Beruflich Dokumente
Kultur Dokumente
IP VPN Overview
ISSUE 1.0
www.huawei.com
Huawei Confidential
Foreword
Huawei Confidential
Page 2
Objectives
Describe the concept of VPN and the types
of VPN
Describe the protocols realized the IP VPN
Huawei Confidential
Page 3
Huawei Confidential
Page 4
VPN Definition
Huawei Confidential
Page 5
VPN Definition
Partner
Headquarter
Remote office
Tunnel
Internet
Leased line
Employees in
business trips
Office
Huawei Confidential
Page 6
Branch
VPN Features
Huawei Confidential
Page 7
VPN Advantages
Huawei Confidential
Page 8
Classification of VPN
Huawei Confidential
Page 9
Classification of VPN
Access VPN
Intranet VPN
Extranet VPN
Huawei Confidential
Page 10
Access VPN
Tunnel
Originated by ISP
POP
POP
POP
HQ
Originated by user
Employees on errands
Huawei Confidential
Page 11
Intranet VPN
HQ
Research Institute
Internet/ ISP IP
ATM/FR
Branch
Tunnel
Office
HUAWEI TECHNOLOGIES CO., LTD.
Huawei Confidential
Page 12
Extranet VPN
HQ
Remote Office
Internet/ ISP IP
ATM/FR
Branch
Partner
Huawei Confidential
Page 13
Classification of VPN
Huawei Confidential
Page 14
Classification of VPN
Connection-oriented L2VPN
Connection-oriented L3VPN
Huawei Confidential
Page 15
Layer 2 VPN
Layer 3 VPN
Huawei Confidential
Page 16
Transport layer
Network layer
Data-link layer
S-MIME, Proxy,
SET, Secure-PRC, SOCKS
SSL, TLS, SSH
IPSec, GRE, MPLS/VPN
Huawei Confidential
Page 17
Huawei Confidential
Page 18
VPN Fundaments
Huawei Confidential
Page 19
Tunnel
b.
Huawei Confidential
Page 20
Huawei Confidential
Page 21
IP Security (IPSec)
Huawei Confidential
Page 22
PPTP
Huawei Confidential
Page 23
L2F
Layer 2 Forwarding
Huawei Confidential
Page 24
L2TP
Provides both dial-up VPN service and special line VPN service
Huawei Confidential
Page 25
GRE
Huawei Confidential
Page 26
Internet
Novell IPX
Group1
Novell IPX
Group2
Tunnel
RouterA
RouterB
Huawei Confidential
Page 27
GRES Application
Multi-Protocol Local Network Being Transmitted through Single-Protocol
Backbone Network
Novell IPX
Group 1
Novell IPX
Group 2
Internet
Tunnel
IP
Term 1
RouterA
RouterB
IP
Term 2
Huawei Confidential
Page 28
GRES Application
Enlarge Operation Range of the Network with Hop-Limited Protocol
Tunnel
IP Network
PC
IP Network
IP Network
Huawei Confidential
PC
Page 29
GRES Application
Connecting Some Discontinuous Sub-Networks to Establish VPN
IP Network
novell
novell
group2
group 1
Tunnel
Huawei Confidential
Page 30
MPLS/VPN Overview
Layer 2 MPLS/VPN
The MPLS network is used to transfer layer 2 data for
users transparently. From the perspective of users, MPLS
is a layer 2 switching network, through which the layer 2
connection can be established among different stations.
Martini
Kompella
CCC
VPLS
Huawei Confidential
Page 31
MPLS/VPN Overview
Layer 3 MPLS/VPN
In the layer 3 MPLS/VPN network, users are provided with
VPN services by service providers in such a way that they
are not aware of public networks. Users are using an
independent network resource.
Huawei Confidential
Page 32
MPLS VPN meets the requirements of VPN users and reduces the
workloads of both the network and users. MPLS VPN can be used to
establish any connection with high scalability.
Huawei Confidential
Page 33
Summery
Summery
Huawei Confidential
Page 34