基于MPLS VPN技術(shù)的組網(wǎng)的設(shè)計與實現(xiàn)
本文選題:MPLS + VPN; 參考:《吉林大學》2014年碩士論文
【摘要】:網(wǎng)絡(luò)技術(shù)自90年代中期到現(xiàn)在,迅速發(fā)展,解決了各種經(jīng)濟、生活中信息化不斷面臨的問題和挑戰(zhàn)。隨著經(jīng)濟的穩(wěn)定高速發(fā)展,企業(yè)的業(yè)務(wù)也在逐漸擴張,部分企業(yè)相繼在全國范圍內(nèi)設(shè)立辦事處分公司等分支機構(gòu)。因此,在支持現(xiàn)有的、先進的全國集中式IT網(wǎng)絡(luò)架構(gòu)的基礎(chǔ)上,如何更好的支持跨地區(qū)、跨部門業(yè)務(wù)的互聯(lián)互通,滿足全國范圍內(nèi)縣域網(wǎng)點實現(xiàn)廣域互連、扁平化管理、迅速提升信息化水平的需求,支持企業(yè)在全國范圍內(nèi)快速部署網(wǎng)點服務(wù)機構(gòu)、迅速拓展業(yè)務(wù),建設(shè)一個上下貫通、橫縱互聯(lián)、功能完善、高速穩(wěn)定、安全可靠、統(tǒng)一規(guī)范的網(wǎng)絡(luò)架構(gòu)顯得尤為重要。 對于組網(wǎng)技術(shù)來說,VPN組網(wǎng),即虛擬專用網(wǎng)絡(luò)被廣泛的使用。這種虛擬的專用網(wǎng)絡(luò)技術(shù)由于不建立物理上鏈接,主要通過技術(shù)手段虛擬一條通路實現(xiàn)網(wǎng)絡(luò)數(shù)據(jù)的傳輸和通信。使用VPN組網(wǎng)規(guī)劃的網(wǎng)絡(luò)具有良好的保密性以及信息傳輸不受干擾等優(yōu)點,越來越受到人們的研究和應(yīng)用。由于在局域網(wǎng)中建立VPN鏈接時不會影響網(wǎng)絡(luò)內(nèi)的其它計算機鏈接到公共網(wǎng)絡(luò),但只能夠有一臺計算機建立鏈接,因此VPN組網(wǎng)的方式適合于計算機比較多的企業(yè)用戶。直聯(lián)組網(wǎng)也就是通過直接連接的方式構(gòu)建網(wǎng)絡(luò)。比如各省內(nèi)的三、四級機構(gòu)不再鏈接到省內(nèi)的一級機構(gòu)或者二級機構(gòu),而是直接鏈接到網(wǎng)絡(luò)中心處。對于在全國范圍內(nèi)迅速建立并部署網(wǎng)點,采用直聯(lián)組網(wǎng)的方式能夠既支持原有IT網(wǎng)絡(luò)架構(gòu),還能減少對現(xiàn)有網(wǎng)絡(luò)的調(diào)整和改造。 MPLS VPN是一種旨在解決現(xiàn)存網(wǎng)絡(luò)中存在的諸多與數(shù)據(jù)包轉(zhuǎn)發(fā)有關(guān)的問題的技術(shù),通過MPLS VPN組網(wǎng)的網(wǎng)絡(luò)具有較好的QoS性能,滿足丟包率、時延的要求,擁有良好的冗余機制,,同時具有低投入、低使用、低維護的良好的經(jīng)濟性能。因此對于在全國范圍內(nèi)拓寬業(yè)務(wù)建立分支機構(gòu)來說有較高的實用性和經(jīng)濟效益。MPLS VPN技術(shù)作為一個重要的應(yīng)用研究方向,廣泛應(yīng)用到實際網(wǎng)絡(luò)建設(shè)中。 本文通過深入研究MPLS VPN技術(shù)、BGP路由選擇協(xié)議以及QoS技術(shù),以中國平安機構(gòu)為背景,針對該機構(gòu)的網(wǎng)絡(luò)現(xiàn)狀以及組網(wǎng)需求,設(shè)計了實現(xiàn)中國平安機構(gòu)直聯(lián)組網(wǎng)的方案,完成了系統(tǒng)的部署、參數(shù)的配置等組網(wǎng)實現(xiàn)工作。 通過本課題的研究使得中國平安機構(gòu)的組網(wǎng)結(jié)構(gòu)得到極大優(yōu)化,組織結(jié)構(gòu)更加良好,為迅速拓展的業(yè)務(wù)導致的網(wǎng)絡(luò)升級提供了強有力的技術(shù)保障,實現(xiàn)了各異地分支機構(gòu)對總部以及各分支機構(gòu)的的各種應(yīng)用系統(tǒng)及資源的安全訪問。設(shè)計的方案滿足中國平安機構(gòu)的實際,達到了預先設(shè)定的建設(shè)目標。
[Abstract]:Network technology has developed rapidly from the middle of 1990s to now, which has solved the problems and challenges faced by various kinds of economy and life informatization. With the steady and rapid development of economy, the business of enterprises is expanding gradually, and some enterprises have set up offices, branches and other branches all over the country. Therefore, on the basis of supporting the existing, advanced national centralized IT network architecture, how to better support the interconnection of cross-regional and inter-departmental services, to meet the needs of nationwide county network to achieve wide-area interconnection and flattening management, To rapidly improve the level of information demand, support enterprises in the rapid deployment of network services across the country, rapidly expand business, build a top and bottom, horizontal and vertical interconnection, perfect function, high speed and stability, safety and reliability, Uniform and standardized network architecture is particularly important. For networking technology, VPN networking, that is, virtual private network is widely used. This kind of virtual private network technology realizes the transmission and communication of network data mainly by means of virtual path because it does not establish physical link. VPN network planning has the advantages of good confidentiality and non-interference of information transmission, so it has been studied and applied more and more. Since the establishment of VPN links in local area networks will not affect other computers in the network to link to the public network, but only one computer can establish links, so the way of VPN networking is suitable for enterprise users with more computers. The direct connection network is also through the direct connection way constructs the network. For example, the third and fourth level organizations in the provinces no longer link to the first or second level institutions in the province, but directly link to the network center. For the rapid establishment and deployment of network in the whole country, the direct network can not only support the original IT network architecture, but also reduce the adjustment and transformation of the existing network. MPLS VPN is a technology aimed at solving many problems related to packet forwarding in existing networks. The network with MPLS VPN has better QoS performance, meets the requirements of packet loss rate and delay, and has a good redundancy mechanism. At the same time with low input, low use, low maintenance of good economic performance. Therefore, as an important research direction, MPLS VPN technology is widely used in practical network construction. In this paper, the MPLS VPN routing protocol and QoS technology are studied in depth. Based on the background of China Ping an Organization, according to the current network situation and the network requirements of the organization, a scheme to realize the direct networking of China Ping an Organization is designed. Completed the system deployment, parameter configuration and other network implementation work. Through the research of this topic, the network structure of China Ping an Organization is greatly optimized, and the organization structure is better, which provides a strong technical guarantee for the network upgrade caused by the rapidly expanding business. The secure access to various application systems and resources of different branches is realized. The designed scheme meets the reality of China's safety organization and achieves the predefined construction target.
【學位授予單位】:吉林大學
【學位級別】:碩士
【學位授予年份】:2014
【分類號】:TP393.1
【參考文獻】
相關(guān)期刊論文 前10條
1 劉向陽;;MPLS-VPN技術(shù)及市場[J];辦公自動化;2005年10期
2 曹建秋;多協(xié)議標簽交換技術(shù)(MPLS)體系結(jié)構(gòu)[J];重慶交通學院學報;2004年01期
3 趙大鵬;;中國電子政務(wù)安全問題分析[J];大連海事大學學報(社會科學版);2007年05期
4 胡國輝;崔可升;;MPLS VPN原理及組網(wǎng)應(yīng)用[J];電信技術(shù);2005年12期
5 羅毅;;基于MPLS的VPN系統(tǒng)在高校校園網(wǎng)中的應(yīng)用研究[J];貴陽學院學報(自然科學版);2010年02期
6 黃鷹;徐俊峰;張曉峰;;互聯(lián)網(wǎng)BGP路由收斂問題研究現(xiàn)狀的分析[J];光通信研究;2007年02期
7 季超;徐樹維;;一種基于MPLS技術(shù)的VPN實現(xiàn)方案[J];河南大學學報(自然科學版);2007年01期
8 余勝生;歐陽長春;周敬利;歐陽凱;;訪問控制技術(shù)在SSL VPN系統(tǒng)中的應(yīng)用[J];華中科技大學學報(自然科學版);2006年07期
9 董玲,黃楊,徐塞虹;BGP/MPLS VPN實現(xiàn)細節(jié)探討[J];計算機工程與應(yīng)用;2005年29期
10 馮乃光;曾黃麟;;基于MPLS VPN的電子政務(wù)外網(wǎng)構(gòu)建技術(shù)[J];計算機科學;2009年09期
本文編號:1955814
本文鏈接:http://sikaile.net/guanlilunwen/ydhl/1955814.html