Even your comment about streaming, seems like mainly nostalgia vs reality as you kind of admit. Any modern streaming infrastructure works from behind a NAT since most people are behind one these days.
Even your comment about streaming, seems like mainly nostalgia vs reality as you kind of admit. Any modern streaming infrastructure works from behind a NAT since most people are behind one these days.
1. http://www.worldipv6launch.org/participants/?q=1
2. https://www.google.com/intl/en/ipv6/statistics.html#tab=per-...
I was referring to people with broken IPv6 setups, mostly Teredo and 6to4 (old Mac OS X versions), for whom IPv4 worked but IPv6 was not actually routable. At the time, publishing AAAA records would lock out all of those users.
He was referring to your lack of qualification in the above. An IPv4 user can indeed access Google, which is an IPv6 enabled site.
A user who only has IPv4 connectivity relies on their software recognizing this when accessing an IPv6 enabled site. Software's failure to do so is one of the main reasons for the slow rollout of IPv6.
No, I think that our future is isolated carrier-grade NAT, connecting to cloud services exclusively. And that makes me sad.
I had to disable ipv6 on my Linode, because Clouldflare, Google, and Facebook do not seem to trust any ipv6 traffic coming from Linode. Only using ipv4 has fixed everything.
And, as for ip4 blocks being obsolete, I still think it's wrong to sell them off. Universities were endowed with these. If they don't have a use for them, they should make them available for someone who does. Not just sell them to be used for some corporation's infrastructure.
I hate how so many people on hackernews seem to think that not selling these ipv4 addresses is a "waste". People are only looking at this in purely financial terms. I consider it to be wasteful to sell them to Microsoft or Amazon or whatever. No matter how much money they offer. Universities are supposed to use the gifts they are given to try to better society.
Aren't these ip addresses going to just be used for things like NAT traversal? Why doesn't MIT make them available for some non profit to offer that service as a public utility?
If a flight school has an operating runway and hanger, should they just make all their students use flight simulators and demolish their runway? Should an agricultural school sell off their farmland to real estate developers? If their students really weren't benefiting from their property, then they should donate it to some organization that could carry on the spirit of what they were supposed to be doing with it.
ISPs don't care. They would rather everyone just use carrier-grade NAT.
In the meantime, you should feel bad every time you make this argument because you're helping to make the world worse and enabling everyone else to just kick the can down the road.
If your university doesn't have a lot more demand for IP addresses then yeah -- it makes sense that they'd just hold on to their network space, continue to NAT their DHCP pools and keep doing what they're doing. That's not an indictment of IPv6, it just means that the work to deploy IPv6 doesn't provide any benefits to them. However, newcomers and networks that foresee expansion can't just "stay the course" -- there just isn't enough IPv4 for them -- and do need to bite the IPv6 bullet.
Deploying IPv6 does indeed require work in terms of management (all tools that assume the length/format of an IP address need to be updated, netadmins need to learn and deploy RA guard and friends) and your network silicon needs to do IPv6 in the fastpath -- but even with all these pain points, carrier-grade NAT'ing IPv4 is nevertheless more painful, expensive, and slow.
Forward-thinking network operators have been taking advantage of the LTE and DOCSIS 3 transitions to enable native IPv6 everywhere, and Facebook is moving to IPv6-only infrastructure -- and it's paid off! About 80% of network traffic (to Akamai) from T-Mobile and Verizon is IPv6 (from Comcast it's lower -- around 50%): https://www.akamai.com/uk/en/our-thinking/state-of-the-inter...
The future is IPv6 -- it's just not quite equally distributed yet.
Isn't selling them off to someone who will pay money for them pretty much the definition of making them available for someone who has a use for them?
It's not like you can't buy an IPv4 address if you want one because Amazon and Google own them all.
We just have this situation where a few universities, the US DoD, and a handful of corporations own a disproportionate number of IP addresses because they were early to the game. They all got cheap IPv4 addresses. So HP owns two /8 addresses while Google does not.
I'm not seeing a situation where donating millions of IPv4 addresses to someone is going to improve society relative to Amazon forking over a bunch of dollars to a university.
Universities are uniquely positioned to not be constrained by market forces. Part of the reason that universities get privileged access to things, is because they are seen as working in the public interest. Government and business and wealthy donors throw money at universities, because they want to see innovation and public good come from it.
Maybe that's idealistic of me, and universities are just a kind of business, and only that. MIT already gives the public free hosting, with an externally routable, unfirewalled ip4 or ip6 address, to anyone who comes on campus. I don't think any other universities in the world do that. And MIT does this at great expense. (this is how Aaron Schwarz was able to download so much of JSTOR)
It makes no financial sense for MIT to be doing this. Perhaps they should lock down their network as much as possible, and probably outsource it's management.
MIT's network policies are not purely about what makes financial sense. The Institute was one of the birthplaces of the internet, and they see the ongoing development of it as one of their core missions. MIT has a close relationship with W3C, which is located a stone's throw away. Their network is multi-homed to the max; I think they peer with ALL the backbone providers that operate in the US. The school has ludicrous amounts of internet bandwidth; I think it's now measured in terabits per second. After all, they have to be able to cope with thousands of students watching Netflix along with all the research!
And just in case there is a REAL internet collapse... they have an emergency info site at mit.NET that is hosted far away from the campus. That would let them get some information out even if Cambridge were wiped off the map and all the name servers for .edu were to fail.
This seems to be a "feature" of owning your own modem rather than renting one of theirs. I hesitate to even try to get this fixed via their tech support.
I guess if I want IPv6 connectivity, I'm either going to have to get a tunnel from Hurricane Electric (SIXXS is shutting down), or carve out some IPv6 space from my Linode and tunnel it to my home network.
This caused me to switch ISP's and now I have a static /48. That's much nicer.
From what I remember hearing, Comcast was giving /60s thru PD.
The /128 sounds perfectly normal, and is used as a "point to point" link between the ISP and your modem. Over this, DHCP prefix delegation typically gives you a whole second subnet of /60 or so. If your modem isn't handling DHCP-PD, then all your see is 1 measly address even though they've likely allocated and pushed 295,147,905,179,352,825,856 addresses to you.
I'm now using a Ubiquiti EdgeRouter POE, and maybe I should give it another shot. I'm not convinced I'll actually get a prefix from Comcast, though.
I don't have any contacts myself, I'm just a customer and interested observer.
I tunnel all traffic through Comcast via a VPN, though, because I consider them a hostile network, so I don't especially care.
I'm planning on doing exactly this using openvpn as my transport (because I already have an extensive ipv4 openvpn system). Has anyone tried it? I'm not interested so much in how to do it, which I think I know, but in anecdotes along the lines of "it makes openvpn crash" or "linode told me I was being abusive and cut me off" or whatever.
I've had ipv6 for decades I guess. I even got one of the Hurricane Electric "sage" tee shirts last decade. But when sixxs goes down I lose ipv6 connectivity for the first time since the DSL days at the turn of the century.
CloudFlare etc certainly dont do this with SiXXS IPv6 addresses, or any traditional residential provider I'm aware of.
* T-mobile: ipv4
* Office: ipv4
* Verizon: ipv4
* University: ipv4
* Linode: ipv6 (but flagged as hostile)
Google will not just show me captchas, but will deactivate accounts if I use some of their apis. I had to reverify several accounts when I've tried using ipv6.I'm not being backward about ipv4, I'm really not. But we're in denial about the fact that we still live in an ipv4 world. And I don't like seeing the last vestiges of non-profit ipv4 address space being liquidated.
But if you want a subnet, you can make a second DHCPv6 request with prefix delegation metadata, and the server will establish a route for a full /64 subnet to your existing IP and return it to you. Then you can hand these out however you want (though they won't give you bigger than a /64 so you can do internal subnet routing).
The only annoyance is that none of the existing Linux distros support this yet as part of their network client integration, so you have to script it yourself around dhclient (see the -P argument), which is a little hairy if you want to get the hooks right (I punted and just did it once manually and left dhclient running).
I think OpenWRT has all you need for this. At least I think that's exactly what I did with my ISP config on my own router just with the LuCi web interface.
Getting it to work with the ER-POE was non-intuitive but not as bad as I was expecting. I'm even getting a /60...
Most people will read this, I think, and think a Linux client won't accept a V6 from a router that has obtained it's delegation via DHCP-PD..
Granted, I have business class so that I don't violate their ToS by hosting stuff and to get a dedicated IP.
I regularly ssh straight into to my suspended WoL Macbook over v6, and never went out of my way to set up a single bit of it. A half dozen new technologies working perfectly out of the box!
If I tried streaming a conference on youtube, facebook, or periscope, my stream could be muted or stopped because someone plays copyrighted music or something.