8
VPNE-SERVER : INTERNET APPLICATIONS
Ed. 04 1/10Réf. 3EH 21000 BSAA
File
VPN
OVERVIEW
A virtual private network is an extension to a private network incorporating one or more public network
links such as the Internet. These links conserve the characteristics of a private point-to-point link by en-
capsulating data by means of tunneling protocols. Authentication methods are deployed to maintain
the security of the private network, while the confidentiality of the data transiting over these links is gua-
ranteed by encryption procedures. The idea behind VPNs is to offer companies exactly the same ser-
vices as a private link at far less cost by utilizing a public infrastructure.
Alcatel OmniPCX offers two types of VPN:
- A remote-access VPN connection called "VPN Client to LAN"
- A router-to-router VPN connection called "VPN LAN to LAN"
VPN Client to LAN
Description
The remote user can connect up to the company LAN from fixed or mobile terminals. In this case, the
user logs on to the Internet via the nearest point of presence and requests the creation of a VPN tunnel
between his terminal and OmniPCX.
The protocol for managing this type of VPN tunnel is PPTP (Point to Point Tunneling Protocol), a data
link layer protocol on the OSI (Open Systems Interconnection) model. The remote user is termed the
"VPN client" and OmniPCX the "VPN server".
When the VPN client issues a connection request, the authentication protocol, client IP address and
Internet
Internet
ISP
ISP
VPN Client
VPN Client
VPN
Server
VPN
ISP