{"title":"增强型VPN隔离网关的设计与实现","authors":"Lin Shaofeng, Guo Chao-ping, Sun Weifeng","doi":"10.1109/ICRIS.2017.27","DOIUrl":null,"url":null,"abstract":"An enhanced VPN gateway is designed employing the architecture of dual ARM hosts + FPGA isolator in this paper. The ARM hosts routed IP packets. The FPGA isolator ferried packets between inner and outer networks of two ARM hosts, authenticated the input packets and signed the output packets, thus the non-confidential packets was isolated. The private protocol is used to build the mutual authentication between two VPN gateways, so the security performance of the system is improved by setting up ESP-VPN connection between VPN Gateway and boundary server, the system can transfer sensible data securely over non-confidential network areas.","PeriodicalId":443064,"journal":{"name":"2017 International Conference on Robots & Intelligent System (ICRIS)","volume":"98 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2017-10-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"3","resultStr":"{\"title\":\"Design and Implementation of an Enhanced VPN Isolation Gateway\",\"authors\":\"Lin Shaofeng, Guo Chao-ping, Sun Weifeng\",\"doi\":\"10.1109/ICRIS.2017.27\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"An enhanced VPN gateway is designed employing the architecture of dual ARM hosts + FPGA isolator in this paper. The ARM hosts routed IP packets. The FPGA isolator ferried packets between inner and outer networks of two ARM hosts, authenticated the input packets and signed the output packets, thus the non-confidential packets was isolated. The private protocol is used to build the mutual authentication between two VPN gateways, so the security performance of the system is improved by setting up ESP-VPN connection between VPN Gateway and boundary server, the system can transfer sensible data securely over non-confidential network areas.\",\"PeriodicalId\":443064,\"journal\":{\"name\":\"2017 International Conference on Robots & Intelligent System (ICRIS)\",\"volume\":\"98 1\",\"pages\":\"0\"},\"PeriodicalIF\":0.0000,\"publicationDate\":\"2017-10-01\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"3\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"2017 International Conference on Robots & Intelligent System (ICRIS)\",\"FirstCategoryId\":\"1085\",\"ListUrlMain\":\"https://doi.org/10.1109/ICRIS.2017.27\",\"RegionNum\":0,\"RegionCategory\":null,\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"\",\"JCRName\":\"\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"2017 International Conference on Robots & Intelligent System (ICRIS)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/ICRIS.2017.27","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
Design and Implementation of an Enhanced VPN Isolation Gateway
An enhanced VPN gateway is designed employing the architecture of dual ARM hosts + FPGA isolator in this paper. The ARM hosts routed IP packets. The FPGA isolator ferried packets between inner and outer networks of two ARM hosts, authenticated the input packets and signed the output packets, thus the non-confidential packets was isolated. The private protocol is used to build the mutual authentication between two VPN gateways, so the security performance of the system is improved by setting up ESP-VPN connection between VPN Gateway and boundary server, the system can transfer sensible data securely over non-confidential network areas.