key asymmetric, 115 lengths, 284 management using IKE, 38 private, 115

public, 115 shared, 29, 33, 41 symmetric, 33

keying, dynamic, 38

L

lifetime kilobytes

configuring in host IPSec policies, 77 configuring in tunnel IPSec policies, 87

lifetime seconds

configuring in host IPSec policies, 77 configuring in IKE policies, 93 configuring in tunnel IPSec policies, 87

lifetimes, 178, 286 link errors, 174 Linux

AES (Advanced Encryption Standard), 285 encryption options, 285

lKE policies configuring, 90

loading software, 53 lSAKMP parameters See IKE policies

M

MAC, 307

Main Mode (MM) defined, 38, 307

manual keys configuration example, 304 configuring, 209 defined, 28

definition, 307

syntax for Mobile IPv6, 212 troubleshooting, 178

MC/ServiceGuard

port numbers and protocols, 254 using with HP-UX IPSec, 237

MD5 RFC, 279

Mobile IPv6

configuring HP-UX IPSec for, 209 configuring MIPV6 flag in host IPSec

policies, 78

Mobile Node (Mobile IPv6) defined, 201

N

ndd, 169

nested transform configuration syntax, 76 defined, 37

netstat, 168

O

Oakley, 38 group

configuring in IKE policies, 92 modes, 38

protocol, 307 RFC, 279

P

PASS

configuring in host IPSec policies, 75 password

re-establishing if forgotten, 55 setting, 55

patch dependencies, 52 Perfect Forward Secrecy (PFS)

configuring in IKE policies, 93 defined, 41, 307 restrictions, 281

PFS

See Perfect Forward Secrecy policy

definition, 307 manager daemon, 149

port number

configuring in host IPSec policies, 71 Prefix Discovery (Mobile IPv6)

defined, 206 preshared keys, 41

configuring, 96

configuring as an authentication method in IKE policies, 92

definition, 308 primary authentication

configuring in IKE policies, 92 priority

configuring in host IPSec policies, 70, 74 configuring in IKE policies, 91

product limitations, 281

312