147
Nortel VPN Router Configuration — Basic Features
Chapter 8
Configuring
IPSec mobility and persistent mode
A large number of companies choose to secure access to their corporate networks
via VPN using the IPSec protocol. IPSec allows corporate employees, located
outside the corporate network to establish a secure tunnel to a private corporate
network through the Internet. With the growing popularity of wireless access, it is
important to have the ability to move freely among multiple networks without
losing a secure connection.
Currently, IPSec does not support this movement without tearing down and
reestablishing the VPN connection. Breaking and reestablishing a secure
connection could cause disruptions to applications running across the tunnel. For
example in
Figure 29 on page 148
, if a client has a wireless connection to the
Internet and has established a secure tunnel to the corporate private network via
access point 1 (AP1) and the client's connection to AP1 goes down for some
reason, the client roams to the access point 2 (AP2) and obtains a new IP address.
The VPN Router on the corporate network brings the secure IPSec connection
down because of a lack of response from client's original IP address and absence
of security associations (SA) for the new IP address. Thus, the client has to
reestablish a tunnel again via AP2. If the client had an open FTP session to the
server on the private side of the corporate network, this session would have been
closed.
Содержание Contivity 1050
Страница 10: ...10 Contents NN46110 500 ...
Страница 14: ...14 Tables NN46110 500 ...
Страница 22: ...22 Preface NN46110 500 ...
Страница 58: ...58 Chapter 2 Getting started NN46110 500 ...
Страница 74: ...74 Chapter 3 Setting up the Nortel VPN Router 1010 1050 and 1100 NN46110 500 ...
Страница 90: ...90 Chapter 4 Configuring user tunnels NN46110 500 ...
Страница 118: ...118 Chapter 5 Configuring the system NN46110 500 ...
Страница 162: ...162 Chapter 8 Configuring IPSec mobility and persistent mode NN46110 500 ...
Страница 164: ...164 Branch office quick start template NN46110 500 ...
Страница 178: ...178 Index NN46110 500 W Web browser interface 50 Web interface options 53 Welcome display 56 ...