Virtual Private Network (VPN) tunnel implementation method based on virtual network adapter adaptable load balancing network

A virtual network card and load balancing technology, which is applied in the field of data communication, can solve problems such as inability to forward forwarding, and failure of the egress router to learn the MAC address of the host, so as to improve ease of use, enhance network adaptability, and reduce development difficulty.

Active Publication Date: 2013-04-24
中电科网络安全科技股份有限公司
View PDF5 Cites 21 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

If the host in the protection network borrowed by the VPN device fails and goes offline, the egress router will not be able to learn the MAC address of the host, and th

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Virtual Private Network (VPN) tunnel implementation method based on virtual network adapter adaptable load balancing network
  • Virtual Private Network (VPN) tunnel implementation method based on virtual network adapter adaptable load balancing network

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0022] All features disclosed in this specification, or steps in all methods or processes disclosed, may be combined in any manner, except for mutually exclusive features and / or steps.

[0023] Any feature disclosed in this specification (including any appended claims, abstract and drawings), unless expressly stated otherwise, may be replaced by alternative features which are equivalent or serve a similar purpose. That is, unless expressly stated otherwise, each feature is one example only of a series of equivalent or similar features.

[0024] like figure 1 As shown, it represents the processing flow chart of the VPN device after receiving the encrypted data packet. After the data packet is routed to look up the table, it is considered that the destination address of the data packet is a virtual network card, and the protocol stack submits the data packet to the local IP protocol stack for VPN decryption. And decapsulation processing, after the processing is completed, the n...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention discloses a virtual Private Network (VPN) tunnel implementation method based on a virtual network adapter adaptable load balancing network, and relates to the field of data communication. The method includes the following steps: (1) inner virtual network adapters of two and more than two VPN devices in the load balancing network are configurated with the same host address ; (2) a home terminal VPN device conducts key negotiation with an opposite terminal VPN device by using the virtual network adapter address and builds an Internet Protocol Security Security Association (IPSec SA) and synchronizes IPSec SA information to the other VPN devices of the home terminal; and (3) the opposite terminal VPN device sends data to a home terminal network after encrypting and encapsulating the data according to the IPSec SA information sent to the home terminal VPN device. According to the VPN tunnel implementation method based on the virtual network adapter adaptable load balancing network, the virtual network adapters and routing technology are used to adapt to the load balancing network, so that the developing difficulty that VPN products adapts to the load balancing network is greatly reduced, VPN devices are easier to use, and network adaptability of the VPN devices is improved.

Description

technical field [0001] The invention relates to the field of data communication, in particular to a method for realizing a VPN tunnel adapted to a load balancing network based on a virtual network card. Background technique [0002] IPSec is an open IP layer security framework protocol formulated by the Internet Engineering Task Force, and it is a three-layer tunnel protocol. The IPSec protocol works at the network layer. VPN virtual private network (Virtual Private Network, VPN) devices use the IPSec protocol to establish a secure tunnel to provide confidentiality, integrity, data source authentication and anti-replay for data transmitted between VPN devices. Serve. [0003] A virtual network card is a virtual network device running in the kernel of the operating system. Unlike ordinary hardware network cards, the virtual network card is all implemented in software, and provides exactly the same functions as the hardware network card to the software running on the operatin...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
IPC IPC(8): H04L12/803H04L12/741H04L12/46H04L29/12H04L45/74
Inventor 傅勇罗俊胡川周强
Owner 中电科网络安全科技股份有限公司
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products