
Prestige 652 Series User’s Guide
VPN Screens
17-1
Chapter 17
VPN Screens
This chapter introduces the VPN screens. See the Logs chapter for information on viewing logs and
the Reference Guide for IPSec log descriptions.
17.1 VPN/IPSec Overview
Use the screens documented in this chapter to configure rules for VPN connections and manage VPN
connections.
17.2 IPSec Algorithms
The
ESP
and
AH
protocols are necessary to create a Security Association (SA), the foundation of an IPSec
VPN. An SA is built from the authentication provided by the
AH
and
ESP
protocols. The primary function
of key management is to establish and maintain the SA between systems. Once the SA is established, the
transport of data may commence.
17.2.1 AH (Authentication Header) Protocol
AH
protocol (RFC 2402) was designed for integrity, authentication, sequence integrity (replay resistance),
and non-repudiation but not for confidentiality, for which the
ESP
was designed.
In applications where confidentiality is not required or not sanctioned by government encryption restrictions,
an
AH
can be employed to ensure integrity. This type of implementation does not protect the information
from dissemination but will allow for verification of the integrity of the information and authentication of the
originator.
17.2.2 ESP (Encapsulating Security Payload) Protocol
The
ESP
protocol (RFC 2406) provides encryption as well as some of the services offered by
AH
.
ESP
authenticating properties are limited compared to the
AH
due to the non-inclusion of the IP header
information during the authentication process. However,
ESP
is sufficient if only the upper layer protocols
need to be authenticated.
An added feature of the
ESP
is payload padding, which further protects communications by concealing the
size of the packet being transmitted.
Summary of Contents for Prestige 652 Series
Page 1: ...Prestige 652 Series ADSL Security Wireless LAN Router User s Guide Version 3 40 June 2003...
Page 30: ......
Page 60: ......
Page 62: ......
Page 86: ......
Page 99: ...Prestige 652 Series User s Guide WAN Setup 7 13 Figure 7 7 Advanced WAN Backup...
Page 106: ......
Page 108: ......
Page 128: ......
Page 130: ......
Page 144: ......
Page 150: ......
Page 176: ......
Page 178: ......
Page 192: ...Prestige 652 Series User s Guide 17 8 VPN Screens Figure 17 3 VPN IKE...
Page 212: ......
Page 214: ......
Page 233: ...Maintenance VII Part VII Maintenance This part covers the maintenance screens...
Page 234: ......
Page 248: ......
Page 250: ......
Page 260: ......
Page 276: ......
Page 292: ......
Page 334: ......
Page 374: ......
Page 396: ......
Page 400: ......
Page 410: ......
Page 416: ......
Page 432: ......
Page 440: ......
Page 446: ......
Page 458: ......
Page 462: ......
Page 502: ......
Page 516: ......