Slashdot Mirror


Dept. of Defense IPv6 Interoperabilty Test Begins

securitas writes "The Department of Defense has launched Phase I of its delayed IPv6 interoperability test (mirror) in a six-month project dubbed Moonv6. It is the largest North American IPv6 test ever and its goal is to evaluate IPv6 for 'network-centric military operations.' Phase II was originally scheduled to begin in January 2004 but may be delayed due to the late start of the current test. 'IPv4 addresses are 32 bits long, enough for around 4 billion unique addresses.' In contrast, the IPv6 address length is '128 bits, or 340 billion billion billion billion unique addresses.' Experts hope this will solve a predicted IP address shortage as more devices are created to use the Internet."

9 of 371 comments (clear)

  1. NAT is the answer by slyxter · · Score: 0, Insightful

    It is simple, fast and it works great. Every internet acessable IP number can have thousands of devices connected behind it.

    1. Re:NAT is the answer by arkhan_jg · · Score: 3, Insightful

      NAT != firewall.

      NAT without a properly configured firewall is basically a false sense of security, and is trivially easy to get around.

      If you have a proper firewall in place to protect your machines, (i.e. block all unauthorised inbound and outbound ports) with NAT as well, then fine. But NAT is a one-to-many hack, not a security feature.

      IPv6 will mean you won't have to use all the kludgy port forward hacks you do when using NAT, while still being able to protect machines properly with a firewall.

      --
      Remember kids, it's all fun and games until someone commits wholesale galactic genocide.
  2. Re:I don't care what you say by Short+Circuit · · Score: 3, Insightful

    NATs will definately proliferate. All it's going to take is some worm shutting down all the refridgerators it can connect to, including both home, commercial, and warehouse coolers.

    If you wanted a more dangerous scenario, there's the toilet flushing possibility. City water pressure drops, and an entire region hits a water shortage. Sewage treatment plants overflow, and thousands of gallons of raw sewage are dumped into the local water supply.

    Another possibility could be environmental controls. Imagine all heating and cooling units turned on. That would be an enormous drain on energy resources.

  3. Re:The largest network - I hope not by leerpm · · Score: 2, Insightful

    My understanding is that the 6bone was not a production network.

    Also, I imagine the reason the DoD is building their own network right now, is so that they have more control over it. They don't need home users bringing havoc over the network while they are conducting their tests. It may also be a temporary network, and they could have further plans down the road to introduce further major changes to it.

  4. Re:Why did they pick 128? by leerpm · · Score: 3, Insightful

    Probably so that in 25 years, they don't have to revisit it again and implement an IPv8. Also, the design of IPv6 is very different than IPv4. The 128 bits are actually two distinct 64bit identifiers combined together. The first 64 bits indicates the subnet. Of that first 64 bits, 48 are there to be used in partitioning the network in different ways (it's an oversimplification I know and I am dumbing down some details). The last 64 bits are your 'interface identifier', this is the equivalent of your 48bit MAC address. Only now the MAC address is going to be part of your address.

  5. More reasons for IPv6 by RDPIII · · Score: 3, Insightful

    Experts hope this will solve a predicted IP address shortage as more devices are created to use the Internet.

    This falls into the general category "Death of Internet Predicted". The internet is not running out of IPv4 addresses at the rate predicted in the early '90s, for a number of reasons, including NAT (whether you like it or hate it) and the simple fact that not everyone who wants to browse the web needs a publicly routable address.

    Much better reasons for adopting IPv6 is that autoconfiguration is to a large degree built into the protocol (including its associated ICMP messages) and doesn't have to be done by a separate mechanism like DHCP. Also, IPv6 has a fixed length, small packet header, which should make it easier to do all sorts of routing tasks.

    If you're running a Linux or BSD kernel, check out one of the many 6to4 tunnel brokers to get onto the 6bone or your own friendly neighborhood IPv6 backbone.

    --
    Marklar: marklar
  6. Re:COOL! by Anonymous Coward · · Score: 1, Insightful

    We won't just have enough addresses to give them to toasters, there are almost enough IPv6 addresses to assign one to every atom in the universe.

    let's see, mass of Universe estimated at 1e53 kg, or 1e56 g. If the universe was all hydrogen, that would be roughly (*Avagadro's number) = 6.02e79. Log based two of that is 265... DAMN!

    How about 512 bit addresses?

  7. Re:IPv6 will destroy NATs (I hope) by boneshintai · · Score: 2, Insightful

    With this many IP addresses, there's no reason why every connection can't be given 255 (or more) IPs. For example, I connect with my cable modem. Where's the hurt in giving me 255 IPs to use?

    While that's certainly the sensible point of view, who says that ISPs, especially large commercial providers, are going to break with the one-connection, one-machine business model they've held so far? While they currently allow NAT because there's really no technical way to prevent it, connecting more than one computer is still against most ISPs' terms of service.

    Ultimately, you're coming at it from the wrong end, asking why they shouldn't give you more than one. I suspect the thought processes are closer to "so why on earth should we give out more than one IPv6 address?"

  8. Journalists SUCK. by rice_burners_suck · · Score: 1, Insightful
    Experts hope this will solve a predicted IP address shortage as more devices are created to use the Internet."

    Hmmm... This is what EXPERTS are hoping? Who are these experts? What kind of experts are they?

    Of course having six hundred thousand million billion trillion zillion bajillion googleplexes of Internet addresses, as opposed to, like, five, is going to prevent a shortage of addresses from happening real soon. EXPERTS. Bah, humbug.

    The reason I am complaining about this, by the way, is that many articles in many publications are written this way. "Observations were held. 80% of those interviewed said [insert something here]. Experts predict [insert something else here]." Of course, they don't tell you that they interviewed five people out of fifty thousand... but the headline reads, "80% of [some group of people] does [this]."