Prestige 792H User’s Guide
VPN Screens
14-1
Chapter 14
VPN Screens
This chapter introduces the VPN screens. See the Logs chapter for information on viewing logs and
the Reference Guide for IPSec log description
14.1 VPN/IPSec Overview
Use the screens documented in this chapter to configure rules for VPN connections and manage VPN
connections.
14.2 IPSec Algorithms
The
ESP
and
AH
protocols are necessary to create a Security Association (SA), the foundation of an IPSec
VPN. An SA is built from the authentication provided by the
AH
and
ESP
protocols. The primary function
of key management is to establish and maintain the SA between systems. Once the SA is established, the
transport of data may commence.
14.2.1 AH (Authentication Header) Protocol
AH
protocol (RFC 2402) was designed for integrity, authentication, sequence integrity (replay resistance),
and non-repudiation but not for confidentiality, for which the
ESP
was designed.
In applications where confidentiality is not required or not sanctioned by government encryption restrictions,
an
AH
can be employed to ensure integrity. This type of implementation does not protect the information
from dissemination but will allow for verification of the integrity of the information and authentication of the
originator.
14.2.2 ESP (Encapsulating Security Payload) Protocol
The
ESP
protocol (RFC 2406) provides encryption as well as some of the services offered by
AH
.
ESP
authenticating properties are limited compared to the
AH
due to the non-inclusion of the IP header
information during the authentication process. However,
ESP
is sufficient if only the upper layer protocols
need to be authenticated.
An added feature of the
ESP
is payload padding, which further protects communications by concealing the
size of the packet being transmitted.
Содержание Prestige 792H
Страница 1: ...Prestige 792H G SHDSL 4 port Security Gateway User s Guide Version 3 40 BZ 0 March 2004...
Страница 8: ......
Страница 32: ......
Страница 34: ......
Страница 40: ......
Страница 46: ......
Страница 66: ......
Страница 86: ...Prestige 792H User s Guide 5 14 WAN Setup Figure 5 6 Advanced WAN Backup...
Страница 94: ......
Страница 108: ......
Страница 112: ......
Страница 134: ......
Страница 163: ...VPN IPSec IV Part IV VPN IPSec This part provides information about configuring VPN IPSec for secure communications...
Страница 164: ......
Страница 178: ...Prestige 792H User s Guide 14 8 VPN Screens Figure 14 3 VPN IKE...
Страница 205: ...Remote Management and UPnP V Part V Remote Management and UPnP This part contains Remote Management and UPnP...
Страница 206: ......
Страница 210: ......
Страница 220: ......
Страница 221: ...Maintenance VI Part VI Maintenance This part covers the maintenance screens...
Страница 222: ......
Страница 234: ......
Страница 236: ......
Страница 246: ......
Страница 268: ......
Страница 270: ......
Страница 282: ......
Страница 286: ......
Страница 312: ......
Страница 334: ......
Страница 348: ......
Страница 370: ......
Страница 380: ......
Страница 388: ......
Страница 390: ......
Страница 406: ......
Страница 410: ......
Страница 415: ...XI Part XI Appendices and Index This section provides some Appendices and an Index...
Страница 416: ......
Страница 420: ......
Страница 424: ......
Страница 426: ......
Страница 430: ......