CGN NAT Bypass X. Deng, M. Boucadair France Telecom C. Zhou Huawei Technologies T. Tsou Huawei Technologies (USA) G. Bajko Nokia.

Slides:



Advertisements
Similar presentations
Stateless IPv4-IPv6 Interconnection for DS-lite and A+P Flexible IPv6 Migration Scenarios in the Context of IPv4 Address Shortage I-D.boucadair-behave-ipv6-portrange.
Advertisements

A+P implementations X.Deng M. Boucadair T.Zheng L.Wang France Telecom X.Huang Q.Zhao Yan.Ma BUPT.
Public IPv4 over Access IPv6 network draft-cui-softwire-host-4over6-06 draft-cui-softwire-dhcp-over-tunnel-01 Y. Cui, J. Wu, P. Wu Tsinghua Univ. C. Metz.
Dynamic Allocation of Shared IPv4 Addresses draft-csf-dhc-dynamic-shared-v4allocation-00 Q. Sun, Y. Cui, I. Farrer, Y. Lee, Q. Sun, M. Boucadair IETF 89,
Deployment Considerations for Dual-stack Lite IETF 80 Prague Yiu Lee, Roberta Magione, Carl Williams, Christian Jacquenet Mohamed Boucadair.
Anastasios Chatzithomaoglou IP Engineering – Forthnet
CSC458 Programming Assignment II: NAT Nov 7, 2014.
CPSC Network Layer4-1 IP addresses: how to get one? Q: How does a host get IP address? r hard-coded by system admin in a file m Windows: control-panel->network->configuration-
© 2006 Cisco Systems, Inc. All rights reserved.Cisco Public 1 Version 4.0 Implementing IP Addressing Services Accessing the WAN – Chapter 7.
IPv6 Transition Technologies Yasuo Kashimura Senior Manager, Japan, APAC IPCC Alcatel-lucent.
Securing Remote PC Access to UNIX/Linux Hosts with VPN or SSH Charles T. Moetului WRQ, Inc. (206)
STUN Date: Speaker: Hui-Hsiung Chung 1.
For IPv4 Provisioning in IPv6 Network 1 Yong Cui, Jianping Wu, Peng Wu. Tsinghua Univ. (CERNET) Chris Metz. Cisco Systems Olivier Vautrin, Alain Durand.
Deployment Considerations for Dual-stack Lite draft-lee-softwire-dslite-deployment-00 Yiu Lee, Roberta Magione, Carl Williams, Christian Jacquenet Mohamed.
Draft-tsou-bfd-ds-lite-02 Tina Tsou. Problem to solve – There is no status information of DS-Lite tunnel, e.g. tunnel up or down, which brings difficulties.
ISP SP Network Egress Points Ingress Point Protocol-Specific Egress Decision IP Header Payload Transit Header IP Header Payload IP Header Payload.
Negotiating Unsolicited Connections to a Service Listening Behind a Firewall Ben Stroud CS525 Spring 10.
Lightweight 4over6 in access network draft-cui-softwire-b4-translated-ds-lite-01 China Telecom: Chongfeng Xie, Qiong Sun Tsinghua University: Yong Cui,
Y. Cui, J. Wu, P. Wu Tsinghua Univ. C. Metz Cisco Systems O. Vautrin Juniper Networks Y. Lee Comcast Public IPv4 over Access IPv6 Network draft-cui-softwire-host-4over6-04.
IETF 79 th Considerations for Stateless Translation (IVI/dIVI) in Large SP draft-sunq-v6ops-ivi-sp-01 Qiong Sun( China Telecom) Heyu Wang( China Telecom)
Guoliang YANG Problem Statement of China Telecom.
IPv6 Transition Technologies Selection using DHCP/DHCPv6 draft-yang-v6ops-IPv6tran-select-00 Tianle Yang, Lianyuan Li, Qiongfang Ma China Mobile
Using the Flow Label with Dual-Stack Lite
DS-Lite for Point-to- Point Access Network IETF 78 Maastricht 2010 July 30.
For IPv6 host connecting IPv4 Internet 1 Yong Cui, Jianping Wu Tsinghua Univ. (CERNET) Contact:
4V6 – aka stateless 4Via6 stateless-4v6-00 W. Dec 1.
Service Function Chaining Use Cases draft-liu-service-chaining-use-cases IETF 89 London, March 3, 2014 Will Liu, Hongyu Li, Oliver Huang, Huawei Technologies.
Lightweight 4over6 + SD-nat (aka stateless DS-Lite) = Lightweight DS-Lite (twice as light!) Alain Durand (Juniper) Ian Farrer (DT) (Softwire item, presented.
Lightweight 4over6 Interop Test Report Yuchi Chen,Qiong Sun IETF 85, Atlanta, Nov
Dean Cheng Jouni Korhonen Mehamed Boucadair
Network Layer4-1 DHCP: Dynamic Host Configuration Protocol Goal: allow host to dynamically obtain its IP address from network server when it joins network.
Application Level Control of Ports in a Service Provider NAT environment Dave Thaler Dan Wing Alain Durand 1.
Implementing IP Addressing Services Accessing the WAN – Chapter 7.
TURN-Lite: A Lightweight TURN Architecture and Specification (draft-wang-tram-turnlite-01)draft-wang-tram-turnlite-01 Aijun Wang (China Telecom) Bing Liu.
Nov.2011 Progress of Relay Agent Encapsulation for DHCPv4.
IPv6, the Protocol of the Future, Today Mathew Harris.
Security Implications of sharing an IPv4 address Gabor Bajko Pierre Levis
ISP Edge NAT 10/8 “Home” Network Upstreams and Peers /32
Dean Cheng Jouni Korhonen Mehamed Boucadair
Y. Cui, P. Wu : Tsinghua University Q. Sun, C. Xie : China Telecom
NAT64-CPE Mode Operation for Opening Residential Service Gang Chen Hui
MAP Testing Results X. Li, C. Bao, G. Han, W. Dec
IETF 81 th Multicast Extensions to DS-Lite Technique in Broadband Deployments draft-qin-softwire-dslite-multicast-04 Wang, Q., Qin, J., Boucadair, M.,
IP Transitioning in CE Routers Mark Townsley, Ole Troan.
Dean Cheng 81 st IETF Quebec City RADIUS Extensions for CGN Configurations draft-cheng-behave-cgn-cfg-radius-ext
Dynamic Allocation of Shared IPv4 Addresses draft-ietf-dhc-dynamic-shared-v4allocation-01 Q. Sun, Y. Cui, I. Farrer, Y. Lee, Q. Sun, M. Boucadair IETF.
IETF 78 RADIUS extensions for DS-Lite draft-maglione-softwire-dslite-radius-ext-00 R. Maglione – Telecom Italia A. Durand – Juniper Networks.
jitsi. org advanced real-time communication.
1 Requirements of Carrier Grade NAT (CGN) draft-nishitani-cgn-00.txt draft-shirasaki-isp-shared-addr-00.txt NTT Communications Corporation Shin Miyakawa.
Deploying Dual-Stack Lite in IPv6 Network draft-boucadair-dslite-interco-v4v6-04 Mohamed Boucadair
Lightweight 4over6: An Extension to DS-Lite Architecture draft-cui-softwire-b4-translated-ds-lite-09 Y. Cui, Q. Sun, M. Boucadair, T. Tsou, Y. Lee and.
IETF 80 th Lightweight Address Family Transition for IPv6 draft-sunq-v6ops-laft6-01 Chongfeng Xie( China Telecom ) Qiong Sun( China Telecom)
IETF 85 Use cases for MAP-T draft-maglione-softwire-map-t-scenarios-01 R. Maglione.
Attribute-Value Pairs For Provisioning Customer Equipment Supporting IPv4-Over-IPv6 Transitional Solutions Cathy Zhou; Tom Taylor; Qiong Sun draft-zhou-dime-4over6-provisioning-01.
DHCPv4 Extension for Port-set Allocation Qiong Sun, Yiu Lee, Peng Wu.
IPv6 and FRITZ!Box Eric van Uden. History First public beta since two and half year IPv6 is since Q4/2010 Standard feature in the FRITZ!Box.
CSC458 Programming Assignment II: NAT
HTCondor Networking Concepts
Lightweight 4over6: An Extension to DS-Lite Architecture draft-cui-softwire-b4-translated-ds-lite-11 IETF 86-Orlando, March 2013 Y. Cui, Q. Sun, M.
IPV6 TECHNIQUES TO Re-IMAGINE RESEARCH AND EDUCATION NETWORKS
HTCondor Networking Concepts
Unified IPv4-in-IPv6 Softwire CPE: Focus on DHCP IETF 87-Berlin, July 2013 M. Boucadair & I. Farrer.
CGN vs PRR STATEFUL vs STATELESS.
Introducing To Networking
Multrans Use Cases Wang Qian, China Telecom
Implementing IP Addressing Services
Implementing IP Addressing Services
DHCP and NAT.
DHCP: Dynamic Host Configuration Protocol
Multicast Support for Dual Stack Lite and 6RD
Presentation transcript:

CGN NAT Bypass X. Deng, M. Boucadair France Telecom C. Zhou Huawei Technologies T. Tsou Huawei Technologies (USA) G. Bajko Nokia

Core idea

How it works Outbound Session –B4 behaviors NAT & Encapsulation –AFTR behaviors De-capsulation & forward Inbound Session –AFTR behaviors Encapsulation & port forwarding –B4 behaviors De-capsulation & NAT

Scattered ports provisioning What's the benefits of provisioning scattered ports? –For incoming ports –Scattered ports allocation is more likely to satisfy the random incoming port requests from applications such as eMule, uTorrent,sharez, using UPnP 1.0 A solution – to distribute bulks of non-continuous ports among subscribers, –also takes port randomization into account

How to provision scattered ports? Only two parameters Subscribers ID pattern Subscribers ID value

Subscribers ID pattern Subscribers ID value Random ephemeral port selection within the restricted port for CPE NAT Only one line code needs to be changed!

An Implementation DS-Lite encapsulation (demonstrated) SP’s Network CGN + PCP Server IPv4 PCP Client NE40E-X3 RG PCP message: I need a bunch of ports PCP message: I give you a set of scattered ports Location: 2000D Check out website for this demo:

Alternative implementation A+P encapsulation SP’s Network PCP/DHCP Server IPv4 PCP/DHCP Client PRR A+P RG PCP message: I need a bunch of ports PCP message: I give you a set of scattered ports

_.._..,_,_ ( ) ]~,"-.-~~ [.=] ) ' (; ([ | ]:: ' [ '=]):.) ([ | : : ' | ~~----~~ Thoughts?