Abstract

VPN provides logical and secure communication groups independent of physical network configurations. When network users request to construct a VPN path, a network administrator has to check the consistency between the user request and the organization's security policy and to manually change the configurations of VPN equipment. In this paper we propose a FlexCUG (Flexible Closed User Group) service architecture which provides secure communication groups without any configuration by network administrators. This architecture is based on a three-layer model, in which network users can generate FlexCUG in accordance with the organization's security policy. As a result, this architecture achieves higher usability of VPN while complying with the organization's security policy.

Full Text
Published version (Free)

Talk to us

Join us for a 30 min session where you can share your feedback and ask us any queries you have

Schedule a call