首页 | 本学科首页   官方微博 | 高级检索  
     

IPSec技术在MPLS VPN安全保障中的应用
引用本文:范亚芹,张丽翠,马强.IPSec技术在MPLS VPN安全保障中的应用[J].长春邮电学院学报,2008(1):6-9.
作者姓名:范亚芹  张丽翠  马强
作者单位:吉林大学通信工程学院,长春130012
基金项目:国家自然科学基金资助项目(60272064)
摘    要:针对MPLS VPN(Multi-Protocol Label Switching Virtual Private Network)在保密性要求较高场合存在安全隐患的问题,提出一种可保障其安全性的设计方案。该方案通过利用IPSec(IP Security)协议在客户路由器端对IP数据包进行加密,在MPLS(Multi-Protocol Label Switching)边缘路由器端对数据进行封装,从而解决了VPN(Virtual Private Network)采用单一MPLS,在公用骨干网进行第2层传输存在的信息不能自动加密。容易出现因误发或连接中断造成信息泄露等问题。实验结果表明,该方案在不增大网络成本的前提下,保证了数据在传输过程的私有性、完整性和真实性。从而大大提高了网络安全系数。

关 键 词:多协议标记交换  虚拟专用网  IPSec技术

Application of IPSec Technology for MPLS VPN Security Solution
FAN Ya-qin,ZHANG Li-cui,MA Qiang.Application of IPSec Technology for MPLS VPN Security Solution[J].Journal of Changchun Post and Telecommunication Institute,2008(1):6-9.
Authors:FAN Ya-qin  ZHANG Li-cui  MA Qiang
Affiliation:(College of Communication Engineering, Jilin University, Changchun 130012, China)
Abstract:MPLS VPN (Multi-Protocol Label Switching Virtual Private Network) is facing a big obstacle that some High-end users worry about their security when using MPLS VPN. A designation idea that can guarantee the safety of MPLS VPN used in some higher presence occasions with some potential safety problems is introduced. IPsec agreement is used to encrypt IP packet in the customer route and encapsulate the data in the MPLS edge router. This method can solve some problems when the information is transmitted in the second layer of the public backbone network with single MPLS VPN such as the information can not be automatically cncrypted, some mistakes appear in the transmission, the leaking of information caused by continuous interruptions. Experimental results show that this method improved the network security coefficient under the premise of no increase in the cost of the network.
Keywords:multi-protocol label switching (MPLS)  virtual private network (VPN)  IPSec technology
本文献已被 维普 等数据库收录!
设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司  京ICP备09084417号