• DocumentCode
    524535
  • Title

    IPsec-GW redundancy method with high reliability

  • Author

    Kuboniwa, Akiko ; Tamura, Toshihiko ; Huruta, Youichi ; Wada, Yuichiro ; Satou, Haruki ; Motono, Tomoharu

  • Author_Institution
    NTT Network Service Syst. Labs., NTT Corp., Musashino, Japan
  • fYear
    2010
  • fDate
    15-18 June 2010
  • Firstpage
    1
  • Lastpage
    5
  • Abstract
    A large-scale disaster may cause communication failure in the case of IPsec-VPN. Trouble with an IPsec-GW is one of the reasons this failure happens. Generally, it is better to expand the area in which communication is restored by using an IPsec-GW redundancy method. The existing Ipsec-GW redundancy method reduces communication failure time. In this method, IPsec-GWs synchronize IPsec information in advance, and when an active GW fails, a standby GW takes over processing from the active GW. However, this method cannot be applied to devices deployed in different segments of the network. Thus, in this paper, we propose an IPsec-GW redundancy method that can be applied to IPsec-GWs that are deployed in different segments. The existing method is a framework that synchronizes IPsec information between an active IPsec-GW and a standby IPsec-GW. It enables communication to continue when the active GW fails. However, this method cannot completely prevent communication failures. Therefore, we propose which information should be synchronized and at what time. This proposal can reduce the processing load of the network.
  • Keywords
    internetworking; redundancy; telecommunication security; transport protocols; virtual private networks; IPsec-GW redundancy method; IPsec-GWs synchronize IPsec information; IPsec-VPN; active GW fails; internet protocol security; large-scale disaster; Availability; Communication system control; Cryptography; Databases; Laboratories; Large-scale systems; Protocols; Redundancy; Telecommunication network reliability; Virtual private networks; Decentralized deployment; IPsec; IPsec High Availability; VRRP; component;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Information and Telecommunication Technologies (APSITT), 2010 8th Asia-Pacific Symposium on
  • Conference_Location
    Kuching
  • Print_ISBN
    978-1-4244-6413-5
  • Electronic_ISBN
    978-4-88552-244-4
  • Type

    conf

  • Filename
    5532017