Extending a campus network with remote bubbles using IPSec
Bonnet, Aurélien;Lobelle, Marc
(2002) Advances in Network and Distributed Systems Security. IFIP TC11 WG11.4 First Working Conference on Network Security — Location: Leuven, Belgium (26.November.2001)
Files
No attached file found for this publication.
Details
Authors
Bonnet, AurélienUCLouvain
Author
Lobelle, MarcUCLouvain
Author
Abstract
There is increasing demand for high speed remote connections (e.g. ADSL, cable, etc.) to university networks both from students and staff members. In many instances, the need is to connect not a single computer but a remote subnetwork and to be able to have not only clients but also servers on the remote subnetwork (e.g. to access files on computers on the remote network from workstations in the university). We present a solution to meet these needs through a simple dial-up-like connection to which the access provider allocates only a single temporary IP address to a single remote machine. The solution allows remote networks to be started anytime like little bubbles and be integrated dynamically into the big bubble that is the university network. It is based on the use of IPSec, DHCP and address translation. Beside providing confidentiality, this allows the dynamic allocation of IP addresses in the range of the university to computers in the remote bubble, and binding them to permanent DNS names in the domain of the university. After configuration, the computers in the remote subnetwork appear as if they were located inside the university. The solution can, of course, be applied to any organization.
Bonnet, A., & Lobelle, M. (2002). Extending a campus network with remote bubbles using IPSec. In De Decker, B..; Piessens, F.; Smits, J.; Van Herreweghen, E.; (ed.), Advances in Network and Distributed Systems Security. IFIP TC1 WG11.4.First Annual Working Conference on Network Security (p. p. 139-151). Kluwer academic publishers. https://hdl.handle.net/2078.5/219286