• Title/Summary/Keyword: Virtual private network

Search Result 171, Processing Time 0.024 seconds

Network based MPLS VPN using BGP-E for Mobility Support (이동서비스를 지원하는 BGP-E 방식 MPLS VPN의 설계 및 구현)

  • Lee, Young-Seok;Lim, Hyoung-Taek;Choi, Hoon
    • The Journal of Korean Institute of Communications and Information Sciences
    • /
    • v.28 no.10B
    • /
    • pp.927-937
    • /
    • 2003
  • Network based VPN(Virtual Private Network) using MPLS(Multiprotocol Label Switching) technology is regarded as a good solution for intranets or extranets because of the low cost and the flexibility of the service provision. In this paper, we describea mechanism that allows the VPN users to move from one site to another site of the VPN network based on the BGP-E MPLS technology. This mechanism is designed for and implemented on PE(Provider Edge) routers of the backbone network. PE routers connected to the VPN sites establish a new MPLS path to the mobile node after they detect movement of the mobile VPN node. The new location may belong to the same VPN or to different VPN. We designed VPN management and control functions of the PE routers in order to interface with the Mobile IP protocol. The pilot implementation and performance measurement were carried out on a testbed.

An Enterprise Network Configuration Method using BGP/MPLS VPN and Virtual Router VPN (BGP/MPLS VPN 과 가상 라우터 VPN 을 이용한 기업 네트워크 구성 방안)

  • Jun, Jung-Hoon;Woo, Miae
    • Proceedings of the Korea Information Processing Society Conference
    • /
    • 2005.05a
    • /
    • pp.1589-1592
    • /
    • 2005
  • VPN(Virtual Private Network)은 물리적인 장비나 회선을 논리적으로 구분하여 기존 전용회선을 기반으로 하는 사설 네트워크에 비해 상대적으로 적은 구축 비용, 융통성 있는 확장성, 저렴한 운용비용의 장점을 보유한 별도의 사설 네트워크를 구성하는 기술이다. 다양한 VPN 기술 중에서도 MPLS VPN 은 확장성, QoS 제공을 용이하게 해주는 장점을 가지고 있어 차세대 네트워크 기술로 부각되고 있다. 일반적으로 MPLS VPN 은 ISP 에서 제공하는 서비스로 인식되나 규모가 크고 다양한 사설 네트워크를 필요로 하는 기업의 네트워크 모델로도 적합하다. 또한 Virtual Router VPN 은 Customer Edge(CE) 장비로서 활용성이 큰 Switch 장비에 적용하여, CE 를 MPLS VPN 과 쉽게 연동하게 한다. 본 논문에서는 MPLS VPN 및 Virtual Router VPN 을 이용하여 기업 네트워크를 효과적으로 구성하는 방안을 기술한다.

  • PDF

Trends and Prospects for the Development of Virtual Reality and Digital Property

  • Kirillova, Elena Anatolyevna;Blinkov, Oleg Evgenyevich;Blinkova, Elena Victorovna;Vrazhnov, Aleksey Sergeevich;Magomedov, Firdousi Bilyamudinovich
    • International Journal of Computer Science & Network Security
    • /
    • v.22 no.11
    • /
    • pp.284-290
    • /
    • 2022
  • The study considers trends and prospects for developing virtual (augmented) reality and civil transactions in relation to digital property. In jurisprudence, there is a need to determine the legal status of virtual and augmented reality to regulate legal relations in the digital environment. Legal relations using new digital technologies require the creation of new legislative approaches and rules of their legal regulation. The article dwells on the legal status of virtual (augmented) reality and determines the methods of regulating legal relations in the sphere of digital property. The study utilized methods for collecting single and multiple facts in order to identify the main trends in the civil circulation of digital assets, as well as private law methods. The methods of generalization, concreteness, induction and deduction reveal the legal nature and main features of virtual (augmented) reality and digital property. The paper highlights the specifics of virtual reality and civil transactions in relation to digital assets. The research has concluded that the sale, exchange and other actions with digital objects in virtual reality have distinctive features, while digital property has also unique characteristics since it is involved in civil circulation and legal relations.

Network Configuration Study for Multi-Satellite Operations (다중위성운영을 위한 네트워크 구성 방안 연구)

  • Baek, Hyun Chul;Jang, In Sik;Lee, Sang Jeong;Kim, Byung Chul;Lee, Jae Yong
    • Journal of Aerospace System Engineering
    • /
    • v.13 no.4
    • /
    • pp.1-9
    • /
    • 2019
  • Integration of satellites with diverse missions, such as broadcast-communication, earth, meteorologicaland marine observations, and navigation, is vulnerable. The problems of the currently constructed ground station network were analyzed by constructing the test environment. Based on this, we designed a network that was capable of operating multiple satellites by one ground station. In addition, we proposed an interface and network configuration method with domestic and foreign ground stations. The network linking the domestic and foreign ground stations was composed of KREONET (Korea Research Environment Open Network) and GLORIAD (Global Ring Network for Advanced Application Development) of the KISTI(Korea Institute of Science and Technology Information). The internal network consists of VPN (Virtual Private Network), DMZ(De-Militarized Zone), and 1-way USB and so forth. By constructing the network by using the proposed method, harmful data, such as virus inflow and infection, can be blocked.

An Implementation of Web-Based, Scalable SNMP Network Management System (확장성을 고려한 웹 기반 SNMP 망 관리 시스템의 구현)

  • Min, Gyeong-Ju;Gwon, Taek-Geun
    • The KIPS Transactions:PartC
    • /
    • v.9C no.3
    • /
    • pp.431-438
    • /
    • 2002
  • SNMP is a simple, application layer protocol and that is sending and receiving the management information among network devices. It exchanges the management information by the PDUs that have the management information names and values. Until now, network management is so inconvenience because of console-based management by using SNMP. This paper shows the Web-based SNMP network management system that is using the designed private MIB and GUI. In this paper, we have proposed a virtual SNMP agent supporting scalability of network management. With the virtual agent, large-scale network can be managed simply by trap filtering and hierarchical management.

The NNI Interface Model of the ATM-Based Information Infra-Network of Korea (국내 ATM 기반 초고속정보통신망의 NNI 적용 모델 연구)

  • Yang, Seon-Hui;Jeong, Tae-Su;Kim, Eun-A;Choe, Jun-Gyun
    • The Transactions of the Korea Information Processing Society
    • /
    • v.6 no.3
    • /
    • pp.729-741
    • /
    • 1999
  • ATM networks are widely deployed as the network that is capable of supporting multimedia services efficiently now. To date, a large portion of ATM connections, particularly in the WAN environment, have been of a permanent virtual circuits-requiring management intervention for set-up and tear-down. However, switched virtual circuits are required to support a range of desired characteristics on demand, to a reachable end user. To establish, maintain and release on-demand call/connections, the user-network interface(UNI) and node-node interface(NNI) signalling capabilities are required. Two protocols have been specified for NNI signalling within a public network: the broadband integrated-services user part(B-ISUP) protocol specified by the ITU-T, and the private network-network interface(PNNI) protocol specified by the ATM Forum. PNNI offers different type of internetwork or internodal interface from the traditional B-ISUP approach favored to date public network operators. In spite of its name, PNNI may find its place in network service provide networks as well as in private networks. Thus many public network operators and ATM equipment manufacturers are still unable to choose the NNI interface architecture of their system. In this paper, we survey the characteristics of the B-ISUP and PNNI protocols, and investigate the applicability issue of these specifications to the ATM-based Information Infra-Network of Korea. Analyzing the characteristics of the two protocols and clarifying the NNi requirements of the ATM-based Information Infra-Network of Korea, we propose that the B-ISUP protocol is more suitable than PNNI.

  • PDF

High-Availability Virtual Communication for Cloud Access

  • Sirisutthidecha, Suthee;Maichalernnukul, Kiattisak
    • KSII Transactions on Internet and Information Systems (TIIS)
    • /
    • v.10 no.8
    • /
    • pp.3455-3473
    • /
    • 2016
  • Cloud computing is a paradigm in which information is permanently stored in servers on the Internet and cached temporarily on clients. Virtual private network (VPN) is the most widely used technology for secure cloud access. Unfortunately, VPN-based cloud services become unavailable when a VPN failure occurs. In this paper, we propose a new scheme to improve the availability of VPN connections against such failures, called high-availability virtual communication (HAVC). Unlike most of the multipath transmission schemes in the literature, the proposed scheme is implemented by using a virtualization technique, and its protocol functions are independent of existing networks - potential clients are not required to modify their applications or operating systems. Simulation results show that the HAVC can not only tolerate VPN failures but also achieve high transmission performance.

A Study on Efficient Multicast Management Scheme in MPLS VPN (MPLS VPN에서 효율적인 Multicast 지원 방법에 관한 연구)

  • NamGung, Yeong;Lee, Jong-Hyup;Song, Joo-Seok
    • Proceedings of the Korea Information Processing Society Conference
    • /
    • 2003.05b
    • /
    • pp.1309-1312
    • /
    • 2003
  • VPN(Virtual Private Network)은 공중망(Public Network)을 통해서 사설망(Private Network) 서비스를 제공해준다. VPN의 발달과 더불어 여러 서비스를 제공하기 위해서는 VPN의 멀티캐스트 지원이 필수적이라 할 수 있다. 하지만 VPN에서 멀티캐스트를 제공하기 위해서는 많은 제약사항들이 존재한다. 본 논문에서는 이러한 제약사항을 고려하여 PE(Provider Edge)노드만으로 Tree를 구성하고 BGP-E를 통하여 멀티캐스트 정보를 공유하는 BGP-E기반 MPLS VPN의 멀티캐스트 방법을 제안한다.

  • PDF

Development of a Multi-link VPN Load Balancing Technology (다중링크 VPN 분하균등 기술 개발)

  • 김정우;손주영
    • Proceedings of the Korea Multimedia Society Conference
    • /
    • 2003.05b
    • /
    • pp.175-178
    • /
    • 2003
  • 현재 다중 링크VPN(Virtual Private Network) 장비들은 회선 장애(Fail-Off) 발생 시 회선 간의 전이(Transition) 기능만 가능할 뿐이고, 부하균등(Load Balancing)은 고려하지 않고 있다. 이럼으로써 다중 회선의 효율성이 크게 떨어지는 결과를 보인다. 본 논문에서는 부하균등을 하면서 회선장애 발생 시 전이되는 기술을 제안하였다.

  • PDF

Performance Management and Analysis for Guaranteed End-to-End QoS Provisioning on MPLS-based Virtual Private LAN Service(VPLS)

  • Kim, Seong-Woo;Kim, Chul;Kim, Young-Tak
    • The Journal of Korean Institute of Communications and Information Sciences
    • /
    • v.28 no.2B
    • /
    • pp.144-156
    • /
    • 2003
  • Internet/Intranet has been continuously enhanced by new emerging IP technologies such as differentiate service(DiffServ), IPSec(IP Security) and MPLS(Multi-protocol Label Switching) traffic engineering. According to the increased demands of various real-time multimedia services, ISP(Internet Service Provider) should provide enhanced end-to-end QoS(quality of service) and security features. Therefore, Internet and Intranet need the management functionality of sophisticated traffic engineering functions. In this paper, we design and implement the performance management functionality for the guaranteed end-to-end QoS provisioning on MPLS-based VPLS(Virtual Private LAN Service). We propose VPLS OAM(Operation, Administration and Maintenance) for efficient performance management. We focus on a scheme of QoS management and measurement of QoS parameters(such as delay, jitter, loss, etc.) using VPLS OAM functions. The proposed performance management system also supports performance tuning to enhance the provided QoS by re-adjusting the bandwidth of LSPs for VPLS. We present the experimental results of performance monitoring and analysis using a network simulator.