网络认证客户端通用穿透网关的设计与实现
Design and implementation of generic penetration gateway of network authentication client
-
摘要: 网络认证客户端通过监控非绑定Internet接入网卡的活动来实现主机路由限制,从而控制外网向内网的延伸.基于此,利用虚拟机的网络桥接和NAT服务设计了网络认证客户端通用穿透网关方案,实现了网络认证客户端环境下主机外网和内网间的连接.本设计由单网卡或双网卡宿主机配置、微软的3种宿主操作系统和3款不同公司的虚拟机产品互相组合,可形成适应不同应用需求的多种通用穿透网关方案,具有很强的灵活性和实用性.Abstract: Network authentication client realizes the restrictions of host routing and the control of extension of Internet and Intranet by monitoring the activities of non-binding Internet access network interface cards.A generic penetration gateway method by utilizing the network bridge and NAT service of virtual machines was proposed.The connection of Internet and Intranet can be realized under the network authentication client environment.Moreover, by composing the host with single or double network cards, three host operating systems of Microsoft and three virtual machine systems designed by different companies, various generic penetration gateway schemes can be generated to meet the needs of different applications.So the proposed method is very flexible and practical.
-
Key words:
- network authentication client /
- generic penetration gateway /
- routing /
- virtual machine
-
-
[1]
刘伟,姜童,寇登峰.一种新型的信息网络安全接入认证模型[J].火力与指挥控制,2013,38(6):89.
-
[2]
袁博,范亮.WLAN场景的IPv6宽带接入认证技术[J].邮电设计技术,2013(7):23.
-
[3]
丛日权,商宏图,左坚,等.Windows Server 2003网络架构[M].北京:机械工业出版社,2005.
-
[4]
刘艳红,李健勇,李建春.基于虚拟机的网络架构课程实验平台的构建[J].郑州轻工业学院学报:自然科学版,2011,26(3):63.
-
[1]
计量
- PDF下载量: 48
- 文章访问数: 807
- 引证文献数: 0