Table 8: IPSec Terms and Abbreviations
(continued)
Description
Term or
Abbreviation
Certificate authority
CA
Data Encryption Standard encryption algorithm
DES
Dead peer detection, which enables router to detect when communication to
remote peer has been disconnected. Also known as IKE keepalive.
DPD
Digital Signature Standard authentication algorithm
DSS
Encapsulating Security Payload, which provides data integrity, data
confidentiality and, optionally, sender's authentication
ESP
Fully qualified domain name, which consists of the hostname and domain
name for a specific system
FQDN
Hashed Message Authentication Code
HMAC
Internet Key Exchange
IKE
IP address of the entity that is one of two endpoints in an IKE/ISAKMP SA.
IKE endpoint
In the context of a secure interface, already secured traffic arriving on that
interface (identified based on its SPI). This traffic is cleared and checked
against the security parameters set for that interface.
Inbound traffic
Internet Protocol Security
IPSec
IP address of the entity that is one of two endpoints in an IPSec SA
IPSec endpoint
Internet Security Association and Key Management Protocol
ISAKMP
Security associations used to secure control channels between security
gateways. These are negotiated via IKE phase 1.
ISAKMP SA
Message Digest hash algorithm
MDx
A random value used to detect and protect against replay attacks
Nonce
In the context of a secure interface, the clear traffic forwarded to the interface
(either by policy or by routing) that is typically secured according to security
parameters set for that interface.
Outbound
traffic
Perfect forward secrecy
PFS
Rivest-Shamir-Adleman encryption algorithm
RSA
Copyright © 2010, Juniper Networks, Inc.
120
JunosE 11.2.x IP Services Configuration Guide
Содержание JUNOSE 11.2.X IP SERVICES
Страница 6: ...Copyright 2010 Juniper Networks Inc vi...
Страница 8: ...Copyright 2010 Juniper Networks Inc viii JunosE 11 2 x IP Services Configuration Guide...
Страница 18: ...Copyright 2010 Juniper Networks Inc xviii JunosE 11 2 x IP Services Configuration Guide...
Страница 22: ...Copyright 2010 Juniper Networks Inc xxii JunosE 11 2 x IP Services Configuration Guide...
Страница 28: ...Copyright 2010 Juniper Networks Inc 2 JunosE 11 2 x IP Services Configuration Guide...
Страница 116: ...Copyright 2010 Juniper Networks Inc 90 JunosE 11 2 x IP Services Configuration Guide...
Страница 144: ...Copyright 2010 Juniper Networks Inc 118 JunosE 11 2 x IP Services Configuration Guide...
Страница 230: ...Copyright 2010 Juniper Networks Inc 204 JunosE 11 2 x IP Services Configuration Guide...
Страница 262: ...Copyright 2010 Juniper Networks Inc 236 JunosE 11 2 x IP Services Configuration Guide...
Страница 294: ...Copyright 2010 Juniper Networks Inc 268 JunosE 11 2 x IP Services Configuration Guide...
Страница 328: ...Copyright 2010 Juniper Networks Inc 302 JunosE 11 2 x IP Services Configuration Guide...
Страница 345: ...PART 2 Index Index on page 321 319 Copyright 2010 Juniper Networks Inc...
Страница 346: ...Copyright 2010 Juniper Networks Inc 320 JunosE 11 2 x IP Services Configuration Guide...
Страница 356: ...Copyright 2010 Juniper Networks Inc 330 JunosE 11 2 x IP Services Configuration Guide...