Scalability implications of virtual private networks

被引:12
作者
De Clercq, J
Paridaens, O
机构
[1] electro-technical engineering, University of Ghent
关键词
D O I
10.1109/35.1000229
中图分类号
TM [电工技术]; TN [电子技术、通信技术];
学科分类号
0808 ; 0809 ;
摘要
This article gives an overview of the most promising technologies for service providers to offer virtual private network services. The focus of this article is on the analysis of the scalability implications of these virtual private network mechanisms on existing service provider backbone networks, Very often, when deploying VPN services, service providers will be confronted with a trade-off between scalability and security. VPNs that require site-to-site interconnectivity without strong (cryptographic) security can be deployed in a scalable way based on the network-based VPN model, as long as the interaction between the customer and provider routing dynamics are controlled. VPNs that require strong (end-to-end) cryptographic security should be deployed according to the CPE-based VPN model, using the available IPsec protocol suite.
引用
收藏
页码:151 / 157
页数:7
相关论文
共 4 条
[1]  
DECLERCQ J, FRAMEWORK PROVIDER P
[2]  
OULDBRAHIM H, NETWORK BASED IP VPN
[3]  
ROSEN E, 2002, UNPUB USE PE PE IPSE
[4]  
ROSEN E, 2001, 2547 RFC