New approach for configuring hierarchical virtual private networks using proxy gateways

Hayato Ishibashi, Kiyohiko Okayama, Nariyoshi Yamai, Kota Abe, Toshio Matsuura

Research output: Contribution to journalArticle

Abstract

VPN is one of key technologies on the Internet that allows users to access securely to resources in a domain via unsecure networks. For hierarchically nested security domains, such as an R&D division domain in a corporate domain, In such organizations, some existing VPN schemes with multiple security gateway traversal function is applicable for a user to access to the innermost security domain from the Internet. However, most of existing schemes have some drawbacks in terms of security, efficiency and availability. In this paper, we propose a new way to remedy these shortcomings using proxy gateways. The proposed method connects two deeply embedded security domains by a series of virtual paths to create a single VPN link; and by incorporating a proxy gateway to accommodate communication between clients and the security gateway, this permits secure and highly efficient communications without modifying the client or server.

Original languageEnglish
Pages (from-to)772-782
Number of pages11
JournalLecture Notes in Computer Science (including subseries Lecture Notes in Artificial Intelligence and Lecture Notes in Bioinformatics)
Volume2662
Publication statusPublished - 2003

Fingerprint

Virtual private networks
Gateway
Proxy
Internet
Communication
Servers
Availability
Technology
Division
Server
Path
Resources
Series

ASJC Scopus subject areas

  • Computer Science(all)
  • Biochemistry, Genetics and Molecular Biology(all)
  • Theoretical Computer Science

Cite this

@article{eb72761fb7034b789c762444e429fdc5,
title = "New approach for configuring hierarchical virtual private networks using proxy gateways",
abstract = "VPN is one of key technologies on the Internet that allows users to access securely to resources in a domain via unsecure networks. For hierarchically nested security domains, such as an R&D division domain in a corporate domain, In such organizations, some existing VPN schemes with multiple security gateway traversal function is applicable for a user to access to the innermost security domain from the Internet. However, most of existing schemes have some drawbacks in terms of security, efficiency and availability. In this paper, we propose a new way to remedy these shortcomings using proxy gateways. The proposed method connects two deeply embedded security domains by a series of virtual paths to create a single VPN link; and by incorporating a proxy gateway to accommodate communication between clients and the security gateway, this permits secure and highly efficient communications without modifying the client or server.",
author = "Hayato Ishibashi and Kiyohiko Okayama and Nariyoshi Yamai and Kota Abe and Toshio Matsuura",
year = "2003",
language = "English",
volume = "2662",
pages = "772--782",
journal = "Lecture Notes in Computer Science",
issn = "0302-9743",
publisher = "Springer Verlag",

}

TY - JOUR

T1 - New approach for configuring hierarchical virtual private networks using proxy gateways

AU - Ishibashi, Hayato

AU - Okayama, Kiyohiko

AU - Yamai, Nariyoshi

AU - Abe, Kota

AU - Matsuura, Toshio

PY - 2003

Y1 - 2003

N2 - VPN is one of key technologies on the Internet that allows users to access securely to resources in a domain via unsecure networks. For hierarchically nested security domains, such as an R&D division domain in a corporate domain, In such organizations, some existing VPN schemes with multiple security gateway traversal function is applicable for a user to access to the innermost security domain from the Internet. However, most of existing schemes have some drawbacks in terms of security, efficiency and availability. In this paper, we propose a new way to remedy these shortcomings using proxy gateways. The proposed method connects two deeply embedded security domains by a series of virtual paths to create a single VPN link; and by incorporating a proxy gateway to accommodate communication between clients and the security gateway, this permits secure and highly efficient communications without modifying the client or server.

AB - VPN is one of key technologies on the Internet that allows users to access securely to resources in a domain via unsecure networks. For hierarchically nested security domains, such as an R&D division domain in a corporate domain, In such organizations, some existing VPN schemes with multiple security gateway traversal function is applicable for a user to access to the innermost security domain from the Internet. However, most of existing schemes have some drawbacks in terms of security, efficiency and availability. In this paper, we propose a new way to remedy these shortcomings using proxy gateways. The proposed method connects two deeply embedded security domains by a series of virtual paths to create a single VPN link; and by incorporating a proxy gateway to accommodate communication between clients and the security gateway, this permits secure and highly efficient communications without modifying the client or server.

UR - http://www.scopus.com/inward/record.url?scp=35248820152&partnerID=8YFLogxK

UR - http://www.scopus.com/inward/citedby.url?scp=35248820152&partnerID=8YFLogxK

M3 - Article

AN - SCOPUS:35248820152

VL - 2662

SP - 772

EP - 782

JO - Lecture Notes in Computer Science

JF - Lecture Notes in Computer Science

SN - 0302-9743

ER -