• Title/Summary/Keyword: Access Router

Search Result 131, Processing Time 0.031 seconds

Improved LC-trie for Efficient IP Address Lookup (효율적인 IP 주소 검색을 위한 개선된 LC-trie)

  • Kim, Jin-Soo;Kim, Jung-Hwan
    • The Journal of the Korea Contents Association
    • /
    • v.7 no.3
    • /
    • pp.50-59
    • /
    • 2007
  • IP address lookup is one of the most important and complex functions in the router. In this paper, we propose an improved technique of LC-trie to increase the performance of IP address lookup in the high performance router. We effectively apply the prefix pruning method, which is used for the compression of the forwarding table in TCAM((Ternary Content Addressable Memory), to the LC-trie. This technique can decrease the number of memory accesses and upgrade the lookup speed. Moreover, through the real forwarding table and the real traffic distribution, we evaluate the performance of our scheme in terms of the lookup time and the number of memory access, comparing with that of the previous LC-trie.

HoAaRO: Home Agent-Assisted Route Optimization Protocol for Nested Network

  • Sun, Shi-Min;Lee, Sang-Min;Nam, Ki-Ho;Kim, Jong-Wan;Yoo, Jae-Pil;Kim, Kee-Cheon
    • Proceedings of the Korea Information Processing Society Conference
    • /
    • 2008.05a
    • /
    • pp.1035-1038
    • /
    • 2008
  • Network mobility (NEMO) has been studied extensively due to its potential applications in military and public transportation. NEMO Basic Support Protocol (NBSP) [1], the current NEMO standard based on mobile IPv6, can be readily deployed using the existing mobile IPv6 infrastructure. However, for Nested network mobility, multi-level tunnel and too many Binding Update packets results in substantial performance overhead, generally known as route sub-optimality, especially in the bottleneck root mobile router (root-MR) and Access Router. In this paper, we propose a route optimization mechanism for nested network mobility management to reduce the overhead of root-MR. In this system, Mobile Router (MR) has a cache that stores Mobile Network Nodes' (MNN) information, Correspondent Nodes' (CN) information for every MNN,and the attachments information with its subnet MRs. Home Agent performs Binding Update with CNs responsible for MRs. Through this mechanism, the number of tunnel is limited between CN and MR and the overhead of root-MR is reduced obviously.

Implementation of Hybrid Firewall System for Network Security (전산망 보호를 위한 혼합형 방화벽 시스템 구현)

  • Lee, Yong-Joon;Kim, Bong-Han;Park, Cheon-Yong;Oh, Chang-Suk;Lee, Jae-Gwang
    • The Transactions of the Korea Information Processing Society
    • /
    • v.5 no.6
    • /
    • pp.1593-1602
    • /
    • 1998
  • In this paper, a hybrid firewall system using the screening router, dual-homed gateway, screened host galeway and the application level gateway is proposed, The screened host gateway is comjXlsed of screening router, DMZ and bastion host. All external input traffics are filtered by screening router with network protrcol filtering, and transmitted to the bastion host performing application level filtering, The dual homed gateway is an internlediate equipment prohibiting direct access from external users, The application level gateway is an equipment enabling transmission using only the proxy server. External users can access only through the public servers in the DMZ, but internal users can aeee through any servers, The rule base which allows Telnet only lo the adrnilllslratol is applied to manage hosts in the DMZ According to the equipmental results, denial of access was in orderof Web. Mail FTP, and Telnet. Access to another servers except for server in DMZ were denied, Prolocol c1mials of UDP was more than that of TCP, because the many hosts broadcasted to networds using BOOTP and NETBIOS, Also, the illegal Telnet and FTP that transfer to inside network were very few.

  • PDF

A Study on Mobility Guarantee Through EHMIPv6 in Mobile Network Environments. (모바일 네트워크 환경에서 네트워크 이동성 보장을 위한 연구)

  • Hwang, Sun-Ha;Lee, Sang-Yong;Im, Hyeong-Jin;Chung, Tai-Myung
    • Proceedings of the Korea Information Processing Society Conference
    • /
    • 2003.11b
    • /
    • pp.903-906
    • /
    • 2003
  • EHMIPv6(Enhanced Hierarchical Mobile Ipv6)는 호스트의 로컬 이동성을 제공해주기 위해 제시된 EHMIPv6(Hierarchical Mobile Ipv6)를 이동 네트워크 환경에 맞게 변형한 이동 관리 방법이다. EHMIPv6 를 통해 AR(Access Router)내의 MR(Mobile Router)들의 이동성(Macro mobility)과 MR 내의 MN(Mobile Node)의 이동성(Micro mobility)을 동시에 제공함으로써 매끄러운 이동성을 제공해준다. 따라서 EHMIPv6 를 통해 이동 네트워크 상에서 인터넷 서비스를 지속적으로 제공함과 동시에 패킷손실과 지연을 줄여 보다 나은 인터넷 서비스를 제공한다.

  • PDF

A Configuration of LINUX router VPN using FreeS/WAN IPSEC (FreeS/WAN IPSEC을 이용한 LINUX 라우터 VPN 구성)

  • 김한철;이계상
    • Proceedings of the Korean Institute of Information and Commucation Sciences Conference
    • /
    • 2001.10a
    • /
    • pp.499-502
    • /
    • 2001
  • FreeS/WAN[l] 은 LINUX 상에서 네트워크 보안 프로토콜표준인 IPSEC을 구현한 공개 S/W이다. 현재 LINUX Project로 수행되고 있으며 1.91 version 까지 나와 있다. 라우터와 라우터간에 IPSEC을 사용하여 통신함으로써 access control, connectionless integrity, data origin authentication, protection against replays, confidentiality의 서비스를 보장받을 수 있고, 또한 이러한 서비스들은 IP 계층에서 제공되기 때문에 IP 계층뿐만 아니라 그 이상의 계층에 대한 보호를 제공한다. [2] 본 논문에서는 LINUX router에 FreeS/WAN IPSEC을 설치하여 Security Gateway를 구성하고, 이 Security Gateway를 통해 전형적인 가상사설망을 구성할 수 있음을 보였다. 양단의 Security Gateway에 설치되어진 FreeS/WAN으로 VPN connection을 설정하고, 인증방법으로 RSA authentication key를 setup 하였다. IPSEC을 통하여 암호화되어진 데이터로 양단의 Gateway 구간에서 보안통신이 이루어짐을 알아본다.

  • PDF

A Mobility Management Scheme based on the Mobility Pattern of Mobile Networks (이동 네트워크의 이동 패턴에 기반을 둔 이동성 관리 기법)

  • Yang, Sun-Ok;Kim, Sung-Suk
    • Journal of KIISE:Information Networking
    • /
    • v.35 no.4
    • /
    • pp.345-354
    • /
    • 2008
  • Recently, small-scale mobile network which is composed of many mobile devices in a man becomes popular. Also, Examples of large-scale mobile network can be thought access networks deployed on public transportation such as ships, trains and buses. To provide seamless mobility for mobile nodes in this mobile network, binding update messages must be exchanged frequently. However, it incurs network overhead increasingly and decreases energy efficiency of mobile router. If we try to reduce the number of the messages to cope with the problem, it may happen the security -related problems conversely Thus, mobile router needs a effective algorithm to update location information with low cost and to cover security problems. In this paper, mobility management scheme based on mobile router's mobility pattern is proposed. Whenever each mobile router leaves a visiting network, it records related information as moving log. And then it periodically computes mean resident time for all visited network, and saves them in the profile. If each mobile router moves into the visited network hereafter, the number of binding update messages can be reduced since current resident time may be expected based on the profile. At this time, of course, security problems can happen. The problems, however, are solved using key credit, which just sends some keys once. Through extensive experiments, bandwidth usages are measured to compare binding update messages in proposed scheme with that in existing scheme. From the results, we can reduce about 65% of mobility-management-related messages especially when mobile router stays more than 50 minutes in a network. Namely, the proposed scheme improves network usage and energy usage of mobile router by decreasing the number of messages and authorization procedure.

IP Sharing Router Debate: On the struggle between network and terminal (IP공유기 논쟁: 네트워크와 단말기 사이의 분투와 종결)

  • Kim, Ji-Yeon
    • Journal of Science and Technology Studies
    • /
    • v.10 no.1
    • /
    • pp.73-106
    • /
    • 2010
  • Internet users want to use IP sharing routers for reducing their cost and managing their terminals easy. Network service providers(NSPs) forced their subscribers pay extra charges to use extra terminal like IP router, since 1998 in Korea. The NSPs asserted that IP sharing routers would harm their networks or would impose extra load on their networks, but they were unable to prove their assertion. Users and manufacturing companies insisted on the legitimacy of IP routers, because the IP router is a kind of terminal for end-users, and as such, the right of selection of an IP router belongs to the user. The interest in and beliefs of the relevant social groups about IP router will be deduced through their interpretation. It draws the technological frame of two social groups, NSPs and IP router-manufacturing companies. The rough struggle between two social groups come from their frames. The article shows how society constructs a particular information technology.

  • PDF

MIPv4/MIPv6 Mobility Simulation Model of the Multihomed Node (멀티홈드 노드의 MIPv4/MIPv6 이동성 시뮬레이션 모델)

  • Zhang, Xiaolei;Wang, Ye;Ki, Jang-Geun;Lee, Kyu-Tae
    • The Journal of the Institute of Internet, Broadcasting and Communication
    • /
    • v.12 no.3
    • /
    • pp.179-186
    • /
    • 2012
  • Nowadays, the multihomed host equipped with multiple network interfaces has been interested research in next generation wireless network, because the mobile users expect that they can be able to access services not only anywhere, at any time and from any network but also simultaneously. This paper addresses the mobility simulation model of the multihomed node for supporting MIPv4 and MIPv6 function in an interworking of Worldwide Interoperability for Microwave Access (WiMAX) and IEEE 802.11 WLAN. The multihomed node with two air interfaces has been developed based on WiMAX and WLAN workstation node model in simulation software. The main point of the developed model is to support both MIPv4 and MIPv6 function, and provide network selection policy for the multihomed node between WiMAX and WLAN network. Based on the received Router Advertisement along with the interface number, we can manage the access interfaces in ordered list to make handover decision while the multihomed node is moving. In the end of this paper, the simulation scenarios and results are shown for testing MIPv4 and MIPv6 function.

Optimum AR Discovery On The MIPv6 Access Network (MIPv6 무선접근망에서 MN의 최적 AR 발견 방안)

  • 김지영;정재일
    • Proceedings of the Korean Information Science Society Conference
    • /
    • 2003.10c
    • /
    • pp.205-207
    • /
    • 2003
  • AII IP망으로써의 성격을 지닌 차세대 인터넷망의 구축은 앞으로 다양한 서비스의 제공은 물론, 새로운 접속 기술의 개발을 앞당기게 될 것이다. 앞으로 제공될 서비스들은 시간에 민감하고, 대용량의 대역폭을 요구할 뿐만 아니라, 이동 중에도 적합한 서비스 품질(QoS Qualify of Service)의 보장을 요구한다. 현재, 호스트가 이동 중에 접점을 변경할 경우, 서비스의 무결절성을 보장해 주기 위해 가장 활발하게 연구가 진행되고 있는 protocol은 MIPv6(Mobile IPv6)이다. 그러나 MIPv6는 Best Effort 패킷 전송을 위해 디자인 되어 있기 때문에 QoS 보장 부분이 미약하다. 따라서 QoS 보장을 위해 IntServ에서 QoS 지원을 위해 구현된 시그널링 프로토콜인 RSVP(Resource Reservation)와의 연동에 관한 연구들이 많이 진행되고 있다. 본 논문에서는 무선 access망에서 MIPv6와 RSVP를 기반으로 MN(mobile node)에게 서비스를 제공 해줄 수 있는 여러 AR(Access Router)들로부터 정보를 받아 저장하고 가장 적합한 AR을 찾는 방법을 제안한다. 이를 통해 라우터의 가용 자원에 따라 MN이 접점을 이동한 경우 적절한 AR로 빠른 핸드오프가 가능하여 핸드오프 시 발생되는 지연 시간(latency)을 감소 시켜 줄 수 있다.

  • PDF

A Study for Effect of Access-Control List to MPLS GE Performance (Access-Control List 가 MPLS GE 성능에 미치는 영향에 대한 연구)

  • Kim, Kwang-Hyun;Park, Seung-Seob
    • Proceedings of the Korea Information Processing Society Conference
    • /
    • 2005.05a
    • /
    • pp.1397-1400
    • /
    • 2005
  • Multiprotocol Label Switching is an initiating IETF that integrated Layer2 information network links(bandwidth, latency, utilization) to Layer 3(IP) with a particular autonomous system(or ISP) in order to simplify and improve IP-packet exchange. MPLS gives network operators a grate deal of flexibility to divert and route traffic around link failures, congestion, and bottlenecks. The MPLS has advantages that will be able to solve existing problem of Network that ISP have had IP, QoS, Gigabit forwarding and traffic engineering. The purpose of this study is to measure Access-list and the capacities of PE Router that would operate as MPLS. Many ISP using MPLS service to handle high-speed internet traffic with apply to firewall in future.

  • PDF