C H A P T E R
1-1
VPN Acceleration Module 2+ (VAM2+) Installation and Configuration Guide
OL-5979-03
1
Overview
This chapter describes the VPN Acceleration Module 2+ (SA-VAM2+) and contains the following
sections:
•
Data Encryption Overview, page 1-1
•
SA-VAM2+ Overview, page 1-3
•
Features, page 1-4
•
Supported Standards, MIBs, and RFCs, page 1-6
•
Online Insertion and Removal (OIR), page 1-7
•
LEDs, page 1-7
•
Cables, Connectors, and Pinouts, page 1-8
•
Slot Locations, page 1-9
Data Encryption Overview
This section describes data encryption, including the IPSec, IKE, and certification authority (CA)
interoperability features.
Note
For additional information on these features, refer to the “IP Security and Encryption” chapter in the
Security Configuration Guide
and
Security Command Reference
publications.
IPSec is a network level open standards framework, developed by the Internet Engineering Task Force
(IETF) that provides secure transmission of sensitive information over unprotected networks such as the
Internet. IPSec includes data authentication, antireplay services and data confidentiality services.
Cisco follows these data encryption standards:
•
IPSec—IPSec is an IP layer open standards framework that provides data confidentiality, data
integrity, and data authentication between participating peers. IKE handles negotiation of protocols
and algorithms based on local policy, and generates the encryption and authentication keys to be
used by IPSec. IPSec protects one or more data flows between a pair of hosts, between a pair of
security routers, or between a security router and a host.