基于多策略配置的跨区域企业网络设计OA
CROSS-REGIONAL ENTERPRISE NETWORK DESIGN BASED ON MULTI-POLICY CONFIGURATION
为了实现大型企业的网络通信安全和可扩展性,设计基于多策略配置的跨区域企业网络.按功能划分自治域和网络地址.在交换层采用虚拟局域网干道协议,配置二层端口等策略,在路由层采用相关路由协议实现各自治域的网络互通,配置边界网关协议建立邻居关系,并且分别管理各远程站点.采用安全外壳协议实现企业网络的远程访问功能,同时实现互联网访问.运用多种加密验证技术提高企业网安全系数.以Web-IOU V22 UD为仿真平台模拟企业网运行,证明企业网络的路由决策合理和安全通信.
In order to achieve the security communication and scalability of large-scale enterprise network,a cross-regional enterprise network based on multi-policy configuration is designed.According to the function of networks,autonomous domains and network addresses were divided.Virtual local area network trunk protocol,port on the second layer and other policies were assigned on the network switching layer.Correlated routing protocols were used for communicating among autonomous domains on the routing layer.Border gateway protocol was deployed to establish a peering relationship and manage remote sites respectively.The secure shell protocol was used to realize the remote access function of enterprise network and the Internet access at same time.A variety of encryption authentication technologies were applied to improve the coefficient of security.Enterprise networks were operating on Web-IOU V22 UD simulation platform to prove the reasonable routing decision and security of communication for enterprise network.
邱鹏;刘汉忠;黄晓华
南京工程学院计算机工程学院 江苏南京 211167南京工程学院先进工业技术研究院 江苏南京 211167南京工程学院计算机工程学院 江苏南京 211167
信息技术与安全科学
划分自治域虚拟局域网干道协议边界网关协议安全外壳协议网络地址转换技术
Divide autonomous domainsVirtual local area network trunk protocolBorder gateway protocolSe-cure shell protocolNetwork address translation
《计算机应用与软件》 2026 (6)
78-84,7
国家自然科学基金面上项目(62076122)高层次引进人才科研启动基金项目(YKJ2021982)南京工程学院先进工业技术研究院开放基金项目(XJY202112).
评论