ImiThutho yeVPN Isifundo

Izinhlobo ze-VPNs, i-Protocol, nokuningi

Ubuchwepheshe be-intanethi yangasese busekelwe kumqondo wokudonsa. Ukuguqulwa kwe-VPN kuhilela ukusetha nokugcina uxhumano lwenethiwekhi olunengqondo (okungase luqukethe ama-hops aphakathi). Kulo xhumano, amaphakethe akhiwe ngendlela ethize ye-VPN yokufometha ahlanganiswe ngaphakathi kwesinye isisekelo noma se-protocol yenethiwekhi, bese adluliselwa phakathi kwamakhasimende we-VPN nesiphakeli, futhi ekugcineni afakwe ngaphakathi kwenkampani yokwamukela.

Ama-VPN asekelwe ku-inthanethi, amaphakethe kwenye yezinhlelo eziningi ze- VPN afakwe ngaphakathi kwamaphakethe we- Inthanethi Protocol (IP) . Izivumelwano ze-VPN nazo zisekela ubuqiniso nokubethela ukuze kugcinwe imigudu.

Izinhlobo ze-VPN Tunneling

I-VPN isekela izinhlobo ezimbili zokudonsa - ngokuzithandela futhi kuphoqelekile. Zombili izinhlobo zokudonsa zivame ukusetshenziswa.

Ngo-tunneling ngokuzithandela, iklayenti le-VPN lilawula ukusethwa kokuxhumeka. Iklayenti kuqala yenza uxhumano kumhlinzeki wenethiwekhi yenkampani yenethiwekhi (i-ISP esimweni se-Internet VPNs). Khona-ke, uhlelo lokusebenza lwekhasimende le-VPN ludala umhubhe kuseva ye-VPN ngalokhu kuxhumano bukhoma.

Ekuthungeni okuphoqelekile, umnikezeli wenethiwekhi yenkampani yenethiwekhi ulawula ukusethwa kwe-VPN uxhumano. Uma iklayenti kuqala yenza ukuxhumeka okujwayelekile kumthwali wezinkampani, umphathi wezokuthutha uvula ngokushesha uxhumano lwe-VPN phakathi kwalo maklayenti kanye nesiphakeli se-VPN. Kusukela ekubukeni kwamakhasimende, ukuxhumeka kwe-VPN kusethwe ngesinyathelo esisodwa nje uma kuqhathaniswa nenqubo yesinyathelo ezimbili edingekayo imigudu yokuzithandela.

Ukwakhiwa kwe-VPN okuphoqelekile kuqinisekisa amaklayenti futhi kuwasebenzisana namaseva aqondene ne-VPN usebenzisa i-logic eyakhelwe kudivayisi ye-broker. Le divayisi yenethiwekhi ngezinye izikhathi ibizwa ngokuthi i-VPN Front End Processor (FEP), Network Access Server (NAS) noma i-Point of Presence Server (POS). Ukudonsa okuphoqelekile kufihla imininingwane ye-VPN iseva yokuxhumeka kumakhasimende e-VPN futhi idlulisela ngokuphumelelayo ukulawulwa kokuphathwa phezu kwemigudu esuka kumakhasimende kuya ku-ISP. Ngokubuyisela, abahlinzeki bemisebenzi kumele bathathe umthwalo owengeziwe wokufaka nokugcina amadivayisi we-FEP.

Amaprosesa we-VPN Tunneling

Izinqubo eziningi zenethiwekhi yekhompiyutha zenzelwe ngokukhethekile ukusetshenziswa kwemigudu ye-VPN. Izindlela ezintathu ezithandwa kakhulu ze-VPN zokubhalisa ezibalwe ngezansi ziyaqhubeka ukuncintisana komunye nomunye ukwamukela embonini. Lezi zinhlelo ezivame ukungahambisani.

UHlelo Lwesiqondisi Kungena Esilula (PPTP)

Izinkampani eziningana zisebenza ndawonye ukudala imininingwane ye- PPTP . Abantu ngokuvamile bahlobanisa i-PPTP ne-Microsoft ngoba cishe wonke ama-flavour e-Windows ahlanganisa ukwesekwa kwamakhasimende okwakhiwe kulolu hlelo. Ukukhishwa kokuqala kwe-PPTP ye-Windows yi-Microsoft kuqukethe izici zokuphepha ezinye izazi ezithi zibuthaka kakhulu ekusetshenzisweni okukhulu. I-Microsoft iyaqhubeka nokuthuthukisa ukusekelwa kwayo kwe-PPTP, noma kunjalo.

I-Protocol Two Tunneling Protocol (L2TP)

Umncintiswano wangempela ku-PPTP we-VPN ukuhanjiswa kwakuyi-L2F, i-protocol eyenziwe ngokuyinhloko kwimikhiqizo ye-Cisco. Emzamweni wokuthuthukisa ku-L2F, izici ezinhle kakhulu ze-PPTP zahlanganiswa ukuze zenze izinga elisha elibizwa nge-L2TP. Njenge-PPTP, i-L2TP ikhona ku-ungqimba wokuxhumanisa kwedatha (Ithebhu Two) ku-model ye-OSI - ngaleyo ndlela umsuka wegama layo.

I-Internet Protocol Security (IPsec)

I-IPsec empeleni iqoqo lezivumelwano eziningi ezihlobene. Ingasetshenziswa njengesisombululo esiphelele seprotocol ye- VPN noma nje njengesikimu sokubethela ngaphakathi kwe-L2TP noma i-PPTP. I-IPsec ikhona kusendlalelo senethiwekhi (I-Layer Three) yesimo se-OSI.