• 中国计算机学会会刊
  • 中国科技核心期刊
  • 中文核心期刊

J4 ›› 2008, Vol. 30 ›› Issue (8): 8-11.

• 论文 • 上一篇    下一篇

基于分布式隧道模型的SSLVPN的设计和实现

李宁 黄辰林 罗军   

  • 出版日期:2008-08-01 发布日期:2010-05-19

  • Online:2008-08-01 Published:2010-05-19

摘要:

VPN是一种利用加密通讯协议在公共网络中建立安全、可靠数据传榆通道的技术。目前,利用SSL协议构建安全VPN已成为一种主流方式。本文在对隧道式SSLVPN运行机理分析的基础上,针对其性能瓶颈提出了一种基于分布式隧道模型的SSL VPN方案。该方案通过引入P2P技术,利用边缘节点的计算能力分担了服务器的数据传榆任务,在改善了点到点之间的传榆性能的同时,也极大提高了VPN的整体吞吐率。

关键词: VPN SSL协议 P2P

Abstract:

VPN(Virtual Private Network)is a technique that uses encryption and communication protocols to construct secure data transmission channels in public  networks. Nowadays,it is the main choice to build secure VPNs using the SSL protocol. This paper analyses the internal working mechanism of turmel-base  d SSL VPN,and presents a new SSL VPN solution which is based on the distributed tunnel model according to its performance P2P technology,this solution uses the computing power of edge nodes to share the server's data transmission  ve the performance of point-to-point transmission, but also enhance the whole throughput of a VPN system.

Key words: VPN ;SSL protocol;P2P