Cisco bolsters routers to spur IPv6 migration

Cisco this week enhanced its range of IPv6 for carrier core and edge routers in an effort to facilitate the eventual migration of IPv4.

The Carrier-Grade IP version 6 line of solutions includes a new hardware module for Cisco CRS-1 router, and software for that system, as well as the border router ASR 9000. Cisco also announced professional service offerings to help customers transition from IPv4 to IPv6.

Internet Evolution

Cisco says there are 700 days left until the last block of IPv4 addresses are assigned. For 2015, 15 billion Internet IP terminals. IPv6 enhancements deployed this week are intended to provide a bridge from IPv4 to IPv6 for the entire network, while at the same time preserving the existing IPv4 addresses to facilitate migration.

IPv4 has a finite set of unique addresses, which total about $ 4 million, which are being rapidly depleted due to the growth of Internet-connected devices and smart devices. IPv6 addresses are 340 unique undecillion – or more than 50 billion billion billion – for every person on earth, more than enough to continue to support the demand for IP addresses, Cisco says.

However, IPv4 and IPv6 protocols are not directly compatible, so a network migration from IPv4 to IPv6 requires preservation of IPv4, while orchestrating a smooth transition to IPv6 and prudent.

This has been the main reason why the industry has been putting this migration even though IPv6 was developed a decade ago. But with the IPv4 address depletion is facing imminent, the time may have come to accelerate the adoption of IPv6.

“I think we’ve reached the point where we should be concerned about it,” says Glen Hunt, an analyst at Current Analysis. “The problem biggets could be that we have been crying wolf about IPv6 and defining ways to move to attack the problem. It’s probably something to take seriously two to five years from now, but (the companies) have to start prepare. ”

With that, Cisco announced the Carrier-Grade engine service for the CRS-1. deep in the core network service provider implemented, this module supports large-scale, network address translation, high performance (NAT).

At the edge, Cisco launched IPv6 Carrier-Grade Solution for its ASR Series routers. This is software that helps activate NAT on the edge of a network of small and distributed IP networks.

The software is aimed at first tunnel IPv6 over IPv4, then the inverse function of IPv6 addresses to IPv4 outnumbered.

Finally, Cisco offers services to implement IPv6 Carrier-Grade solution. This is professional services designed to make the transition to IPv6 smoothly and reduce the risk for network operations. Services include initial planning and IPv6 readiness assessment for the design and implementation.

All products will be available in early 2010. Cisco did not disclose pricing.

Cisco unveils new generation of branch routers

The ISR G2 is designed to address increasingly distributed and collaborative workforces, and is the cornerstone of a new Cisco architecture called Borderless Network. Borderless Network is a five-phase plan to deliver services and applications to anyone anywhere, regardless of device or network technology.

Borderless Network is intended to support applications, processing cycles and services that are increasingly distributed and virtualized, such as those in cloud computing and software-as-a-service environments. Some analysts say it is more than another Cisco “marketecture,” though.

“Application and device borders are eroding,” says Rob Whiteley of Forrester Research. “This is not like SONA (Cisco’s Services Oriented Network Architecture) where it was very hard to point to things to implement. SONA was more of a marketecture, more of a religion that you adopted. It was trying to convince you of value, whereas (Borderless Networks) has value.”

Cisco introduced the first-generation ISR in 2004 and has sold more than 7 million units since then, an installed base of $10 billion, company officials say. Some analysts say its popularity is unmatched.

“The ISR line is perhaps the best-selling network product line of all time,” says Zeus Kerrvala of The Yankee Group. “They’ve done a great job of keeping the ISR features set way ahead of any competitor, which is the reason they have north of 90% share. There’s no product set that Cisco has put more focus on and it remains the cornerstone of their enterprise penetration strategy.”

According to Dell’Oro Group, Cisco owned an 84% revenue share of the $709 million access router market in the second quarter of 2009.

With the economy turning around and video expected to boom as a percentage of network traffic, that share may increase. ISR G2 routers — the 1900, 2900 and 3900 series — include new video digital signal processors key to delivering what Cisco calls “medianet” capabilities for TelePresence, surveillance, collaboration and digital signage.

Other medinet-enabled enhancements of ISR G2 include a video-ready media engine, scalable audio-conferencing, up to 1Terabyte of video storage per module, a multigigabit switching fabric for high performance, and WAN optimization and application acceleration.

But the ISR really owes its success to service enablement — Cisco says there are hundreds of services available for the first generation. On that front, Cisco introduced a number of enhancements including a software license to turn up new services on the router rather than going through a hardware upgrade.

The ISR G2’s service-ready engine lets users dynamically deploy remote, virtualized services in branches without on-site support or network downtime. The ISR G2 services module includes up to 1 Terabyte of on-board storage for these virtualized services.

Cisco unveils new generation of branch routers

The ISR G2 is designed to meet the workforce increasingly distributed, collaborative, and is the cornerstone of a new Cisco network architecture called borderless. Network boundaries is a five-phase plan to offer services and applications to any person in any place, regardless of device or network technology.

Network boundaries is intended to support applications, processing cycles and services that are increasingly distributed and virtualized, such as cloud computing and software environments as a service. Some analysts say it is just another of Cisco “marketecture”, however.

“Application and device boundaries are eroding,” says Rob Whiteley, Forrester Research. “This is not like SONA (Cisco Services Oriented Network Architecture), which was very difficult to point to things to put into practice. SONA was more than marketecture more than a religion adopted. It was to convince value, while (borderless networks) has value. ”

Cisco introduced the first generation ISR in 2004 and has sold over 7 million units since then, an installed base of $ 10 billion, company officials say. Some analysts say his popularity is unparalleled.

“The line of ISR is perhaps the best network of product line sales of all time,” says Zeus Kerrvala The Yankee Group. “They did a great job of keeping the income tax character set far ahead of any competitor, which is why they have north of 90% share. There is no joint product that Cisco has put more emphasis on and follows to be the cornerstone of its strategy to penetrate the enterprise. ”

According to Dell’Oro Group, Cisco proprietary revenue share of 84% of the market access router 709 million U.S. dollars in the second quarter of 2009.

With the economy turning around and video expected to boom as a percentage of network traffic, the fee may increase. ISR routers G2 – 1900, 2900 and 3900 series – including the new digital signal processors to deliver key video what Cisco calls “medianet” telepresence capabilities, monitoring, collaboration and digital communication.

Medinet Other ISR-enabled improvements include a motor G2 media video-ready, scalable audio-conference, to 1Terabyte video storage module, a multi-gigabit switching fabric of high performance WAN optimization and acceleration application.

But the ISR really owes its success to the empowerment of service – Cisco says there are hundreds of services available to the first generation. On that front, Cisco has introduced a number of improvements as a software license to activate new services on the router instead of going through a hardware upgrade.

engine service ready for G2 ISR allows users to dynamically deploy services to remote virtual branches without support in place or downtime of the network. G2 income tax services module includes up to 1 terabyte of storage on board these virtualized services.

InVentiv Health, a provider of marketing services to pharmaceutical companies and health, with 50 first generation of SRI installed in 30 locations. The Cisco client is eager to test the video and improvements in service activation of new line.

“The integration of video … is a great need in all our business, particularly the ability to optimize and make it available for sites of low bandwidth, “says Sean Burke, vice president of network operations at the company. The license key role activiation inVentiv service will allow to buy a software license and service time during routine maintenance cycles, rather than get a router for the commission to add new hardware, says Burke.

Routers also enable organizations to better manage their energy consumption and costs through switching modules including EnergyWise software company for energy efficiency. EnergyWise debuted earlier this year by Cisco Catalyst LAN switch to allow power users to control devices connected via Ethernet and track energy consumption.

Routers support Cisco IOS Release 15, the latest version of the routing software of the company, which has enhanced security, voice support and management capacity, and activation of licenses based on a more rapid implementation services.

Cisco is also introducing a fixed configuration version of its router ASR 1000 edge. The ASR 1002-F is designed for small-scale WAN aggregation, private WAN and Internet edge applications. It has four integrated Gigabit Ethernet ports and 4 GB of memory.

The 1900 G2 ISR begins at $ 1,595, $ 1,995 on 2900, and 3900 to $ 9,500. motor service modules arranged starting at $ 1.000, and video DSP modules start at $ 800. EnergyWise switching modules start at $ 1,295.

The 3900, 2900 and 1900 eventually will succeed the first generation ISR 3800, 2800 and 1800 platforms. Ninety percent of the interface modules can be carried forward to the new routers, and Cisco believes that the transition to G2 ISR line will take two years or more.

The base price for the ASR1002-F is $ 20,000. All products are expected to be available in November.

Cisco warns of more router vulnerabilities

The intrusion prevention capabilities of Cisco Systems routers could be prone to attack, after the networking giant revealed two vulnerabilities in its key operating system.

The vulnerabilities affect versions of Cisco Internetwork Operating System (IOS) that start with “12.3” and “12.4.” Almost all Cisco routers run a version of IOS. The flaws allow an attacker to circumvent the IPS protection built into the affected routers and also cause routers to crash.

IPS is an inspection feature found in networking products, including Cisco, which aims to block unauthorized network access and malicious code in real time.

In a security advisory, Cisco said there were two vulnerabilities: one that could lead to the IPS being circumvented, and the other could cause a denial of service condition. The operation of the first weakness “may result in an attacker being able to avoid detection by an IOS IPS device. This could allow security systems to be covertly attacked,” Cisco warned. A hacker exploiting the second vulnerability “may cause an IOS IPS device accident.”

He urged IT managers who are affected Cisco routers to patch the IOS.

Last month, Cisco found two other vulnerabilities in IOS. The first weakness could lead to a denial of service attack, while the second allows hackers to execute malicious code on the device. After news of the vulnerabilities, Cisco made patches available.

Cisco routers are the routers most popular company in the world. As such, IOS is the network operating system that many hackers try to exploit.

Cisco router failure threatens the safety net

Cisco Systems and CERT, the security consulting organization, has warned of a bug in Cisco routers and switches. The ruling could give a hacker the ability to disrupt Internet traffic or other confidential information from interception.

The bug, revealed on Thursday, allowing an attacker to take control of any Cisco router with IOS software. The bug affects all versions of the software, which controls most of Cisco products, starting with version 11.3. The error affects “virtually all” core routers and switches running Cisco IOS.

The vulnerability requires little skill to exploit: A malicious user can simply send a URL by hand and run commands on the router or switch.

The ruling allows an attacker to take control of routers at the highest level – level 15 – without authorization. Routers are devices that control how data moves around the Internet, to control unauthorized hackers can stop Internet traffic, intercept information such as passwords and credit card numbers, or redirect traffic to a Web site to another.

Cisco said that when a HTTP server is enabled and users are allowed from a local database, it is possible for a hacker to bypass authentication and exercise full control over the router.

The company recommends that the HTTP server is disabled on routers. The problem can also be circumvented by using Terminal Access Controller Access Control System (TACACS +) or radio systems for authentication instead of a local database.

The same URL will not be effective in each device, depending on the combination of hardware and software versions. But since there are only 84 combinations to try, they could all be tested in a short space of time, Cisco said.

Cisco said it has not had any reports of errors in operation. Also originally reported by individual users.