DOI QR코드

DOI QR Code

동적 NAT과 PAT의 구현과 검증 사례연구

The case study for Implementation and verification of Dynamic NAT and PAT

  • 김노환 (경동대학교 정보보안학과)
  • Kim, No-Whan (Dept. of Cyber Security Information, Kyungdong University)
  • 투고 : 2015.08.12
  • 심사 : 2015.10.23
  • 발행 : 2015.10.31

초록

인터넷의 규모가 급성장하면서 IPv4 주소는 고갈되었고 IPv6로의 전이는 지연되고 있다. 차선책으로 IPv4 주소공간의 낭비를 줄이기 위하여 공중망과 사설망을 연결하는 네트워크 주소변환(NAT : Network Address Translation) 방안이 사용되고 있다. 본 논문에서는 주소공간을 효율적으로 사용할 수 있는 동적 NAT과 PAT 기반의 네트워크 설계를 기존의 이론중심에서 탈피하기 위해 토폴로지 설계 후 패킷 트레이서를 이용하여 공통 가상 망을 구현하고 시뮬레이션을 통해 결과의 검증이 가능한 효과적인 구현사례를 제시하였다.

As the size of the internet market grows rapidly, the number of IPv4 addresses available is being exhausted, while transition to IPv6 is being delayed. As the best alternative solution, Network Address Translation(NAT) scheme is being used. It connects the public internet network with the private internet network in order to reduce the waste of IPv4 addresses space. The purpose of this paper is to study the effective example of network based on common virtual network using Packet Tracer with topology designed rather than usual theoretical approach in Dynamic NAT and PAT, which allows more efficient use of address space.

키워드

참고문헌

  1. K. Egevang and P. Francis, "The IP Network Address Translation(NAT)," RFC 1631, May 1994.
  2. S. Yoon, K. Lee, C. Choi, and W. Chun, "Network Address Translation by Flow Separation," Conf. of The Korean Institute of Information Scientists and Engineers, Seoul, Korea, vol. 27, no. 2, Oct. 2000, pp. 393-395.
  3. M. Ko and S. Min, "Implementation of the TCP/IP Network Address Translation," J. of INSOC (The The Korean Institute of Information Scientists and Engineers), vol. 28, no. 1, Mar. 2001, pp. 164-172.
  4. T. Cho and B. Park, "Implementation of Network Address Translator," J. of the Korea Association for Industrial Security, vol. 5, no. 6, Dec. 2004, pp. 526-532.
  5. S. Hwang and Y. Lee, "Experimental Analysis of NAT Detecting Algorithms," Conf. of The Korea Information Processing Society, Sungnam, Korea, May 2007, pp. 1171-1174.
  6. S. Han, J. Lee, and S. Kang, "The Efficient Scenario of Solving NAT Traversal in the IMS," J. of The Korea Association for Industrial Security, vol. 14, no. 4, Apr. 2013, pp. 1935-1941.
  7. G. Jin, "CISCO Networking" vol. 2. Seoul, Korea, Sung An Dang, vol. 2, Mar. 2011.
  8. Cisco Systems, "Cisco IOS Network Address Translation(NAT)," Technical report, Sept. 1998.
  9. J. Jang and N. Kim, "The case study for Implementation and verification of Network based on VLSM," J. of the Korea Institute of Electronic Communication Sciences, vol. 9, no. 11, Nov. 2014, pp. 1267-1275. https://doi.org/10.13067/JKIECS.2014.9.11.1267
  10. N. Kim, "The Case Study for Path Selection Verification of IGP Routing Protocol," J. of the Korea Society of Computer and Information, vol. 19, no. 9, Sept. 2014, pp. 197-204. https://doi.org/10.9708/JKSCI.2014.19.9.197
  11. K. Kim, S. Bae, D. Kim, "An Enhanced Robust Routing Protocol in AODV over MANETs," J. of the Korea Institute of Electronic Communication Sciences, vol. 4, no. 1, Mar. 2009, pp. 13-18.
  12. W. Seo, M. Jun, "A Study on Security Hole Attack According to the Establishment of Policies to Limit Particular IP Area," J. of the Korea Institute of Electronic Communication Sciences, vol. 5, no. 6, Dec. 2010, pp. 625-630