Title :
Ring-Based Virtual Private Network Supporting a Large Number of VPNs
Author :
Honda, Osamu ; Ohsaki, Hiroyuki ; Imase, Makoto ; Matsuda, Kazuhiro
Author_Institution :
Osaka Univ., Osaka
Abstract :
In this paper, we propose a simple but effective VPN mechanism called RING-VPN (ring-based virtual private network) that realizes a high scalability in terms of the number of VPNs. The key idea of our RING-VPN is to logically connect nodes in a ring topology for minimizing the number of IPsec tunnels. In our RING-VPN, each VPN node operates autonomously, making VPNs robust even in case of node and/or link failures. We also quantitatively evaluate the performance of our RING-VPN using mathematical analysis. We derive several important performance metrics of RING-VPN, such as VPN construction time, and VPN recovery time, as well as user-level performance metrics, such as minimum TCP throughput, round-trip time and packet loss probability. Furthermore, we validate our analysis by comparing numerical examples with simulation results. Through several numerical examples, we quantitatively demonstrate effectiveness of our RING-VPN in several network configurations.
Keywords :
packet radio networks; telecommunication network topology; virtual private networks; IPsec tunnels; RING-VPN; VPN; packet loss probability; recovery time; ring topology; scalability; virtual private network; Delay; Electronic mail; Information science; Measurement; Network topology; Protocols; Scalability; Telecommunication network reliability; Throughput; Virtual private networks;
Conference_Titel :
Networking, 2007. ICN '07. Sixth International Conference on
Conference_Location :
Martinique
Print_ISBN :
0-7695-2805-8
Electronic_ISBN :
0-7695-2805-8
DOI :
10.1109/ICN.2007.78