Font Size: a A A

The Dissertation Research On Differentiated Access Network Based On 802.1X And DHCPv6

Posted on:2010-09-14Degree:MasterType:Thesis
Country:ChinaCandidate:Z K HeFull Text:PDF
GTID:2178360275953703Subject:Computer Science and Technology
Abstract/Summary:PDF Full Text Request
IPv6 has been in the global large-scale deployment,IPv6 campus network upgrade subproject of CNGI-Cernet2,which is largest pure IPv6 Education and Research network of the world,have also begun the implementation phase of the tension.On the other hand,the problem and requirement of IPv4 network management let us consider differentiated Access Network more seriously.In this background,the paper attempt to make use of existing technology and equipment,design a low-cost IPv6 Differentiated Access Network.802.1X is a link layer access authentication protocol,its characteristics such as low deployment cost,nothing to do with the upper transfer protocol,make it very popular in colleges and universities campus network.As a popular network address management Protocol,DHCPv6 can allocate and control the user IPv6 address very well.The Research orientation of this paper is to bring for a differentiated network access scheme,making use of these two mature technologies,with the advantage of 128-bit IPv6 address.In this paper,first of all,we analyse the relative technical characteristics of the IPv6.In accordance with the principle of IPv6 address allocation,we focus on the 16 bits subnet segment and the 64 bits user interface-id allocation,and provide method that uses the IPv6 addresses to identify the user's network source access permission, with the 32-bit user's permissions ID which is based on user's network access class. The problem of cooperation between the Radius server and DHCPv6 server,we solute it with using the NAS certification agent and DHCPv6 relay agent dual functions,and a new GTS server.Meanwhile,the GTS,as the Globe Trusted Server,has the functions to allocate ACL,IPv6 address interface ID of source access certification,and so on.In the end of this paper,through testing this scheme in lab environment,we can prove the feasibility of this scheme.
Keywords/Search Tags:802.1X, DHCPv6, Access differentiation, User permissions ID, scheme model
PDF Full Text Request
Related items