检索规则说明:AND代表“并且”;OR代表“或者”;NOT代表“不包含”;(注意必须大写,运算符两边需空一格)
检 索 范 例 :范例一: (K=图书馆学 OR K=情报学) AND A=范并思 范例二:J=计算机应用与软件 AND (U=C++ OR U=Basic) NOT M=Visual
作 者:曾丽娟 杨平 徐涢基 吴双 ZENG Lijuan;YANG Ping;XU Yunji;WU Shuang(Nanchang Jiaotong Institute,Nanchang 330100,China)
机构地区:[1]南昌交通学院,江西南昌330100
出 处:《现代信息科技》2022年第16期96-99,103,共5页Modern Information Technology
基 金:校级教学改革研究课题(XJJG2020-18)。
摘 要:设计了基于防火墙和路由器的VPN实验,针对IPsec VPN的隧道备份和建立IPsec VPN隧道时的NAT穿越两方面进行研究,目的为达到总部配置了IPsec VPN的设备在单点故障或链路故障时,流量可以自动进行主备切换和VPN设备可以穿越NAT设备建立隧道。使用Wireshark对防火墙和路由器的接口进行抓包分析,观察总部PC与分部PC之间通信时,报文是否被加密处理,实现企业网络在防火墙双机热备下的高可靠性和安全性。The VPN experiment based on firewall and router is designed in this paper.It studies the tunnel backup of IPsec VPN and the NAT crossing when establishing the IPsec VPN tunnel.The purpose is to achieve that the traffic can automatically carry out the master standby switching and the VPN equipment can establish the tunnel by crossing the NAT equipment,when the single point of failure or link failure occurs in the equipment of IPsec VPN configured by the headquarters.Wireshark is used to carry out packet capture analysis for the interface between firewall and router,and it observes whether the message is processed by encrypted when communicating between headquarters PC and branch PC,so as to realize the high reliability and security of enterprise network under the dual hot standby of firewall.
关 键 词:防火墙 主备切换 隧道备份 IPsec VPN NAT穿越
分 类 号:TP393[自动化与计算机技术—计算机应用技术]
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在链接到云南高校图书馆文献保障联盟下载...
云南高校图书馆联盟文献共享服务平台 版权所有©
您的IP:18.225.175.56