Scalability implications for Open-Source Linux Based Virtual Private networks

نویسندگان

  • Shashank Khanvilkar
  • Ashfaq Khokhar
چکیده

Virtual Private Networks (VPNs) provide leased-line like connectivity to private networks using a public infrastructure like the Internet. A number of commercial VPN products can now be purchased, but the freely available OpenSource Linux based VPN solutions (OSLVs) seem to be gaining immense popularity. This is mainly due to their open-source licensing, which gives complete access to the source-code allowing developers to customize and optimize it at will. Some fundamental problems facing current OSLV deployment, however, are poor scalability (varying as O(N2)) and poor network performance (<50% bandwidth utilization and increased end-to-end delay). The scalability problem can be traced to maintaining the point-to-point VPN tunnels and the network performance problem can be traced to the static way in which these tunnels apply different VPN functions like encryption, compression and authentication to all packets passing through it. In this paper, we propose a novel packetswitched tunneling architecture (called Flexi-Tunes) that provides a scalable and flexible implementation for VPN tunnels. Simulation results with Flexi-Tune enhanced VPNs reveals a drastic improvement in network-performance (90% of the bandwidth is used compared to only 35% bandwidth utilization in conventional VPNs and end-to-end delay is improved by almost 60% over the conventional case). Further an analysis of this architecture reveals the scalability is also reduced to O(N). Moreover, Flexi-Tunes also solves several difficult problems like increased reliability, load balancing, site sharing and access control that mar conventional VPN deployment. KeywordsVPN, performance evaluation

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

Moat: a Virtual Private Network Appliance and Services Platform

We have implemented a system for virtual private networking, with special attention to the needs of telecommuters. In particular, we used off-the-shelf hardware and open-source software to create a platform to provide IP security and other services for in-home networks. Our experience has taught us a number of things about the scalability of the FreeS/WAN IPsec system, about the widespread mis-...

متن کامل

Implementation of an FPGA based accelerator for virtual private networks

Virtual Private Networks (VPN) are becoming increasingly popular network architectures for corporate networks. As VPNs are built on the Internet infrastructure, the data exchange among different local area networks will be passed through the Internet and thus can be easily eavesdropped, masqueraded, etc. Therefore, certain security measures must be used to deal with these privacy issues. The In...

متن کامل

Scalability Implications of Virtual Private Networks

This article gives an overview of the most promising technologies for service providers to offer virtual private network services. The focus of this article is on the analysis of the scalability implications of these virtual private network mechanisms on existing service provider backbone networks. Very often, when deploying VPN services, service providers will be confronted with a trade-off be...

متن کامل

Performance Analysis of OpenVPN on a Consumer Grade Router

Virtual Private Networks (VPNs) offer an alternative solution using Internet Protocol (IP) tunnels to create secure, encrypted communication between geographically distant networks using a common shared medium such as the Internet. They use tunneling to establish end-to-end connectivity. OpenVPN is a cross-platform, secure, highly configurable VPN solution. Security in OpenVPN is handled by the...

متن کامل

Linux Adoption in the Public Sector: An Economic Analysis

The Linux operating system offers information technology managers in both the private and public sectors an increasingly attractive option as a computing platform to run the powerful computer servers that are at the heart of computer networks, including the Internet itself. Platform software adoption decisions typically have lasting implications for subsequent adoption of application software a...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

عنوان ژورنال:

دوره   شماره 

صفحات  -

تاریخ انتشار 2004