SlideShare una empresa de Scribd logo
1 de 30
Descargar para leer sin conexión
Overcoming challenges of deploying IPv6
in the live Enterprise work environment

Tina Tsou (Speaker), Kenneth Durazzo, Wendell Rios   www.huawei.com
Huawei Technologies




 HUAWEI TECHNOLOGIES CO., LTD.
Agenda


It’s Only IP…Right?
Making the case
Defining success
Testing 360
Planning the Transition
Deployment Details
       UCC
       Applications / Network
       Platforms




HUAWEI TECHNOLOGIES CO., LTD.    Huawei Confidential
Section 1:
Best Practices / Overview


 HUAWEI TECHNOLOGIES CO., LTD.   Huawei Confidential   Page 3
It’s Only IP… Right?


Should be easy, no?
But what about…
       Security policy and devices
       Operating systems, Hypervisors
       Servers, PCs and smart-devices
       Network platforms
       Services and Applications
            VPN
            Application Optimization
            UCC
            Private and Public Cloud Applications
            DNS / DHCP / Printing
            Monitoring / Troubleshooting tools


  HUAWEI TECHNOLOGIES CO., LTD.         Huawei Confidential
Making the Case
                                             Business Executives
                                                     IPv6 will help us increase IT flexibility for
                                                      new applications and communications,
                                                      for instance BYOD
                                                     CAPex cost should be minimal, OPex
 Business                  Security                   should stay the same
Executives                Operations         Security Operations
                                                     IPv6 is here on the network, in fact all
                                                      new OS’s already support it, if you don’t
                                                      embrace it, how will you protect the
                  IT                                  business?
                                             Application / Server Operations
                                                     Many applications and tools already
                                                      support IPv6, resulting in minor changes
Application /              Business                   to existing environment and processes
  Server                   Function          Business Function Leaders
Operations                 Leaders
                                                     How this will be non-intrusive to their
                                                      users and business goals but be an
                                                      enabler to their business (eg: BYOD)


HUAWEI TECHNOLOGIES CO., LTD.      Huawei Confidential
Defining Success


Business impact definition
What is the scope of deployment?
      Entire environment? branch, campus or DC?
      Phased deployment?
      At the Edge? In the Core?
Timeline for cut-over
User QOE for:
      Applications
      Network
What is the desired successful
 outcome (exit criteria)?



 HUAWEI TECHNOLOGIES CO., LTD.     Huawei Confidential
Testing 360


Best practices
       Set up a lab that mimics your target environment, but not at scale
       Perform an inventory of:
            Applications
            Platforms / Devices
       Work with employees to create User-stories / Use-cases for the target
        environment
       Test, test, test…
            Devices / Applications / permutations
       Involve security and other operations teams, early and often, even better
        if they are part of the testing team



HUAWEI TECHNOLOGIES CO., LTD.       Huawei Confidential
Planning the Transition
Create the scope of work
        Environment
        Platforms
        Applications
        Users, etc
Get training for all impacted personnel for support of
    IPv6 and any new systems put in place to support
    the environment
Inventory all impacted devices and configurations.
    Include wiring plant and HVAC, etc
Create clear documentation and points of contact for
    transition activities
All OPS teams must be deeply involved (Sec / App /
    Server / Network)
Socialize the scope of work and get buy-in / signatures
    for cut-over dates / times
Go live!

  HUAWEI TECHNOLOGIES CO., LTD.       Huawei Confidential
IPv6 production office networks



                  Enable all                               Explore practical IPv6
                  employees to                             deployment and
                  have IPv6 access                         transition options




                  Enable employees                         Enable product
                  to innovate and                          teams to test
                  collaborate with                         the new
                  external partners                        implementations




 HUAWEI TECHNOLOGIES CO., LTD.       Huawei Confidential     Page 9
Section 2:
Network Architecture – IPv6 LAB Network


  HUAWEI TECHNOLOGIES CO., LTD.   Huawei Confidential   Page 10
IPv6 Network

               OSPFv3                                        Static Routing

               CGN @ NE40E




                     Santa Clara, CA

               Content                                         CE
               Server                                          Router
                                IPv6 Network Core                              IPv6
                                                                              Network


               AR                                              AR


                                   Plano, TX and Santa Clara, CA




HUAWEI TECHNOLOGIES CO., LTD.          Huawei Confidential          Page 11
CGN and PCP Layout

            UPnP                                 DS-Lite                                  NAT44

   Private IPv4 Client/IPv4
                                              IPv4 over IPv6                   Public IPv4/Internet Client
         Web Server


             PCP
                     Port 2 CPE1     Port 3                                               IPv6 Internet
 P2P Client-1
             NON-PCP                                   PCP          PCP Server
                     Port 2
 P2P Client-2
                                                       NATCoord                           IPv4 Internet
                              CPE2                                    CGN
                     Port 1          Port 3
Web Server (VM)     UPnP/PCP Interworking                           NE40E-X3                      Internet
NATCoord Client        Huawei HG553                                                               Client




      HUAWEI TECHNOLOGIES CO., LTD.           Huawei Confidential           Page 12
Multicast IPv6 Transition 6-6-4 Case


                                                          IPv4 Multicast Network

                                    IPv4                         IPv4
                                   Content        CERNET
                                   Server                       Content

                    IPv6                           IPv6              IPv4

  IPv6                                                                        RP (IPv4 Multicast
Receiver                                IPv6 Multicast                         Content Server)
                                           Network
            MLD    CPE                   PIM     IPv6

  IPv6                              Multicast 4/6 Gateway
Multicast
 Client                            Multicast Content Traffic




   HUAWEI TECHNOLOGIES CO., LTD.        Huawei Confidential         Page 13
LightWeight 4over6
   Per-subscriber stateful 4 over 6 solution
   No IPv4 and IPv6 address coupling
   Adopted by CT, FT and DT.




HUAWEI TECHNOLOGIES CO., LTD.               Huawei Confidential   Page 14
Section 3:
Live Production Network

 HUAWEI TECHNOLOGIES CO., LTD.   Huawei Confidential   Page 15
Phase 1 Enterprise Network Transition

 Challenges:

 • Security and compliance
      • Multi zone networks based on use.
      • Intranet networks highly secured and regulated by Corporate HQ.
      • Nothing goes on the network unless approved by Information Security and IT.
      • Too much “red tape.”

 • Technology
      • Existing infrastructure not ready, no IPv6 support.

 • Support
      • Minimal to none local resources.




    HUAWEI TECHNOLOGIES CO., LTD.           Huawei Confidential       Page 16
Phase 1 Enterprise Network Transition – cont.


 Strategy:

 • Security and compliance
      • Solution or Proof of Concept implementation that does not break the rules.

 • Technology
      • Solution that utilizes existing network – no change in IT infrastructure.

 • Support
      • Get local Regional IT buy in.




   HUAWEI TECHNOLOGIES CO., LTD.            Huawei Confidential           Page 17
Phase 1 Enterprise Network Transition – cont.




 Solution and scope:
 • Deploy IPv6 stub network with dual nic Linux host runing NAT64/DNS64 service.
 • IPv6 only host able to access IPv4 rfc1918 resources, i.e. Sharepoint portal, Proxy web server,
 and etc; by utilizing NAT64 and DNS64 gateway.

 Technology and resources:
 • Allocate IPv4 rfc1918 network prefix for IPv4 dynamic mapping pool.
 • Allocate IPv6 network prefixes:
       • 2001:db8:1:ffff::/96 for NAT64/DNS64 service.
 • Redhat Linux host with dual network adapters running NAT64/DNS64 service.
       • Tayga stateless NAT64 open source application was installed and tested.
       • TOTD DNS64 open source application was installed and tested.




    HUAWEI TECHNOLOGIES CO., LTD.          Huawei Confidential           Page 18
Phase 1 Enterprise Network Transition – cont.
  cont.




• IPv6 NAT64 prefix (well-known or network-specific) is dedicated to mapped IPv4 addresses.
• NAT64 and DNS64 processes use the same prefix.
• Default gateway and DNS server of IPv6 host is the NAT64/DNS64 gateway.



    HUAWEI TECHNOLOGIES CO., LTD.           Huawei Confidential            Page 19
Phase 1 Enterprise Network Transition – cont.

Results:

• IPv6 host able to ping and telnet to network devices in IPv4 domain using NAT64 IPv6 prefix.
• IPv6 host able to access resources in IPv4 only domain using Fully Qualified Domain Names.
• IPv6 host able to use web proxy in IPv4 only domain to access Internet websites.
     • Web proxy FQDN was hard set in host browser settings.
• IPv6 host able to browse and utilize Sharepoint portal/collaboration tool.



Next Steps:

• Explore and incorporate additional IPv6 technologies.
     • DHCPv6
• Deploy architecture to larger scope – Phase 2.




    HUAWEI TECHNOLOGIES CO., LTD.          Huawei Confidential          Page 20
eSpace UC

                                                PSTN/PLMN
 Analog             IP Phone                                           UC Server                 Soft
 Fax                PC Client / Soft Phone   PSTN Gateway              U2990 (CALL Control)       Console

                                           HEADQUARTERS

                          SBC              Firewall                                     SVN
                                                                                                    IP
                                                                                                    E1/ATO
                                                                                                    POTS
                                                IPV4/IPV6
                                                                                                    WiFi/3G
E1/T1         PSTN/PLMN                ATO                  PSTN/PLMN

              IAD         U1980                                  EGW
                                                                                         SSL VPN
 Analog                                 Analog                             Internet               PC Client
 Fax                                    Fax                                            SBC
                                                                                         Proxy      Soft Phone
 IP Phone                               IP Phone
 PC Client                              PC Client              WiFi            WiFi
        BRANCH        A                        BRANCH        B                     PUBLIC NETWORK




    HUAWEI TECHNOLOGIES CO., LTD.              Huawei Confidential               Page 21
eSpace UC – SIP, RTP(VOIP 1)

                                       PSTN/PLMN
                                                            IPv4/IPv6 dual-stack
                                 U29XX                                           UC Server


                                  HEADQUARTERS

                SBC               Firewall                                 SVN

               IPv4/IPv6 dual-stack                                                      SIP
                                                                                         RTP
                                       IPV4/IPV6

       PSTN/PLMN                                   PSTN/PLMN

                EGW                                   U1980                 SSL VPN
                                                                Internet




  IPv4 BRANCH                         IPv6 BRANCH                     PUBLIC NETWORK




 HUAWEI TECHNOLOGIES CO., LTD.        Huawei Confidential           Page 22
eSpace UC – SIP, RTP(VOIP 2)

                                       PSTN/PLMN
                                                            IPv4/IPv6 dual-stack
                                 U29XX                                           UC Server


                                  HEADQUARTERS

                SBC               Firewall                                 SVN

               IPv4/IPv6 dual-stack                                                      SIP
                                                                                         RTP
                                       IPV4/IPV6

       PSTN/PLMN                                   PSTN/PLMN

                EGW                                   U1980                 SSL VPN
                                                                Internet




  IPv4                                IPv6                            PUBLIC NETWORK
  BRANCH                              BRANCH



 HUAWEI TECHNOLOGIES CO., LTD.        Huawei Confidential           Page 23
eSpace UC – SIP, RTP(Conference)

                                         PSTN/PLMN
                                                              IPv4/IPv6 dual-stack
                                   U29XX                                           UC Server


                                    HEADQUARTERS

                  SBC               Firewall                                 SVN

                 IPv4/IPv6 dual-stack                                                      SIP
                                                                                           RTP
                                         IPV4/IPV6

         PSTN/PLMN                                   PSTN/PLMN

                  EGW                                   U1980                 SSL VPN
                                                                  Internet




    IPv4 BRANCH                         IPv6 BRANCH                     PUBLIC NETWORK




   HUAWEI TECHNOLOGIES CO., LTD.        Huawei Confidential           Page 24
SIP and RTP

   UC Server                                              UC Server




                 Intranet(IPv6)                                            Intranet(IPv6)


    U29XX                                                  U29XX

                 SIP                                                   SIP


                  Intranet(IPv6)                                            Intranet(IPv6)


                                                                              RTP




        eSpace                     eSpace                         eSpace                     eSpace

                 P2P VOIP                                                  Conference




HUAWEI TECHNOLOGIES CO., LTD.               Huawei Confidential             Page 25
Section 4:
Additional Use-Cases


 HUAWEI TECHNOLOGIES CO., LTD.   Huawei Confidential   Page 26
www.huawei.com permanently launched v6




   HUAWEI TECHNOLOGIES CO., LTD.   Huawei Confidential   Page 27
Huawei: IPv6 Deployment used by IEEE meeting
   IEEE HOT INTERCONNECT CONFERENCE, Aug 22-24, hosted by Huawei at
 Huawei campus on Santa Clara, CA, USA
                            IPv4/IPv6 Internet



       IPv4/IPv6 Firewall
         (support NAT
            for IPv4)


          IPv4 IPS/IDS


                                                  IPv4 AC
        IPv4/IPv6
    Core&Aggregation                             (Active)
    (Gateway,iStack)                              IPv4 AC
                                                 (Standby)

  Access Layer


                                                 IPv4 AP




                              IPv4/IPv6 STA




   HUAWEI TECHNOLOGIES CO., LTD.                    Huawei Confidential   Page 28
Additional Reference

http://www.huawei.com/en/solutions/broader-smarter/hw-
092950-ipv6.htm




 HUAWEI TECHNOLOGIES CO., LTD.   Huawei Confidential   Page 29
Thank you
                                     www.huawei.com

Copyright©2011 Huawei Technologies Co., Ltd. All Rights Reserved.
The information in this document may contain predictive statements including, without limitation, statements
regarding the future financial and operating results, future product portfolio, new technology, etc. There are a
number of factors that could cause actual results and developments to differ materially from those expressed or
implied in the predictive statements. Therefore, such information is provided for reference purpose only and
constitutes neither an offer nor an acceptance. Huawei may change the information at any time without notice.

Más contenido relacionado

Último

Observability Concepts EVERY Developer Should Know (DevOpsDays Seattle)
Observability Concepts EVERY Developer Should Know (DevOpsDays Seattle)Observability Concepts EVERY Developer Should Know (DevOpsDays Seattle)
Observability Concepts EVERY Developer Should Know (DevOpsDays Seattle)Paige Cruz
 
Top 10 CodeIgniter Development Companies
Top 10 CodeIgniter Development CompaniesTop 10 CodeIgniter Development Companies
Top 10 CodeIgniter Development CompaniesTopCSSGallery
 
UiPath manufacturing technology benefits and AI overview
UiPath manufacturing technology benefits and AI overviewUiPath manufacturing technology benefits and AI overview
UiPath manufacturing technology benefits and AI overviewDianaGray10
 
Vector Search @ sw2con for slideshare.pptx
Vector Search @ sw2con for slideshare.pptxVector Search @ sw2con for slideshare.pptx
Vector Search @ sw2con for slideshare.pptxjbellis
 
State of the Smart Building Startup Landscape 2024!
State of the Smart Building Startup Landscape 2024!State of the Smart Building Startup Landscape 2024!
State of the Smart Building Startup Landscape 2024!Memoori
 
Hyatt driving innovation and exceptional customer experiences with FIDO passw...
Hyatt driving innovation and exceptional customer experiences with FIDO passw...Hyatt driving innovation and exceptional customer experiences with FIDO passw...
Hyatt driving innovation and exceptional customer experiences with FIDO passw...FIDO Alliance
 
Secure Zero Touch enabled Edge compute with Dell NativeEdge via FDO _ Brad at...
Secure Zero Touch enabled Edge compute with Dell NativeEdge via FDO _ Brad at...Secure Zero Touch enabled Edge compute with Dell NativeEdge via FDO _ Brad at...
Secure Zero Touch enabled Edge compute with Dell NativeEdge via FDO _ Brad at...FIDO Alliance
 
Event-Driven Architecture Masterclass: Engineering a Robust, High-performance...
Event-Driven Architecture Masterclass: Engineering a Robust, High-performance...Event-Driven Architecture Masterclass: Engineering a Robust, High-performance...
Event-Driven Architecture Masterclass: Engineering a Robust, High-performance...ScyllaDB
 
Choosing the Right FDO Deployment Model for Your Application _ Geoffrey at In...
Choosing the Right FDO Deployment Model for Your Application _ Geoffrey at In...Choosing the Right FDO Deployment Model for Your Application _ Geoffrey at In...
Choosing the Right FDO Deployment Model for Your Application _ Geoffrey at In...FIDO Alliance
 
How Red Hat Uses FDO in Device Lifecycle _ Costin and Vitaliy at Red Hat.pdf
How Red Hat Uses FDO in Device Lifecycle _ Costin and Vitaliy at Red Hat.pdfHow Red Hat Uses FDO in Device Lifecycle _ Costin and Vitaliy at Red Hat.pdf
How Red Hat Uses FDO in Device Lifecycle _ Costin and Vitaliy at Red Hat.pdfFIDO Alliance
 
Working together SRE & Platform Engineering
Working together SRE & Platform EngineeringWorking together SRE & Platform Engineering
Working together SRE & Platform EngineeringMarcus Vechiato
 
Introduction to FIDO Authentication and Passkeys.pptx
Introduction to FIDO Authentication and Passkeys.pptxIntroduction to FIDO Authentication and Passkeys.pptx
Introduction to FIDO Authentication and Passkeys.pptxFIDO Alliance
 
Continuing Bonds Through AI: A Hermeneutic Reflection on Thanabots
Continuing Bonds Through AI: A Hermeneutic Reflection on ThanabotsContinuing Bonds Through AI: A Hermeneutic Reflection on Thanabots
Continuing Bonds Through AI: A Hermeneutic Reflection on ThanabotsLeah Henrickson
 
Linux Foundation Edge _ Overview of FDO Software Components _ Randy at Intel.pdf
Linux Foundation Edge _ Overview of FDO Software Components _ Randy at Intel.pdfLinux Foundation Edge _ Overview of FDO Software Components _ Randy at Intel.pdf
Linux Foundation Edge _ Overview of FDO Software Components _ Randy at Intel.pdfFIDO Alliance
 
Introduction to FDO and How It works Applications _ Richard at FIDO Alliance.pdf
Introduction to FDO and How It works Applications _ Richard at FIDO Alliance.pdfIntroduction to FDO and How It works Applications _ Richard at FIDO Alliance.pdf
Introduction to FDO and How It works Applications _ Richard at FIDO Alliance.pdfFIDO Alliance
 
How we scaled to 80K users by doing nothing!.pdf
How we scaled to 80K users by doing nothing!.pdfHow we scaled to 80K users by doing nothing!.pdf
How we scaled to 80K users by doing nothing!.pdfSrushith Repakula
 
Intro to Passkeys and the State of Passwordless.pptx
Intro to Passkeys and the State of Passwordless.pptxIntro to Passkeys and the State of Passwordless.pptx
Intro to Passkeys and the State of Passwordless.pptxFIDO Alliance
 
Where to Learn More About FDO _ Richard at FIDO Alliance.pdf
Where to Learn More About FDO _ Richard at FIDO Alliance.pdfWhere to Learn More About FDO _ Richard at FIDO Alliance.pdf
Where to Learn More About FDO _ Richard at FIDO Alliance.pdfFIDO Alliance
 
Design Guidelines for Passkeys 2024.pptx
Design Guidelines for Passkeys 2024.pptxDesign Guidelines for Passkeys 2024.pptx
Design Guidelines for Passkeys 2024.pptxFIDO Alliance
 

Último (20)

Observability Concepts EVERY Developer Should Know (DevOpsDays Seattle)
Observability Concepts EVERY Developer Should Know (DevOpsDays Seattle)Observability Concepts EVERY Developer Should Know (DevOpsDays Seattle)
Observability Concepts EVERY Developer Should Know (DevOpsDays Seattle)
 
Top 10 CodeIgniter Development Companies
Top 10 CodeIgniter Development CompaniesTop 10 CodeIgniter Development Companies
Top 10 CodeIgniter Development Companies
 
UiPath manufacturing technology benefits and AI overview
UiPath manufacturing technology benefits and AI overviewUiPath manufacturing technology benefits and AI overview
UiPath manufacturing technology benefits and AI overview
 
Vector Search @ sw2con for slideshare.pptx
Vector Search @ sw2con for slideshare.pptxVector Search @ sw2con for slideshare.pptx
Vector Search @ sw2con for slideshare.pptx
 
State of the Smart Building Startup Landscape 2024!
State of the Smart Building Startup Landscape 2024!State of the Smart Building Startup Landscape 2024!
State of the Smart Building Startup Landscape 2024!
 
Hyatt driving innovation and exceptional customer experiences with FIDO passw...
Hyatt driving innovation and exceptional customer experiences with FIDO passw...Hyatt driving innovation and exceptional customer experiences with FIDO passw...
Hyatt driving innovation and exceptional customer experiences with FIDO passw...
 
Secure Zero Touch enabled Edge compute with Dell NativeEdge via FDO _ Brad at...
Secure Zero Touch enabled Edge compute with Dell NativeEdge via FDO _ Brad at...Secure Zero Touch enabled Edge compute with Dell NativeEdge via FDO _ Brad at...
Secure Zero Touch enabled Edge compute with Dell NativeEdge via FDO _ Brad at...
 
Event-Driven Architecture Masterclass: Engineering a Robust, High-performance...
Event-Driven Architecture Masterclass: Engineering a Robust, High-performance...Event-Driven Architecture Masterclass: Engineering a Robust, High-performance...
Event-Driven Architecture Masterclass: Engineering a Robust, High-performance...
 
Choosing the Right FDO Deployment Model for Your Application _ Geoffrey at In...
Choosing the Right FDO Deployment Model for Your Application _ Geoffrey at In...Choosing the Right FDO Deployment Model for Your Application _ Geoffrey at In...
Choosing the Right FDO Deployment Model for Your Application _ Geoffrey at In...
 
How Red Hat Uses FDO in Device Lifecycle _ Costin and Vitaliy at Red Hat.pdf
How Red Hat Uses FDO in Device Lifecycle _ Costin and Vitaliy at Red Hat.pdfHow Red Hat Uses FDO in Device Lifecycle _ Costin and Vitaliy at Red Hat.pdf
How Red Hat Uses FDO in Device Lifecycle _ Costin and Vitaliy at Red Hat.pdf
 
Working together SRE & Platform Engineering
Working together SRE & Platform EngineeringWorking together SRE & Platform Engineering
Working together SRE & Platform Engineering
 
Introduction to FIDO Authentication and Passkeys.pptx
Introduction to FIDO Authentication and Passkeys.pptxIntroduction to FIDO Authentication and Passkeys.pptx
Introduction to FIDO Authentication and Passkeys.pptx
 
Continuing Bonds Through AI: A Hermeneutic Reflection on Thanabots
Continuing Bonds Through AI: A Hermeneutic Reflection on ThanabotsContinuing Bonds Through AI: A Hermeneutic Reflection on Thanabots
Continuing Bonds Through AI: A Hermeneutic Reflection on Thanabots
 
Linux Foundation Edge _ Overview of FDO Software Components _ Randy at Intel.pdf
Linux Foundation Edge _ Overview of FDO Software Components _ Randy at Intel.pdfLinux Foundation Edge _ Overview of FDO Software Components _ Randy at Intel.pdf
Linux Foundation Edge _ Overview of FDO Software Components _ Randy at Intel.pdf
 
Overview of Hyperledger Foundation
Overview of Hyperledger FoundationOverview of Hyperledger Foundation
Overview of Hyperledger Foundation
 
Introduction to FDO and How It works Applications _ Richard at FIDO Alliance.pdf
Introduction to FDO and How It works Applications _ Richard at FIDO Alliance.pdfIntroduction to FDO and How It works Applications _ Richard at FIDO Alliance.pdf
Introduction to FDO and How It works Applications _ Richard at FIDO Alliance.pdf
 
How we scaled to 80K users by doing nothing!.pdf
How we scaled to 80K users by doing nothing!.pdfHow we scaled to 80K users by doing nothing!.pdf
How we scaled to 80K users by doing nothing!.pdf
 
Intro to Passkeys and the State of Passwordless.pptx
Intro to Passkeys and the State of Passwordless.pptxIntro to Passkeys and the State of Passwordless.pptx
Intro to Passkeys and the State of Passwordless.pptx
 
Where to Learn More About FDO _ Richard at FIDO Alliance.pdf
Where to Learn More About FDO _ Richard at FIDO Alliance.pdfWhere to Learn More About FDO _ Richard at FIDO Alliance.pdf
Where to Learn More About FDO _ Richard at FIDO Alliance.pdf
 
Design Guidelines for Passkeys 2024.pptx
Design Guidelines for Passkeys 2024.pptxDesign Guidelines for Passkeys 2024.pptx
Design Guidelines for Passkeys 2024.pptx
 

Destacado

2024 State of Marketing Report – by Hubspot
2024 State of Marketing Report – by Hubspot2024 State of Marketing Report – by Hubspot
2024 State of Marketing Report – by HubspotMarius Sescu
 
Everything You Need To Know About ChatGPT
Everything You Need To Know About ChatGPTEverything You Need To Know About ChatGPT
Everything You Need To Know About ChatGPTExpeed Software
 
Product Design Trends in 2024 | Teenage Engineerings
Product Design Trends in 2024 | Teenage EngineeringsProduct Design Trends in 2024 | Teenage Engineerings
Product Design Trends in 2024 | Teenage EngineeringsPixeldarts
 
How Race, Age and Gender Shape Attitudes Towards Mental Health
How Race, Age and Gender Shape Attitudes Towards Mental HealthHow Race, Age and Gender Shape Attitudes Towards Mental Health
How Race, Age and Gender Shape Attitudes Towards Mental HealthThinkNow
 
AI Trends in Creative Operations 2024 by Artwork Flow.pdf
AI Trends in Creative Operations 2024 by Artwork Flow.pdfAI Trends in Creative Operations 2024 by Artwork Flow.pdf
AI Trends in Creative Operations 2024 by Artwork Flow.pdfmarketingartwork
 
PEPSICO Presentation to CAGNY Conference Feb 2024
PEPSICO Presentation to CAGNY Conference Feb 2024PEPSICO Presentation to CAGNY Conference Feb 2024
PEPSICO Presentation to CAGNY Conference Feb 2024Neil Kimberley
 
Content Methodology: A Best Practices Report (Webinar)
Content Methodology: A Best Practices Report (Webinar)Content Methodology: A Best Practices Report (Webinar)
Content Methodology: A Best Practices Report (Webinar)contently
 
How to Prepare For a Successful Job Search for 2024
How to Prepare For a Successful Job Search for 2024How to Prepare For a Successful Job Search for 2024
How to Prepare For a Successful Job Search for 2024Albert Qian
 
Social Media Marketing Trends 2024 // The Global Indie Insights
Social Media Marketing Trends 2024 // The Global Indie InsightsSocial Media Marketing Trends 2024 // The Global Indie Insights
Social Media Marketing Trends 2024 // The Global Indie InsightsKurio // The Social Media Age(ncy)
 
Trends In Paid Search: Navigating The Digital Landscape In 2024
Trends In Paid Search: Navigating The Digital Landscape In 2024Trends In Paid Search: Navigating The Digital Landscape In 2024
Trends In Paid Search: Navigating The Digital Landscape In 2024Search Engine Journal
 
5 Public speaking tips from TED - Visualized summary
5 Public speaking tips from TED - Visualized summary5 Public speaking tips from TED - Visualized summary
5 Public speaking tips from TED - Visualized summarySpeakerHub
 
ChatGPT and the Future of Work - Clark Boyd
ChatGPT and the Future of Work - Clark Boyd ChatGPT and the Future of Work - Clark Boyd
ChatGPT and the Future of Work - Clark Boyd Clark Boyd
 
Getting into the tech field. what next
Getting into the tech field. what next Getting into the tech field. what next
Getting into the tech field. what next Tessa Mero
 
Google's Just Not That Into You: Understanding Core Updates & Search Intent
Google's Just Not That Into You: Understanding Core Updates & Search IntentGoogle's Just Not That Into You: Understanding Core Updates & Search Intent
Google's Just Not That Into You: Understanding Core Updates & Search IntentLily Ray
 
Time Management & Productivity - Best Practices
Time Management & Productivity -  Best PracticesTime Management & Productivity -  Best Practices
Time Management & Productivity - Best PracticesVit Horky
 
The six step guide to practical project management
The six step guide to practical project managementThe six step guide to practical project management
The six step guide to practical project managementMindGenius
 
Beginners Guide to TikTok for Search - Rachel Pearson - We are Tilt __ Bright...
Beginners Guide to TikTok for Search - Rachel Pearson - We are Tilt __ Bright...Beginners Guide to TikTok for Search - Rachel Pearson - We are Tilt __ Bright...
Beginners Guide to TikTok for Search - Rachel Pearson - We are Tilt __ Bright...RachelPearson36
 

Destacado (20)

2024 State of Marketing Report – by Hubspot
2024 State of Marketing Report – by Hubspot2024 State of Marketing Report – by Hubspot
2024 State of Marketing Report – by Hubspot
 
Everything You Need To Know About ChatGPT
Everything You Need To Know About ChatGPTEverything You Need To Know About ChatGPT
Everything You Need To Know About ChatGPT
 
Product Design Trends in 2024 | Teenage Engineerings
Product Design Trends in 2024 | Teenage EngineeringsProduct Design Trends in 2024 | Teenage Engineerings
Product Design Trends in 2024 | Teenage Engineerings
 
How Race, Age and Gender Shape Attitudes Towards Mental Health
How Race, Age and Gender Shape Attitudes Towards Mental HealthHow Race, Age and Gender Shape Attitudes Towards Mental Health
How Race, Age and Gender Shape Attitudes Towards Mental Health
 
AI Trends in Creative Operations 2024 by Artwork Flow.pdf
AI Trends in Creative Operations 2024 by Artwork Flow.pdfAI Trends in Creative Operations 2024 by Artwork Flow.pdf
AI Trends in Creative Operations 2024 by Artwork Flow.pdf
 
Skeleton Culture Code
Skeleton Culture CodeSkeleton Culture Code
Skeleton Culture Code
 
PEPSICO Presentation to CAGNY Conference Feb 2024
PEPSICO Presentation to CAGNY Conference Feb 2024PEPSICO Presentation to CAGNY Conference Feb 2024
PEPSICO Presentation to CAGNY Conference Feb 2024
 
Content Methodology: A Best Practices Report (Webinar)
Content Methodology: A Best Practices Report (Webinar)Content Methodology: A Best Practices Report (Webinar)
Content Methodology: A Best Practices Report (Webinar)
 
How to Prepare For a Successful Job Search for 2024
How to Prepare For a Successful Job Search for 2024How to Prepare For a Successful Job Search for 2024
How to Prepare For a Successful Job Search for 2024
 
Social Media Marketing Trends 2024 // The Global Indie Insights
Social Media Marketing Trends 2024 // The Global Indie InsightsSocial Media Marketing Trends 2024 // The Global Indie Insights
Social Media Marketing Trends 2024 // The Global Indie Insights
 
Trends In Paid Search: Navigating The Digital Landscape In 2024
Trends In Paid Search: Navigating The Digital Landscape In 2024Trends In Paid Search: Navigating The Digital Landscape In 2024
Trends In Paid Search: Navigating The Digital Landscape In 2024
 
5 Public speaking tips from TED - Visualized summary
5 Public speaking tips from TED - Visualized summary5 Public speaking tips from TED - Visualized summary
5 Public speaking tips from TED - Visualized summary
 
ChatGPT and the Future of Work - Clark Boyd
ChatGPT and the Future of Work - Clark Boyd ChatGPT and the Future of Work - Clark Boyd
ChatGPT and the Future of Work - Clark Boyd
 
Getting into the tech field. what next
Getting into the tech field. what next Getting into the tech field. what next
Getting into the tech field. what next
 
Google's Just Not That Into You: Understanding Core Updates & Search Intent
Google's Just Not That Into You: Understanding Core Updates & Search IntentGoogle's Just Not That Into You: Understanding Core Updates & Search Intent
Google's Just Not That Into You: Understanding Core Updates & Search Intent
 
How to have difficult conversations
How to have difficult conversations How to have difficult conversations
How to have difficult conversations
 
Introduction to Data Science
Introduction to Data ScienceIntroduction to Data Science
Introduction to Data Science
 
Time Management & Productivity - Best Practices
Time Management & Productivity -  Best PracticesTime Management & Productivity -  Best Practices
Time Management & Productivity - Best Practices
 
The six step guide to practical project management
The six step guide to practical project managementThe six step guide to practical project management
The six step guide to practical project management
 
Beginners Guide to TikTok for Search - Rachel Pearson - We are Tilt __ Bright...
Beginners Guide to TikTok for Search - Rachel Pearson - We are Tilt __ Bright...Beginners Guide to TikTok for Search - Rachel Pearson - We are Tilt __ Bright...
Beginners Guide to TikTok for Search - Rachel Pearson - We are Tilt __ Bright...
 

Overcoming Challenges of Deploying IPv6 in the live Enterprise Work Environment by Tina Tsou at gogoNET LIVE! 3 IPv6 Conference

  • 1. Overcoming challenges of deploying IPv6 in the live Enterprise work environment Tina Tsou (Speaker), Kenneth Durazzo, Wendell Rios www.huawei.com Huawei Technologies HUAWEI TECHNOLOGIES CO., LTD.
  • 2. Agenda It’s Only IP…Right? Making the case Defining success Testing 360 Planning the Transition Deployment Details  UCC  Applications / Network  Platforms HUAWEI TECHNOLOGIES CO., LTD. Huawei Confidential
  • 3. Section 1: Best Practices / Overview HUAWEI TECHNOLOGIES CO., LTD. Huawei Confidential Page 3
  • 4. It’s Only IP… Right? Should be easy, no? But what about…  Security policy and devices  Operating systems, Hypervisors  Servers, PCs and smart-devices  Network platforms  Services and Applications  VPN  Application Optimization  UCC  Private and Public Cloud Applications  DNS / DHCP / Printing  Monitoring / Troubleshooting tools HUAWEI TECHNOLOGIES CO., LTD. Huawei Confidential
  • 5. Making the Case Business Executives  IPv6 will help us increase IT flexibility for new applications and communications, for instance BYOD  CAPex cost should be minimal, OPex Business Security should stay the same Executives Operations Security Operations  IPv6 is here on the network, in fact all new OS’s already support it, if you don’t embrace it, how will you protect the IT business? Application / Server Operations  Many applications and tools already support IPv6, resulting in minor changes Application / Business to existing environment and processes Server Function Business Function Leaders Operations Leaders  How this will be non-intrusive to their users and business goals but be an enabler to their business (eg: BYOD) HUAWEI TECHNOLOGIES CO., LTD. Huawei Confidential
  • 6. Defining Success Business impact definition What is the scope of deployment?  Entire environment? branch, campus or DC?  Phased deployment?  At the Edge? In the Core? Timeline for cut-over User QOE for:  Applications  Network What is the desired successful outcome (exit criteria)? HUAWEI TECHNOLOGIES CO., LTD. Huawei Confidential
  • 7. Testing 360 Best practices  Set up a lab that mimics your target environment, but not at scale  Perform an inventory of:  Applications  Platforms / Devices  Work with employees to create User-stories / Use-cases for the target environment  Test, test, test…  Devices / Applications / permutations  Involve security and other operations teams, early and often, even better if they are part of the testing team HUAWEI TECHNOLOGIES CO., LTD. Huawei Confidential
  • 8. Planning the Transition Create the scope of work  Environment  Platforms  Applications  Users, etc Get training for all impacted personnel for support of IPv6 and any new systems put in place to support the environment Inventory all impacted devices and configurations. Include wiring plant and HVAC, etc Create clear documentation and points of contact for transition activities All OPS teams must be deeply involved (Sec / App / Server / Network) Socialize the scope of work and get buy-in / signatures for cut-over dates / times Go live! HUAWEI TECHNOLOGIES CO., LTD. Huawei Confidential
  • 9. IPv6 production office networks Enable all Explore practical IPv6 employees to deployment and have IPv6 access transition options Enable employees Enable product to innovate and teams to test collaborate with the new external partners implementations HUAWEI TECHNOLOGIES CO., LTD. Huawei Confidential Page 9
  • 10. Section 2: Network Architecture – IPv6 LAB Network HUAWEI TECHNOLOGIES CO., LTD. Huawei Confidential Page 10
  • 11. IPv6 Network OSPFv3 Static Routing CGN @ NE40E Santa Clara, CA Content CE Server Router IPv6 Network Core IPv6 Network AR AR Plano, TX and Santa Clara, CA HUAWEI TECHNOLOGIES CO., LTD. Huawei Confidential Page 11
  • 12. CGN and PCP Layout UPnP DS-Lite NAT44 Private IPv4 Client/IPv4 IPv4 over IPv6 Public IPv4/Internet Client Web Server PCP Port 2 CPE1 Port 3 IPv6 Internet P2P Client-1 NON-PCP PCP PCP Server Port 2 P2P Client-2 NATCoord IPv4 Internet CPE2 CGN Port 1 Port 3 Web Server (VM) UPnP/PCP Interworking NE40E-X3 Internet NATCoord Client Huawei HG553 Client HUAWEI TECHNOLOGIES CO., LTD. Huawei Confidential Page 12
  • 13. Multicast IPv6 Transition 6-6-4 Case IPv4 Multicast Network IPv4 IPv4 Content CERNET Server Content IPv6 IPv6 IPv4 IPv6 RP (IPv4 Multicast Receiver IPv6 Multicast Content Server) Network MLD CPE PIM IPv6 IPv6 Multicast 4/6 Gateway Multicast Client Multicast Content Traffic HUAWEI TECHNOLOGIES CO., LTD. Huawei Confidential Page 13
  • 14. LightWeight 4over6  Per-subscriber stateful 4 over 6 solution  No IPv4 and IPv6 address coupling  Adopted by CT, FT and DT. HUAWEI TECHNOLOGIES CO., LTD. Huawei Confidential Page 14
  • 15. Section 3: Live Production Network HUAWEI TECHNOLOGIES CO., LTD. Huawei Confidential Page 15
  • 16. Phase 1 Enterprise Network Transition Challenges: • Security and compliance • Multi zone networks based on use. • Intranet networks highly secured and regulated by Corporate HQ. • Nothing goes on the network unless approved by Information Security and IT. • Too much “red tape.” • Technology • Existing infrastructure not ready, no IPv6 support. • Support • Minimal to none local resources. HUAWEI TECHNOLOGIES CO., LTD. Huawei Confidential Page 16
  • 17. Phase 1 Enterprise Network Transition – cont. Strategy: • Security and compliance • Solution or Proof of Concept implementation that does not break the rules. • Technology • Solution that utilizes existing network – no change in IT infrastructure. • Support • Get local Regional IT buy in. HUAWEI TECHNOLOGIES CO., LTD. Huawei Confidential Page 17
  • 18. Phase 1 Enterprise Network Transition – cont. Solution and scope: • Deploy IPv6 stub network with dual nic Linux host runing NAT64/DNS64 service. • IPv6 only host able to access IPv4 rfc1918 resources, i.e. Sharepoint portal, Proxy web server, and etc; by utilizing NAT64 and DNS64 gateway. Technology and resources: • Allocate IPv4 rfc1918 network prefix for IPv4 dynamic mapping pool. • Allocate IPv6 network prefixes: • 2001:db8:1:ffff::/96 for NAT64/DNS64 service. • Redhat Linux host with dual network adapters running NAT64/DNS64 service. • Tayga stateless NAT64 open source application was installed and tested. • TOTD DNS64 open source application was installed and tested. HUAWEI TECHNOLOGIES CO., LTD. Huawei Confidential Page 18
  • 19. Phase 1 Enterprise Network Transition – cont. cont. • IPv6 NAT64 prefix (well-known or network-specific) is dedicated to mapped IPv4 addresses. • NAT64 and DNS64 processes use the same prefix. • Default gateway and DNS server of IPv6 host is the NAT64/DNS64 gateway. HUAWEI TECHNOLOGIES CO., LTD. Huawei Confidential Page 19
  • 20. Phase 1 Enterprise Network Transition – cont. Results: • IPv6 host able to ping and telnet to network devices in IPv4 domain using NAT64 IPv6 prefix. • IPv6 host able to access resources in IPv4 only domain using Fully Qualified Domain Names. • IPv6 host able to use web proxy in IPv4 only domain to access Internet websites. • Web proxy FQDN was hard set in host browser settings. • IPv6 host able to browse and utilize Sharepoint portal/collaboration tool. Next Steps: • Explore and incorporate additional IPv6 technologies. • DHCPv6 • Deploy architecture to larger scope – Phase 2. HUAWEI TECHNOLOGIES CO., LTD. Huawei Confidential Page 20
  • 21. eSpace UC PSTN/PLMN  Analog  IP Phone  UC Server  Soft  Fax  PC Client / Soft Phone PSTN Gateway  U2990 (CALL Control) Console HEADQUARTERS SBC Firewall SVN IP E1/ATO POTS IPV4/IPV6 WiFi/3G E1/T1 PSTN/PLMN ATO PSTN/PLMN IAD U1980 EGW SSL VPN  Analog  Analog Internet  PC Client  Fax  Fax SBC Proxy  Soft Phone  IP Phone  IP Phone  PC Client  PC Client WiFi WiFi BRANCH A BRANCH B PUBLIC NETWORK HUAWEI TECHNOLOGIES CO., LTD. Huawei Confidential Page 21
  • 22. eSpace UC – SIP, RTP(VOIP 1) PSTN/PLMN IPv4/IPv6 dual-stack U29XX UC Server HEADQUARTERS SBC Firewall SVN IPv4/IPv6 dual-stack SIP RTP IPV4/IPV6 PSTN/PLMN PSTN/PLMN EGW U1980 SSL VPN Internet IPv4 BRANCH IPv6 BRANCH PUBLIC NETWORK HUAWEI TECHNOLOGIES CO., LTD. Huawei Confidential Page 22
  • 23. eSpace UC – SIP, RTP(VOIP 2) PSTN/PLMN IPv4/IPv6 dual-stack U29XX UC Server HEADQUARTERS SBC Firewall SVN IPv4/IPv6 dual-stack SIP RTP IPV4/IPV6 PSTN/PLMN PSTN/PLMN EGW U1980 SSL VPN Internet IPv4 IPv6 PUBLIC NETWORK BRANCH BRANCH HUAWEI TECHNOLOGIES CO., LTD. Huawei Confidential Page 23
  • 24. eSpace UC – SIP, RTP(Conference) PSTN/PLMN IPv4/IPv6 dual-stack U29XX UC Server HEADQUARTERS SBC Firewall SVN IPv4/IPv6 dual-stack SIP RTP IPV4/IPV6 PSTN/PLMN PSTN/PLMN EGW U1980 SSL VPN Internet IPv4 BRANCH IPv6 BRANCH PUBLIC NETWORK HUAWEI TECHNOLOGIES CO., LTD. Huawei Confidential Page 24
  • 25. SIP and RTP UC Server UC Server Intranet(IPv6) Intranet(IPv6) U29XX U29XX SIP SIP Intranet(IPv6) Intranet(IPv6) RTP eSpace eSpace eSpace eSpace P2P VOIP Conference HUAWEI TECHNOLOGIES CO., LTD. Huawei Confidential Page 25
  • 26. Section 4: Additional Use-Cases HUAWEI TECHNOLOGIES CO., LTD. Huawei Confidential Page 26
  • 27. www.huawei.com permanently launched v6 HUAWEI TECHNOLOGIES CO., LTD. Huawei Confidential Page 27
  • 28. Huawei: IPv6 Deployment used by IEEE meeting IEEE HOT INTERCONNECT CONFERENCE, Aug 22-24, hosted by Huawei at Huawei campus on Santa Clara, CA, USA IPv4/IPv6 Internet IPv4/IPv6 Firewall (support NAT for IPv4) IPv4 IPS/IDS IPv4 AC IPv4/IPv6 Core&Aggregation (Active) (Gateway,iStack) IPv4 AC (Standby) Access Layer IPv4 AP IPv4/IPv6 STA HUAWEI TECHNOLOGIES CO., LTD. Huawei Confidential Page 28
  • 30. Thank you www.huawei.com Copyright©2011 Huawei Technologies Co., Ltd. All Rights Reserved. The information in this document may contain predictive statements including, without limitation, statements regarding the future financial and operating results, future product portfolio, new technology, etc. There are a number of factors that could cause actual results and developments to differ materially from those expressed or implied in the predictive statements. Therefore, such information is provided for reference purpose only and constitutes neither an offer nor an acceptance. Huawei may change the information at any time without notice.