- In the area of network information security, it is necessary to study the security in the end-to-end communication. This paper proposes a theory of virtual network by end-to-end. By researching the IPSec, security policy system and the technique of virtual network, it combines them together to design a framework of virtual network prototype system, and introduces the key technique and implement.