DocumentCode :
1656356
Title :
Active networking approach to the design of adaptive virtual private networks
Author :
Haggag, Yasser ; Sampalli, Srinivas
Author_Institution :
Fac. of Comput. Sci., Dalhousie Univ., Halifax, NS, Canada
Volume :
1
fYear :
2004
Firstpage :
308
Abstract :
As virtual private networks (VPNs) penetrate into the internetworking community, they face a number of challenges, such as the requirement for on-demand creation and termination of tunnels, flexible services and interface features allowing for easy integration with a wide range of applications, and extended geographical reach through dynamic installation of services. We present a novel approach to the design of an adaptive VPN framework that can offer flexible, portable services and customizable VPN mechanisms to provide on-demand secure tunnels in a dynamic environment. We base our approach on the active networking technology, which is a networking paradigm that inserts intelligence into the network by offering a dynamic programming capability to network routers. The proposed architecture implements encryption, key management and data integrity services to support VPN functions. Experimental results from our test bed provide latency and throughput measurements. We discuss four deployment scenarios that can take advantage of the adaptive VPN services: a) dynamic secure multicast trees; b) Secure item look-ups in online auction systems; c) secure code distribution; and d) secure agent traversal.
Keywords :
cryptography; dynamic programming; multicast communication; telecommunication network management; telecommunication network routing; telecommunication security; trees (mathematics); virtual private networks; VPN; active networking approach; adaptive virtual private networks; agent traversal security; code distribution security; data integrity services; dynamic programming; dynamic secure multicast trees; encryption; flexible services; key management; network routers; on-demand secure tunnels; online auction systems; services dynamic installation; Adaptive systems; Buildings; Computer science; Cryptography; IP networks; Intelligent networks; Protocols; System testing; Throughput; Virtual private networks;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Military Communications Conference, 2004. MILCOM 2004. 2004 IEEE
Print_ISBN :
0-7803-8847-X
Type :
conf
DOI :
10.1109/MILCOM.2004.1493286
Filename :
1493286
Link To Document :
بازگشت