Prestige 652H/HW Series User’s Guide
VPN Screens
16-1
Chapter 16
VPN Screens
This chapter introduces the VPN screens. See the Logs chapter for information on viewing logs and
the appendix for IPSec log descriptions.
16.1 VPN/IPSec Overview
Use the screens documented in this chapter to configure rules for VPN connections and manage VPN
connections.
16.2 IPSec Algorithms
The
ESP
and
AH
protocols are necessary to create a Security Association (SA), the foundation of an IPSec
VPN. An SA is built from the authentication provided by the
AH
and
ESP
protocols. The primary function
of key management is to establish and maintain the SA between systems. Once the SA is established, the
transport of data may commence.
16.2.1 AH (Authentication Header) Protocol
AH
protocol (RFC 2402) was designed for integrity, authentication, sequence integrity (replay resistance),
and non-repudiation but not for confidentiality, for which the
ESP
was designed.
In applications where confidentiality is not required or not sanctioned by government encryption restrictions,
an
AH
can be employed to ensure integrity. This type of implementation does not protect the information
from dissemination but will allow for verification of the integrity of the information and authentication of the
originator.
16.2.2 ESP (Encapsulating Security Payload) Protocol
The
ESP
protocol (RFC 2406) provides encryption as well as some of the services offered by
AH
.
ESP
authenticating properties are limited compared to the
AH
due to the non-inclusion of the IP header
information during the authentication process. However,
ESP
is sufficient if only the upper layer protocols
need to be authenticated.
An added feature of the
ESP
is payload padding, which further protects communications by concealing the
size of the packet being transmitted.
Содержание Prestige 652H series
Страница 1: ...Prestige 652H HW Series ADSL Security Wireless LAN Router User s Guide Version 3 40 March 2004 ...
Страница 32: ......
Страница 50: ......
Страница 66: ......
Страница 68: ......
Страница 76: ......
Страница 80: ......
Страница 120: ...Prestige 652H HW Series User s Guide 8 12 WAN Setup Figure 8 6 Advanced WAN Backup ...
Страница 128: ......
Страница 146: ......
Страница 148: ......
Страница 162: ......
Страница 173: ...Prestige 652H HW Series User s Guide Firewall Screens 13 11 Figure 13 5 Insert Append A Firewall Rule ...
Страница 178: ...Prestige 652H HW Series User s Guide 13 16 Firewall Screens Figure 13 8 Rule Edit Example ...
Страница 196: ......
Страница 197: ...VPN IPSec V Part V VPN IPSec This part provides information about configuring VPN IPSec for secure communications ...
Страница 198: ......
Страница 204: ......
Страница 214: ...Prestige 652H HW Series User s Guide 16 10 VPN Screens Figure 16 5 VPN IKE ...
Страница 227: ...Prestige 652H HW Series User s Guide VPN Screens 16 23 Figure 16 8 Manual Setup ...
Страница 238: ......
Страница 258: ......
Страница 277: ...Maintenance VIII Part VIII Maintenance This part covers the maintenance screens ...
Страница 278: ......
Страница 296: ......
Страница 298: ......
Страница 308: ......
Страница 324: ......
Страница 330: ......
Страница 386: ......
Страница 406: ......
Страница 418: ......
Страница 428: ......
Страница 450: ......
Страница 454: ......
Страница 464: ......
Страница 470: ......
Страница 486: ......
Страница 493: ...XII Part XII Appendices and Index This part contains additional background information and an index or key terms ...
Страница 494: ......
Страница 500: ......
Страница 511: ...Prestige 652H HW Series User s Guide Wireless LAN and IEEE 802 11 C 3 Diagram C 2 ESS Provides Campus Wide Coverage ...
Страница 512: ......
Страница 516: ......
Страница 520: ......
Страница 560: ......
Страница 574: ......