Condividi tramite


告别VPN:Windows 7/2008 R2的Direct Access功能概述

????VPN????!

Direct Access?Windos 7?Windows Server 2008 R2??????????????,?????????????VPN??????,???????Internet??????????????!

?????????,????????????????,???VPN?,???Token?,???SmartCard?,??????VPN?????!????????????????!Bill Gates?????,information at your finger tip?

??????????????,??????????????????????????Direct Access??????,???????,??Direct Access???????,??????????????????

??Direct Access??

Direct Access?????VPN??????,??????????????????????????????Direct Access????IP v6?????????????????Direct Access??IPsec??????????,?????IT??????????????????

Direct Access???,?????????DirectAccess Server?IP v6???????IP v6?????,??????IP v4?????,??????DirectAccess Server????????,??????????

image

??????,DirectAcces???????????IPSec????:

  • IPsec Encapsulating Security Payload (ESP) tunnel with IP-TLS (Transport Layer Security),???????????????????DNS????????,????????????????????????
  • IPsec ESP tunnel with IP-TLS,?????????????????????????????????????????

??????????????

?????????,DirectAccess???????????????????????:

Selected Server Access

Selected server access, ????,??????????????????????????????DirectAccess????????????????,????????????????????Windows Server 2008?2008 R2,?????????????IPv6?IPsec???

image

Full enterprise network access

Full enterprise network access,?????,DirectAccess?????????????IPSec????????????????????????????,???????????????????????????Exchange?RPC over Http???

image

DirectAccess???????

1. ??Windows 7???????????????????;

2. DirectAccess???????????????????,??????,?DirectAccess???????????????,?????DirectAccess???????????;??????,DirectAccess??????;

3. ???????????IPv6?IPsec???????DirectAccess??????????????IPv6??,???????IPv6-over-IPv4???(??6to4??Intra-Site Automatic Tunnel Addressing Protocol ,ISATAP)?????Windows 7??????,???????????;

4. ??????????IPv6 6to4??,?????HTTPS???DirectAccess?????(??????);

5. Windows 7????DirectAccess????????????(?????????);

6. DirectAccess?????????AD???????????,????????????????DDOS??,???????DSCPs??(Differentiated Services Code Points);

7. ????????NAP??,DirectAcces?????NAP?????????????????????????????????????????;

8. ??????,DirectAccess??????????????????

?????????????,?????????

Direct Access????????

?????????DirectAccess?????????Windows 7?DirectAccess????????????DirectAccess???,?????internet??????????internet???????????,??????????????????

image

DirectAccess?????

  • ???????Windows Server 2008 R2?DirectAccess???,???????????,??????????
  • ?????????DNS??????Windows Server 2008?Windows Server 2008 R2????????????(two-factor authentication)??R2?AD DS???
  • A Public Key Infrastructure (PKI)??????
  • IPsec?
  • DirectAccess?????:ISATAP, Teredo, and 6to4?

???????DirectAccess?????????????,????????????,????????DirectAccess??????????????????: