Explore tens of thousands of sets crafted by our community.
IPsec Framework
10
Flashcards
0/10
AH
Authentication Header (AH) provides data integrity, data origin authentication, and an optional anti-replay service.
ESP
Encapsulating Security Payload (ESP) provides confidentiality, data origin authentication, data integrity, and an optional anti-replay service.
IKE
Internet Key Exchange (IKE) is used to set up a secure, authenticated communications channel by negotiating cryptographic parameters.
SA
Security Association (SA) defines the parameters for secure communication between two network entities.
ISAKMP
Internet Security Association and Key Management Protocol (ISAKMP) provides a framework for authentication and key exchange.
SPD
Security Policy Database (SPD) specifies what traffic should be protected by IPsec and the specific parameters for protection.
SAD
Security Association Database (SAD) contains parameters for each SA, including encryption and authentication keys.
IKEv2
Internet Key Exchange version 2 (IKEv2) is the second-generation protocol for negotiation of SAs and key exchange.
NAT-T
NAT Traversal (NAT-T) allows IPsec traffic to pass through NAT devices by encapsulating IPsec packets in UDP.
PKI
Public Key Infrastructure (PKI) supports the distribution and identification of public encryption keys, enabling secure communication in an IPsec VPN.
© Hypatia.Tech. 2024 All rights reserved.