ZyXEL P-2602HW Guida Utente

Pagina di 465
 Chapter 17 Introduction to IPSec
P-2602H(W)(L)-DxA User’s Guide
233
Figure 137   IPSec Architecture
17.2.1  IPSec Algorithms
The ESP (Encapsulating Security Payload) Protocol (RFC 2406) and AH (Authentication 
Header) protocol (RFC 2402) describe the packet formats and the default standards for packet 
structure (including implementation algorithms).
The Encryption Algorithm describes the use of encryption techniques such as DES (Data 
Encryption Standard) and Triple DES algorithms.
The Authentication Algorithms, HMAC-MD5 (RFC 2403) and HMAC-SHA-1 (RFC 2404, 
provide an authentication mechanism for the AH and ESP protocols. Please see
17.2.2  Key Management
Key management allows you to determine whether to use IKE (ISAKMP) or manual key 
configuration in order to set up a VPN.
17.3  Encapsulation
The two modes of operation for IPSec VPNs are Transport mode and Tunnel mode.