Tunnel minimization and relay for managing virtual private networks

I. Wei Chen*, Ying-Dar Lin, Yi Neng Lin

*Corresponding author for this work

研究成果: Paper同行評審


A virtual private network (VPN) is a private data network that carries traffic between remote sites. One of the most popular VPN applications is the "Intranet/Extranet VPN", which establishes network layer connections between remote intranet sites, using various tunneling protocols, to create an IP overlay network IPSec, which is very prevalent in industry, is one of these tunneling protocols that not only provide encapsulation/decapsulation but encryption/decryption and hashing. However, an IPSec tunnel often fails to be established due to the management complexity. This work proposes the new concept of authority to alleviate the management overhead by reducing the number of tunnels. The problem of tunnel minimization is first formalized under three conditions - no constraint, a Tunnel Path Length constraint and a Tunnel Relay Degree constraint, and then solved using graphical models and the Zero-One Integer Programming algorithm. The effect of tunnel minimization is also investigated, and at most 90% of the tunnels are found to be reducible in a general enterprise VPN.

出版狀態Published - 1 十二月 2004
事件GLOBECOM'04 - IEEE Global Telecommunications Conference - Dallas, TX, United States
持續時間: 29 十一月 20043 十二月 2004


ConferenceGLOBECOM'04 - IEEE Global Telecommunications Conference
國家United States
城市Dallas, TX

指紋 深入研究「Tunnel minimization and relay for managing virtual private networks」主題。共同形成了獨特的指紋。