250 likes | 473 Views
91.527 - Human Computer Interaction - Fall 2010 Class project By Khang Nguyen. Virtual Private Network Design for Remote Access Cambridge - SFO Airport Test Site. Virtual Private Network Access for SFO Airport Lidar System. VPN Concept VPN Benefit SSL SonicWall VPN-200
E N D
91.527 - Human Computer Interaction - Fall 2010Class project ByKhang Nguyen Virtual Private Network Design for Remote Access Cambridge - SFO Airport Test Site
Virtual Private Network Access for SFO Airport Lidar System • VPN Concept • VPN Benefit • SSL SonicWall VPN-200 • Case Study – SFO Airport Site • Using VNC (Virtual Network Control) • Conclusion
Virtual Private Networks (VPNs) • Institutions, companies often want private networks for security. • Costly! Separate routers, T1 links, DNS infrastructure. • With a VPN, institution’s inter-office traffic is sent over public Internet instead. • But inter-office traffic is encrypted before entering public Internet
LAN-to-LAN: Leased Line and VPN Chicago SanFrancisco New York Dallas Fully Meshed Leased Line or Frame Relay Network Chicago SanFrancisco New York Internet Fully meshed VPN network Dallas
PublicInternet laptop w/ IPsec IP header IP header IP header IPsec header IPsec header IPsec header Secure payload Secure payload Secure payload salespersonin hotel IP header IP header payload payload Router w/ IPv4 and IPsec Router w/ IPv4 and IPsec branch office headquarters Virtual Private Network (VPN)
VPN Benefits VPN Technology • Save Money (Reduce NW Costs by 30-60%) • Reduce private leased line charges • Increase Business Speed and Flexibility • Internet can be accessed everywhere through many technologies • Internet capacity is available on demand
VPN Technology • Basic VPN Concepts • Tunneling • Encryption • Authentication • Associated VPN Concepts • Routing • Firewalling • Load Balancing
VPN Components • Sonicwall VPN-200 appliance • Dedicated Hardware Platform • Secure Sockets Layer • VPN NetExtender for Windows • Not require any manual client installation. • Transparent to end user • IPSec VPN • Works with existing client and server applications
Equipments & ISP • Linksys router Cable/DSL 4-Ports BEFSR41 $125 • Sonicwall VPN 200 $500 • NightHawk Power Recycle $500 • 4 Ports Web Remote power $175 • 8 Ports Switch $50 • ISP Wireless with static IP Covad Communication provide the service 10/10M at the cost $900 per month
Cambridge-SFO Testing Site VPN Client NetExtender • Benefits: • Extend the network to remote users ISP Internet Cambridge, MA SFO Lidar Testing Site Router WinExtraction PC Sonic VPN - 200 ADS-B PC NAS Lidar System
VPN Access at SFO Lidar Network FTP Server from Cambridge Requesting VPN Access ISP Covad 209.172.117.162 10/10 Wireless 11A-5.6GHz Power 110 V Power Recycle Night Hawk 314-253-0978 3188-3 On/Off Linksys Router 192.168.1.1 10/100 SonicW VPN-200 192.168.1.52 Granting VPN Access Virtual LAN 10/100 10/100 4 Outlets Web Remote Power Control 192.168.1.2 8 ports Switch 10/100 On/Off 10/100 On/Off On/Off On/Off Lidar System 192.168.1.25 Win Extraction PC 192.168.1.3 Weather Sensor PC 192.168.1.47
Case Study – SFO Lidar System • SFO Lidar Systems: Using VNC (virtual Network Control) application to access to • A Lidar System at San Francisco Airport • SOLUTION • It creates and maintains a virtual link. • It encrypts and decrypts data to reduce snooping by others • It guarantees the authenticity of the sender and receiver
WindTracer Lidar at SFO Airport Wireless ISP
Environmental Equipment Shelter: Interior Subsystems-Lidar Tall Equipment Rack Houses majority of electronics Local GUI operation Movable LRU (Scanner Driver) Movable LRU (SMCC) Movable LRU (Monitor/Keyboard) Movable LRU (Gateway PC) Movable LRUs can be slid outwithout disconnecting cablesfrom rear panel.
Case Study – SFO Lidar System • SFO Lidar Systems: Using VNC (virtual Network Control) application to access to • A Lidar System at San Francisco Airport
Conclusion • Save Money (Reduce NW Costs by 30-60%) • Increase Business Speed and Flexibility • Improve Security • Use Existing Applications, Infrastructure and User Environments • Build a secured, easy to use, scalable and standard base Business Network • Increase your Business competitiveness thru SonicWall VPN