电信科学 ›› 2009, Vol. 25 ›› Issue (4): 78-81.doi: 10.3969/j.issn.1000-0801.2009.04.016

• 研究与开发 • 上一篇    下一篇

一种增强VPN安全性的设计方案

黄景廉,袁秀娟   

  1. 西北民族大学电气工程学院 兰州 730030
  • 出版日期:2009-04-15 发布日期:2017-08-11
  • 基金资助:
    国家“863”计划基金资助项目;国家民委基金资助项目

Scheme of Enhancing the Security of VPN

Jinglian Huang,Xiujuan Yuan   

  1. College of Electrical Engineering,Northwest University for Nationalities,Lanzhou 730030,China
  • Online:2009-04-15 Published:2017-08-11

摘要:

针对MPLS VPN不提供加密、认证,只能实现点到点的安全,不能提供细粒度的安全服务,不适合企业构造复杂的安全性要求非常高的网络问题,提出了一种增强VPN安全性的设计方案。此方案通过将MPLS技术与IPSec技术结合,采用加密认证等密码技术,实现了细粒度的基于安全域和角色的安全服务策略,保证了数据的完整性和保密性。

关键词: MPLS, VPN, IPSec

Abstract:

For MPLS VPN not suitable for the complex network application with high security requirements because of its lack of providing encryption and certification,only achieving point to point security while being incapable of fine-grained security services,a scheme of enhancing the security of VPN is proposed to ensure the integrity and confidentiality of data.It realizes fine-grained security service strategy based on the security domain and role by integrating VPN and IPSec and using cryptographies such as encrypted authentication,etc.

Key words: MPLS, VPN, IPSec

No Suggested Reading articles found!