Current location - Training Enrollment Network - Books and materials - Could you tell me the access mode and network topology of our school campus network?
Could you tell me the access mode and network topology of our school campus network?
T-campus network is a metropolitan area network, which can be regarded as a network composed of multiple local area networks.

Therefore, it belongs to a combination of multiple star structures and a mesh network. So far, the application of SSL VPN in education industry can be summarized into three comprehensive requirements, thus forming three development trends.

With the development of educational informatization, SSL VPN technology has been widely recognized by many universities. SSL itself is a set of encryption technology that provides authentication, confidentiality and data integrity. It uses symmetric encryption technology and is usually used to establish a secure communication channel between a Web browser and a Web server. For example, online banking is based on SSL applications. Aiming at the application of SSL VPN in education industry, we can summarize the following three comprehensive demand trends: VPN access demand under large-scale application, mobile access of digital library, and multi-line intelligent diversion between campus network and intranet.

VPN access in large-scale application

In order to introduce VPN access, we must consider the support of large-scale applications, ensure the demand of external network access to campus network, ensure the security of slave clients, the stability of slave servers, the efficiency of data transmission and server processing, and the simplicity of slave users' applications. All four are indispensable.

Comprehensive classification, the most prominent problems are: (1) large-scale application, which leads to the overload operation of the server; Single point of failure, resulting in increased business risk; And high-end equipment, which increases the procurement cost.

Through the analysis of the above problems, for the access of multi-user groups, taking tunnel-type ICEFLOW SSL VPN security equipment as an example, as the gateway of the campus network center, the user groups can establish a special security tunnel through SSL, and then log in remotely with a Web browser. This can solve the urgent need of users' safe access and alleviate the problem of high cost of private line.

In the VPN access solution under large-scale application, integration technology can give full play to its role. Through system hardware integration, large-scale application functions such as firewall and load balancing, as well as other technologies involved in the application, are all integrated into VPN equipment, fully realizing the idea of multi-function of one machine, which not only maximizes the application of equipment performance, but also truly saves users' diversified investment in equipment.

By analyzing and comparing the use of SSL VPN equipment, the cost of load balancing equipment is saved at first. Its integrated load balancing module can distribute the data to the standby server according to the scheduling algorithm and dynamic weight allocation calculation when the data flow is large, so as to reduce the overload operation of the main server, improve the resource utilization rate and eliminate redundancy.

Secondly, the application detection and load detection functions of VPN devices integrated with load balancing strategy can also ensure that other devices can respond and access the working data stream of the failed device in time when a single point of failure occurs.