Virtual Private Networks VPNs can extend a local area network LAN over the web to remote networks and remote client machines. A VPN uses the Internet to route LAN traffic from one place to another by encapsulating the information inside encrypted IP packets. The encrypted packets are unreadable by intermediary Internet devices and may contain any type of network communications such as file and printer sharing, email, remote procedure calls, and database access.
IP encapsulation provides a way to protect the information while in transit between the remote client and the private LAN. Computers beyond the VPN should be unable to snoop on the traffic exchanged between the remote client and server or have the ability to fit their own information into the communication flow. This is accomplished by producing what people refer to as a protected and private tunnel through the Internet in reddit best vpn. When an IP packet comprises another IP packet that is named IP encapsulation, and it provides a mechanism to refer to a server inside a private network when a direct network connection may not exist.
Cryptographic Authentication is used to rigorously validate the identity of the remote client so the private LAN can determine what level of protection ought to be applied to that user. VPNs use the authentication procedure to ascertain whether a remote user can take part in the encrypted tunnel, and for exchanging the public key which will then be used for data encryption.
Data Payload Encryption
Data Payload Encryption uses a public key to encrypt the information field of the IP encapsulated packet. In other words, data payload encryption is just like regular IP except that the information has been encrypted. It does not encrypt the header information, so details of the personal network could be gleaned by assessing the header info.
- cheaper than WANs
- easier to setup compared to WANs
Before creating a VPN session that the client host has one port and a link to the Internet via an ISP. The client machine can communicate with any host on the Internet but cannot access the web server on the private network 192.168.0.X. Following the VPN session has been created then the client host has two ports the interface to the Web and a new VPN interface. The new VPN interface becomes the default gateway that is all packets will initially travel through the new interface. However, the VPN interface is not a physical network card it does not physically connect to anything.