首页> 外文会议>2017 9th International Conference on Advanced Infocomm Technology >Application research of HTTPS service architecture based on pan DNS in IPv6 transition stages
【24h】

Application research of HTTPS service architecture based on pan DNS in IPv6 transition stages

机译:基于泛DNS的HTTPS服务架构在IPv6过渡阶段的应用研究

获取原文
获取原文并翻译 | 示例

摘要

In the IPv6 transition environment, in order to be able to provide fast support for IPv4 / IPv6 HTTPS service for the the entire network without changing the existing network and WEB applications, this paper designed a HTTPS service scheme with double stack reverse proxy in IPv6 transition stage. Through the deployment of reverse proxy service in the dual stack environment, while the HTTPS service port monitoring IPv4 and IPv6, combined with the DNS settings to support dual stack IPv4/IPv6 HTTPS service deployment, reverse proxy service makes the pure IPv4 and IPv6 users can access the HTTPS service. Based on open source software Bind and Nginx, this paper realizes the double stack access of HTTPS service without changing the existing network and WEB application, thus reducing the cost and difficulty of implementation. Using reverse proxy technology, the heavy SSL encryption, decryption and computing work is unloaded on the reverse proxy service, and the centralized optimization is processed. The practice shows that the caching mechanism of reverse proxy service not only does not increase the load of WEB application, but also effectively reduces the load of back-end WEB services and improves the access speed of HTTPS services. This paper implements the pan domain name processing of the two level domain name in Nginx reverse proxy service. When the back-end WEB service needs to be published or switched, only the DNS settings need to be changed while no reverse agents need to be configured, it is really easy to be managed and maintained.
机译:在IPv6过渡环境中,为了能够在不更改现有网络和WEB应用程序的情况下为整个网络提供对IPv4 / IPv6 HTTPS服务的快速支持,本文设计了一种在IPv6过渡中具有双栈反向代理的HTTPS服务方案。阶段。通过在双协议栈环境中部署反向代理服务,同时监视IPv4和IPv6的HTTPS服务端口,结合DNS设置以支持双协议栈IPv4 / IPv6 HTTPS服务的部署,反向代理服务使纯IPv4和IPv6用户可以访问HTTPS服务。本文基于开源软件Bind和Nginx,实现了HTTPS服务的双栈访问,而无需更改现有网络和WEB应用程序,从而降低了实现成本和难度。使用反向代理技术,繁重的SSL加密,解密和计算工作将被卸载到反向代理服务上,并进行集中式优化处理。实践证明,反向代理服务的缓存机制不仅不会增加WEB应用程序的负载,而且可以有效地减少后端WEB服务的负载,提高HTTPS服务的访问速度。本文在Nginx反向代理服务中实现了两级域名的泛域名处理。当需要发布或切换后端WEB服务时,只需更改DNS设置,而无需配置反向代理,则非常易于管理和维护。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号