X.509 Certificate authentications are typically used for larger deployments with a small to a
large number of nodes. The RSA keys of the individual nodes are signed by a central
Certificate Authority (CA). The Certificate Authority is used to maintain the trust relationship
between the nodes including revocation of trust for specific nodes. The Nodegrid solutions
support for this purpose public and private CA’s. Further to this can the Nodegrid Solution
be used to host and manage its own Certificate Authority for the purpose of the IPSec
communication.
Connection Scenarios
IPSec supports many different connection scenarios, starting from communication just
between 2 nodes to communication of one node to multiple nodes, communication limited
just to the nodes involved or expanding beyond the directly involved nodes to the networks
access able behind the nodes. Due to the multitude of communication options, examples
are provided for some of the most common scenarios.
Host to Host
Host to Host communication means that 2 nodes have a VPN tunnel open which connects
them directly. The communication which is exchanged through the tunnel is limited to direct
communication between them. None of the packages will be routed or forwarded. This is
essentially a point to point communication between 2 nodes.
Host to Site
In a Host to Site communication scenario one node establishes a VPN tunnel to a 2nd node.
Communication is limited on one site to the specific node and on the other side to all
devices in a range of subnet which is accessible by the 2nd node
Site to Site
Содержание Nodegrid Bold SR
Страница 1: ......
Страница 2: ...User Guide Nodegrid Serial Console Nodegrid Services Router Nodegrid Bold SR Nodegrid Manager...
Страница 11: ......
Страница 211: ......
Страница 220: ...Case of 48VDC supply Case of 48VDC supply...
Страница 227: ...ZPE Systems Inc 46757 Fremont Blvd Fremont CA 94538 USA www zpesystems com...