We can use this same mechanism to download from the enterprise VPN gateway the policyinformation needed to classify packets and routethem through the appropriate tunnel. To support anapplication-based adaptive VPN, this policy information must include not only IP subnet information (inthis case, destination IP addresses inside the enterprise for which packets from the client need to be sentthrough either the enterprise or the network tunnel),but also the TCP/UDP port numbers and the DNSname or IP address of the IPSS that will providenetwork-based VPN service for a user. Specifying DNSnames instead of IP addresses makes possible intelligent selection of the IPSS by a DNS
No comments:
Post a Comment
Note: Only a member of this blog may post a comment.