Top Banner
Core Network Services & IPv6 Andreas Taudte, Sales Engineer
17

Core Network Services & IPv6 (2013-06-05)

May 12, 2015

Download

Engineering

Andreas Taudte

My Presentation for the IPv6 Congress in Frankfurt from the 6h to 7th of June 2013
Welcome message from author
This document is posted to help you gain knowledge. Please leave a comment to let me know what you think about it! Share it to your friends and learn new things together.
Transcript
Page 1: Core Network Services & IPv6 (2013-06-05)

Core Network Services & IPv6Andreas Taudte, Sales Engineer

Page 2: Core Network Services & IPv6 (2013-06-05)

Netzwerkkerndienste

DNS DHCP

Page 3: Core Network Services & IPv6 (2013-06-05)

IPv6 Vorwärtsauflösung

• AAAA Record• Kürzungen der IPv6 Adresse erlaubt

ipv6-host IN AAAA 2001:DB8::1:2:345:6789ipv6-host IN AAAA 2001:DB8::1:2:345:6789

Page 4: Core Network Services & IPv6 (2013-06-05)

IPv6 Rückwärtsauflösung

• Zone ip6.arpa• Kürzungen der IPv6 Adresse nicht erlaubt

9.8.7.6.5.4.3.0.2.0.0.0.1.0.0.0.0.0.0.0.0.0.0.0.8.b.d.0.1.0.0.2.ip6.arpa.

IN PTR ipv6-host.bluecatnetworks.com.

9.8.7.6.5.4.3.0.2.0.0.0.1.0.0.0.0.0.0.0.0.0.0.0.8.b.d.0.1.0.0.2.ip6.arpa.

IN PTR ipv6-host.bluecatnetworks.com.

Page 5: Core Network Services & IPv6 (2013-06-05)

Pro InterfacePro Interface

Erforderliche Adressen eines IPv6-Hosts

Link-Local

Unicast

Loopback

All-Nodes Multicast

Solicited-Node

Multicast

FE80::61CC:B8CA:FCB2:36BEFE80::61CC:B8CA:FCB2:36BE

2001:db8:1C6E::6D2B:1C6E2001:db8:1C6E::6D2B:1C6E

::1::1

FF01::1FF01::1

FF02::1:FF2B:1C6EFF02::1:FF2B:1C6E

Page 6: Core Network Services & IPv6 (2013-06-05)

PTR Records im BlueCat Address Manager

Page 7: Core Network Services & IPv6 (2013-06-05)

DNS Planung: Das Problem

IPv4 = 192.168.191.3IPv6 = FE80::61CC:B8CA:FCB2:36BE

RessourceRessourceRessourceRessource

DNS ServerDNS ServerDNS ServerDNS ServerDNS QueryDNS Query

A/AAAAA/AAAA

Anfragevia IPv6Anfragevia IPv6

Anfragevia IPv4Anfragevia IPv4

Page 8: Core Network Services & IPv6 (2013-06-05)

DNS Planung: Die Lösung mit Search List

DNS ServerDNS ServerDNS ServerDNS ServerDHCP ServerDHCP ServerDHCP ServerDHCP Server

IPv4 (option-119) = bcnlab.corpIPv6 (option-24) = v6.bcnlab.corp

bcnlab.corpv6.bcnlab.corp

IPv4

IPv6

srv.bcnlab.corpsrv.bcnlab.corp

srv.v6.bcnlab.corpsrv.v6.bcnlab.corp

RessourceRessourceRessourceRessource

Anfragevia IPv4Anfragevia IPv4

Anfragevia IPv6Anfragevia IPv6

IPv4

IPv6

IPv6

Page 9: Core Network Services & IPv6 (2013-06-05)

Mechanismen zur Auto-Konfiguration

• Router Advertisement (RA)

Bitte Präfix sendenBitte Präfix senden

Subnetz-Präfix, TTL, FlagsSubnetz-Präfix, TTL, Flags

Src = link-local address (FE80::)Dst = all-routers multicast address (FF02::2)

Src = link-local address (FE80::)Dst = all-nodes multicast address (FF02::1)

Page 10: Core Network Services & IPv6 (2013-06-05)

Mechanismen zur Auto-Konfiguration

• Router Advertisement (RA)

Du bist in Netz2001:db8:cafe:1::/64

A, M, O

Du bist in Netz2001:db8:cafe:1::/64

A, M, O

Adressvergabe Optionsvergabe

A Flag SLAAC RFC 5006/6106

M Flag DHCPv6 DHCP

O Flag SLAAC DHCP

Page 11: Core Network Services & IPv6 (2013-06-05)

RFC 5006/6106

• Resolver Konfiguration via RA• RDNSS (Recursive DNS Server)• DNSSL (DNS Search List)

pc7640:~ andreas$ cat radvd.conf interface eth0 { AdvSendAdvert on; AdvOtherConfigFlag off; prefix 2001:db8:1:2::/64 {};

};

pc7640:~ andreas$ cat radvd.conf interface eth0 { AdvSendAdvert on; AdvOtherConfigFlag off; prefix 2001:db8:1:2::/64 {};

};

RDNSS 2001:db8:1:2::53 {}; DNSSL bluecatnetworks.com {};

Page 12: Core Network Services & IPv6 (2013-06-05)

RFC 5006/6106

ZentraleZentraleZentraleZentrale

Standort AStandort AStandort AStandort A

Standort BStandort BStandort BStandort B

Subnetz-Präfix & DNSSubnetz-Präfix & DNS

Page 13: Core Network Services & IPv6 (2013-06-05)

RFC 5006/6106: Notwendigkeit von Discovery

Page 14: Core Network Services & IPv6 (2013-06-05)

DHCPv6

• Motivation:• zentrale Kontrolle und

Nachvollziehbarkeit von verwendeten Adressen

subnet6 2001:db8:1:2::/64 {

# Range Clients range6 2001:db8:1:2::1:0 2001:db8:1:2::1:ffff;

# Standard Options option dhcp6.name-servers 2001:db8:1:2::1; option dhcp6.domain-search "bluecatnetworks.com"; }

subnet6 2001:db8:1:2::/64 {

# Range Clients range6 2001:db8:1:2::1:0 2001:db8:1:2::1:ffff;

# Standard Options option dhcp6.name-servers 2001:db8:1:2::1; option dhcp6.domain-search "bluecatnetworks.com"; }

Page 15: Core Network Services & IPv6 (2013-06-05)

DHCPv6 im BlueCat Address Manager

Page 16: Core Network Services & IPv6 (2013-06-05)

Präfix-Delegierung (RFC 3633)

ZentraleZentraleZentraleZentrale

Standort AStandort AStandort AStandort A

Standort BStandort BStandort BStandort B

2001:db8:cafe:1::/64 & DNS2001:db8:cafe:1::/64 & DNS

2001:db8:babe:1::/64 & DNS2001:db8:babe:1::/64 & DNS

Page 17: Core Network Services & IPv6 (2013-06-05)

</ppt>