map-e as ipv4 over ipv6 technology - with some operational experiences

19
240b::1 Copyright(C) JPNE, All Rights Reserved. APRICOT 2015 MAP-E as IPv4 over IPv6 Technology - with some operational experiences - Mar.4.2015 Japan Network Enabler Corporation (JPNE) Akira Nakagawa

Upload: apnic

Post on 16-Jul-2015

120 views

Category:

Internet


0 download

TRANSCRIPT

240b::1Copyright(C) JPNE, All Rights Reserved.

日本ネットワークイネイブラー株式会社(JPNE)

中川あきら

APRICOT 2015

MAP-E as IPv4 over IPv6 Technology- with some operational experiences -

Mar.4.2015

Japan Network Enabler Corporation

(JPNE)

Akira Nakagawa

240b::2240b::2Copyright(C) JPNE, All Rights Reserved.

Agenda

1. Why MAP-E ?

2. Our Experiences

240b::3240b::3Copyright(C) JPNE, All Rights Reserved.

Some ways of IPv6 Transition

Network operators can choose the best one according to their strategy.

Translation•Enables Traffic Engineering without DPI.

Tunnel

Stateful at center(NAT64/CGN)•Enables small start

Stateless at center•No logging•No session management•Center node scales because it doesn’t have session table

464XLAT

MAP-EDS-Lite

MAP-T

240b::4240b::4Copyright(C) JPNE, All Rights Reserved.

IPv4Internet

IPv6Internet

What is MAP-E ?

IPv6Network

Home Router

BR

IPv4 IPv6 BR : Border Relay

IPv4 over IPv6

IPv4

IPv4

IPv6

•Terminates Tunnel•IPv4 NAT

•Terminates Tunnel•IPv4 Address Sharing•Stateless (no CGN)•no Logging Server

240b::5240b::5Copyright(C) JPNE, All Rights Reserved.

MAP-E in our Network

IPv4Internet

IPv6Internet

BR

BR : Border RelaySPI : Stateful Packet Inspection

IPv4 over IPv6

IPv4 over IPv6

Home Router(v4NAT/v6SPI)

IPv6

JPNE

IPv6 NW

DNS cache

IPv6

Home Router(v4NAT/v6SPI)

Stateless,(not CGN)

IPv6

240b::6240b::6Copyright(C) JPNE, All Rights Reserved.

Why MAP-E for JPNE ?

Easy Operation

no Logging (deferent from CGN)

no session management

Center node scales according to only traffic, not number of users.

Easy Customer Support

no Configuration at Home Router

Avoiding traffic from Center Node

Direct communication between users

240b::7240b::7Copyright(C) JPNE, All Rights Reserved.

Why MAP-E for Users ?

Users don’t care IPv4, IPv6, stateless, stateful...

We always try to let users keep unaware of MAP-E.

240b::8240b::8Copyright(C) JPNE, All Rights Reserved.

Our Final Goal

v4 Sunsetv6

Internet

v4Internet

JPNE)

IPv4over

IPv6offloading IPv6

Final Goal

Steps

1. Overlaying IPv4 on IPv6.

2. Offloading traffic to simple IPv6.

3. Removing overplayed IPv4.

240b::9240b::9Copyright(C) JPNE, All Rights Reserved.

Agenda

1. Why MAP-E ?

2. Our Experiences

240b::10240b::10Copyright(C) JPNE, All Rights Reserved.

Speed Test via Internet

NOT special environment.

down

1st 2nd 3rd

IPv4(MAP-E)

800 799 814

823 817 810

820 818 807

Ave. 814 811 810

IPv6

814 768 814

845 501 751

860 748 792

Ave. 840 672 786

(Mbps)

Cerulean Hotelin Tokyo (Dec.3.2014)

PC

Home Router

TemporalEvent NW

Speed Test Site

IPv6: IIJmiohttp://speedtest6.iijmio.jp/

IPv4: Radish Network Speed Testinghttp://netspeed.studio-radish.com/

Ethernet

240b::11240b::11Copyright(C) JPNE, All Rights Reserved.

Enough Ports per user

Number of port per user is fixed in MAP-E.

We tried over-subscribing test before designing our MAP-E NW.

We assigned enough ports per user.

9:22

9:24

9:26

9:28

9:30

9:32

9:34

9:36

9:38

9:40

9:42

9:44

9:46

9:48

9:50

9:52

9:54

9:56

9:58

10:…

10:…

10:…

10:…

10:…

10:…

10:…

10:…

10:…

10:…

10:…

10:…

10:…

Enough portsper end-user

Used ports during the test

Number of Port / user

240b::12240b::12Copyright(C) JPNE, All Rights Reserved.

IPv6/IPv4 Trouble shooting

Test1:IPv4 Internet IP reachabilityTest2:IPv4 Internet with Name resolution (*)Test3:IPv6 Internet IP reachabilityTest4:IPv6 Internet with Name resolution (*)Test5:IPv6 Backbone IP reachabilityTest6:IPv6 Backbone with Name resolution (*)

Test1,2We simplified trouble shooting by tool. (see next page)

DNS(*)

IPv4Internet

IPv6 Internet

Test5,6

Test3,4

240b::13240b::13Copyright(C) JPNE, All Rights Reserved.

IPv6/IPv4 Trouble Shooting (Movie)

240b::14240b::14Copyright(C) JPNE, All Rights Reserved.

Abuse Issue (General Issue)

Goodbehaviors

Some Content holders who didn’t have port number might not have found the sender.

Content/ Server

ISP Needed both options to prevent this.(1) Taking log of Port number

at Server(2) Reducing possibility of

abuse by off-loading traffic to IPv6

IPv4AddressSharing

Badbehaviors

240b::15240b::15Copyright(C) JPNE, All Rights Reserved.

Traffic growth

Traffic growth indicates number of MAP-E Users are increasing.

bps

201405

201406

201407

201408

201409

201410

201411

201412

201501

201502

240b::16240b::16Copyright(C) JPNE, All Rights Reserved.

Destination based traffic

bps

Most of IPv6 traffic is Google.

240b::17240b::17Copyright(C) JPNE, All Rights Reserved.

IPv6 Traffic Ratio

20% of Internet traffic is IPv6. Gradually increasing.

201405

201406

201407

201408

201409

201410

201411

201412

201501

201502

240b::18240b::18Copyright(C) JPNE, All Rights Reserved.

Summary

MAP-E is Stable, Easy operation, Easy Customer support.

Speed is fast enough.

Effective to use some v4/v6 tools to operate dual stack network.

One important thing is to offload traffic to IPv6.

240b::19240b::19Copyright(C) JPNE, All Rights Reserved.

http://jpne.co.jp