ZyXEL Communications P-2602 manual Encapsulation, IPSec Algorithms, Key Management

Models: P-2602

1 427
Download 427 pages 42.51 Kb
Page 217
Image 217

P-2602H(W)(L)-DxA Series User’s Guide

Figure 118 IPSec Architecture

16.2.1 IPSec Algorithms

The ESP (Encapsulating Security Payload) Protocol (RFC 2406) and AH (Authentication Header) protocol (RFC 2402) describe the packet formats and the default standards for packet structure (including implementation algorithms).

The Encryption Algorithm describes the use of encryption techniques such as DES (Data Encryption Standard) and Triple DES algorithms.

The Authentication Algorithms, HMAC-MD5 (RFC 2403) and HMAC-SHA-1 (RFC 2404, provide an authentication mechanism for the AH and ESP protocols. Please seeSection 17.2 on page 221for more information.

16.2.2 Key Management

Key management allows you to determine whether to use IKE (ISAKMP) or manual key configuration in order to set up a VPN.

16.3 Encapsulation

The two modes of operation for IPSec VPNs are Transport mode and Tunnel mode.

Chapter 16 Introduction to IPSec

217

Page 217
Image 217
ZyXEL Communications P-2602 manual Encapsulation, IPSec Algorithms, Key Management, Introduction to IPSec 217