IPv 6 Cisco Systems Alan Lee Cisco Systems

  • Slides: 47
Download presentation
IPv 6 @ Cisco Systems Alan Lee Cisco Systems 1

IPv 6 @ Cisco Systems Alan Lee Cisco Systems 1

A need for IPv 6? • IETF IPv 6 WG began in early 90

A need for IPv 6? • IETF IPv 6 WG began in early 90 s, to solve addressing growth issues, but CIDR, NAT, … were developed • IPv 4 32 bits address = 4 billion hosts ~40% of the IPv 4 address space is still unallocated BUT … • IP is everywhere Data, Voice, Audio and Video integration is a Reality Regional Registries apply a strict allocation control Addressing scheme is not optimum as for any • So, let’s play with Numbers and focus on Applications Cisco Internal Use Only 2

Why a larger address space is needed • Overall Internet is still growing at

Why a larger address space is needed • Overall Internet is still growing at 400%/year worldwide ~320 million users in 2000, ~550 million by 2005 • Emerging population/geopolitical & Address space Standford University has more address space than overall China How to move to e-Economy without Global Internet access ? ? • 400 million mobile phone users in 2000, over 1 billion by 2005 UMTS Release 5 is Internet Mobility, 1/3 of 1 B should get connected • ~1 Billion cars in 2010, 15% should get GPS and Yellow Page services • Billion of new Internet appliances for Home users Always-On Cisco Internal Use Only 3

Explosion of New Internet Appliances Cisco Internal Use Only 4

Explosion of New Internet Appliances Cisco Internal Use Only 4

Coming Back to an End-to-End Architecture New Technologies/Applications for Home Users ‘Always-on’—Cable, DSL, Ethernet@home,

Coming Back to an End-to-End Architecture New Technologies/Applications for Home Users ‘Always-on’—Cable, DSL, Ethernet@home, Wireless, … Always-on Devices Need an Address When You Call Them Global Addressing Realm Cisco Internal Use Only 5

IPv 6 Markets • Academic : now Internet-II (Abilene, v. BNS+), Canarie*3, Renater-II, Surfnet,

IPv 6 Markets • Academic : now Internet-II (Abilene, v. BNS+), Canarie*3, Renater-II, Surfnet, DFN, CERNET, … 6 REN/6 TAP • Geographies & Politics: Now Prime Minister of Japan called for IPv 6 (taxes reduction) EEC summit PR advertised IPv 6 as the way to go for Europe President Clinton signed an Executive Memorandum on 3 G • Wireless (PDA, Mobile, Car, . . . ): now-to-2003 Multiple phases before deployment RFP -> Integration -> trial -> commercial Requires ‘client devices’, eg. IPv 6 handset ? Cisco Internal Use Only 6

IPv 6 Markets • Home Networking: CY 2002? Set-top box/Cable/x. DSL/Ether@Home Residential Voice over

IPv 6 Markets • Home Networking: CY 2002? Set-top box/Cable/x. DSL/Ether@Home Residential Voice over IP gateway • Gaming (10 B$ market): 2001 -2002? Sony, Sega, Nintendo, Microsoft • Consumer PC: H 2 CY 2001 -2003 • Enterprise: H 2 CY 2001 -2003 Requires Microsoft IPv 6 support, as well as other O. S. & Applications • Service Providers: Now Regional ISP, Carriers, Mobile ISP, and Greenfield ISP’s Cisco Internal Use Only 7

Integration of IPv 6 Services Large Address Space Auto-Configuration The Ubiquitous Internet Enhanced Mobility

Integration of IPv 6 Services Large Address Space Auto-Configuration The Ubiquitous Internet Enhanced Mobility Cisco Internal Use Only 8

IPv 6 Addresses Bootstrap phase • Where to get address space? Real IPv 6

IPv 6 Addresses Bootstrap phase • Where to get address space? Real IPv 6 address space now allocated by APNIC, ARIN and RIPE NCC APNIC 2001: 0200: : ARIN 2001: 0400: : RIPE NCC 2001: 0600: : 6 Bone 3 FFE: : Have a look at http: //wwwin. cisco. com/ios/ipv 6 for more information Cisco Internal Use Only 9

IPv 6 Address Space Current Allocations • APNIC (whois. apnic. net) CONNECT-AU-19990916 2001: 210:

IPv 6 Address Space Current Allocations • APNIC (whois. apnic. net) CONNECT-AU-19990916 2001: 210: : /35 WIDE-JP-19990813 2001: 200: : /35 NUS-SG-19990827 2001: 208: : /35 KIX-KR-19991006 2001: 220: : /35 ETRI-KRNIC-KR-19991124 2001: 230: : /35 NTT-JP-19990922 2001: 218: : /35 HINET-TW-20000208 2001: 238: : /35 IIJ-JPNIC-JP-20000308 2001: 240: : /35 CERNET-CN-20000426 2001: 250: : /35 INFOWEB-JPNIC-JP-2000502 2001: 258: : /35 JENS-JP-19991027 2001: 228: : /35 BIGLOBE-JPNIC-JP-20000719 2001: 260: : /35 6 DION-JPNIC-JP-20000829 2001: 268: : /35 DACOM-BORANET-20000908 2001: 270: : /35 ODN-JPNIC-JP-20000915 2001: 278: : /35 KOLNET-KRNIC-KR-20000927 2001: 280: : /35 HANANET-KRNIC-KR-20001030 2001: 290: : /35 TANET-TWNIC-TW-20001006 2001: 288: : /35 SONYTELECOM-JPNIC-JP-20001207 2001: 298: : /35 TTNET-JPNIC-JP-20001208 2001: 2 A 0: : /35 CCCN-JPNIC-JP-20001228 2001: 02 A 8: : /35 IMNET-JPNIC-JP-20000314 2001: 0248: : /35 KORNET-KRNIC-KR-20010102 2001: 02 B 0: : /35 • ARIN (whois. arin. net) ESNET-V 6 2001: 0400: : /35 ARIN-001 2001: 0400: : /23 VBNS-IPV 6 2001: 0408: : /35 CANET 3 -IPV 6 2001: 0410: : /35 VRIO-IPV 6 -0 2001: 0418: : /35 CISCO-IPV 6 -1 2001: 0420: : /35 QWEST-IPV 6 -1 2001: 0428: : /35 DEFENSENET 2001: 0430: : /35 ABOVENET-IPV 6 2001: 0438: : /35 SPRINT-V 6 2001: 0440: : /35 UNAM-IPV 6 2001: 0448: : /35 January GBLX-V 6 2001: 0450: : /35 Cisco Internal Use Only 5 th, 2001 10

IPv 6 Address Space Current Allocations EU-EUNET-20000403 2001: 0670: : /35 • RIPE (whois.

IPv 6 Address Space Current Allocations EU-EUNET-20000403 2001: 0670: : /35 • RIPE (whois. ripe. net) DE-IPF-20000426 2001: 0678: : /35 UK-BT-19990903 2001: 0618: : /35 DE-NACAMAR-20000403 2001: 0668: : /35 CH-SWITCH-19990903 2001: 0620: : /35 DE-XLINK-20000510 2001: 0680: : /35 AT-ACONET-19990920 2001: 0628: : /35 DE-ECRC-19991223 2001: 0650: : /35 UK-JANET-19991019 2001: 0630: : /35 FR-TELECOM-20000623 2001: 0688: : /35 DE-DFN-19991102 2001: 0638: : /35 PT-RCCN-20000623 2001: 0690: : /35 NL-SURFNET-19990819 2001: 0610: : /35 SE-SWIPNET-20000828 2001: 0698: : /35 RU-FREENET-19991115 2001: 0640: : /35 PL-ICM-20000905 2001: 06 A 0: : /35 GR-GRNET-19991208 2001: 0648: : /35 DE-SPACE-19990812 2001: 0608: : /35 EU-UUNET-19990810 2001: 0600: : /35 BE-BELNET-20001101 2001: 06 A 8: : /35 DE-TRMD-20000317 2001: 0658: : /35 SE-SUNET-20001218 2001: 06 B 0: : /35 FR-RENATER-20000321 2001: 0660: : /35 IT-CSELT-20001221 2001: 06 B 8: : /35 SE-TELIANET-20010102 2001: 06 C 0: : /35 Cisco Internal Use Only 11

IPv 6 @Cisco Systems • Co-chair of IETF IPv 6 WG • Well Known

IPv 6 @Cisco Systems • Co-chair of IETF IPv 6 WG • Well Known Cisco 6 Bone router ~ 50 tunnels with other companies acts as 6 to 4 Relay • ‘Founding Member’ of the IPv 6 Forum • Official CCO IPv 6 page is www. cisco. com/ipv 6 Cisco IPv 6 Statement of Direction published last June Cisco IOS IPv 6 EFT available for free since 3 years ~around 500 sites running Worldwide Cisco Internal Use Only 12

IPv 6 Forum • 98 companies Cisco is a founding member Regularly speaking at

IPv 6 Forum • 98 companies Cisco is a founding member Regularly speaking at every summit • www. ipv 6 forum. com • Mission is to promote IPv 6 not to specify it (IETF) • Global and Regional summit U. S. , Japan, Spain, Middle-East, Canada, Korea, . . . Cisco Internal Use Only 13

IPv 6 @Cisco Systems • Official Cisco IPv 6 prefix registered to ARIN Done

IPv 6 @Cisco Systems • Official Cisco IPv 6 prefix registered to ARIN Done by MIS to study Multi-Homing 2001: 0420: : /35 • Cisco IOS IPv 6 Training is ready to be delivered Spread IPv 6 knowledge to Customers, Partners and Cisco S. E. • Ready to deliver a commercial release of Cisco IOS IPv 6 Cisco Internal Use Only 14

Cisco IOS Roadmap: The Confluence of IPv 4/IPv 6 IOS Release IOS upgrade =

Cisco IOS Roadmap: The Confluence of IPv 4/IPv 6 IOS Release IOS upgrade = Free IPv 6 support Market Target Phase I IOS 12. 2(1)T Q 1 CY 2001 Phase II Mid-2001 Phase III Beyond Mid-2001 Early Adopter Deployment Production Backbone Deployment Enhanced IPv 6 Services Cisco Internal Use Only 15

Where is the IPv 6 roadmap coming from? Listening our Customers Support the features

Where is the IPv 6 roadmap coming from? Listening our Customers Support the features set required by other standard bodies, eg. 3 GPP/UMTS, MWIF Develop Cisco IPv 6 Added Value features to promote our Solutions Provide same func. between IPv 4 and IPv 6 Features but it is time to forget some old IPv 4 features Add support for new IPv 6 developments coming from IETF WG when it makes sense Cisco Internal Use Only 16

Cisco IOS IPv 6 Team • IOS Europe Main IPv 6 components for IOS

Cisco IOS IPv 6 Team • IOS Europe Main IPv 6 components for IOS IPv 6 D. E. Manager is Trevor Warwick CEFv 6 done in CEF team • Ottawa Port on 12. 0 ST for GSR support CEFv 6 coordination Dev. Test help • San Jose NAT-PT, Routing (OSPF & E-IGRP), Multicast, TMBU, . . . Cisco Internal Use Only 17

Cisco IOS IPv 6 Phase I IOS Release Phase I IOS upgrade = Free

Cisco IOS IPv 6 Phase I IOS Release Phase I IOS upgrade = Free IPv 6 support Func. Specs ENG-61696 IOS 12. 2(1)T Q 1 CY 2001 Any router able to run this release Cisco 800 to Cisco 7500 IPv 6 Features Supported IPv 6 Basic specification (RFC 2460) ICMPv 6, Neighbor Discovery Stateless auto-configuration RIPv 6 (RFC 2080) Multi-Protocol extensions for BGP 4 (RFC 2545 & 2858) Configured and Automatic Tunnels 6 to 4 Tunnel Standard Access List IPv 6 over Ethernet (10/1000 Mb/s), FDDI, Cisco HDLC, ATM and FR PVC, PPP (Serial, POS, ISDN) Ping, Traceroute, Telnet, TFTP, Cisco Internal Use Only 18

Cisco IOS IPv 6 Phase II IOS Release IPv 6 Features under development Phase

Cisco IOS IPv 6 Phase II IOS Release IPv 6 Features under development Phase II PRD ENG-70706 Available on IOS 12. 2(3)T or (4)T Target EFT dates in () Under evaluation: 12. 0 ST for GSR and 12. 2 S? i/IS-ISv 6 (Q 1 CY 01) CEFv 6/d. CEFv 6 (Q 3 CY 01) Dial (Q 2 CY 01) Extended Access List (Q 3 CY 01) NAT-PT (Q 2 CY 01) IPv 6 Edge router (6 PE) over MPLS (Q 3 CY 01) DNS AAAA client (Q 1 CY 01) IPv 6 MIB Phase I Sustaining Cisco Internal Use Only 19

Cisco IOS IPv 6 Phase III IOS Release Phase III no PRD yet Target

Cisco IOS IPv 6 Phase III IOS Release Phase III no PRD yet Target EFT: End of CY 01, H 1 CY 02 All IOS team should think ‘IPv 6’ at this time Evaluation of IPv 6 Phase III Features OSPFv 3: DE doing an evaluation E-IGRP: DE doing an evaluation Mobile IPv 6: Home Agent prototype currently under development IPsec: mandated by IPv 6 specs, Authentication required by OSPFv 3 and Mobile IP Binding Association IPv 6 Multicast: MLD and PIMv 6 SM as first candidates Cisco Internal Use Only 20

Cisco IOS IPv 6 Phase III IOS Release Phase III no PRD yet Target

Cisco IOS IPv 6 Phase III IOS Release Phase III no PRD yet Target EFT: End of CY 01, H 1 CY 02 All IOS team should think ‘IPv 6’ at this time Evaluation of IPv 6 Phase III Features IPv 6 Qo. S: Not different from IPv 4 (Diff. Serv. & RSVP). May be time to get rid from old IOS IPv 4 features? UMTS Rel. 5 requirements should get high priority. Statistics (ala Netflow): Customers want to gather IPv 6 statistics such as IPv 6 Src/Dst addresses, AS number & Bytes count Tunnels Cisco Internal Use Only 21

Cisco IOS IPv 6 Phase III IOS Release Evaluation of IPv 6 Phase III

Cisco IOS IPv 6 Phase III IOS Release Evaluation of IPv 6 Phase III Features Phase III no PRD yet Target EFT: End of CY 01, H 1 CY 02 All IOS team should think ‘IPv 6’ at this time Hardware Acceleration: See other presentations. Project in-progress on HFR, GSR, Cat. 6 K, DSBU L 3 SW. Need IPv 6 on ESR, 7200/NSE Encapsulation: review needed for DPT, Cable and DSL, Network Management: SNMP over IPv 6, MIB update (RFC 2851) Cisco Internal Use Only 22

Open Topics!!! • They are Technical and non-technical problems but have to be solved

Open Topics!!! • They are Technical and non-technical problems but have to be solved for the future acceptance of our IPv 6 solutions • IPv 6 market acceptance versus development schedule • IOS release and IPv 6 T Train - S Train - mainline • What could be the future IPv 6 routing table size? • What is the IPv 6 performance level needed, based on REAL IPv 6 traffic expectations versus marketing competition? Next 12 months? , 24 months? Cisco Internal Use Only 23

Open Topics!!! • IPv 6 mandates IPsec, what is the role of an IPv

Open Topics!!! • IPv 6 mandates IPsec, what is the role of an IPv 6 Firewall? Customers still want a single point of control/management What should be the right Cisco platforms to terminate IPv 6 IPsec tunnels? • IPv 6 Qo. S features set development priority Dependent of Applications such as 3 G, RVo. IP, . . . • Native IPv 6 Network Management IPv 6 & Commercial O. S. , N. M. S software, Java, SNMP, MIB update what’s about COPS, AAA, OSS, …? Cisco Internal Use Only 24

Open Topics!!! • Transition Tools, which ones? NAT support? • Mobile IPv 6 Services

Open Topics!!! • Transition Tools, which ones? NAT support? • Mobile IPv 6 Services Focus on Clients, Applications and Network design • Interoperability and TAC support How to reproduce all issues Role of Professional Services • Others ? Cisco Internal Use Only 25

Deployment of IPv 6 Services: What our Customers are saying ! Satisfy Business Drivers,

Deployment of IPv 6 Services: What our Customers are saying ! Satisfy Business Drivers, aka. Applications requiring end-to -end IPv 6 traffic forwarding, geographies with registry allocations issues No Flag Day No Performance Penalty, implementation must be scalable and reliable, but … Minimize operational upgrade costs and training expenses Investment Protection & Low startup cost Incremental value-add Upgrade/Deployment Preserve IPv 6 - IPv 4 connectivity/transparency Starting with Edge upgrades enable IPv 6 service offerings now Cisco Internal Use Only 26

Deployment scenario • Many ways to deliver IPv 6 services to End Users Most

Deployment scenario • Many ways to deliver IPv 6 services to End Users Most important is End to End IPv 6 traffic forwarding • IPv 6 over IPv 4 tunnels • Separate native IPv 6 no impact on IPv 4 traffic & revenues various data link layers ATM, FR, Serial, Sonet/SDH, WDM • Dual stack Networks IPv 6 over MPLS or IPv 4 -IPv 6 Dual Stack Routers Cisco Internal Use Only 27

IPv 6 Tunnels over IPv 4 or MPLS Infrastructure Edge IPv 6 Infrastructure: •

IPv 6 Tunnels over IPv 4 or MPLS Infrastructure Edge IPv 6 Infrastructure: • IPv 6 over IPv 4 Internet: ala 6 Bone • Any Cisco IOS 12. 2(1)T routers can be used as IPv 6 Edge 6 to 4 Tunnel Mobile Data Translating Gateway IPv 6 Enterprise IPv 4 Enterprise Service Provider IPv 4 or MPLS Backbone • Leveraging defined Tunneling Technology • No impact on existing IPv 4 or MPLS backbones IPv 6 Enterprise Cisco Internal Use Only Mobile Data Translating Gateway 28

Native IPv 6 over Dedicated Links • Native IPv 6 over dedicated infrastructures IPv

Native IPv 6 over Dedicated Links • Native IPv 6 over dedicated infrastructures IPv 6 Enterprise No impact on IPv 4 traffic and revenues • Any Cisco IOS 12. 2(1)T routers can IPv 6 Enterprise be configured Service Provider ATM/FR/WDM Backbone ATM & Frame Relay PVC’s Serial Lines, Sonet/SDH, FE/GE • GSR 12000 with Sonet/SDH interfaces can get IPv 6 support Today, EFT on private 12. 0 ST branch IPv 6 Enterprise • IPv 6 over FE/GE, ATM or Sonet/SDH can run over an optical infrastructure (dedicated lamda) Cisco Internal Use Only Translating Gateway 29

IPv 6 Edge Router (6 PE) over MPLS 2001: 0620: : MP-i. BGP sessions

IPv 6 Edge Router (6 PE) over MPLS 2001: 0620: : MP-i. BGP sessions v 6 v 4 IPv 4 2001: 0621: : 6 PE v 6 P 6 PE P v 6 2001: 0421: : 6 PE IPv 6 OC 48/192 P IPv 6 192. 76. 170. 0 v 4 2001: 0420: : IPv 6 134. 95. 0. 0 v 6 P 6 PE IPv 4 144. 254. 0. 0 IPv 4 • Many Carriers, large ISP and Mobile SP have invested on MPLS solutions • Core devices may be ATM switches, GSR or competitor nodes • Leverages of MPLS features, eg. MPLS/VPN, TE, Co. S, . . . • UMTS Release 5 requires IPv 6 • GSM, GPRS and UMTS Release 99 needs circuit switching as well as IP • Multiple implementation’s options to integrate IPv 6 • IPv 6 on CE, IPv 6 over ATo. M, IPv 6 Edge router (6 PE), (6 PE) native IPv 6 MPLS • 6 PE allows the SP to offer. Cisco IPv 6 at lower cost and risk Internal Use Only 30

Dual Stack IPv 4 -IPv 6 backbone IPv 4 Enterprise • May require IPv

Dual Stack IPv 4 -IPv 6 backbone IPv 4 Enterprise • May require IPv 4 -IPv 6 Hardware Forwarding • Memory size for IPv 4 and IPv 6 routing tables • Should IPv 4 and IPv 6 route to a single dual-stack edge router the same? IPv 6 Enterprise IPv 4/v 6 Enterprise IPv 6 Router Service Provider IPv 4/IPv 6 Backbone IPv 4 Enterprise • Dual stack management? • IPv 4 and IPv 6 traffic should not impact each other. Cisco Internal Use Only IPv 4/v 6 Enterprise Translating Gateway 31

Native IPv 6 -Only Backbone • Will require: IPv 4 Intranet IPv 6 Intranet

Native IPv 6 -Only Backbone • Will require: IPv 4 Intranet IPv 6 Intranet IPv 4 over IPv 6 Tunnels for IPv 4 traffic Hardware forwarding for IPv 6 Translating Gateway IPv 4 Tunnel IPv 6 Backbone NAT-PT for IPv 4 -IPv 6 communications Network Management over IPv 6 Translating Gateway IPv 6 Intranet Mobile IPv 6 Cisco Internal Use Only IPv 4/v 6 Intranet 32

Initial Configuration version 12. 1 no service single-slot-reload-enable service nagle ! service timestamps debug

Initial Configuration version 12. 1 no service single-slot-reload-enable service nagle ! service timestamps debug datetime msec localtime show-timezone service timestamps log datetime msec localtime show-timezone service password-encryption ! hostname ipv 6 -router ! logging buffered 4096 debugging logging rate-limit console 10 except errors ! Cisco Internal Use Only 33

Initial Configuration aaa new-model aaa authentication login vty group tacacs+ enable secret <removed> !

Initial Configuration aaa new-model aaa authentication login vty group tacacs+ enable secret <removed> ! clock timezone PST -8 clock summer-time PDT recurring last Sun Mar 1: 00 last Sun ip subnet-zero no ip finger ip ftp source-interface Fddi 0 ip ftp username <removed> ip ftp password <removed> ip domain-name cisco. com ip name-server <ipv 4> ip dhcp smart-relay ! no ip bootp server ip multicast-routing ! Cisco Internal Use Only 34

IPv 6 Configured Tunnels ipv 6 unicast-routing ! ! Tunnel 0 use RIPv 6

IPv 6 Configured Tunnels ipv 6 unicast-routing ! ! Tunnel 0 use RIPv 6 for routing interface Tunnel 0 description <removed> no ip address ipv 6 unnumbered Ethernet 0 ipv 6 rip 6 bone enable destination IP address tunnel source Fddi 0 tunnel destination <ipv 4> tunnel mode ipv 6 ip ! ! Tunnel 1 use BGP 4+ 6 BONE peer-group interface Tunnel 1 description <removed> no ip address ipv 6 address 3 FFE: 700: 20: 1: : 12/126 tunnel source Fddi 0 tunnel destination <ipv 4> tunnel mode ipv 6 ip Cisco Internal Use Only 35

IPv 6 Configured Tunnels ! Tunnel 2 use BGP 4+ 6 BONE peer-group interface

IPv 6 Configured Tunnels ! Tunnel 2 use BGP 4+ 6 BONE peer-group interface Tunnel 2 description <removed> no ip address ipv 6 address 3 FFE: C 00: E: 10: : 1/126 tunnel source Fddi 0 tunnel destination <ipv 4> tunnel mode ipv 6 ip ! ! Tunnel 3 use static route interface Tunnel 3 description <removed> no ip address ipv 6 address 3 FFE: C 00: E: 0: 1: : 5/126 tunnel source Fddi 0 tunnel destination <ipv 4> tunnel mode ipv 6 ip! Cisco Internal Use Only 36

6 to 4 Tunnel ! Tunnel 47 use BGP 4+ with no peer-group interface

6 to 4 Tunnel ! Tunnel 47 use BGP 4+ with no peer-group interface Tunnel 47 description <removed> no ip address ipv 6 address 3 FFE: 3600: : B/127 tunnel source Fddi 0 tunnel destination <ipv 4> tunnel mode ipv 6 ip ! ! Skipped about 50 configured tunnels ! Next one is 6 to 4 tunnel ! Router can be 6 to 4 relay with 2002: : /16 static route interface Tunnel 2002 no ip address no ip redirects ipv 6 address 2002: X: X: : 1/128 ipv 6 address FE 80: : 60: 3 E 11: 6770: 3 E link-local tunnel source Fddi 0 tunnel mode ipv 6 ip 6 to 4 Cisco Internal Use Only 37

Interface Configuration ! Physical interfaces with ipv 4 and/or ipv 6 addresses interface Ethernet

Interface Configuration ! Physical interfaces with ipv 4 and/or ipv 6 addresses interface Ethernet 0 ip address <ipv 4> 255. 248 no ip route-cache no ip mroute-cache no keepalive media-type 10 Base. T ipv 6 enable ipv 6 address 3 FFE: C 00: 0: 1: : /64 eui-64 ipv 6 rip 6 bone enable ! interface Ethernet 1 ip address <ipv 4> 255. 248 no ip route-cache no ip mroute-cache media-type 10 Base. T ! interface Fddi 0 ip address <ipv 4> 255. 224 no ip route-cache no ip mroute-cache no keepalive ipv 6 address 3 FFE: C 00: 0: 2: : /64 eui-64 Cisco Internal Use Only 38

EIGRP for IPv 4 and BGP+ for IPv 6 router eigrp 109 network <ipv

EIGRP for IPv 4 and BGP+ for IPv 6 router eigrp 109 network <ipv 4> auto-summary no eigrp log-neighbor-changes ! router bgp 109 ! ! Disable ipv 4 unicast to support other address families ! no bgp default ipv 4 -unicast bgp log-neighbor-changes neighbor 6 BONE peer-group neighbor 3 FFE: 700: 20: 1: : 11 remote-as 293 neighbor 3 FFE: C 00: E: 10: : 2 remote-as 7610 ! Cisco Internal Use Only 39

IPv 6 Address Family address-family neighbor 6 BONE neighbor 6 BONE ipv 6 activate

IPv 6 Address Family address-family neighbor 6 BONE neighbor 6 BONE ipv 6 activate send-community override-capability-neg prefix-list bgp-in in prefix-list aggregate out route-map SET 6 TO 4 COMMUNITY out ! ! Most neighbors should use peer-group ! neighbor 3 FFE: 700: 20: 1: : 11 peer-group 6 BONE neighbor 3 FFE: C 00: E: 10: : 2 peer-group 6 BONE ! Cisco Internal Use Only 40

End of BGP 4+ ! Neighbors not using peer-group ! neighbor 3 FFE: 3600:

End of BGP 4+ ! Neighbors not using peer-group ! neighbor 3 FFE: 3600: : A activate neighbor 3 FFE: 3600: : A send-community neighbor 3 FFE: 3600: : A override-capability-neg neighbor 3 FFE: 3600: : A prefix-list bgp-in in neighbor 3 FFE: 3600: : A prefix-list aggregate out neighbor 3 FFE: 3600: : A route-map SET 6 TO 4 COMMUNITY out ! bgp dampening 30 1000 2000 60 ! ! This is the 6 to 4 address space. network 2002: : /16 ! ! This is Cisco's p. TLA for the 6 bone network 3 FFE: C 00: : /24 ! exit-address-family Cisco Internal Use Only 41

IPv 4 Access Lists ip classless ip tacacs source-interface Fddi 0 no ip http

IPv 4 Access Lists ip classless ip tacacs source-interface Fddi 0 no ip http server! logging trap debugging logging facility local 6 logging <removed> ! ! IPv 4 VTY access-list ! access-list 198 permit ip <removed> any access-list 198 deny ip any log ! Cisco Internal Use Only 42

IPv 6 Static Routes and RIPv 6 ! 2002: : /16 points to the

IPv 6 Static Routes and RIPv 6 ! 2002: : /16 points to the 6 to 4 tunnel ipv 6 route 2002: : /16 Tunnel 2002 ! ! static route for Cisco's Site-Local-Address ipv 6 route 3 FFE: C 00: E: : /48 Null 0 ! ! static route for a site with no routing protocol ipv 6 route 3 FFE: C 00: 800 E: : /48 Tunnel 3 ! ! static route for our /24 p. TLA from the 6 bone ipv 6 route 3 FFE: C 00: : /24 Null 0 ! ! RIPv 6 ipv 6 router rip 6 bone ! Cisco Internal Use Only 43

IPv 6 Access-lists ! IPv 6 access-list to protect the vty ports ipv 6

IPv 6 Access-lists ! IPv 6 access-list to protect the vty ports ipv 6 access-list vty deny : : /0 any ! ! Prefix-list for BGP 4+ peers ipv 6 prefix-list aggregate seq 5 deny 3 FFE: C 00: : /24 ge 25 ipv 6 prefix-list aggregate seq 10 permit : : /0 le 48 ! ipv 6 prefix-list bgp-in seq 5 deny 5 F 00: : /8 le 128 ipv 6 prefix-list bgp-in seq 10 deny : : /0 ipv 6 prefix-list bgp-in seq 15 deny : : /1 ipv 6 prefix-list bgp-in seq 20 deny : : /2 ipv 6 prefix-list bgp-in seq 25 deny : : /3 ge 4 ipv 6 prefix-list bgp-in seq 30 permit : : /0 le 128 ! ! 6 to 4 address space is tagged with no-export ipv 6 prefix-list 6 to 4 seq 5 permit 2002: : /16 ! route-map SET 6 TO 4 COMMUNITY permit 10 match ipv 6 address prefix-list 6 to 4 set community no-export ! route-map SET 6 TO 4 COMMUNITY permit 20 ! Cisco Internal Use Only 44

Ending Configuration tacacs-server host <removed> tacacs-server timeout 15 banner motd <removed> ! line con

Ending Configuration tacacs-server host <removed> tacacs-server timeout 15 banner motd <removed> ! line con 0 exec-timeout 3 0 transport input none line aux 0 transport input all line vty 0 4 ipv 6 access-list vty in access-class 198 in exec-timeout 0 0 login authentication vty ! exception core-file <removed> exception protocol ftp exception dump <removed> ntp clock-period 17179631 ntp source Fddi 0 ntp update-calendar ntp server <removed> end Cisco Internal Use Only 45

Further References • wwwin. cisco. com/ios/ipv 6 • www. cisco. com/ipv 6 • ipv

Further References • wwwin. cisco. com/ios/ipv 6 • www. cisco. com/ipv 6 • ipv 6 -interest • cs-ipv 6 Cisco Internal Use Only 46

Presentation_ID © 1999, Cisco Systems, Inc. www. cisco. com 47

Presentation_ID © 1999, Cisco Systems, Inc. www. cisco. com 47