Research for Correlative Control Technology in the VPN Topology

OUYANG Kai,ZHOU Jing-Li,DONG Li-Jun
2007-01-01
Computer Science
Abstract:The research of the security of the network topology is the core content for the guarantee for the security of the network services. Especially in the VPN(Virtual Private Network)topology, because of the VPN’s tunneling, private routing and cipher technology, there are two embarrassments for the protection of the internal network. One is the internal services could be uncovered in the internet by the VPN’s tunneling, the other is firewall and IDS(Intrusion Detection System)could not completely analyze the network packet content because of the VPN’s private routing and cipher technology. Hence, we propose CCM(Correlative Control Mechanism)that is a multilayered security protection mechanism based on VPN gateway incorporating client end-point, firewall, IDS and internal services. By the correlation among terminal-extending, IDS-correlation and application-engine, CCM can make the VPN protection into one correlative whole and improve the security of the VPN topology.
What problem does this paper attempt to address?