GUI display requirements, 121, 130 host IPSec policies, 70

IKE policies, 89 manual keys, 209 prerequisites, 52 pre-shared keys, 95 startup options, 109 tunnel IPSec policies, 81 VeriSign certificates, 123

Correspondent Node (Mobile IPv6) defined, 201

CRL

See Certificate Revocation List CRON job, 142

cron(1M), 142

D

daemons IPSec, 160

Data Encryption Standard See DES

DES (Data Encryption Standard), 33, 305 RFC, 279

Diffie-Hellman,38, 41, 174, 306 group, 306

configuring in IKE policies, 92 digital signature, 41

disk requirements, 51

DISPLAY environment variable, 121, 130

E

Encapsulating Security Payload See ESP

encryption algorithms, 33, 285 configuring in IKE policies, 93 definition, 306

keys, 147

Linux interoperability, 285 encryption keys

generating, 209 end-to-end topology

See host-to-host topology end-to-gateway topology

See host-to-gateway topology

ESP (Encapsulating Security Payload) algorithms, 33, 285

configuring in host IPSec policies, 75 configuring in tunnel IPSec policies, 86 definition, 306

negotiation, 147 processing, 151 RFC, 279 tunnel mode, 35

with authentication, 36

F

filter definition, 306

Foreign Network (Mobile IPv6 defined, 201

G

gateway-to-gateway topology, 45

H

hash symmetric key

description, 29 hash algorithm

configuring in IKE policies, 93 Home Address (Mobile IPv6)

defined, 201

Home Agent (Mobile IPv6) defined, 202

host IPSec policies configuring, 70 default, 69 examples, 79

host-to-gateway topology, 43 configuration example, 302

host-to-host topology, 43 host-to-host tunnel topology, 44

I

ICMP messages

common messages used, 282 discarding with IPv4, 282

ICMPv6 messages, 283 ID payload, 96, 135, 282 IKE (Internet Key Exchange)

defined, 28 description, 38

ID

configuring for certificates, 134 policies

examples, 94 protocol, 306

public key distribution, 116

310