Title: ??? VPN?????IPSec
1???VPN?????IPSec
- ??????VPN (Virtual Private Network)
- VPN????? - PPTP?L2TP?IPSec
2????
- VPN ????
- PPTP ( Point-to-Point Tunneling Protocol )
- L2TP ( Layer 2 Tunneling Protocol )
- IPSec ( IP Security )
3??? VPN ?
- Virtual (??) ????
- Private (??) ?????????
- Network (??) ???????????
- ????????- ???????,??????? Internet(??)
??????????(tunnel) ,??????????????????????????,???
????????????(??)
4What is VPN ?
- VPN (Virtual Private Network)???????(Internet)????
??????????????,????????(Virtual Private
Network),??????????(LAN)????????????????????,?????
???????????(tunnel)???????????????????
5??????????
?????
???? T1, Frame Relay ISDN, ATM
????
??????
Remote User ??????
Modem Bank
6???????? VPN ??
Virtual Private Networking
?? Internet VPN ????????????
???????????
Internet
????
?? VPN ???? eMail ??? ???
??????
?????
7??? VPN ??????? ?
????
?? ISP ADSL, Cable ??
?? ISP T1 ????
??????
Public Internet
?? ISP ADSL, Cable, T1 ??
???? ISP ??
?????
???????????
8VPN ?????? ?
1. ???Internet.
2.??????????????.
3. ????????????????? VPN gateway.
Internet
4.????(Authenticate)?????.
5. VPN ??(Tunnel)????
6. ????????
Intranet
Database
9VPN ???????
?????? (Internet) ??????????,????????
Authentication ??????CHAP?RAP Encryption
??????DES?RAS Tunneling ?????? PPTP?L2TP?IPSec
10VPN ???
11VPN ???
- ???? VPN (Remote Access Scenario)
- Intranet VPN (?????)
- Extranet VPN (??????/???????)
12VPN ????
??? LAN
??????
56KBps ????
?? VPN Client Software
VPN Gateway
Mobile Users
??? LAN
ADSL, Cable ??
?? VPN Gateway
VPN Gateway
????? ?? LAN
??? LAN
T1-T3 ????
VPN Gateway
VPN Gateway
????????????
13???? VPN
- ?????VPN ?,??????? ISP ????,?? ISP ???? Internet
???????????,?????????????
?? VPN Client Software
Digital
VPN??
Internet
VPN??
14Intranet VPN
- ?? Internet ?????????????????? WAN ??,??Site ?
Site ??????
VPN??
VPN??
Internet
15Extranet VPN
- ?????Extranet ???,???????????????????,? Extranet
??????????
Internet
????????????
16VPN Tunneling ??????
PPTP ( Point to Point Tunneling Protocol ) ?
Microsoft ?? L2TP ( Layer 2 Tunneling Protocol
) ? Cisco ?? IPSec ( Internet Protocol Security
) ? IETF (??????????) ??
17?????? (VPN)
- VPN ????
- PPTP ( Point-to-Point Tunneling Protocol )
- PPTP?????
- PPTP??????
- PPTP???
- PPTP??? ( Client to Site )
- CHAP ????
- MPPE ????
- L2TP ( Layer 2 Tunnel Protocol )
- IPSec ( IP Security )
18PPTP
- Point-to-Ponit Tunneling Protocol
- Layer 2 ???
- PPP ( Point to Point ) ???
- ???LAN ???,?IP, IPX, NetBeui
- ??IP network ????
- ??MPPE ( Microsoft Point to Point Encryption
)??????
19PPTP?????
- ????????????PPTP Driver??
- ?????PPTP Driver??????????
- ???????????????
20PPTP??????
- PPTP??????????PPP?????
- PAP, SPAP, CHAP, MS-CHAP V1, V2, and EAP
- PPTP??MPPE???????
- ????MS-CHAP V1 or 2 or EAP-TLS????????MPPE??????
21PPTP???
- ???????????????,??? Win98/XP/NT4/2000 Client
22PPTP???
23PPTP ???(CHAP )
PPTP Server203.77.21.10 192.168.0.254
DB Server192.168.0.3
Mobile User(??)
???(??) 192.168.0.0/24
24PPTP ???(CHAP )
- ????RedHat 7.3
- ??????
- ppp-2.4. .rpm
- http//www.spenneberg.org/VPN/pptpd-1.1.3-2.i386.
rpm - ?? rpm Uvh ??
25PPTP ???(CHAP )
- /etc/pptpd.confspeed 115200localip
192.168.0.254remoteip 192.168.0.11-20
- /etc/ppp/optionsdebugname servernameauthrequir
e-chap
- /etc/ppp/chap-secretsalex servername password
- service pptpd start
26PPTP ???(CHAP )
27PPTP ???(CHAP )
28?????? (VPN)
- VPN ????
- PPTP ( Point-to-Point Tunneling Protocol )
- L2TP ( Layer 2 Tunneling Protocol )
- L2TP?????
- L2TP??????
- L2TP???
- IPSec ( IP Security )
29L2TP
- Layer 2 Tunneling Protocol
- ??????
- ???LAN ???,?IP, IPX, NetBeui
- ???IP, X.25, ATM, Frame Relay????
- ??IPSec??????
30L2TP?????
- ????????????L2TP Driver??
- ?????L2TP Driver????????IPSec?????
- ???????????????
31L2TP?????
- L2TP??????????,??????????
- ???????certificate base,?IPSec??SA???????
- ??????????PPP???
- EAP, MS-CHAP V1, V2, CHAP, SPAP, and PAP
- L2TP??IPSec????????
- DES with a 56-bit key
- Triple DES (3DES)
32L2TP??
- ???????????????,???W2K Client
33L2TP??
34QA