Partridge, Craig, Nelson, Samuel, Kong, Derrick.  2017.  Realizing a Virtual Private Network Using Named Data Networking. Proceedings of the 4th ACM Conference on Information-Centric Networking. :156–162.

An approach to creating secure virtual private networks for the Named Data Networking (NDN) protocol suite is described. It encrypts and encapsulates NDN packets from higher security domains and places them as the payload in unencrypted NDN packets, much as IPsec encapsulates encrypted IP datagrams in unencrypted IP datagrams. We then leverage the well-known properties of the IP-in-IP approach, taken by IPsec in tunnel mode, to understand the strengths and weaknesses of the proposed NDN-in-NDN approach.