基于防火墙双机热备IPsec VPN穿越仿真实验设计  被引量:6

Design of IPsec VPN Crossing Simulation Experiment Based on Firewall Dual Hot Standby

在线阅读下载全文

作  者:曾丽娟 杨平 徐涢基 吴双 ZENG Lijuan;YANG Ping;XU Yunji;WU Shuang(Nanchang Jiaotong Institute,Nanchang 330100,China)

机构地区:[1]南昌交通学院,江西南昌330100

出  处:《现代信息科技》2022年第16期96-99,103,共5页Modern Information Technology

基  金:校级教学改革研究课题(XJJG2020-18)。

摘  要:设计了基于防火墙和路由器的VPN实验,针对IPsec VPN的隧道备份和建立IPsec VPN隧道时的NAT穿越两方面进行研究,目的为达到总部配置了IPsec VPN的设备在单点故障或链路故障时,流量可以自动进行主备切换和VPN设备可以穿越NAT设备建立隧道。使用Wireshark对防火墙和路由器的接口进行抓包分析,观察总部PC与分部PC之间通信时,报文是否被加密处理,实现企业网络在防火墙双机热备下的高可靠性和安全性。The VPN experiment based on firewall and router is designed in this paper.It studies the tunnel backup of IPsec VPN and the NAT crossing when establishing the IPsec VPN tunnel.The purpose is to achieve that the traffic can automatically carry out the master standby switching and the VPN equipment can establish the tunnel by crossing the NAT equipment,when the single point of failure or link failure occurs in the equipment of IPsec VPN configured by the headquarters.Wireshark is used to carry out packet capture analysis for the interface between firewall and router,and it observes whether the message is processed by encrypted when communicating between headquarters PC and branch PC,so as to realize the high reliability and security of enterprise network under the dual hot standby of firewall.

关 键 词:防火墙 主备切换 隧道备份 IPsec VPN NAT穿越 

分 类 号:TP393[自动化与计算机技术—计算机应用技术]

 

参考文献:

正在载入数据...

 

二级参考文献:

正在载入数据...

 

耦合文献:

正在载入数据...

 

引证文献:

正在载入数据...

 

二级引证文献:

正在载入数据...

 

同被引文献:

正在载入数据...

 

相关期刊文献:

正在载入数据...

相关的主题
相关的作者对象
相关的机构对象