A kind of ipsec NAT two-way traversal method, system and VPN gateway

A gateway and IP address technology, applied in the network field, can solve the problem that IPsecNAT cannot bidirectionally traverse, and achieve the effects of efficient forwarding performance, user-friendliness, and reliability

Active Publication Date: 2018-12-28
MAIPU COMM TECH CO LTD
View PDF6 Cites 0 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0010] Purpose of the present invention is exactly to overcome the shortcoming that current IPsec NAT can't bidirectional traversal, provides a kind of IPSec NAT bidirectional traversal method, system and VPN gateway

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • A kind of ipsec NAT two-way traversal method, system and VPN gateway
  • A kind of ipsec NAT two-way traversal method, system and VPN gateway
  • A kind of ipsec NAT two-way traversal method, system and VPN gateway

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0045] The technical solution of the present invention will be described in detail below in combination with the embodiments and the accompanying drawings.

[0046] An embodiment of the present invention provides an IPSec NAT bidirectional traversal method, see figure 1 , applied to a system including a local VPN gateway, a local NAT device, a peer VPN gateway, a peer NAT device, and a server, specifically including the following steps:

[0047] 101. Create a virtual interface in the local VPN gateway and the remote VPN gateway respectively.

[0048] 102. The local VPN gateway and the peer VPN gateway respectively apply for authentication from the server, and during the authentication process, the server detects the NAT types of the local NAT device and the peer NAT device. This step may specifically include:

[0049] The local VPN gateway and the peer VPN gateway respectively apply for authentication to the server through the connected NAT device;

[0050] The local NAT de...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention relates to network technology. The invention provides an IPSec NAT bidirection traversing method, an IPSec NAT bidirection traversing system and a VPN gateway, which are used for solving the problem that the existing IPSec NAT could not traverse bidirectionally. The technical proposal of the invention could be generalized as follows: a home terminal VPN gateway and an opposite terminal VPN gateway separately establish a virtual interface in local and apply for authentication from a server, and obtain virtual IP address for the local virtual interface from the server after passing through the authentication of the server, and separately perform IPSec VPN related configuration and initiate IKE connection from the other end so as to establish IPSec VPN according to an NAT type of NAT equipment which is connected with the server and detected by the server in an authentication process. The beneficial effect of the invention is that the method, the system and the VPN gateway are convenient for user and are applied to establish a network.

Description

technical field [0001] The present invention relates to network technology, in particular to NAT (Network Address Translation, Network Address Translation) traversal technology based on IPSec (Internet Protocol Security, network layer security) technology. Background technique [0002] With the rapid development of computer networks, IPv4 is facing the challenge of address exhaustion. In order to solve the problem of IPv4 address exhaustion, a series of solutions have emerged, such as IPv6 and NAT. And because IPv6 has not yet been popularized in a large area, it is undoubtedly that NAT still needs to play an important role. It is precisely because of the shortage of IPv4 addresses that major operators have deployed NAT devices in the ISP (Internet Service Provider, Internet Service Provider) network. The public IP address obtained by customers from the operator is actually a private IP address. IPSec NAT traversal must ensure that the responding end has a real public netwo...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Patents(China)
IPC IPC(8): H04L29/12H04L29/06
CPCH04L61/256H04L63/0272H04L63/0485
Inventor 张川龙
Owner MAIPU COMM TECH CO LTD
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products