摘要 |
<p>PROBLEM TO BE SOLVED: To realize both a NAT(network address transform) and IP security(IP Sec) in parallel in a VPN(virtual private network). SOLUTION: Among 4 types of VPN NAT consisting of a VPN NAT type 'a sender - outbound' IP NAT, a VPN NAT type 'b destination - outbound' IP NAT, a VPN NAT type 'c inbound - sender' IP NAT, and a VPN NAT type 'd inbound - destination' IP NAT, one or a combination is carried out to realize the IP security in the VPN NAT. This dynamically generates the NAT rules 128, 130 and they are related to the (IKE) security consortium generated manually or dynamically and the IP security using the security consortium is started. The NAT function is also carried out in the case of carrying out the IP security for an outbound datagram and inbound datagram.</p> |