Name-Based Address Mapping for Virtual Private Networks

被引:0
作者
Suranyi, Peter [1 ]
Shinjo, Yasushi [1 ,2 ]
Kato, Kazuhiko [1 ,2 ]
机构
[1] Univ Tsukuba, Grad Sch Syst & Informat Engn, Tsukuba, Ibaraki 3058573, Japan
[2] Japan Sci & Technol Agcy, Kawaguchi, Saitama 3320012, Japan
关键词
virtual private networks; local area networks; address conflict; address translation; name resolution;
D O I
10.1587/transcom.E92.B.200
中图分类号
TM [电工技术]; TN [电子技术、通信技术];
学科分类号
0808 ; 0809 ;
摘要
IPv4 private addresses are commonly used in local area networks (LANs). With the increasing popularity of virtual private networks (VPNs), it has become common that a user connects to multiple LANs at the same time. However, private address ranges for LANs frequently overlap. In such cases, existing systems do not allow the user to access the resources on all LANs at the same time. In this paper, we propose name-based address mapping for VPNs, a novel method that allows connecting to hosts through multiple VPNs at the same time, even when the address ranges of the VPNs overlap. In name-based address mapping, rather than using the IP addresses used on the LANs (the real addresses), we assign a unique virtual address to each remote host based on its domain name. The local host uses the virtual addresses to communicate with remote hosts. We have implemented name-based address mapping for layer 3 OpenVPN connections on Linux and measured its performance. The communication overhead of our system is less than 1.5% for throughput and less than 0.2 ms for each name resolution.
引用
收藏
页码:200 / 208
页数:9
相关论文
共 14 条
  • [1] ADAN M, 1999, SG24540400 IBM
  • [2] GARCIA B, DNRD DOMAIN NAME REL
  • [3] Hinden R., 2005, 4193 RFC
  • [4] IRIE K, 2001, IEICE T COMMUN, V84, P1321
  • [5] KOURAI K, 2003, SECURE MANAGEABLE VI, P385
  • [6] MARTIN N, NAT TRICKS VPN CLIEN
  • [7] MOCKAPETRIS P, 1987, STD 13 DOMAIN NAMES
  • [8] *NAT LAB APPL NETW, IP TCP UDP BANDW MEA
  • [9] *NETF PROJ, NETF IPT HOM
  • [10] Rekhter Y., 1996, 1918 RFC