Planning Guide/Roadmap Toward Ipv6 Adoption Within the U.S. Government
Total Page:16
File Type:pdf, Size:1020Kb
Planning Guide/Roadmap Toward IPv6 Adoption within the U.S. Government Strategy and Planning Committee Federal Chief Information Officers Council Version 2.0 July 2012 The Federal CIO Council Strategy and Planning Committee Technology Infrastructure Subcommittee Federal IPv6 Working Group In collaboration with the The American Council for Technology/Industry Advisory Council’s Network and Telecommunications (N&T-SIG) Present: Planning Guide/Roadmap Toward IPv6 Adoption within the U.S. Government July 2012 Planning Guide/Roadmap Toward IPv6 Adoption within the U.S. Government Table of Contents Executive Summary .......................................................................................................................................... 1 1. Introduction .............................................................................................................................................. 1 1.1 Background ..................................................................................................................................... 2 1.2 Adoption Benefits ............................................................................................................................ 3 1.3 Guidance ......................................................................................................................................... 3 1.4 Our Business Situation ................................................................................................................... 4 2. Federal Transition Components .......................................................................................................... 7 2.1 OMB Guidance ............................................................................................................................... 7 2.1.1 OMB September 2010 Memorandum ................................................................................ 7 2.1.2 Agency Transition Plans ...................................................................................................... 8 2.1.3 OMB Memorandum M‐05‐22 .............................................................................................. 8 2.2 IPv6 Federal Acquisition Regulations (FAR) ................................................................................ 9 2.2.1 Current Applicable FAR Previsions..................................................................................... 9 2.2.2 Acquisition Guidance............................................................................................................ 9 2.3 Federal IPv6 Task Force .............................................................................................................. 12 2.4 Sample Agency Timelines ........................................................................................................... 12 2.4.1 Sample Federal Agency Execution Timeline ................................................................... 12 2.4.2 Implementation Recommendations .................................................................................. 15 2.5 Agency Progress Tracking ........................................................................................................... 16 2.6 Sub-Working Groups .................................................................................................................... 17 2.6.1 IT Management Sub-Working Group ................................................................................ 17 2.6.2 Outreach Sub-Working Group ........................................................................................... 17 2.6.3 Technical Sub-Working Group .......................................................................................... 18 2.7 NIST USGv6 Activities ................................................................................................................. 18 2.7.1 USGv6 Profile Process ...................................................................................................... 18 2.7.2 USGv6 Test Program ......................................................................................................... 18 2.8 DoD IPv6 Product Profile ............................................................................................................. 19 3. The Business Rationale for IPv6 ........................................................................................................ 20 4. Federal IPv6 Transition: The “To Be” State ..................................................................................... 22 4.1 The 2012 “To Be” State ................................................................................................................ 22 4.2 The 2014 “To Be” State ................................................................................................................ 22 July 2012 Page i Planning Guide/Roadmap Toward IPv6 Adoption within the U.S. Government 4.3 Beyond the 2014 State ................................................................................................................. 23 5. Leveraging The Common Approach to Federal Enterprise Architecture .................................. 26 5.1 Using the Sub-Architecture Domains .......................................................................................... 28 5.1.1 Developing a Shared Approach to Infrastructure Services ............................................. 30 5.2 EA-Driven IPv6 Planning .............................................................................................................. 31 5.2.1 Define Business Needs and Objectives ........................................................................... 31 5.2.2 Define the Applications Supporting Each Business Function and the Services Provided by Each Application (Enabling Each Business Function) and Identify Potential IPv6- Enabled Services ...................................................................................... 31 5.2.3 Identify Each Application’s Technology Components, Assessing Changes Required Support IPv6 Transition. .................................................................................................... 32 5.2.4 Using the USG IPv6 Standards Profile ............................................................................. 32 5.3 Developing an IPv6 Transition Strategy Plan ............................................................................. 33 5.4 Integration with Capital Planning ................................................................................................. 34 5.5 OMB IPv6 EA Assessment Criteria ............................................................................................. 31 6. Transition Steps .................................................................................................................................... 32 6.1 Accellerating IPv6 Deployment .................................................................................................... 32 6.1.1 Develop an IPv6 Test Lab Capability ................................................................................ 32 6.2 Standup Centralized Addressing Authority (CAA) ..................................................................... 33 6.2.1 Address Plan Management and Policies ......................................................................... 34 6.2.2 Address Acquisition ............................................................................................................ 35 6.2.3 Establish Address Block Allocation and Management Procedures ............................... 36 6.2.4 Interfaces for DHCP, DNS, Network Management and Provisioning Systems ............ 37 6.2.5 Address Space Plan Management and Address Assignment System .......................... 38 6.3 Domain Name Service ................................................................................................................. 40 6.4 Address Assignment Methods ..................................................................................................... 42 6.5 Network Management .................................................................................................................. 43 6.6 IPv6 Security ................................................................................................................................. 44 6.6.1 Threats ................................................................................................................................. 45 6.6.2 IPv6 Capable Network and Security Devices .................................................................. 46 6.6.3 Address and Configuration Management Systems ......................................................... 47 6.6.4 Defense in Depth ................................................................................................................ 48 6.6.5 Reconnaissance ................................................................................................................. 48 July 2012 Page ii Planning Guide/Roadmap Toward IPv6 Adoption within the U.S. Government 6.6.6 Layer Two Threats .............................................................................................................. 50 6.6.7 Layer Three Threats ........................................................................................................... 52 6.6.8 Above Layer Four Threats ................................................................................................. 54 7. IPv6 Impact on Federal Initiatives.....................................................................................................