ZyXEL Communications FMG3024-D10A ユーザーズマニュアル

ページ / 316
Chapter 17 VPN
FMG3024-D10A / FMG3025-D10A Series User’s Guide
174
Figure 88   
IPSec Architecture
IPSec Algorithms
The ESP (Encapsulating Security Payload) Protocol (RFC 2406) and AH (Authentication Header) 
protocol (RFC 2402) describe the packet formats and the default standards for packet structure 
(including implementation algorithms).
The Encryption Algorithm describes the use of encryption techniques such as DES (Data Encryption 
Standard) and Triple DES algorithms.
The Authentication Algorithms, HMAC-MD5 (RFC 2403) and HMAC-SHA-1 (RFC 2404, provide an 
authentication mechanism for the AH and ESP protocols. 
Key Management
Key management allows you to determine whether to use IKE (ISAKMP) or manual key 
configuration in order to set up a VPN.
17.3.2  Encapsulation
The two modes of operation for IPSec VPNs are Transport mode and Tunnel mode. At the time of 
writing, the Device supports Tunnel mode only.