Take it easy, do it fast
For all the strain that IPv4 address exhaustion poses, a complete switch to IPv6 à la Monash may not be completely logical, at least in the short term.
“It’s too big a task to take an IPv4-literate corporation and write a complete soup-to-nuts IPv6 plan that’s going to be perfect the first go,” Mann says. “The most important message is to start off a small IPv6 test project on something that’s visible but not mission critical. It’s vitally important to get some real IPv6 experience so you can see what it looks like.”
For APNIC’s Huston, it’s a matter of working out the external, public-facing aspects before even worrying about the internal access network. The private addresses afforded to even large corporations are likely to afford some leeway for the five to six years required to garner a sufficient base of knowledge within the enterprise.
“Their internal networks are not as critical as long as they’re not expanding... they can probably persist in doing that for some number of years without any particular problem,” he says.
“There are some enterprises, particularly in the ISP arena, that need to do this quickly but in any other, you need to spend your money wisely and wait until you can see a fair deal of confidence that this is worth doing.”
Both Blue Coat’s Li and Internode’s John Lindsay point to the changing security landscape as a key cause of concern in the switch to a new protocol; after all, IPv6 is a whole new language.
“You need to be taking a long hard look at what your firewalls can support,” Lindsay says. “Just turning on v6 is often not an option in a corporate managed desktop, largely because of how much stuff looks at v6.
“At the end of the day when you find yourself without a v4 address that you can allocate to a server or a customer, then your business growth comes to a screaming halt.”
It may not be an apocalypse as such, but the historically slow behemoths of enterprise must act quickly to avoid falling behind.
When scarcity bites
Though IPv4 addresses have so far lacked any real value of themselves, their increasing rarity is likely to change that. Financial markets are inevitable in a migration to IPv6, according to APNIC’s Geoff Huston, but it is important to block potential black markets from appearing.
“There’ll be folk for whom the need is still desperate,” he says, referring to some companies’ continued need for IPv4 addresses.
Several industry watchers have warned of companies and individuals unloading excess IPv4 addresses, selling them to available buyers — even multiple times for a single address.
“If you have chaos in addressing, sending a packet into the network because a game or roulette because you don’t know who’s got that address on any particular day or if it’s even unique,” Huston says.
In an attempt to mitigate such attempts, and keep any financial markets ‘white’, APNIC has established a transfer registry allowing address holders to advertise such moves.
“As to how much money changes hands and how buyer and seller manage to interconnect — we’re not running a trading floor — but as a registry we’re well and truly aware of the fact that as we stop giving away addresses, markets will exist,” Huston says.
There’s no guarantee that such a registry will completely eradicate posing problems, however.
Follow James Hutchinson on Twitter: @j_hutch
Follow Computerworld Australia on Twitter: @ComputerworldAU