© SANS Institute 2000 - 200
5
, Author retains full rights.
Key fingerprint = AF19 FA27 2F94 998D FDB5 DE3D F8B5 06E4 A169 4E46
Key fingerprint = AF19 FA27 2F94 998D FDB5 DE3D F8B5 06E4 A169 4E46
© SANS Institute 2000 - 200
5
Author retains full rights.
57
protocols such as TCP, UDP, ICMP, BGP, etc.
Traffic security is provided by:
IP AH (Authentication Header) provides connectionless integrity, data
•
origin authentication, and an optional anti-replay service.
ESP (Encapsulating Security Payload) protocol provides encryption,
•
traffic control and optionally may provide connectionless integrity, data
origin auth, and anti-replay.
Ipsec is designed to support both Ipv4 & Ipv6.
IPsec suggests using IKE (public key) for key distribution but other
implementations may be used, other examples cited include Kerberos and
SKIP.
Do'stlaringiz bilan baham: |