Design, Implementation and Performance Evaluation of IP/VPN
碩士 === 大同大學 === 資訊工程研究所 === 90 === Network security has always been a significant issue, but a recognized priority today due to the popular of internet. The issue is not if security should be implemented on a network; rather, the question to ask is if security has been implemented properl...
Main Authors: | , |
---|---|
Other Authors: | |
Format: | Others |
Language: | en_US |
Published: |
2002
|
Online Access: | http://ndltd.ncl.edu.tw/handle/34224948603150960905 |
id |
ndltd-TW-090TTU00392010 |
---|---|
record_format |
oai_dc |
spelling |
ndltd-TW-090TTU003920102016-06-24T04:15:11Z http://ndltd.ncl.edu.tw/handle/34224948603150960905 Design, Implementation and Performance Evaluation of IP/VPN IP/VPN的設計、實作與效能評估 Ching-Tien Chang 張競天 碩士 大同大學 資訊工程研究所 90 Network security has always been a significant issue, but a recognized priority today due to the popular of internet. The issue is not if security should be implemented on a network; rather, the question to ask is if security has been implemented properly and the interoperability with today’s network architecture. Although there are various ways to perform a secure network environment, but the most popular and the most progressive network security mechanism is Security Architecture for IP (IPsec), offered by IETF (Internet Engineering Task Force). IPsec is designed to provide interoperable, cryptographically-based security for IPv4 and IPv6. IPsec can offer the set of security services includes access control, connectionless integrity, data origin authentication, protection against replays and data confidentiality. These services are provided at the IP layer, offering protection for IP and upper layer protocols. In this paper, we will discuss the problems when combine IPsec into current TCP/IP module by porting an IPsec shareware (FreeS/WAN) into a router. Finally, in order to understand the impact on router’s performance when using various services and hash/encryption algorithms provided by IPsec, we testing the throughput of the router before and after applying IPsec. Jin-Cherng Lin 林金城 2002 學位論文 ; thesis 28 en_US |
collection |
NDLTD |
language |
en_US |
format |
Others
|
sources |
NDLTD |
description |
碩士 === 大同大學 === 資訊工程研究所 === 90 === Network security has always been a significant issue, but a recognized priority today due to the popular of internet. The issue is not if security should be implemented on a network; rather, the question to ask is if security has been implemented properly and the interoperability with today’s network architecture. Although there are various ways to perform a secure network environment, but the most popular and the most progressive network security mechanism is Security Architecture for IP (IPsec), offered by IETF (Internet Engineering Task Force).
IPsec is designed to provide interoperable, cryptographically-based security for IPv4 and IPv6. IPsec can offer the set of security services includes access control, connectionless integrity, data origin authentication, protection against replays and data confidentiality. These services are provided at the IP layer, offering protection for IP and upper layer protocols.
In this paper, we will discuss the problems when combine IPsec into current TCP/IP module by porting an IPsec shareware (FreeS/WAN) into a router. Finally, in order to understand the impact on router’s performance when using various services and hash/encryption algorithms provided by IPsec, we testing the throughput of the router before and after applying IPsec.
|
author2 |
Jin-Cherng Lin |
author_facet |
Jin-Cherng Lin Ching-Tien Chang 張競天 |
author |
Ching-Tien Chang 張競天 |
spellingShingle |
Ching-Tien Chang 張競天 Design, Implementation and Performance Evaluation of IP/VPN |
author_sort |
Ching-Tien Chang |
title |
Design, Implementation and Performance Evaluation of IP/VPN |
title_short |
Design, Implementation and Performance Evaluation of IP/VPN |
title_full |
Design, Implementation and Performance Evaluation of IP/VPN |
title_fullStr |
Design, Implementation and Performance Evaluation of IP/VPN |
title_full_unstemmed |
Design, Implementation and Performance Evaluation of IP/VPN |
title_sort |
design, implementation and performance evaluation of ip/vpn |
publishDate |
2002 |
url |
http://ndltd.ncl.edu.tw/handle/34224948603150960905 |
work_keys_str_mv |
AT chingtienchang designimplementationandperformanceevaluationofipvpn AT zhāngjìngtiān designimplementationandperformanceevaluationofipvpn AT chingtienchang ipvpndeshèjìshízuòyǔxiàonéngpínggū AT zhāngjìngtiān ipvpndeshèjìshízuòyǔxiàonéngpínggū |
_version_ |
1718321662083989504 |