Method for realizing VPN gateway based on field of cloud computing

A cloud computing and field technology, applied in the field of cloud computing, can solve problems such as the unavailability of VPN gateways, and achieve the effects of reducing the probability of failure and restarting, reducing configuration, and improving maintainability

Pending Publication Date: 2020-04-28
紫光云技术有限公司
View PDF3 Cites 3 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0004] A firewall only uses one virtual firewall (VFW) to carry these configuration functions, but since a virtual firewall only has one external network interface (Reth1) configured with one public network address EIP, all VPN gatewa

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Method for realizing VPN gateway based on field of cloud computing
  • Method for realizing VPN gateway based on field of cloud computing
  • Method for realizing VPN gateway based on field of cloud computing

Examples

Experimental program
Comparison scheme
Effect test

Example Embodiment

[0023] It should be noted that the embodiments of the present invention and the features of the embodiments may be combined with each other under the condition of no conflict.

[0024] The present invention will be described in detail below with reference to the accompanying drawings and in conjunction with the embodiments.

[0025] like figure 1 As shown, a method for implementing a VPN gateway based on the cloud computing field includes the following steps:

[0026] A. Create a virtual firewall;

[0027] B. Assign the endpoint address IP1 of the local IPSEC, where IPSEC is a protocol function provided for the intercommunication of the subnets under the two private clouds;

[0028] C. Configure routing information on the access switch connected to the virtual firewall, so that the subnet traffic under the local virtual private cloud VPC1 can flow to the virtual firewall;

[0029] D. Configure IPSEC rules on the virtual firewall;

[0030] E. End configuration.

[0031] In...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention provides a method for realizing a VPN gateway based on the field of cloud computing. The method comprises the following steps: A, creating a virtual firewall; B, allocating an endpoint address IP1 of a home terminal IPSEC; C, routing information is configured on an access switch connected with the virtual firewall, so that subnet flow under the VPC1 can flow to the virtual firewall;D, configuring an IPSEC rule on the virtual firewall; E, ending configuration. The invention has the beneficial effects that firewall configuration is effectively reduced, and the firewall fault restart probability is reduced; the isolation of a tenant VPN gateway is provided, different VPCs use different EIP addresses, and the maintainability of operation and maintenance is improved.

Description

technical field [0001] The invention belongs to the technical field of cloud computing, and in particular relates to a method for realizing a VPN gateway based on the cloud computing field. Background technique [0002] If all traffic in the existing data center wants to access the Internet, it needs to go through the firewall for NAT conversion, packet filtering and other processing. Currently, the cloud computing field uses a firewall (FW) as the entity for issuing VPN gateway configuration, and the VPN gateway conversion function is implemented by the firewall. Currently, there is only one set of stacked firewall devices in the data center in the general networking. [0003] Since all traffic and function configurations (including default gateway, EIP, VPN gateway, etc.) are implemented on one firewall, there will be too many device configurations, and the probability of device failure will increase. The device cannot access the external network. Excessive configuration...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
IPC IPC(8): H04L29/06H04L12/46
CPCH04L12/4641H04L63/0272H04L63/0485H04L63/101
Inventor 刘永
Owner 紫光云技术有限公司
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products