Avaya Configuring IPsec Services Instrukcja Użytkownika Strona 22

  • Pobierz
  • Dodaj do moich podręczników
  • Drukuj
  • Strona
    / 122
  • Spis treści
  • BOOKMARKI
  • Oceniono. / 5. Na podstawie oceny klientów
Przeglądanie stron 21
Configuring IPsec Services
1-4
308630-15.1 Rev 00
IPsec Services
IPsec services consist of confidentiality, integrity, and authentication services for
data packets traveling between security gateways.
Confidentiality service ensures the privacy of communications.
Integrity service detects modification of data packets.
Authentication services verify the origin of every data packet.
Confidentiality
Confidentiality is accomplished by encrypting and decrypting data packets. The
Encapsulating Security Payload (ESP) protocol uses the Data Encryption
Standard (DES) algorithm in cipher block chaining (CBC) mode to encrypt and
decrypt data packets.
You set confidentiality with the cipher algorithm and cipher key parameters. The
cipher algorithm and cipher key are specified in security associations (SAs). A
security association is a relationship in which two peers share the necessary
information to securely protect and unprotect data. The algorithm and key must be
identical on both ends of an IPsec SA.
Integrity
Integrity determines whether the data has been altered during transit. The ESP
protocol ensures that data has not been modified as it passes between the security
gateways. The ESP protocol uses the HMAC MD5 (RFC 2403) or HMAC SHA-1
(RFC 2404) transform.
You set integrity with the integrity algorithm and integrity key parameters. The
integrity algorithm and integrity key must be identical on both ends of an IPsec
SA.
Authentication
Authentication ensures that data has been transmitted by the identified source.
Przeglądanie stron 21
1 2 ... 17 18 19 20 21 22 23 24 25 26 27 ... 121 122

Komentarze do niniejszej Instrukcji

Brak uwag