科技报告详细信息
Vaulted VPN: Compartmented Virtual Private Networks On Trusted Operating Systems
Choo, Tse-Huong
HP Development Company
关键词: VPN;    virtual vault;    IPSec;   
RP-ID  :  HPL-1999-44
学科分类:计算机科学(综合)
美国|英语
来源: HP Labs
PDF
【 摘 要 】

Virtual Private Networks for IPSec based on an intermediate packet-redirector in network- protocol stacks are becoming increasingly common for many standard operating systems and represent a well- understood method for retro-fitting such systems with IPSec support. This report describes how a different design structured around a Trusted Operating System can offer better security, performance and robustness. We describe in detail an implementation of an IPSec VPN consisting of a series of compartmented, concurrently executing IPSec stacks. The motivations and security-related benefits behind each design decision are discussed. In addition, we show how a configuration of independent IPSec stacks based in this design can be configured to execute in parallel for greater performance, and how its design allows individual component-failures without affecting the system as a whole. 15 Pages

【 预 览 】
附件列表
Files Size Format View
RO201804100001995LZ 376KB PDF download
  文献评价指标  
  下载次数:6次 浏览次数:17次