• DocumentCode
    1656356
  • Title

    Active networking approach to the design of adaptive virtual private networks

  • Author

    Haggag, Yasser ; Sampalli, Srinivas

  • Author_Institution
    Fac. of Comput. Sci., Dalhousie Univ., Halifax, NS, Canada
  • Volume
    1
  • fYear
    2004
  • Firstpage
    308
  • Abstract
    As virtual private networks (VPNs) penetrate into the internetworking community, they face a number of challenges, such as the requirement for on-demand creation and termination of tunnels, flexible services and interface features allowing for easy integration with a wide range of applications, and extended geographical reach through dynamic installation of services. We present a novel approach to the design of an adaptive VPN framework that can offer flexible, portable services and customizable VPN mechanisms to provide on-demand secure tunnels in a dynamic environment. We base our approach on the active networking technology, which is a networking paradigm that inserts intelligence into the network by offering a dynamic programming capability to network routers. The proposed architecture implements encryption, key management and data integrity services to support VPN functions. Experimental results from our test bed provide latency and throughput measurements. We discuss four deployment scenarios that can take advantage of the adaptive VPN services: a) dynamic secure multicast trees; b) Secure item look-ups in online auction systems; c) secure code distribution; and d) secure agent traversal.
  • Keywords
    cryptography; dynamic programming; multicast communication; telecommunication network management; telecommunication network routing; telecommunication security; trees (mathematics); virtual private networks; VPN; active networking approach; adaptive virtual private networks; agent traversal security; code distribution security; data integrity services; dynamic programming; dynamic secure multicast trees; encryption; flexible services; key management; network routers; on-demand secure tunnels; online auction systems; services dynamic installation; Adaptive systems; Buildings; Computer science; Cryptography; IP networks; Intelligent networks; Protocols; System testing; Throughput; Virtual private networks;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Military Communications Conference, 2004. MILCOM 2004. 2004 IEEE
  • Print_ISBN
    0-7803-8847-X
  • Type

    conf

  • DOI
    10.1109/MILCOM.2004.1493286
  • Filename
    1493286