A detailed implement and analysis of MPLS VPN based on IPSec

VPN simply based on multiprotocol label switching (MPLS) has some outstanding security problems in some aspects. Hence, we bring forward a specific and particular security enhanced solution of VPN based on MPLS. The core idea of this scheme is as follows: after considering the advantages of MPLS and IPSec in transfer efficiency and security, import CA certificate management scheme during the implementation of IPSec so as to build a secure and efficient VPN over MPLS core networks. The paper describes the specific steps of enhanced MPLS VPN in details and compares the capacity of different MPLS VPNs with the result of simulation.

[1]  Yakov Rekhter,et al.  BGP/MPLS VPNs , 1999, RFC.

[2]  Dan Harkins,et al.  The Internet Key Exchange (IKE) , 1998, RFC.

[3]  Naganand Doraswamy,et al.  IP Security Document Roadmap , 1998, RFC.