SlideShare una empresa de Scribd logo
1 de 30
Descargar para leer sin conexión
Overcoming challenges of deploying IPv6
in the live Enterprise work environment

Tina Tsou (Speaker), Kenneth Durazzo, Wendell Rios   www.huawei.com
Huawei Technologies




 HUAWEI TECHNOLOGIES CO., LTD.
Agenda


It’s Only IP…Right?
Making the case
Defining success
Testing 360
Planning the Transition
Deployment Details
       UCC
       Applications / Network
       Platforms




HUAWEI TECHNOLOGIES CO., LTD.    Huawei Confidential
Section 1:
Best Practices / Overview


 HUAWEI TECHNOLOGIES CO., LTD.   Huawei Confidential   Page 3
It’s Only IP… Right?


Should be easy, no?
But what about…
       Security policy and devices
       Operating systems, Hypervisors
       Servers, PCs and smart-devices
       Network platforms
       Services and Applications
            VPN
            Application Optimization
            UCC
            Private and Public Cloud Applications
            DNS / DHCP / Printing
            Monitoring / Troubleshooting tools


  HUAWEI TECHNOLOGIES CO., LTD.         Huawei Confidential
Making the Case
                                             Business Executives
                                                     IPv6 will help us increase IT flexibility for
                                                      new applications and communications,
                                                      for instance BYOD
                                                     CAPex cost should be minimal, OPex
 Business                  Security                   should stay the same
Executives                Operations         Security Operations
                                                     IPv6 is here on the network, in fact all
                                                      new OS’s already support it, if you don’t
                                                      embrace it, how will you protect the
                  IT                                  business?
                                             Application / Server Operations
                                                     Many applications and tools already
                                                      support IPv6, resulting in minor changes
Application /              Business                   to existing environment and processes
  Server                   Function          Business Function Leaders
Operations                 Leaders
                                                     How this will be non-intrusive to their
                                                      users and business goals but be an
                                                      enabler to their business (eg: BYOD)


HUAWEI TECHNOLOGIES CO., LTD.      Huawei Confidential
Defining Success


Business impact definition
What is the scope of deployment?
      Entire environment? branch, campus or DC?
      Phased deployment?
      At the Edge? In the Core?
Timeline for cut-over
User QOE for:
      Applications
      Network
What is the desired successful
 outcome (exit criteria)?



 HUAWEI TECHNOLOGIES CO., LTD.     Huawei Confidential
Testing 360


Best practices
       Set up a lab that mimics your target environment, but not at scale
       Perform an inventory of:
            Applications
            Platforms / Devices
       Work with employees to create User-stories / Use-cases for the target
        environment
       Test, test, test…
            Devices / Applications / permutations
       Involve security and other operations teams, early and often, even better
        if they are part of the testing team



HUAWEI TECHNOLOGIES CO., LTD.       Huawei Confidential
Planning the Transition
Create the scope of work
        Environment
        Platforms
        Applications
        Users, etc
Get training for all impacted personnel for support of
    IPv6 and any new systems put in place to support
    the environment
Inventory all impacted devices and configurations.
    Include wiring plant and HVAC, etc
Create clear documentation and points of contact for
    transition activities
All OPS teams must be deeply involved (Sec / App /
    Server / Network)
Socialize the scope of work and get buy-in / signatures
    for cut-over dates / times
Go live!

  HUAWEI TECHNOLOGIES CO., LTD.       Huawei Confidential
IPv6 production office networks



                  Enable all                               Explore practical IPv6
                  employees to                             deployment and
                  have IPv6 access                         transition options




                  Enable employees                         Enable product
                  to innovate and                          teams to test
                  collaborate with                         the new
                  external partners                        implementations




 HUAWEI TECHNOLOGIES CO., LTD.       Huawei Confidential     Page 9
Section 2:
Network Architecture – IPv6 LAB Network


  HUAWEI TECHNOLOGIES CO., LTD.   Huawei Confidential   Page 10
IPv6 Network

               OSPFv3                                        Static Routing

               CGN @ NE40E




                     Santa Clara, CA

               Content                                         CE
               Server                                          Router
                                IPv6 Network Core                              IPv6
                                                                              Network


               AR                                              AR


                                   Plano, TX and Santa Clara, CA




HUAWEI TECHNOLOGIES CO., LTD.          Huawei Confidential          Page 11
CGN and PCP Layout

            UPnP                                 DS-Lite                                  NAT44

   Private IPv4 Client/IPv4
                                              IPv4 over IPv6                   Public IPv4/Internet Client
         Web Server


             PCP
                     Port 2 CPE1     Port 3                                               IPv6 Internet
 P2P Client-1
             NON-PCP                                   PCP          PCP Server
                     Port 2
 P2P Client-2
                                                       NATCoord                           IPv4 Internet
                              CPE2                                    CGN
                     Port 1          Port 3
Web Server (VM)     UPnP/PCP Interworking                           NE40E-X3                      Internet
NATCoord Client        Huawei HG553                                                               Client




      HUAWEI TECHNOLOGIES CO., LTD.           Huawei Confidential           Page 12
Multicast IPv6 Transition 6-6-4 Case


                                                          IPv4 Multicast Network

                                    IPv4                         IPv4
                                   Content        CERNET
                                   Server                       Content

                    IPv6                           IPv6              IPv4

  IPv6                                                                        RP (IPv4 Multicast
Receiver                                IPv6 Multicast                         Content Server)
                                           Network
            MLD    CPE                   PIM     IPv6

  IPv6                              Multicast 4/6 Gateway
Multicast
 Client                            Multicast Content Traffic




   HUAWEI TECHNOLOGIES CO., LTD.        Huawei Confidential         Page 13
LightWeight 4over6
   Per-subscriber stateful 4 over 6 solution
   No IPv4 and IPv6 address coupling
   Adopted by CT, FT and DT.




HUAWEI TECHNOLOGIES CO., LTD.               Huawei Confidential   Page 14
Section 3:
Live Production Network

 HUAWEI TECHNOLOGIES CO., LTD.   Huawei Confidential   Page 15
Phase 1 Enterprise Network Transition

 Challenges:

 • Security and compliance
      • Multi zone networks based on use.
      • Intranet networks highly secured and regulated by Corporate HQ.
      • Nothing goes on the network unless approved by Information Security and IT.
      • Too much “red tape.”

 • Technology
      • Existing infrastructure not ready, no IPv6 support.

 • Support
      • Minimal to none local resources.




    HUAWEI TECHNOLOGIES CO., LTD.           Huawei Confidential       Page 16
Phase 1 Enterprise Network Transition – cont.


 Strategy:

 • Security and compliance
      • Solution or Proof of Concept implementation that does not break the rules.

 • Technology
      • Solution that utilizes existing network – no change in IT infrastructure.

 • Support
      • Get local Regional IT buy in.




   HUAWEI TECHNOLOGIES CO., LTD.            Huawei Confidential           Page 17
Phase 1 Enterprise Network Transition – cont.




 Solution and scope:
 • Deploy IPv6 stub network with dual nic Linux host runing NAT64/DNS64 service.
 • IPv6 only host able to access IPv4 rfc1918 resources, i.e. Sharepoint portal, Proxy web server,
 and etc; by utilizing NAT64 and DNS64 gateway.

 Technology and resources:
 • Allocate IPv4 rfc1918 network prefix for IPv4 dynamic mapping pool.
 • Allocate IPv6 network prefixes:
       • 2001:db8:1:ffff::/96 for NAT64/DNS64 service.
 • Redhat Linux host with dual network adapters running NAT64/DNS64 service.
       • Tayga stateless NAT64 open source application was installed and tested.
       • TOTD DNS64 open source application was installed and tested.




    HUAWEI TECHNOLOGIES CO., LTD.          Huawei Confidential           Page 18
Phase 1 Enterprise Network Transition – cont.
  cont.




• IPv6 NAT64 prefix (well-known or network-specific) is dedicated to mapped IPv4 addresses.
• NAT64 and DNS64 processes use the same prefix.
• Default gateway and DNS server of IPv6 host is the NAT64/DNS64 gateway.



    HUAWEI TECHNOLOGIES CO., LTD.           Huawei Confidential            Page 19
Phase 1 Enterprise Network Transition – cont.

Results:

• IPv6 host able to ping and telnet to network devices in IPv4 domain using NAT64 IPv6 prefix.
• IPv6 host able to access resources in IPv4 only domain using Fully Qualified Domain Names.
• IPv6 host able to use web proxy in IPv4 only domain to access Internet websites.
     • Web proxy FQDN was hard set in host browser settings.
• IPv6 host able to browse and utilize Sharepoint portal/collaboration tool.



Next Steps:

• Explore and incorporate additional IPv6 technologies.
     • DHCPv6
• Deploy architecture to larger scope – Phase 2.




    HUAWEI TECHNOLOGIES CO., LTD.          Huawei Confidential          Page 20
eSpace UC

                                                PSTN/PLMN
 Analog             IP Phone                                           UC Server                 Soft
 Fax                PC Client / Soft Phone   PSTN Gateway              U2990 (CALL Control)       Console

                                           HEADQUARTERS

                          SBC              Firewall                                     SVN
                                                                                                    IP
                                                                                                    E1/ATO
                                                                                                    POTS
                                                IPV4/IPV6
                                                                                                    WiFi/3G
E1/T1         PSTN/PLMN                ATO                  PSTN/PLMN

              IAD         U1980                                  EGW
                                                                                         SSL VPN
 Analog                                 Analog                             Internet               PC Client
 Fax                                    Fax                                            SBC
                                                                                         Proxy      Soft Phone
 IP Phone                               IP Phone
 PC Client                              PC Client              WiFi            WiFi
        BRANCH        A                        BRANCH        B                     PUBLIC NETWORK




    HUAWEI TECHNOLOGIES CO., LTD.              Huawei Confidential               Page 21
eSpace UC – SIP, RTP(VOIP 1)

                                       PSTN/PLMN
                                                            IPv4/IPv6 dual-stack
                                 U29XX                                           UC Server


                                  HEADQUARTERS

                SBC               Firewall                                 SVN

               IPv4/IPv6 dual-stack                                                      SIP
                                                                                         RTP
                                       IPV4/IPV6

       PSTN/PLMN                                   PSTN/PLMN

                EGW                                   U1980                 SSL VPN
                                                                Internet




  IPv4 BRANCH                         IPv6 BRANCH                     PUBLIC NETWORK




 HUAWEI TECHNOLOGIES CO., LTD.        Huawei Confidential           Page 22
eSpace UC – SIP, RTP(VOIP 2)

                                       PSTN/PLMN
                                                            IPv4/IPv6 dual-stack
                                 U29XX                                           UC Server


                                  HEADQUARTERS

                SBC               Firewall                                 SVN

               IPv4/IPv6 dual-stack                                                      SIP
                                                                                         RTP
                                       IPV4/IPV6

       PSTN/PLMN                                   PSTN/PLMN

                EGW                                   U1980                 SSL VPN
                                                                Internet




  IPv4                                IPv6                            PUBLIC NETWORK
  BRANCH                              BRANCH



 HUAWEI TECHNOLOGIES CO., LTD.        Huawei Confidential           Page 23
eSpace UC – SIP, RTP(Conference)

                                         PSTN/PLMN
                                                              IPv4/IPv6 dual-stack
                                   U29XX                                           UC Server


                                    HEADQUARTERS

                  SBC               Firewall                                 SVN

                 IPv4/IPv6 dual-stack                                                      SIP
                                                                                           RTP
                                         IPV4/IPV6

         PSTN/PLMN                                   PSTN/PLMN

                  EGW                                   U1980                 SSL VPN
                                                                  Internet




    IPv4 BRANCH                         IPv6 BRANCH                     PUBLIC NETWORK




   HUAWEI TECHNOLOGIES CO., LTD.        Huawei Confidential           Page 24
SIP and RTP

   UC Server                                              UC Server




                 Intranet(IPv6)                                            Intranet(IPv6)


    U29XX                                                  U29XX

                 SIP                                                   SIP


                  Intranet(IPv6)                                            Intranet(IPv6)


                                                                              RTP




        eSpace                     eSpace                         eSpace                     eSpace

                 P2P VOIP                                                  Conference




HUAWEI TECHNOLOGIES CO., LTD.               Huawei Confidential             Page 25
Section 4:
Additional Use-Cases


 HUAWEI TECHNOLOGIES CO., LTD.   Huawei Confidential   Page 26
www.huawei.com permanently launched v6




   HUAWEI TECHNOLOGIES CO., LTD.   Huawei Confidential   Page 27
Huawei: IPv6 Deployment used by IEEE meeting
   IEEE HOT INTERCONNECT CONFERENCE, Aug 22-24, hosted by Huawei at
 Huawei campus on Santa Clara, CA, USA
                            IPv4/IPv6 Internet



       IPv4/IPv6 Firewall
         (support NAT
            for IPv4)


          IPv4 IPS/IDS


                                                  IPv4 AC
        IPv4/IPv6
    Core&Aggregation                             (Active)
    (Gateway,iStack)                              IPv4 AC
                                                 (Standby)

  Access Layer


                                                 IPv4 AP




                              IPv4/IPv6 STA




   HUAWEI TECHNOLOGIES CO., LTD.                    Huawei Confidential   Page 28
Additional Reference

http://www.huawei.com/en/solutions/broader-smarter/hw-
092950-ipv6.htm




 HUAWEI TECHNOLOGIES CO., LTD.   Huawei Confidential   Page 29
Thank you
                                     www.huawei.com

Copyright©2011 Huawei Technologies Co., Ltd. All Rights Reserved.
The information in this document may contain predictive statements including, without limitation, statements
regarding the future financial and operating results, future product portfolio, new technology, etc. There are a
number of factors that could cause actual results and developments to differ materially from those expressed or
implied in the predictive statements. Therefore, such information is provided for reference purpose only and
constitutes neither an offer nor an acceptance. Huawei may change the information at any time without notice.

Más contenido relacionado

Último

Connector Corner: Accelerate revenue generation using UiPath API-centric busi...
Connector Corner: Accelerate revenue generation using UiPath API-centric busi...Connector Corner: Accelerate revenue generation using UiPath API-centric busi...
Connector Corner: Accelerate revenue generation using UiPath API-centric busi...DianaGray10
 
Top 10 Most Downloaded Games on Play Store in 2024
Top 10 Most Downloaded Games on Play Store in 2024Top 10 Most Downloaded Games on Play Store in 2024
Top 10 Most Downloaded Games on Play Store in 2024SynarionITSolutions
 
Top 5 Benefits OF Using Muvi Live Paywall For Live Streams
Top 5 Benefits OF Using Muvi Live Paywall For Live StreamsTop 5 Benefits OF Using Muvi Live Paywall For Live Streams
Top 5 Benefits OF Using Muvi Live Paywall For Live StreamsRoshan Dwivedi
 
Artificial Intelligence Chap.5 : Uncertainty
Artificial Intelligence Chap.5 : UncertaintyArtificial Intelligence Chap.5 : Uncertainty
Artificial Intelligence Chap.5 : UncertaintyKhushali Kathiriya
 
TrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
TrustArc Webinar - Unlock the Power of AI-Driven Data DiscoveryTrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
TrustArc Webinar - Unlock the Power of AI-Driven Data DiscoveryTrustArc
 
presentation ICT roal in 21st century education
presentation ICT roal in 21st century educationpresentation ICT roal in 21st century education
presentation ICT roal in 21st century educationjfdjdjcjdnsjd
 
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot TakeoffStrategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoffsammart93
 
2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...Martijn de Jong
 
Tata AIG General Insurance Company - Insurer Innovation Award 2024
Tata AIG General Insurance Company - Insurer Innovation Award 2024Tata AIG General Insurance Company - Insurer Innovation Award 2024
Tata AIG General Insurance Company - Insurer Innovation Award 2024The Digital Insurer
 
Polkadot JAM Slides - Token2049 - By Dr. Gavin Wood
Polkadot JAM Slides - Token2049 - By Dr. Gavin WoodPolkadot JAM Slides - Token2049 - By Dr. Gavin Wood
Polkadot JAM Slides - Token2049 - By Dr. Gavin WoodJuan lago vázquez
 
How to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected WorkerHow to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected WorkerThousandEyes
 
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost SavingRepurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost SavingEdi Saputra
 
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemkeProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemkeProduct Anonymous
 
Artificial Intelligence: Facts and Myths
Artificial Intelligence: Facts and MythsArtificial Intelligence: Facts and Myths
Artificial Intelligence: Facts and MythsJoaquim Jorge
 
Understanding Discord NSFW Servers A Guide for Responsible Users.pdf
Understanding Discord NSFW Servers A Guide for Responsible Users.pdfUnderstanding Discord NSFW Servers A Guide for Responsible Users.pdf
Understanding Discord NSFW Servers A Guide for Responsible Users.pdfUK Journal
 
Data Cloud, More than a CDP by Matt Robison
Data Cloud, More than a CDP by Matt RobisonData Cloud, More than a CDP by Matt Robison
Data Cloud, More than a CDP by Matt RobisonAnna Loughnan Colquhoun
 
Automating Google Workspace (GWS) & more with Apps Script
Automating Google Workspace (GWS) & more with Apps ScriptAutomating Google Workspace (GWS) & more with Apps Script
Automating Google Workspace (GWS) & more with Apps Scriptwesley chun
 
HTML Injection Attacks: Impact and Mitigation Strategies
HTML Injection Attacks: Impact and Mitigation StrategiesHTML Injection Attacks: Impact and Mitigation Strategies
HTML Injection Attacks: Impact and Mitigation StrategiesBoston Institute of Analytics
 
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...apidays
 
Powerful Google developer tools for immediate impact! (2023-24 C)
Powerful Google developer tools for immediate impact! (2023-24 C)Powerful Google developer tools for immediate impact! (2023-24 C)
Powerful Google developer tools for immediate impact! (2023-24 C)wesley chun
 

Último (20)

Connector Corner: Accelerate revenue generation using UiPath API-centric busi...
Connector Corner: Accelerate revenue generation using UiPath API-centric busi...Connector Corner: Accelerate revenue generation using UiPath API-centric busi...
Connector Corner: Accelerate revenue generation using UiPath API-centric busi...
 
Top 10 Most Downloaded Games on Play Store in 2024
Top 10 Most Downloaded Games on Play Store in 2024Top 10 Most Downloaded Games on Play Store in 2024
Top 10 Most Downloaded Games on Play Store in 2024
 
Top 5 Benefits OF Using Muvi Live Paywall For Live Streams
Top 5 Benefits OF Using Muvi Live Paywall For Live StreamsTop 5 Benefits OF Using Muvi Live Paywall For Live Streams
Top 5 Benefits OF Using Muvi Live Paywall For Live Streams
 
Artificial Intelligence Chap.5 : Uncertainty
Artificial Intelligence Chap.5 : UncertaintyArtificial Intelligence Chap.5 : Uncertainty
Artificial Intelligence Chap.5 : Uncertainty
 
TrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
TrustArc Webinar - Unlock the Power of AI-Driven Data DiscoveryTrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
TrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
 
presentation ICT roal in 21st century education
presentation ICT roal in 21st century educationpresentation ICT roal in 21st century education
presentation ICT roal in 21st century education
 
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot TakeoffStrategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
 
2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...
 
Tata AIG General Insurance Company - Insurer Innovation Award 2024
Tata AIG General Insurance Company - Insurer Innovation Award 2024Tata AIG General Insurance Company - Insurer Innovation Award 2024
Tata AIG General Insurance Company - Insurer Innovation Award 2024
 
Polkadot JAM Slides - Token2049 - By Dr. Gavin Wood
Polkadot JAM Slides - Token2049 - By Dr. Gavin WoodPolkadot JAM Slides - Token2049 - By Dr. Gavin Wood
Polkadot JAM Slides - Token2049 - By Dr. Gavin Wood
 
How to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected WorkerHow to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected Worker
 
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost SavingRepurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
 
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemkeProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
 
Artificial Intelligence: Facts and Myths
Artificial Intelligence: Facts and MythsArtificial Intelligence: Facts and Myths
Artificial Intelligence: Facts and Myths
 
Understanding Discord NSFW Servers A Guide for Responsible Users.pdf
Understanding Discord NSFW Servers A Guide for Responsible Users.pdfUnderstanding Discord NSFW Servers A Guide for Responsible Users.pdf
Understanding Discord NSFW Servers A Guide for Responsible Users.pdf
 
Data Cloud, More than a CDP by Matt Robison
Data Cloud, More than a CDP by Matt RobisonData Cloud, More than a CDP by Matt Robison
Data Cloud, More than a CDP by Matt Robison
 
Automating Google Workspace (GWS) & more with Apps Script
Automating Google Workspace (GWS) & more with Apps ScriptAutomating Google Workspace (GWS) & more with Apps Script
Automating Google Workspace (GWS) & more with Apps Script
 
HTML Injection Attacks: Impact and Mitigation Strategies
HTML Injection Attacks: Impact and Mitigation StrategiesHTML Injection Attacks: Impact and Mitigation Strategies
HTML Injection Attacks: Impact and Mitigation Strategies
 
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
 
Powerful Google developer tools for immediate impact! (2023-24 C)
Powerful Google developer tools for immediate impact! (2023-24 C)Powerful Google developer tools for immediate impact! (2023-24 C)
Powerful Google developer tools for immediate impact! (2023-24 C)
 

Destacado

2024 State of Marketing Report – by Hubspot
2024 State of Marketing Report – by Hubspot2024 State of Marketing Report – by Hubspot
2024 State of Marketing Report – by HubspotMarius Sescu
 
Everything You Need To Know About ChatGPT
Everything You Need To Know About ChatGPTEverything You Need To Know About ChatGPT
Everything You Need To Know About ChatGPTExpeed Software
 
Product Design Trends in 2024 | Teenage Engineerings
Product Design Trends in 2024 | Teenage EngineeringsProduct Design Trends in 2024 | Teenage Engineerings
Product Design Trends in 2024 | Teenage EngineeringsPixeldarts
 
How Race, Age and Gender Shape Attitudes Towards Mental Health
How Race, Age and Gender Shape Attitudes Towards Mental HealthHow Race, Age and Gender Shape Attitudes Towards Mental Health
How Race, Age and Gender Shape Attitudes Towards Mental HealthThinkNow
 
AI Trends in Creative Operations 2024 by Artwork Flow.pdf
AI Trends in Creative Operations 2024 by Artwork Flow.pdfAI Trends in Creative Operations 2024 by Artwork Flow.pdf
AI Trends in Creative Operations 2024 by Artwork Flow.pdfmarketingartwork
 
PEPSICO Presentation to CAGNY Conference Feb 2024
PEPSICO Presentation to CAGNY Conference Feb 2024PEPSICO Presentation to CAGNY Conference Feb 2024
PEPSICO Presentation to CAGNY Conference Feb 2024Neil Kimberley
 
Content Methodology: A Best Practices Report (Webinar)
Content Methodology: A Best Practices Report (Webinar)Content Methodology: A Best Practices Report (Webinar)
Content Methodology: A Best Practices Report (Webinar)contently
 
How to Prepare For a Successful Job Search for 2024
How to Prepare For a Successful Job Search for 2024How to Prepare For a Successful Job Search for 2024
How to Prepare For a Successful Job Search for 2024Albert Qian
 
Social Media Marketing Trends 2024 // The Global Indie Insights
Social Media Marketing Trends 2024 // The Global Indie InsightsSocial Media Marketing Trends 2024 // The Global Indie Insights
Social Media Marketing Trends 2024 // The Global Indie InsightsKurio // The Social Media Age(ncy)
 
Trends In Paid Search: Navigating The Digital Landscape In 2024
Trends In Paid Search: Navigating The Digital Landscape In 2024Trends In Paid Search: Navigating The Digital Landscape In 2024
Trends In Paid Search: Navigating The Digital Landscape In 2024Search Engine Journal
 
5 Public speaking tips from TED - Visualized summary
5 Public speaking tips from TED - Visualized summary5 Public speaking tips from TED - Visualized summary
5 Public speaking tips from TED - Visualized summarySpeakerHub
 
ChatGPT and the Future of Work - Clark Boyd
ChatGPT and the Future of Work - Clark Boyd ChatGPT and the Future of Work - Clark Boyd
ChatGPT and the Future of Work - Clark Boyd Clark Boyd
 
Getting into the tech field. what next
Getting into the tech field. what next Getting into the tech field. what next
Getting into the tech field. what next Tessa Mero
 
Google's Just Not That Into You: Understanding Core Updates & Search Intent
Google's Just Not That Into You: Understanding Core Updates & Search IntentGoogle's Just Not That Into You: Understanding Core Updates & Search Intent
Google's Just Not That Into You: Understanding Core Updates & Search IntentLily Ray
 
Time Management & Productivity - Best Practices
Time Management & Productivity -  Best PracticesTime Management & Productivity -  Best Practices
Time Management & Productivity - Best PracticesVit Horky
 
The six step guide to practical project management
The six step guide to practical project managementThe six step guide to practical project management
The six step guide to practical project managementMindGenius
 
Beginners Guide to TikTok for Search - Rachel Pearson - We are Tilt __ Bright...
Beginners Guide to TikTok for Search - Rachel Pearson - We are Tilt __ Bright...Beginners Guide to TikTok for Search - Rachel Pearson - We are Tilt __ Bright...
Beginners Guide to TikTok for Search - Rachel Pearson - We are Tilt __ Bright...RachelPearson36
 

Destacado (20)

2024 State of Marketing Report – by Hubspot
2024 State of Marketing Report – by Hubspot2024 State of Marketing Report – by Hubspot
2024 State of Marketing Report – by Hubspot
 
Everything You Need To Know About ChatGPT
Everything You Need To Know About ChatGPTEverything You Need To Know About ChatGPT
Everything You Need To Know About ChatGPT
 
Product Design Trends in 2024 | Teenage Engineerings
Product Design Trends in 2024 | Teenage EngineeringsProduct Design Trends in 2024 | Teenage Engineerings
Product Design Trends in 2024 | Teenage Engineerings
 
How Race, Age and Gender Shape Attitudes Towards Mental Health
How Race, Age and Gender Shape Attitudes Towards Mental HealthHow Race, Age and Gender Shape Attitudes Towards Mental Health
How Race, Age and Gender Shape Attitudes Towards Mental Health
 
AI Trends in Creative Operations 2024 by Artwork Flow.pdf
AI Trends in Creative Operations 2024 by Artwork Flow.pdfAI Trends in Creative Operations 2024 by Artwork Flow.pdf
AI Trends in Creative Operations 2024 by Artwork Flow.pdf
 
Skeleton Culture Code
Skeleton Culture CodeSkeleton Culture Code
Skeleton Culture Code
 
PEPSICO Presentation to CAGNY Conference Feb 2024
PEPSICO Presentation to CAGNY Conference Feb 2024PEPSICO Presentation to CAGNY Conference Feb 2024
PEPSICO Presentation to CAGNY Conference Feb 2024
 
Content Methodology: A Best Practices Report (Webinar)
Content Methodology: A Best Practices Report (Webinar)Content Methodology: A Best Practices Report (Webinar)
Content Methodology: A Best Practices Report (Webinar)
 
How to Prepare For a Successful Job Search for 2024
How to Prepare For a Successful Job Search for 2024How to Prepare For a Successful Job Search for 2024
How to Prepare For a Successful Job Search for 2024
 
Social Media Marketing Trends 2024 // The Global Indie Insights
Social Media Marketing Trends 2024 // The Global Indie InsightsSocial Media Marketing Trends 2024 // The Global Indie Insights
Social Media Marketing Trends 2024 // The Global Indie Insights
 
Trends In Paid Search: Navigating The Digital Landscape In 2024
Trends In Paid Search: Navigating The Digital Landscape In 2024Trends In Paid Search: Navigating The Digital Landscape In 2024
Trends In Paid Search: Navigating The Digital Landscape In 2024
 
5 Public speaking tips from TED - Visualized summary
5 Public speaking tips from TED - Visualized summary5 Public speaking tips from TED - Visualized summary
5 Public speaking tips from TED - Visualized summary
 
ChatGPT and the Future of Work - Clark Boyd
ChatGPT and the Future of Work - Clark Boyd ChatGPT and the Future of Work - Clark Boyd
ChatGPT and the Future of Work - Clark Boyd
 
Getting into the tech field. what next
Getting into the tech field. what next Getting into the tech field. what next
Getting into the tech field. what next
 
Google's Just Not That Into You: Understanding Core Updates & Search Intent
Google's Just Not That Into You: Understanding Core Updates & Search IntentGoogle's Just Not That Into You: Understanding Core Updates & Search Intent
Google's Just Not That Into You: Understanding Core Updates & Search Intent
 
How to have difficult conversations
How to have difficult conversations How to have difficult conversations
How to have difficult conversations
 
Introduction to Data Science
Introduction to Data ScienceIntroduction to Data Science
Introduction to Data Science
 
Time Management & Productivity - Best Practices
Time Management & Productivity -  Best PracticesTime Management & Productivity -  Best Practices
Time Management & Productivity - Best Practices
 
The six step guide to practical project management
The six step guide to practical project managementThe six step guide to practical project management
The six step guide to practical project management
 
Beginners Guide to TikTok for Search - Rachel Pearson - We are Tilt __ Bright...
Beginners Guide to TikTok for Search - Rachel Pearson - We are Tilt __ Bright...Beginners Guide to TikTok for Search - Rachel Pearson - We are Tilt __ Bright...
Beginners Guide to TikTok for Search - Rachel Pearson - We are Tilt __ Bright...
 

Overcoming Challenges of Deploying IPv6 in the live Enterprise Work Environment by Tina Tsou at gogoNET LIVE! 3 IPv6 Conference

  • 1. Overcoming challenges of deploying IPv6 in the live Enterprise work environment Tina Tsou (Speaker), Kenneth Durazzo, Wendell Rios www.huawei.com Huawei Technologies HUAWEI TECHNOLOGIES CO., LTD.
  • 2. Agenda It’s Only IP…Right? Making the case Defining success Testing 360 Planning the Transition Deployment Details  UCC  Applications / Network  Platforms HUAWEI TECHNOLOGIES CO., LTD. Huawei Confidential
  • 3. Section 1: Best Practices / Overview HUAWEI TECHNOLOGIES CO., LTD. Huawei Confidential Page 3
  • 4. It’s Only IP… Right? Should be easy, no? But what about…  Security policy and devices  Operating systems, Hypervisors  Servers, PCs and smart-devices  Network platforms  Services and Applications  VPN  Application Optimization  UCC  Private and Public Cloud Applications  DNS / DHCP / Printing  Monitoring / Troubleshooting tools HUAWEI TECHNOLOGIES CO., LTD. Huawei Confidential
  • 5. Making the Case Business Executives  IPv6 will help us increase IT flexibility for new applications and communications, for instance BYOD  CAPex cost should be minimal, OPex Business Security should stay the same Executives Operations Security Operations  IPv6 is here on the network, in fact all new OS’s already support it, if you don’t embrace it, how will you protect the IT business? Application / Server Operations  Many applications and tools already support IPv6, resulting in minor changes Application / Business to existing environment and processes Server Function Business Function Leaders Operations Leaders  How this will be non-intrusive to their users and business goals but be an enabler to their business (eg: BYOD) HUAWEI TECHNOLOGIES CO., LTD. Huawei Confidential
  • 6. Defining Success Business impact definition What is the scope of deployment?  Entire environment? branch, campus or DC?  Phased deployment?  At the Edge? In the Core? Timeline for cut-over User QOE for:  Applications  Network What is the desired successful outcome (exit criteria)? HUAWEI TECHNOLOGIES CO., LTD. Huawei Confidential
  • 7. Testing 360 Best practices  Set up a lab that mimics your target environment, but not at scale  Perform an inventory of:  Applications  Platforms / Devices  Work with employees to create User-stories / Use-cases for the target environment  Test, test, test…  Devices / Applications / permutations  Involve security and other operations teams, early and often, even better if they are part of the testing team HUAWEI TECHNOLOGIES CO., LTD. Huawei Confidential
  • 8. Planning the Transition Create the scope of work  Environment  Platforms  Applications  Users, etc Get training for all impacted personnel for support of IPv6 and any new systems put in place to support the environment Inventory all impacted devices and configurations. Include wiring plant and HVAC, etc Create clear documentation and points of contact for transition activities All OPS teams must be deeply involved (Sec / App / Server / Network) Socialize the scope of work and get buy-in / signatures for cut-over dates / times Go live! HUAWEI TECHNOLOGIES CO., LTD. Huawei Confidential
  • 9. IPv6 production office networks Enable all Explore practical IPv6 employees to deployment and have IPv6 access transition options Enable employees Enable product to innovate and teams to test collaborate with the new external partners implementations HUAWEI TECHNOLOGIES CO., LTD. Huawei Confidential Page 9
  • 10. Section 2: Network Architecture – IPv6 LAB Network HUAWEI TECHNOLOGIES CO., LTD. Huawei Confidential Page 10
  • 11. IPv6 Network OSPFv3 Static Routing CGN @ NE40E Santa Clara, CA Content CE Server Router IPv6 Network Core IPv6 Network AR AR Plano, TX and Santa Clara, CA HUAWEI TECHNOLOGIES CO., LTD. Huawei Confidential Page 11
  • 12. CGN and PCP Layout UPnP DS-Lite NAT44 Private IPv4 Client/IPv4 IPv4 over IPv6 Public IPv4/Internet Client Web Server PCP Port 2 CPE1 Port 3 IPv6 Internet P2P Client-1 NON-PCP PCP PCP Server Port 2 P2P Client-2 NATCoord IPv4 Internet CPE2 CGN Port 1 Port 3 Web Server (VM) UPnP/PCP Interworking NE40E-X3 Internet NATCoord Client Huawei HG553 Client HUAWEI TECHNOLOGIES CO., LTD. Huawei Confidential Page 12
  • 13. Multicast IPv6 Transition 6-6-4 Case IPv4 Multicast Network IPv4 IPv4 Content CERNET Server Content IPv6 IPv6 IPv4 IPv6 RP (IPv4 Multicast Receiver IPv6 Multicast Content Server) Network MLD CPE PIM IPv6 IPv6 Multicast 4/6 Gateway Multicast Client Multicast Content Traffic HUAWEI TECHNOLOGIES CO., LTD. Huawei Confidential Page 13
  • 14. LightWeight 4over6  Per-subscriber stateful 4 over 6 solution  No IPv4 and IPv6 address coupling  Adopted by CT, FT and DT. HUAWEI TECHNOLOGIES CO., LTD. Huawei Confidential Page 14
  • 15. Section 3: Live Production Network HUAWEI TECHNOLOGIES CO., LTD. Huawei Confidential Page 15
  • 16. Phase 1 Enterprise Network Transition Challenges: • Security and compliance • Multi zone networks based on use. • Intranet networks highly secured and regulated by Corporate HQ. • Nothing goes on the network unless approved by Information Security and IT. • Too much “red tape.” • Technology • Existing infrastructure not ready, no IPv6 support. • Support • Minimal to none local resources. HUAWEI TECHNOLOGIES CO., LTD. Huawei Confidential Page 16
  • 17. Phase 1 Enterprise Network Transition – cont. Strategy: • Security and compliance • Solution or Proof of Concept implementation that does not break the rules. • Technology • Solution that utilizes existing network – no change in IT infrastructure. • Support • Get local Regional IT buy in. HUAWEI TECHNOLOGIES CO., LTD. Huawei Confidential Page 17
  • 18. Phase 1 Enterprise Network Transition – cont. Solution and scope: • Deploy IPv6 stub network with dual nic Linux host runing NAT64/DNS64 service. • IPv6 only host able to access IPv4 rfc1918 resources, i.e. Sharepoint portal, Proxy web server, and etc; by utilizing NAT64 and DNS64 gateway. Technology and resources: • Allocate IPv4 rfc1918 network prefix for IPv4 dynamic mapping pool. • Allocate IPv6 network prefixes: • 2001:db8:1:ffff::/96 for NAT64/DNS64 service. • Redhat Linux host with dual network adapters running NAT64/DNS64 service. • Tayga stateless NAT64 open source application was installed and tested. • TOTD DNS64 open source application was installed and tested. HUAWEI TECHNOLOGIES CO., LTD. Huawei Confidential Page 18
  • 19. Phase 1 Enterprise Network Transition – cont. cont. • IPv6 NAT64 prefix (well-known or network-specific) is dedicated to mapped IPv4 addresses. • NAT64 and DNS64 processes use the same prefix. • Default gateway and DNS server of IPv6 host is the NAT64/DNS64 gateway. HUAWEI TECHNOLOGIES CO., LTD. Huawei Confidential Page 19
  • 20. Phase 1 Enterprise Network Transition – cont. Results: • IPv6 host able to ping and telnet to network devices in IPv4 domain using NAT64 IPv6 prefix. • IPv6 host able to access resources in IPv4 only domain using Fully Qualified Domain Names. • IPv6 host able to use web proxy in IPv4 only domain to access Internet websites. • Web proxy FQDN was hard set in host browser settings. • IPv6 host able to browse and utilize Sharepoint portal/collaboration tool. Next Steps: • Explore and incorporate additional IPv6 technologies. • DHCPv6 • Deploy architecture to larger scope – Phase 2. HUAWEI TECHNOLOGIES CO., LTD. Huawei Confidential Page 20
  • 21. eSpace UC PSTN/PLMN  Analog  IP Phone  UC Server  Soft  Fax  PC Client / Soft Phone PSTN Gateway  U2990 (CALL Control) Console HEADQUARTERS SBC Firewall SVN IP E1/ATO POTS IPV4/IPV6 WiFi/3G E1/T1 PSTN/PLMN ATO PSTN/PLMN IAD U1980 EGW SSL VPN  Analog  Analog Internet  PC Client  Fax  Fax SBC Proxy  Soft Phone  IP Phone  IP Phone  PC Client  PC Client WiFi WiFi BRANCH A BRANCH B PUBLIC NETWORK HUAWEI TECHNOLOGIES CO., LTD. Huawei Confidential Page 21
  • 22. eSpace UC – SIP, RTP(VOIP 1) PSTN/PLMN IPv4/IPv6 dual-stack U29XX UC Server HEADQUARTERS SBC Firewall SVN IPv4/IPv6 dual-stack SIP RTP IPV4/IPV6 PSTN/PLMN PSTN/PLMN EGW U1980 SSL VPN Internet IPv4 BRANCH IPv6 BRANCH PUBLIC NETWORK HUAWEI TECHNOLOGIES CO., LTD. Huawei Confidential Page 22
  • 23. eSpace UC – SIP, RTP(VOIP 2) PSTN/PLMN IPv4/IPv6 dual-stack U29XX UC Server HEADQUARTERS SBC Firewall SVN IPv4/IPv6 dual-stack SIP RTP IPV4/IPV6 PSTN/PLMN PSTN/PLMN EGW U1980 SSL VPN Internet IPv4 IPv6 PUBLIC NETWORK BRANCH BRANCH HUAWEI TECHNOLOGIES CO., LTD. Huawei Confidential Page 23
  • 24. eSpace UC – SIP, RTP(Conference) PSTN/PLMN IPv4/IPv6 dual-stack U29XX UC Server HEADQUARTERS SBC Firewall SVN IPv4/IPv6 dual-stack SIP RTP IPV4/IPV6 PSTN/PLMN PSTN/PLMN EGW U1980 SSL VPN Internet IPv4 BRANCH IPv6 BRANCH PUBLIC NETWORK HUAWEI TECHNOLOGIES CO., LTD. Huawei Confidential Page 24
  • 25. SIP and RTP UC Server UC Server Intranet(IPv6) Intranet(IPv6) U29XX U29XX SIP SIP Intranet(IPv6) Intranet(IPv6) RTP eSpace eSpace eSpace eSpace P2P VOIP Conference HUAWEI TECHNOLOGIES CO., LTD. Huawei Confidential Page 25
  • 26. Section 4: Additional Use-Cases HUAWEI TECHNOLOGIES CO., LTD. Huawei Confidential Page 26
  • 27. www.huawei.com permanently launched v6 HUAWEI TECHNOLOGIES CO., LTD. Huawei Confidential Page 27
  • 28. Huawei: IPv6 Deployment used by IEEE meeting IEEE HOT INTERCONNECT CONFERENCE, Aug 22-24, hosted by Huawei at Huawei campus on Santa Clara, CA, USA IPv4/IPv6 Internet IPv4/IPv6 Firewall (support NAT for IPv4) IPv4 IPS/IDS IPv4 AC IPv4/IPv6 Core&Aggregation (Active) (Gateway,iStack) IPv4 AC (Standby) Access Layer IPv4 AP IPv4/IPv6 STA HUAWEI TECHNOLOGIES CO., LTD. Huawei Confidential Page 28
  • 30. Thank you www.huawei.com Copyright©2011 Huawei Technologies Co., Ltd. All Rights Reserved. The information in this document may contain predictive statements including, without limitation, statements regarding the future financial and operating results, future product portfolio, new technology, etc. There are a number of factors that could cause actual results and developments to differ materially from those expressed or implied in the predictive statements. Therefore, such information is provided for reference purpose only and constitutes neither an offer nor an acceptance. Huawei may change the information at any time without notice.