The present invention is applicable to the field of
Internet communication, and provides a method and
system for realizing VPN mutual access across IPv6 and IPv4. When the VPN on the IPv6 side initiates a
data access message for the VPN on the IPv4 side, the method includes: according to the DNS64
server Parse the destination identifier to obtain the destination address, which is carried in the
data access message; obtain the NAT64
address pool bound to the sequence number of the ACL according to the source IPv6 address carried in the
data access message, and according to The VPN bound to the serial number of the ACL obtains the VPN on the IPv4 side; converts the source IPv6 address into a source IPv4 address that can be used in the VPN on the IPv4 side according to the NAT64
address pool; strips off the prefix of the destination address to obtain a legal destination IPv4 address; According to the destination IPv4 address, the VPN on the IPv4 side forwards the data access message through the IPv4
protocol stack. By applying the method and
system for mutual access between different VPNs through NAT64 of the present invention, the mutual access between different VPNs can be easily realized, the configuration is simple and convenient, and the security performance is high.