C H A P T E R 1

Overview

This chapter describes the C7200 VSA (VPN Services Adapter) and contains the following sections:

Data Encryption Overview, page 1-1

VSA Overview, page 1-2

Hardware Required, page 1-4

Features, page 1-4

Supported Standards, MIBs, and RFCs, page 1-5

Enabling/Disabling the VSA, page 1-6

LEDs, page 1-7

Connectors, page 1-8

Slot Locations, page 1-8

Data Encryption Overview

This section describes data encryption, including the IPSec, IKE, and certification authority (CA) interoperability features.

Note For additional information on these features, refer to the “IP Security and Encryption” chapter in the Security Configuration Guide and Security Command Reference publications.

IPSec is a network level open standards framework, developed by the Internet Engineering Task Force (IETF) that provides secure transmission of sensitive information over unprotected networks such as the Internet. IPSec includes data authentication, antireplay services and data confidentiality services.

Cisco follows these data encryption standards:

IPSec—IPSec is an IP layer open standards framework that provides data confidentiality, data integrity, and data authentication between participating peers. IKE handles negotiation of protocols and algorithms based on local policy, and generates the encryption and authentication keys to be used by IPSec. IPSec protects one or more data flows between a pair of hosts, between a pair of security routers, or between a security router and a host.

C7200 VSA (VPN Services Adapter) Installation and Configuration Guide

 

OL-9129-02

1-1

 

 

 

Page 15
Image 15
Cisco Systems C7200 manual Data Encryption Overview