Dynamic hub-and-spoke VPN system based on IPSec

Shi Lie
2006-01-01
Abstract:To resolve the problem that it is hard to configure and manage a lager-scale VPN based on IPSec,a dynamic hub-and-spoke VPN system was defined,in which VPN hub exchanges messages with subnet gateways to support gateways to join/quit VPN dynamically.And notion of group was introduced to provide access-control for all subnets.Furthermore,the way to implement it in Linux OS was given.
What problem does this paper attempt to address?