System Administration Guide: IP Services
Total Page:16
File Type:pdf, Size:1020Kb
System Administration Guide: IP Services Sun Microsystems, Inc. 4150 Network Circle Santa Clara, CA 95054 U.S.A. Part No: 816–4554–10 January 2005 Copyright 2005 Sun Microsystems, Inc. 4150 Network Circle, Santa Clara, CA 95054 U.S.A. All rights reserved. This product or document is protected by copyright and distributed under licenses restricting its use, copying, distribution, and decompilation. No part of this product or document may be reproduced in any form by any means without prior written authorization of Sun and its licensors, if any. Third-party software, including font technology, is copyrighted and licensed from Sun suppliers. Parts of the product may be derived from Berkeley BSD systems, licensed from the University of California. UNIX is a registered trademark in the U.S. and other countries, exclusively licensed through X/Open Company, Ltd. Sun, Sun Microsystems, the Sun logo, docs.sun.com, AnswerBook, AnswerBook2, and Solaris are trademarks or registered trademarks of Sun Microsystems, Inc. in the U.S. and other countries. All SPARC trademarks are used under license and are trademarks or registered trademarks of SPARC International, Inc. in the U.S. and other countries. Products bearing SPARC trademarks are based upon an architecture developed by Sun Microsystems, Inc. The OPEN LOOK and Sun™ Graphical User Interface was developed by Sun Microsystems, Inc. for its users and licensees. Sun acknowledges the pioneering efforts of Xerox in researching and developing the concept of visual or graphical user interfaces for the computer industry. Sun holds a non-exclusive license from Xerox to the Xerox Graphical User Interface, which license also covers Sun’s licensees who implement OPEN LOOK GUIs and otherwise comply with Sun’s written license agreements. U.S. Government Rights – Commercial software. Government users are subject to the Sun Microsystems, Inc. standard license agreement and applicable provisions of the FAR and its supplements. DOCUMENTATION IS PROVIDED “AS IS” AND ALL EXPRESS OR IMPLIED CONDITIONS, REPRESENTATIONS AND WARRANTIES, INCLUDING ANY IMPLIED WARRANTY OF MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE OR NON-INFRINGEMENT, ARE DISCLAIMED, EXCEPT TO THE EXTENT THAT SUCH DISCLAIMERS ARE HELD TO BE LEGALLY INVALID. Copyright 2005 Sun Microsystems, Inc. 4150 Network Circle, Santa Clara, CA 95054 U.S.A. Tous droits réservés. Ce produit ou document est protégé par un copyright et distribué avec des licences qui en restreignent l’utilisation, la copie, la distribution, et la décompilation. Aucune partie de ce produit ou document ne peut être reproduite sous aucune forme, par quelque moyen que ce soit, sans l’autorisation préalable et écrite de Sun et de ses bailleurs de licence, s’il y en a. Le logiciel détenu par des tiers, et qui comprend la technologie relative aux polices de caractères, est protégé par un copyright et licencié par des fournisseurs de Sun. Des parties de ce produit pourront être dérivées du système Berkeley BSD licenciés par l’Université de Californie. UNIX est une marque déposée aux Etats-Unis et dans d’autres pays et licenciée exclusivement par X/Open Company, Ltd. Sun, Sun Microsystems, le logo Sun, docs.sun.com, AnswerBook, AnswerBook2, et Solaris sont des marques de fabrique ou des marques déposées, de Sun Microsystems, Inc. aux Etats-Unis et dans d’autres pays. Toutes les marques SPARC sont utilisées sous licence et sont des marques de fabrique ou des marques déposées de SPARC International, Inc. aux Etats-Unis et dans d’autres pays. Les produits portant les marques SPARC sont basés sur une architecture développée par Sun Microsystems, Inc. L’interface d’utilisation graphique OPEN LOOK et Sun™ a été développée par Sun Microsystems, Inc. pour ses utilisateurs et licenciés. Sun reconnaît les efforts de pionniers de Xerox pour la recherche et le développement du concept des interfaces d’utilisation visuelle ou graphique pour l’industrie de l’informatique. Sun détient une licence non exclusive de Xerox sur l’interface d’utilisation graphique Xerox, cette licence couvrant également les licenciés de Sun qui mettent en place l’interface d’utilisation graphique OPEN LOOK et qui en outre se conforment aux licences écrites de Sun. CETTE PUBLICATION EST FOURNIE “EN L’ETAT” ET AUCUNE GARANTIE, EXPRESSE OU IMPLICITE, N’EST ACCORDEE, Y COMPRIS DES GARANTIES CONCERNANT LA VALEUR MARCHANDE, L’APTITUDE DE LA PUBLICATION A REPONDRE A UNE UTILISATION PARTICULIERE, OU LE FAIT QU’ELLE NE SOIT PAS CONTREFAISANTE DE PRODUIT DE TIERS. CE DENI DE GARANTIE NE S’APPLIQUERAIT PAS, DANS LA MESURE OU IL SERAIT TENU JURIDIQUEMENT NUL ET NON AVENU. 041208@10536 Contents Preface27 Part I Introducing System Administration: IP Services 33 1 Fundamentals of TCP/IP (Overview) 35 Introducing the Internet Protocol Suite35 Protocol Layers and the Open Systems Interconnection Model36 TCP/IP Protocol Architecture Model37 How the TCP/IP Protocols Handle Data Communications43 Data Encapsulation and the TCP/IP Protocol Stack43 TCP/IP Internal Trace Support47 Finding Out More About TCP/IP and the Internet47 Computer Books About TCP/IP47 TCP/IP and Networking Related Web Sites47 Requests for Comments and Internet Drafts48 Part II TCP/IP Administration49 2 Planning Your TCP/IP Network (Tasks)51 Network Planning (Task Map)52 Determining the Network Hardware53 Deciding on an IP Addressing Format for Your Network54 IPv4 Addresses54 IPv4 Addresses in CIDR Format55 DHCP Addresses55 3 IPv6 Addresses 55 Private Addresses and Documentation Prefixes55 Obtaining Your Network’s IP Number56 Designing an IPv4 Addressing Scheme57 Designing Your IPv4 Addressing Scheme58 IPv4 Subnet Number59 Designing Your CIDR IPv4 Addressing Scheme59 Using Private IPv4 Addresses60 How IP Addresses Apply to Network Interfaces61 Naming Entities on Your Network62 Administering Host Names62 Selecting a Name Service and Directory Service62 Adding Routers to Your Network64 Network Topology Overview65 How Routers Transfer Packets66 3 Introducing IPv6 (Overview)69 Major Features of IPv669 Expanded Addressing70 Address Autoconfiguration and Neighbor Discovery70 Header Format Simplification70 Improved Support for IP Header Options70 Application Support for IPv6 Addressing70 Additional IPv6 Resources71 IPv6 Network Overview72 IPv6 Addressing Overview74 Parts of the IPv6 Address75 Abbreviating IPv6 Addresses76 Prefixes in IPv676 Unicast Addresses77 Multicast Addresses80 Anycast Addresses and Groups80 IPv6 Neighbor Discovery Protocol Overview81 IPv6 Address Autoconfiguration82 Stateless Autoconfiguration Overview82 Overview of IPv6 Tunnels83 4 System Administration Guide: IP Services • January 2005 4 Planning an IPv6 Network (Tasks) 85 IPv6 Planning (Task Maps)85 IPv6 Network Topology Scenario87 Preparing the Existing Network to Support IPv688 Preparing the Network Topology for IPv6 Support89 Preparing Network Services for IPv6 Support89 Preparing Servers for IPv6 Support90 M How to Prepare Network Services for IPv6 Support90 M How to Prepare DNS for IPv6 Support91 Planning for Tunnels in the Network Topology91 Security Considerations for the IPv6 Implementation92 Preparing an IPv6 Addressing Plan92 Obtaining a Site Prefix9393 Creating the IPv6 Numbering Scheme93 5 Configuring TCP/IP Network Services and IPv4 Addressing (Tasks)95 Before You Configure an IPv4 Network (Task Map)96 Determining Host Configuration Modes97 Systems That Should Run in Local Files Mode97 Systems That Are Network Clients98 Mixed Configurations98 IPv4 Network Topology Scenario99 Adding a Subnet to a Network (Task Map)99 Network Configuration Task Map101 Network Configuration Procedures101 M How to Configure a Host for Local Files Mode102 M How to Set Up a Network Configuration Server104 Configuring Network Clients105 M How to Configure Hosts for Network Client Mode105 M How to Enable Static Routing on a Network Client106 M How to Enable Dynamic Routing on a Network Client107 Monitoring and Modifying Transport Layer Services108 M How to Log the IP Addresses of All Incoming TCP Connections108 M How to Add Services That Use the SCTP Protocol109 M How to Use TCP Wrappers to Control Access to TCP Services112 Administering Physical Interfaces112 Administering the Physical Interface113 M How to Add a Physical Interface After Installation113 5 M How to Remove a Physical Interface115 Configuring VLANs115 M How To Configure Static VLANs116 Configuring a Router118 M How to Configure an IPv4 Router119 Multihomed Hosts121 M How to Create a Multihomed Host121 6 Configuring an IPv6 Network (Tasks)123 General IPv6 Network Configuration Tasks (Task Map)123 Prerequisites for Configuring IPv6 on the Network125 Configuring an IPv6 Router125 M How to Configure an IPv6–Enabled Router126 M How to Manually Configure Interfaces for IPv6128 Tasks for Configuring Tunnels for IPv6 Support (Task Map)129 Configuring Tunnels for IPv6 Support130 M How to Manually Configure IPv6 Over IPv4 Tunnels130 M How to Manually Configure IPv6 Over IPv6 Tunnels131 M How to Configure IPv4 Over IPv6 Tunnels132 M How to Configure a 6to4 Tunnel133 M How to Configure a 6to4 Tunnel to a 6to4 Relay Router136 Configuring Name Service Support for IPv6138 M How to Add IPv6 Addresses to DNS138 Adding IPv6 Addresses to NIS139 M How to Display IPv6 Name Service Information139 M How to Verify That DNS IPv6 PTR Records Are Updated Correctly140 M How to Display IPv6 Information Through NIS141 M How to Display IPv6 Information Independent of the Name Service141 Configuring IPv6 on a Host142 M How to Enable IPv6 Address Autoconfiguration142 Using Temporary Addresses for an Interface144