THE DEVELOPMENT RESEARCH OF IPSEC-VPN BASED ON ADDRESS-SPLIT-MAPPING MECHANISM
Currently, Internet, adopting the TCP/IP suits, is an end-to-end architecture. TCP/IP is an open architecture, and its design principle only focuses on the efficiency of information transmission, while it does not consider the security issues. IPsec VPN has been proposed to solve the core network security issue. However, it is believed that the current use of IP addresses to denote both the location and the identity of a host is seen as the source of many Internet problems. Address-split-mapping network cleanly separates location from identity of host, and divides Internet into the backbone network and access network. This mechanism helps to solve the Internet problems such as security, mobility, multihoming, etc. Based our previous research work on Address-Split-Mapping mechanism, this paper describes the design, implementation and experiment results of IPsec-VPN based on Address-splitmapping.
Address-Split-Mapping IPsec VPN
Zhou Huachun Liu Ying Guan Jianfeng
National Engineering Laboratory for Next Generation Internet Interconnection Devices,Beijing Jiaotong University, Beijing 100044, China
国际会议
北京
英文
602-607
2009-10-18(万方平台首次上网日期,不代表论文的发表时间)