ZyXEL Communications VSG1432-B101 Series Manual De Usuario
Chapter 21 IPSec
VSG1432-B101 Series User’s Guide
257
21.4.1 IPSec Architecture
The overall IPSec architecture is shown as follows.
Figure 120 IPSec Architecture
IPSec Algorithms
The ESP (Encapsulating Security Payload) Protocol (RFC 2406) and AH
(Authentication Header) protocol (RFC 2402) describe the packet formats and the
default standards for packet structure (including implementation algorithms).
(Authentication Header) protocol (RFC 2402) describe the packet formats and the
default standards for packet structure (including implementation algorithms).
The Encryption Algorithm describes the use of encryption techniques such as DES
(Data Encryption Standard) and Triple DES algorithms.
(Data Encryption Standard) and Triple DES algorithms.
The Authentication Algorithms, HMAC-MD5 (RFC 2403) and HMAC-SHA-1 (RFC
2404, provide an authentication mechanism for the AH and ESP protocols.
2404, provide an authentication mechanism for the AH and ESP protocols.
Key Management
Key management allows you to determine whether to use IKE (ISAKMP) or
manual key configuration in order to set up a VPN.
manual key configuration in order to set up a VPN.