Title :
The development research of IPSEC-VPN based on address-split-mapping mechanism
Author :
Huachun, Zhou ; Ying, Liu ; Jianfeng, Guan
Author_Institution :
Nat. Eng. Lab. for Next Generation Internet Interconnection Devices, Beijing Jiaotong Univ., Beijing, China
Abstract :
Currently, Internet, adopting the TCP/IP suits, is an end-to-end architecture. TCP/IP is an open architecture, and its design principle only focuses on the efficiency of information transmission, while it does not consider the security issues. IPsec VPN has been proposed to solve the core network security issue. However, it is believed that the current use of IP addresses to denote both the location and the identity of a host is seen as the source of many Internet problems. Address-split-mapping network cleanly separates location from identity of host, and divides Internet into the backbone network and access network. This mechanism helps to solve the Internet problems such as security, mobility, multihoming, etc. Based our previous research work on Address-Split-Mapping mechanism, this paper describes the design, implementation and experiment results of IPsec-VPN based on Address-split-mapping.
Keywords :
IP networks; Internet; telecommunication network routing; telecommunication security; transport protocols; virtual private networks; IP address; IPSEC-VPN; Internet protocol security; TCP-IP; address-split-mapping mechanism; end-to-end architecture; network security; open architecture; routing address; virtual private network; Automatic speech recognition; Computer networks; IP networks; Information security; Internet; Network address translation; Routing; Spine; TCPIP; Virtual private networks; Address-Split-Mapping; IPsec; VPN;
Conference_Titel :
Broadband Network & Multimedia Technology, 2009. IC-BNMT '09. 2nd IEEE International Conference on
Conference_Location :
Beijing
Print_ISBN :
978-1-4244-4590-5
Electronic_ISBN :
978-1-4244-4591-2
DOI :
10.1109/ICBNMT.2009.5347846