Looking for breakthrough ideas for innovation challenges? Try Patsnap Eureka!

Implementation method of vpn tunnel adapted to load balancing network based on virtual network card

A virtual network card and load balancing technology, which is applied in the field of data communication, can solve the problems that the egress router cannot learn the host MAC address and cannot forward, etc., and achieve the effects of enhancing network adaptability, improving usability, and reducing development difficulty

Active Publication Date: 2016-06-01
中电科网络安全科技股份有限公司
View PDF5 Cites 0 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

If the host in the protection network borrowed by the VPN device fails and goes offline, the egress router will not be able to learn the MAC address of the host, and the egress router will receive the encrypted data packet whose destination address is the host address and cannot forward it. For the VPN device behind the egress router

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Implementation method of vpn tunnel adapted to load balancing network based on virtual network card
  • Implementation method of vpn tunnel adapted to load balancing network based on virtual network card

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0021] All features disclosed in this specification, or steps in all methods or processes disclosed, may be combined in any manner, except for mutually exclusive features and / or steps.

[0022] Any feature disclosed in this specification (including any appended claims, abstract and drawings), unless expressly stated otherwise, may be replaced by alternative features which are equivalent or serve a similar purpose. That is, unless expressly stated otherwise, each feature is one example only of a series of equivalent or similar features.

[0023] Such as figure 1 As shown, it represents the processing flow chart of the VPN device after receiving the encrypted data packet. After the data packet is routed to look up the table, it is considered that the destination address of the data packet is a virtual network card, and the protocol stack submits the data packet to the local IP protocol stack for VPN decryption. And decapsulation processing, after the processing is completed, th...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

PUM

No PUM Login to View More

Abstract

The invention discloses a method for implementing a VPN tunnel based on a virtual network card adapting to a load-balanced network, which relates to the field of data communication and includes the following steps: (1) configuring the same host for the built-in virtual network cards of two or more VPN devices in the load-balanced network address; (2) The primary VPN device at the local end uses the virtual network card address to negotiate keys with the VPN device at the remote end and establish IPSec? SA, and put IPSec? SA information is synchronized to other VPN devices at the local end; (3) According to the IPSec information from the peer VPN device to the local VPN device? The SA information encrypts and encapsulates the data packet and sends it to the local network. The invention adapts to the load balancing network by using the virtual network card and routing technology, greatly reduces the development difficulty of VPN products adapting to the load balancing network, improves the ease of use of the VPN equipment, and enhances the network adaptability of the VPN equipment.

Description

technical field [0001] The invention relates to the field of data communication, in particular to a method for realizing a VPN tunnel adapted to a load balancing network based on a virtual network card. Background technique [0002] IPSec is an open IP layer security framework protocol formulated by the Internet Engineering Task Force, and it is a three-layer tunnel protocol. The IPSec protocol works at the network layer. VPN virtual private network (Virtual Private Network, referred to as VPN) devices use the IPSec protocol to establish a secure tunnel to provide confidentiality, integrity, data source authentication and anti-replay services for data transmitted between VPN devices. [0003] A virtual network card is a virtual network device running in the kernel of the operating system. Unlike ordinary hardware network cards, the virtual network card is all implemented in software, and provides exactly the same functions as the hardware network card to the software running...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

Application Information

Patent Timeline
no application Login to View More
Patent Type & Authority Patents(China)
IPC IPC(8): H04L12/803H04L12/741H04L12/46H04L29/12H04L45/74
Inventor 傅勇罗俊胡川周强
Owner 中电科网络安全科技股份有限公司
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Patsnap Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Patsnap Eureka Blog
Learn More
PatSnap group products