期刊文献+

容器化VPN在K8S环境下的应用与研究 被引量:1

Application and Research on Containerized VPN in K8S Environment
下载PDF
导出
摘要 随着容器技术的蓬勃发展,Kubernetes作为容器集群管理平台,也被越来越广泛应用,但同时,云环境下的安全问题也越发重要,通过在云上部署VPN服务,能有效解决Kubernetes集群与本地数据中心或其他VPN对端之间建立安全连接的问题,本文对Kubernetes环境下如何实现容器化VPN服务及针对VPN应用到Kubernetes环境下,多网络接口的实现进行研究,最后通过实验验证了Kubernetes集群VPN服务与对端VPN的IPSec隧道连接,能实现对集群内部服务的安全访问。 With the vigorous development of container technology,Kubernetes,as a container cluster management platform,is also more and more widely used. At the same time,security issues in the cloud environment are becoming more and more important. By deploying VPN services on the cloud,it can effectively solve the problem of establishing a secure connection between the Kubernetes cluster and the local data center or other VPN peer. This article conducts research on how to implement containerized VPN services in the Kubernetes environment and the problem of network incompatibility when VPN is applied to the Kubernetes environment. Finally,the experiment verified that the Kubernetes cluster VPN container and the peer VPN can establish an IPSec tunnel connection,which can achieve secure access to the internal services of the cluster.
作者 张入文 罗俊 胡晓勤 龚勋 ZHANG Ruwen;LUO Jun;HU Xiaoqin;GONG Xun(School of Cyber Science and Engineering,Sichuan University,Chengdu 610065)
出处 《现代计算机》 2021年第17期31-36,共6页 Modern Computer
关键词 容器 VPN Kubernetes Container VPN Kubernetes
  • 相关文献

参考文献2

二级参考文献17

  • 1弗拉海.SSL与远程接入VPN[M].王哲,罗进文.白帆,译.北京:人民邮电出版社,2009.
  • 2雷万云.云计算:企业信息化建设策略与实践[M].北京:清华大学出版社,2011.
  • 3Snader J C.VPNs Illustrated:Tunnels,VPNs,and IPSec[M].Addison-Wesley,2005.
  • 4Wood T,et a1.Cloud Net:A Platform for Optimized WAN Migration of Virtual Machines[R].Department of Computer Science,University of Massachussets,Amherst,Tech.Rep.TR-2010-002,Jan.2010.
  • 5Li L E,Woo T.VSITE:A scalable and secure architecture for seamless L2 enterprise extension in the cloud[C].IEEE Secure Network Protocols(NPSec),2010.
  • 6Hata H,Kamizuru Y,Honda A,et al.Dynamic IP-VPN architecture for cloud computing[C].the 8th Asia-Pacific Symposium on Information and Telecommunication Technologies(APSITT),2010.
  • 7Ishimura K,Tamura T,Mizuno S,et al.Dynamic IP-VPN architecture with secure IPsec tunnels[C].the 8th Asia-Pacific Symposium on Information and Telecommunication Technologies(APSITT),2010.
  • 8Kaufman C.Internet Key Exchange(IKEv2)Protocol[S].Internet Engineering Task Force,RFC4306,Dec.2005.
  • 9Gou Quan-deng,LIU Yi-he.DYNAMIC IPsec VPN ARCHITECTURE FOR PRIVATE CLOUD SERVICES[J].IEEE,2012.
  • 10Eronen P.IKEv2 Mobility and Multihoming Protocol(MOBIKE)[S].Internet Engineering Task Force,RFC4555,Jun.2006.

共引文献1

同被引文献3

引证文献1

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部