透過您的圖書館登入
IP:3.138.105.124
  • 學位論文

網路存取控制閘道器之實作

Implementation of Network Access Control Gateway

指導教授 : 郭斯彥

摘要


在今日,無線網路日益普及。越來越多的咖啡廳、學校以及其他商店提供無線上網的服務。Access point和閘道器的數量增加得相當快。因此,管理、控制這些無線網路設備和無線網路使用者是一個非常重要而且急迫的課題。 一個普通的Access point通常沒有什麼功能能夠來支援控制、管理別的設備、使用者或自己本身。在這篇論文中,我們將提出一個解決方案。我們將設計一台閘道器,具有(1) RADIUS的AAA(Authentication, Authorization, and Accounting)功能來管理使用者;(2) 動態DNS用戶端功能和我們的動態DNS伺服器做連結,讓我們更容易、更方便連接及管理這些動態IP位址的機器。(3) WAN端的captive portal來加強存取的控管。我們可以從網路上透過SSH或網頁來管理、設定這個閘道器。這個閘道器將以XML管理架構為基礎,讓我們管理及控制更有效率。另外,為了使用者使用上的方便,我們還會加入IP隨插即用的功能。 本篇論文的目的在於提供一個小型且具有彈性的網路存取控制閘道器。因為具有彈性,所以這個閘道器也可以當成一般的Access point,而且擁有更多的功能;或是扮演控制者的角色。這個閘道器不僅可以管理、控制在區域網路底下的用戶端使用者,還可以經由廣域網路被管理、控制。我們可以從遠端輕鬆地批次設定、控管這些設備。這將有助於管理、控制網路的存取。讓管理更有系統、更有效率。

並列摘要


Wireless network is prevailing nowadays. There are more and more coffee shops, universities and other stores that provide services of accessing the Internet via wireless LAN. The number of wireless access points and gateways are increasing rapidly. Therefore, it will be a very important and urgent subject to manage and control the wireless devices and users. A general access point has few functions to support controlling and managing itself and others. In this thesis, a solution will be presented. It will have (1) AAA (Authentication, Authorization, and Accounting) of RADIUS to manage users, (2) dynamic DNS client to be easily connected and managed without the inconvenience of dynamic IP address, and (3) captive portal on WAN to strengthen access control. And it will also have SSH and web to be configured and managed via Internet. Based on XML management structure, it can be managed and controlled efficiently. In addition, IP PnP (IP plug and play) will be in the gateway for convenience of use. The goal of this thesis is to provide a flexible and tiny network access control gateway. Because of the flexibility, the gateway can be a general access point that have more functions than others or be a controller. The gateway not only can manage and control clients and users in LAN but also have function that can be controlled via WAN. And we can easily control and manage these devices remotely and configure them in batches. It can help to manage and control the access of network efficiently and systematically.

並列關鍵字

Gateway Access Point Access Control XML Dynamic DNS Captive Portal RADIUS

參考文獻


[1] P. Vixie, et al. “Dynamic Updates in the Domain Name System (DNS UPDATE)” RFC 2136, April 1997.
[2] C. Rigney, et al. “Remote Authentication Dial In User Service (RADIUS),” RFC 2865, June 2000.
[7] P. Srisuresh and M. Holdrege, ”IP Network Address Translator (NAT) Terminology and Considerations,” RFC 2663, August 1999.
[9] J. Case, et al. “A Simple Network Management Protocol (SNMP),” RFC 1157, May 1990.
[13] Win-Bin See, “Design and Implementation of an Embedded Software Development Platform”, Dept. of Electrical Engineering of National Taiwan University, July 2003

延伸閱讀