first phase for the end-to-architecture is regional IPv6 tunnel headends in San Jose, California and Research Triangle Park, North Carolina (Figure 3). The headends will provide regional 6in4 tunnel termination, a regional ISATAP service, and native IPv6 Internet connectivity. Figure 3. Phase 1: Regional IPv6 Tunnel Headends Conducting Readiness Assessment Cisco IT engaged Cisco Services to provide IPv6 readiness support through the Cisco Network Optimization Service (NOS). The service identified both hardware and software gaps. We had to make sure that both hardware and software were ready for a large-scale IPv6 deployment, says Woolwine To assess readiness, Cisco first determined if the hardware platform supported basic IPv6 functions. If not, Cisco replaced the hardware through the normal Fleet Management Program, Cisco IT s infrastructure lifecycle management program. Upgrading through the Fleet Management Program spread out the capital expense associated with IPv6 adoption. If the hardware was IPv6-capable, Cisco IT determined if the Cisco IOS Software version supported IPv6. If not, the team upgraded the software. We also worked with our vendors to find out when third-party software would be IPv6- compliant, says Joseph Chieng, a Cisco IT project manager focusing on the IPv6 efforts with the Cisco Global Government Solutions Group. All contents are Copyright 2011 Cisco Systems, Inc. All rights reserved. This document is Cisco Public Information. Page 4 of 8

Partnering with Service Providers for IPv6 services Until recently, IPv6 service providers provided IPv6-over-IPv4 tunnels. Now, many have begun offering dual-stack services. Cisco IT is currently meeting with its existing service providers to plan the addition of dual-stack support. To provide an IPv6 Internet presence, Cisco IT installed dedicated IPv6 Internet circuits that are physically separate from ordinary production circuits. A few temporary circuits will be decommissioned as dual-stack circuits are deployed in production. We are working with all of our service provider partners to make sure the IPv6-based services we receive are comparable to our current IPv4-based services, says Brumbaugh. Creating IPv6 Internet Presence Cisco IT has enabled native IPv6 on the cisco.com website. As the first step, the IT team built a parallel IPv6 environment (www.ipv6.cisco.com) that became active in 2010 and is available to users connecting from IPv6 network-enabled hosts. People visiting the site enter this URL to access the static IPv6 webpage, which directs them to the production IPv4 infrastructure (Figure 4). Figure 4. IPv6 Internet Presence, Phase 1 Making Internet-facing services IPv6-accessible requires changes only to the web server itself, not the underlying application servers and management software, says Woolwine. The second phase will be to make additional web services IPv6-accessible. This step will be even simpler, because Cisco IT plans to deploy a proxy in front of the web servers (Figure 5). We believe the proxy solution is the best option for the many Cisco hosts that are not already IPv6-enabled, Woolwine adds. All contents are Copyright 2011 Cisco Systems, Inc. All rights reserved. This document is Cisco Public Information. Page 5 of 8

Figure 5. IPv6 Internet Presence, Phase 2 In the third and final phase, users will not have to enter a different URL to connect to the IPv6 infrastructure. IPv6- based clients will automatically connect to the newer IPv6 infrastructure, while IPv4 clients will connect to the IPv4 infrastructure. Results As Cisco continues its journey towards a borderless enterprise, our IPv6 deployment is enabling many of the infrastructure requirements mandated by our present and future business strategies, says Manville. It has now become clear that for enterprises large and small, IPv6 is not just a side thought, but a core technology evolution that will play an important role in the future of business and IT strategies. Cisco tested its IPv6 readiness on June 8, 2011, on World IPv6 Day, a global event organized by the Internet Society to test the readiness of the new Internet Protocol. Participants included the world s leading Internet vendors, and Cisco was among the first to join. During the event, Cisco IT tested its own IPv6 readiness while also compiling lessons learned from customers participating in the event. To test its IPv6 website, Cisco IT pointed its DNS entries to AAAA records, enabling clients to reach www.cisco.com over IPv6. Other participants took a similar approach to test their own websites. No major glitches occurred during the event, and Cisco IT is applying lessons learned about architecture, design, and operations as our IPv6 migration effort continues, says Brumbaugh. Cisco IT is currently documenting lessons learned about architecture, design, and operations for its own use, and to share with customers. Next Steps Following are the next steps for the IPv6 integration project at Cisco: Documenting insights from participating in World IPv6 Day on June 8, 2011. Delivering end-to-end IPv6 in more locations, initially critical labs and sales offices. All contents are Copyright 2011 Cisco Systems, Inc. All rights reserved. This document is Cisco Public Information. Page 6 of 8

Adding IPv6 support to internal monitoring applications. Providing an IPv6 Internet presence for all of cisco.com. Extending IPv6 support to branch offices. Enabling IPv6 for the 21,000 Cisco teleworkers who use Cisco Virtual Office. This project has begun. Providing dual-stack support in the desktop environment. Continuing to integrate IPv6 with other borderless network services. Lessons Learned Cisco IT shares the following advice with other organizations migrating to IPv6: Engage early with IT teams outside the core networking team. Among the other teams to involve are applications, security, and web. Consider the implications of IPv6 addresses with external parties. These parties include Internet service providers, content delivery networks, and third-party application providers. Account for lead time from vendors in your project plans. Some of Cisco IT s vendors have not yet formulated a plan for IPv6. Lead time considerations are especially important for organizations that have compliance requirements for IPv6. Realize that end-device operating systems behave differently with IPv6. For this reason, Cisco IT plans to test the various smartphone and tablet operating systems in use by the company s mobile workforce. For More Information To read additional Cisco IT case studies on a variety of business solutions, visit Cisco on Cisco: Inside Cisco IT www.cisco.com/go/ciscoit. To read more about Cisco IPv6 Solutions, visit http://www.cisco.com/go/ipv6. To read more about the borderless experience, visit http://www.cisco.com/go/borderless. Note This publication describes how Cisco has benefited from the deployment of its own products. Many factors may have contributed to the results and benefits described; Cisco does not guarantee comparable results elsewhere. CISCO PROVIDES THIS PUBLICATION AS IS WITHOUT WARRANTY OF ANY KIND, EITHER EXPRESS OR IMPLIED, INCLUDING THE IMPLIED WARRANTIES OF MERCHANTABILITY OR FITNESS FOR A PARTICULAR PURPOSE. Some jurisdictions do not allow disclaimer of express or implied warranties, therefore this disclaimer may not apply to you. All contents are Copyright 2011 Cisco Systems, Inc. All rights reserved. This document is Cisco Public Information. Page 7 of 8

All contents are Copyright 2011 Cisco Systems, Inc. All rights reserved. This document is Cisco Public Information. Page 8 of 8