
Concentric Network Corporation White Paper, Outsourcing Remote Access Services
10/1/1998 11
IP Network
GRE Encapsulated Tunnel
Gateway
Router
RAS
PPP session
Frame Relay link
Layer 2 PPTP/L2TP tunneling in a
Layer 3 (Virtual Tunneling Protocol) session
Router
NT Server
Laptop
computer
Layer 2 tunneling is a session between the client
and a NT server located on the corporate network
Tunnel Registration and User Authentication
Two critical components of the Concentric RemoteLink™ service are the Tunnel Management
Server (TMS) and the Authentication Server (AS) processes.
The TMS is used to store relevant information about the customer’s network including the
customer’s two IP tunnel endpoints and characteristics associated with the tunnel such as tunnel
refresh timers, type of encryption used, and the customer’s IP domain name.
The AS is used to authenticate individual users attempting to gain access to the customer’s
“home” network.
Summary & Future Directions
Today there are no vendors today currently implementing standards-based tunneling. PPTP has
been retired in favor of L2TP. L2F has been retired for the same reason. Concentric is closely
monitoring the activities surrounding L2TP. As L2TP becomes closer to standardization,
Concentric will support this alternative tunneling scheme. Supporting both Layer 3 Forwarding
and Layer 2 Forwarding will give our customers the option of choosing a VPN architecture that
most closely fits the requirements of the service being offered. In either case, the service can be
deployed using the technology infrastructure currently in Concentric’s network.
Comentarios a estos manuales