Technology Review - Published By MIT
Advertisement

Internet 6.0

Continued from page 2

By Simson Garfinkel

January 7, 2004

smaller text tool iconmedium text tool iconlarger text tool icon

But the apparent security that NAT provides is a mirage. The proliferation of laptops, e-mail attachments, and open wireless networks means that there are many opportunities for hackers and worms to get behind a NAT and launch attacks from the inside. Many organizations have learned the hard way that you cannot achieve secure computing by relying upon perimeter defenses (a topic I discussed in a previous column).

At the same time, NAT's one-way fence makes it harder for peer-to-peer applications to operate. That's a problem for file trading programs such as Kazaa, but it's also a problem for Internet telephony and the next generation of multimedia groupware applications. For example, the two-way videoconferencing system that's built into Apple's iChat software works behind some kinds of firewalls but not behind others. The program comes with an elaborate "connection doctor" program to help users diagnose problems that their firewall might be causing.

These problems go away when every computer on the Internet really does have its own IP address-something that's impossible today with IPv4, but which is the raison d'tre for IPv6. In a world with IPv6 and without NAT, every computer in my house has its own unique IP address on the public Internet. That means my desktop can open up a peer-to-peer connection with my desktop at work, but it also means that my daughter can network her machine directly with some teenybopper P2P network in San Jose. Getting everybody's home machine out from being a NAT box should make possible a lot of interesting applications that are either very difficult or downright impossible today. And in all likelihood, some of those applications will not be popular with the Recording Industry Association of America or the Motion Picture Association of America, both of which have taken the lead against peer-to-peer networks. As soon as they understand what a threat IPv6 is to their police actions, they are likely to start fighting against.

Given that the full-blown transition to IPv6 hardly seems imminent, technologists are struggling to at least chart some kind of workable path between where we are and the wondrous world of 128-bit addresses. One approach that's been proposed is called Realm Specific Internet Protocol, or RSIP. Designed as a replacement for NAT, RSIP allows organizations to keep using 32-bit IP addresses, keep their private address space, and eliminate the problem of packets being rewritten or translated. The good thing about RSIP is that it doesn't require changing application programs like browsers and e-mail clients; the bad thing is that it still requires making fundamental changes to operating systems.

A more likely path is that some small-but-influential organizations will start to adopt IPv6 internally as a kind of example, and these organizations will then link up and slowly build a new IPv6 landscape. Still, it's hard to see major U.S. Internet service providers spending the money to upgrade their backbones from IPv4 to IPv6 unless the transition is mandated by the some big customers or the federal government. The latter is less far-fetched than you might think: the U.S. Department of Commerce recently set up a task force to look at the issue, since it's widely believe that IPv6 will be more secure than IPv4 thanks to its use of IP-level encryption. Of course, that same encryption is available in IPv4 through the IPsec standard.

Asia, Africa, and India will all probably adopt IPv6, but IPv4 will not die in the United States-or even in the federal government. It's simply too easy for U.S. homes, businesses, and government offices to keep using what they have, and let the ISP set up gateways between the IPv4 Internet and the IPv6 Internet. Eventually, these gateways will grow into firewalls, passing some kinds of traffic between the United States and the rest of the world, but blocking other data-for example, unauthenticated e-mail that might be spam. The IPv4/IPv6 divide could be similar to the English/metric divide that we face today, and plans to move the U.S. Internet to IPv6 could end up being as successful as plans in the 1970s to change all the speed limit signs to kilometers per hour.

IPv6? Perhaps my seven-year-old daughter will use it when she goes to college, but probably only if she goes to Oxford.

Comments

  • The answer to the NAT issue
    There's a feature in the IPv6 specification which allows any host to be configured as a "link local" device. All of the benefits of NAT without any of the inherant problems.

    Worried that some overzealous grocery clerk will be able to hack into your fridge and remind you that you need a quart of milk before you leave the store? Make sure the fridge has a link local address.
    Rate this comment: 12345

    netzach
    11/04/2006
    Posts:1
  • So...IPv6 it is!
    Great article, as an IT student I think this article speaks well to both technoligists and lay-people. However, the title seems to imply that it is an aurgument against the adoption of IPv6 technology, but, other than the title, the strongest aurguments (explicit or not) seem to be in favor of IPv6 adoption. FUD always exist with new technologies, but the aurgument that "the old way is easier because thats how we do it" is almost never a good one. Do we as a society want to resist change because we fear it? Or just think its easier? Things will have to change if we want to reap the benefits of technological innovation, problematic or not. Of course big companies don't want us to adobt technologies that might interfere with their ability to profit without additional effort, but in a general, logical sense, what is "better." I don't want to offend any one with the upcoming analogy, least of all Mr. Garfinkle (who is undoubtably far more knowledgeable than me, and kind enough to share his expertise and insight into the subject) but, haven't these aurguments been used frequently to defend horrible things like slavery and laissez-faire economic policies?  whats changed?
    Rate this comment: 12345

    UncleChevitz
    03/24/2008
    Posts:1

Log In

Forgot your password?     Register »
Advertisement

Videos

Prescription: Networking
Technology Review November/December 2009

Current Issue

Natural Gas Changes the Energy Map
The United States has vast supplies of this cleaner fossil fuel. But how should we use it?
Featured Content
Sponsored by:
White Papers

Twelve ways to reduce costs with SQL Server 2008
Find out how to reduce costs and get more efficient

Download

Total Economic Impact of SQL Server 2008 Upgrade
Forrester reports on increasing productivity and management capabilities

Download 

Achieving Cost and Resource Savings with UC
How Office Communications Server R2 and Exchange Server can make your business smarter and more efficient

Download 

The Compelling Case for Conferencing
Read how you can improve workload support and find IT efficiencies

Download

How Windows Server 2008 R2 Helps Optimize IT and Save you Money
Read how you can improve workload support and find IT efficiencies

Download

Windows Server 2008 R2 Hyper-V Live Migration
See how Windows Server 2008 R2 and Hyper-V enable virtualization and Live Migration

Download
Advertisement
Subscribe to Technology Review's daily e-mail update. Enter your e-mail address

TECHNOLOGY RESOURCES
Advertisement
MIT Massachusetts Institute of Technology © 2009 Technology Review. All Rights Reserved.