[Witarea] Re: [v6ops] Re: How to make an elegant IPv4 outage
Phillip Hallam-Baker <[email protected]> Sun, 14 Jun 2026 12:35:27 -0400
| Newsgroups | gmane.ietf.tsv-area,gmane.ietf.general,gmane.ietf.v6ops |
|---|---|
| Message-ID | <CAMm+LwgpBSN28ZL1eJg6tczxDuGtnnurFsb_fXWaNKwy+7iqGQ@mail.gmail.com> |
--===============3807806994128529722== Content-Type: multipart/alternative; boundary="000000000000d1dac60654394c8b" --000000000000d1dac60654394c8b Content-Type: text/plain; charset="UTF-8" Content-Transfer-Encoding: quoted-printable On Fri, Jun 12, 2026 at 9:53=E2=80=AFPM Brian E Carpenter < [email protected]> wrote: > Erik, > > On 13-Jun-26 02:19, Erik Nygren wrote: > > + v6ops > > > > On the topic of the original draft ( > https://datatracker.ietf.org/doc/html/draft-martin-retry-over-ipv6-01 < > https://datatracker.ietf.org/doc/html/draft-martin-retry-over-ipv6-01>): > > > > 1) I wonder if this is pointing towards a desire to either start sunset= 4 > back up again, or to charter work within some existing WG (v6ops, 6man, > others?) to pick back up on where sunset4 left off, specifically looking > for technology solutions and operational recommendations to provide a pat= h > towards phasing out IPv4 in various environments. > > I really hope not. I think we have learnt that attacking currently workin= g > solutions is self-defeating, which is ultimately why sunset4 failed. > Exactly. The problem I have seen all along is that what the Internet users need is a mechanism that allows them to interact in a larger Internet without any impact on their user experience whatsover and this has been interpreted inside the IETF as 'force everyone to transition to IPv6 for everything, everywhere'. My experience deploying a high end prosumer network in the house tells me that IPv4 is never going to go away and it is futile to expect otherwise. The border gateways have a capacity of ~1000 client devices, I am currently using 72 IP addresses after a purge but don't anticipate using more than 250 in the near future. All the interior routing of addresses uses private addresses. I could wire a static IP address direct to an internal host but since I have to pay $20/mo for each block of 4 static IPv4 addresses, that would be a waste and limit internal administration. In 1995, a DNS server was a specific host, now it is one virtual machine floating around a cluster of Proxmox hosts. So instead, I have rules that map split the ports out to the hosts that service them. And here we get to the part that makes transitioning to IPv6 on the Internal network highly unlikely: 10.x.0.y is so much easier to remember than anything in IPv6 space. My internal network is segmented into a series of VLANs so that the IoT devices cannot touch the production network. Each VLAN has a separate prefix 10.x.*.*. If a device has IPv6 service, the IPv6 address will be in a /24 with the lower 32 bits being its net 10 suffix. And this isn't just some scheme PHB thunk up, it is pretty much the way people deploy the hardware just as named.config.local is the place most people list out the zone files for their local domains. The mental model I think appropriate is IPv4 is high level language and IPv6 if machine code. Yes we are going to be using IPv6 in the Internet to come. But the reason we haven't run out of IPv4 addresses so far is that most of the devices are mobile clients and those work just fine on an IPv6 connection with a carrier grade NAT to talk to legacy IPv4 only sites. I will be making my services available over IPv6 as soon as I can find an ISP that will give me the necessary static IP/64. But my expectation is that I won't ever need to interact with them directly as an administrator on the internal network, it will be purely limited to the network gateway interface. The net is that while IPv6 will gain deployment, IPv4 will retain its mindshare and I do not expect that to change for at least another century. --000000000000d1dac60654394c8b Content-Type: text/html; charset="UTF-8" Content-Transfer-Encoding: quoted-printable <div dir=3D"ltr"><div dir=3D"ltr"><div class=3D"gmail_default" style=3D"fon= t-size:small"><br></div></div><br><div class=3D"gmail_quote gmail_quote_con= tainer"><div dir=3D"ltr" class=3D"gmail_attr">On Fri, Jun 12, 2026 at 9:53= =E2=80=AFPM Brian E Carpenter <<a href=3D"mailto:brian.e.carpenter@gmail= .com">[email protected]</a>> wrote:<br></div><blockquote class= =3D"gmail_quote" style=3D"margin:0px 0px 0px 0.8ex;border-left:1px solid rg= b(204,204,204);padding-left:1ex">Erik,<br> <br> On 13-Jun-26 02:19, Erik Nygren wrote:<br> > + v6ops<br> > <br> > On the topic of the original draft (<a href=3D"https://datatracker.iet= f.org/doc/html/draft-martin-retry-over-ipv6-01" rel=3D"noreferrer" target= =3D"_blank">https://datatracker.ietf.org/doc/html/draft-martin-retry-over-i= pv6-01</a> <<a href=3D"https://datatracker.ietf.org/doc/html/draft-marti= n-retry-over-ipv6-01" rel=3D"noreferrer" target=3D"_blank">https://datatrac= ker.ietf.org/doc/html/draft-martin-retry-over-ipv6-01</a>>):<br> > <br> > 1) I wonder if this is pointing towards a desire to either=C2=A0start = sunset4 back up again, or to charter work within some existing WG (v6ops, 6= man, others?) to pick back up on where sunset4 left off, specifically looki= ng for technology solutions and operational recommendations to provide a pa= th towards phasing out IPv4 in various environments.=C2=A0 <br> <br> I really hope not. I think we have learnt that attacking currently working = solutions is self-defeating, which is ultimately why sunset4 failed.<br></b= lockquote><div><br></div><div><div class=3D"gmail_default" style=3D"font-si= ze:small">Exactly. The problem I have seen all along is that what the Inter= net users need is a mechanism that allows them to interact in a larger Inte= rnet without any impact on their user experience whatsover=C2=A0and this ha= s been interpreted inside the IETF as 'force everyone to transition to = IPv6 for everything, everywhere'.</div></div><div><br></div><div><br></= div><div class=3D"gmail_default" style=3D"font-size:small">My experience de= ploying a high end prosumer network in the house tells me that IPv4 is neve= r going to go away and it is futile to expect otherwise.</div><div class=3D= "gmail_default" style=3D"font-size:small"><br></div><div class=3D"gmail_def= ault" style=3D"font-size:small">The border gateways have a capacity of ~100= 0 client devices, I am currently using 72 IP addresses after a purge but do= n't anticipate using more than 250 in the near future.<br><br>All the i= nterior routing of addresses uses private addresses. I could wire a static = IP address direct to an internal host but since I have to pay $20/mo for ea= ch block of 4 static IPv4 addresses, that would be a waste and limit intern= al administration. In 1995, a DNS server was a specific host, now it is one= virtual machine floating around a cluster of Proxmox hosts.</div><div clas= s=3D"gmail_default" style=3D"font-size:small"><br></div><div class=3D"gmail= _default" style=3D"font-size:small">So instead, I have rules that map split= the ports out to the hosts that service them. And here we get to the part = that makes transitioning to IPv6 on the Internal network highly unlikely: 1= 0.x.0.y is so much easier to remember than anything in IPv6 space.<br><br>M= y internal network is segmented into a series of VLANs so that the IoT devi= ces cannot touch the production network. Each VLAN has a separate prefix 10= .x.*.*. If a device has IPv6 service, the IPv6 address will be in a /24 wit= h the lower 32 bits being its net 10 suffix.<br></div><div class=3D"gmail_d= efault" style=3D"font-size:small"><br></div><div class=3D"gmail_default" st= yle=3D"font-size:small">And this isn't just some scheme PHB thunk up, i= t is pretty much the way people deploy the hardware just as named.config.lo= cal=C2=A0is the place most people list out the zone files for their local d= omains.<br><br><br>The mental model I think appropriate is IPv4 is high lev= el language and IPv6 if machine code.</div><div class=3D"gmail_default" sty= le=3D"font-size:small"><br></div><div class=3D"gmail_default" style=3D"font= -size:small">Yes we are going to be using IPv6 in the Internet to come. But= the reason we haven't run out of IPv4 addresses so far is that most of= the devices are mobile clients and those work just fine on an IPv6 connect= ion with a carrier grade NAT to talk to legacy IPv4 only sites.</div><div c= lass=3D"gmail_default" style=3D"font-size:small"><br></div><div class=3D"gm= ail_default" style=3D"font-size:small">I will be making my services availab= le over IPv6 as soon as I can find an ISP that will give me the necessary s= tatic IP/64. But my expectation is that I won't ever need to interact w= ith them directly as an administrator on the internal network, it will be p= urely limited to the network gateway interface.<br><br>The net is that whil= e IPv6 will gain deployment, IPv4 will retain its mindshare and I do not ex= pect that to change for at least another century.</div></div></div> --000000000000d1dac60654394c8b-- --===============3807806994128529722== Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: base64 Content-Disposition: inline LS0gCldpdGFyZWEgbWFpbGluZyBsaXN0IC0tIHdpdGFyZWFAaWV0Zi5vcmcKVG8gdW5zdWJzY3Jp YmUgc2VuZCBhbiBlbWFpbCB0byB3aXRhcmVhLWxlYXZlQGlldGYub3JnCg== --===============3807806994128529722==--