SPI
Sequence Number
IV
Data
Pad | Pad | Next |
LH d
Authentication Data
E.2.1.3 Security Associations (SA)
Security Associations are a
SA is identified by 3 parameters:
-Security Parameters Index (SPI), a locally unique value
-Destination IP Address
-Security Protocol: (AH or ESP, but not both)
There are several other parameters associated with an SA that are stored in a Security Association database.
E.2.2 IPSec Modes
To exchange data between different types of VPNs, IPSec provides two major modes:
- Tunnel Mode
This mode is used for
174