The federal government's incremental transition to IPv6 significantly underscores the need for agencies to possess detailed situational awareness across their infrastructure at all times. Ultimately the adoption of IPv6 will deliver many benefits including easier network configuration and better security built into IPv6 protocols. But during this transition, the rollout of new desktop and server operating systems, network devices and applications that now include both IPv4 and IPv6 support, combined with IPv6's nature to automatically establish and prefer using IPv6 communications channels, present unique security management challenges that are not addressed by current monitoring and security solutions. These challenges include:
- Detecting Tunnels and Rogue Routing Due to "Self-Propagation" Features
- Difficulty in Monitoring and Enforcing Security Policy on IPv6 (vs. IPv4) Flows
- Limitations of Traditional Active Scanning Due to Large and Random Addressing
- Increased Misconfigurations Due To The Transition of IPv6 as a New Protocol
In fact, some agencies have delayed their planned migration to IPv6 because of the lack of supporting security devices.
Securify Establishes a Leading Role in Assisting with IPv6 Migration
IPv6 adoption will present significant concerns for IT teams from both a security and infrastructure perspective. Securify is the first and only network monitoring solution that currently provides real-time discovery and control of IPv6 activity. Securify's IPv6-aware traffic monitoring and asset discovery ensures security and efficient operational management before, during and after this major transition. The situational awareness provided by Securify is particularly useful for monitoring planned changes in data networks and detecting misconfigurations, pinpointing compliance gaps and reducing security risks. Securify can help maintain availability of services while networks, hosts, servers and applications all migrate independently to IPv6.
Supporting the Federal Mandate
As of June 2008, the Securify product line is able to operate in IPv4, IPv6 and mixed IPv4/IPv6 environments, thus addressing the unique monitoring and security challenges presented as agencies initiate this gradual migration. This includes both deep packet inspection of IPv6 as well as collection and analysis of flow data covering IPv6 traffic from Cisco and Juniper network devices.
Want to learn more about how Securify can assist with your IPv6 transition? Call (703) 668-1875 or complete the below form and a solution expert will contact you.
Read Related Use Case: IPv6 Transition Challenges
Go to Securify Solution Overview