Posts categorized "IPv6"

Great Guidelines From NIST on Deploying IPv6

Nistipv6 1As I wrote about over on Voxeo's "Speaking of Standards" blog, the US National Institute of Standards and Technology (NIST) came out with a great set of guidelines around IPv6. Formally titled "Guidelines for the Secure Deployment of IPv6", the document follows the tradition of many other NIST docs in being more than just guidelines. It's also a great tutorial around IPv6.

You can download the doc at:

http://csrc.nist.gov/publications/nistpubs/800-119/sp800-119.pdf
UPDATE: Shortly after publishing this post, I was alerted that the URL does NOT work and I, too, have now been unable to retrieve the document from NIST's website. I was able to view it just the other day, and my browser still has a copy in its cache (and I also have a local copy myself). The NIST news archive shows that as of Dec 28, 2010 this document was in fact live. Perhaps the NIST team pulled the doc to update it... I don't know. Hopefully it will be available again soon, and if there is a new URL I will update this post.

It's only 188 pages long, including the appendices and will definitely help if you're just now trying to come up to speed on IPv6.

Kudos to the team at NIST for creating a great doc like this.


If you found this post interesting or useful, please consider either:



Video: Understanding the basics of IPv6

In 2011, I expect to be writing a good bit more about IPv6, in part because the reality is that we are getting closer to being out of IPv4 addresses, in part because I am doing more personal experimentation with IPv6, and in part because Voxeo is going to be releasing some new product versions that will work with IPv6... and yes, in part because the network geek in me just finds IPv6 interesting.

Anyway, to kick off my 2011 coverage of IPv6, here is a video of a tutorial given by a Voxeo engineer about the basics of IPv6... enjoy!


ARIN provides the latest word that we need to move to IPv6... will anyone heed the warning? (Does anyone care?)

NetworkWorld is running an article today that talks about the announcement from ARIN (the American Registry for Internet Numbers) of the ARIN Board resolution calling upon ARIN to no longer be "neutral" in the IPv4 vs IPv6 space and instead work to actively encourage migration to IPv6.

For those not aware, ARIN is a non-profit organization that allocates IP addresses within North America and is one of the five Regional Internet Registries that allocate IP addresses on behalf of the Internet Assigned Numbers Authority (IANA)

Think of it this way... let's say you start a business and want to get an Internet connection where you can run your own web server.  You need a public IP address, so you are going to contact an Internet Service Provider (ISP), set up service, get an address, etc., etc.  If you are in North America, the public IP address you are going to get will have been allocated to your ISP by ARIN.  ARIN, in turn, was given blocks of IP addresses to give out by IANA, who is ultimately responsible for all IP addresses.  So it looks something like this:

IANA -> ARIN (and the other RIRs) -> ISPs -> You

(and yes, where I said "ISPs", there may in fact be multiple levels of ISPs and other intermediary registries giving out addresses - I'm trying to make this simple, okay?)

Until now, ARIN and the other RIRs have generally been fairly neutral in the IPv4 versus IPv6 debate and have not shown a preference in allocation, but this announcement from ARIN shows the first signs of change.  It starts with this warning:

The available IPv4 resource pool has now been reduced to the point that ARIN is compelled to advise the Internet community that migration to IPv6 is necessary for any applications that require ongoing availability from ARIN of contiguous IP number resources.

And here is the key part of the Board resolution:

BE IT RESOLVED, that this Board of Trustees hereby advises the Internet community that migration to IPv6 numbering resources is necessary for any applications which require ongoing availability from ARIN of contiguous IP numbering resources; and,

BE IT ORDERED, that this Board of Trustees hereby directs ARIN staff to take any and all measures necessary to assure veracity of applications to ARIN for IPv4 numbering resources; and,

BE IT RESOLVED, that this Board of Trustees hereby requests the ARIN Advisory Council to consider Internet Numbering Resource Policy changes advisable to encourage migration to IPv6 numbering resources where possible.

The net of it is that we can expect that ARIN (and undoubtedly the other RIRs) will make it increasingly harder for ISPs to obtain IPv4 address blocks and will be scrutinizing requests... while it will be basically wide open for IPv6 allocation.

So how long do we have?

If you read Jeff Doyle's blog (an excellent one on IPv6 issues),  he believes that IANA will stop IPv4 allocations in late 2008 or early 2009.  Given that RIRs have existing pools of IPv4 addresses to allocate, IPv4 addresses may continue to be available through 2009 or 2010.

2009?  2010?

That's not that far out, when you think about it.  Given that we've been talking about IPv6 for now most of 20 years, the date does indeed seem to be looming.

The real question to me, though, is simply this - will anyone care?

Will anyone heed these and the other warnings and start the migration to IPv6?  Or will we just keep going along as we are until we hit the real bump in the road and it becomes a crisis?

Were I a betting man, my money would be on the "crisis" scenario.

 

Resources:

Technorati tags: , , ,

Heading out to Arizona for US DoD/JITC conference on telecommunications

In a few short hours, I will be catching a plane heading out to Fort Huachuca, Arizona, to swim in an alphabet soup of very different acronyms and jargon than my normal work - the "OSD-Sponsored, JITC-Hosted DOD Telecommunications Services Information Conference".  As noted on the page:

The purpose of the conference is to provide an open forum where DOD and vendor representatives can discuss issues related to interoperability of systems providing DOD Telecommunications Switched Services.

The conference will present the current program and discuss ongoing developments to the interoperability certification and information assurance procedures and test documentation. Other topics for discussion include emerging technologies, standards and their integration into the systems providing DOD Telecommunications Services.

I attended last year as well and it's definitely an interesting experience.  The US DoD is really doing some intriguing things with how they make use of VoIP / IP Telephony.  Obviously security is rather important.  They are also driving IPv6 adoption into their infrastructure and so, with the June 2008 mandate only a year away, it will be quite interesting to hear where they are with regard to IPv6 adoption.  Obviously, their huge size and buying power is of strong interest, so the number of vendors will no doubt be high.  Also, and I would think "obviously", I won't exactly be writing about things that I hear or learn there.

If any of you reading this happen to be out there at the conference, do drop me a note as I'm always interested in meeting readers or listeners.

Technorati tags: , , ,