Cisco OL-4015-08 User Manual page 198

Cisco router and security device manager user's guide
Table of Contents

Advertisement

Create Site to Site VPN
ESP Encryption
The type of Encapsulating Security Protocol (ESP) encryption used. If ESP
encryption is not configured for this transform set, this column will be empty.
ESP Authentication
The type of ESP authentication used. If ESP authentication is not configured for
this transform set, this column will be empty.
AH Authentication
The type of Authentication Header (AH) authentication used. If AH
authentication is not configured for this transform set, this column will be empty.
IP Compression
If IP compression is configured for this transform set, this field contains the value
COMP-LZS.
Note
Mode
This column contains one of the following:
Type
Either User Defined, or SDM Default.
Cisco Router and Security Device Manager Version 2.2 User's Guide
8-44
IP compression is not supported on all routers.
Transport—Encrypt data only. Transport mode is used when both endpoints
support IPsec. Transport mode places the authentication header or
encapsulated security payload after the original IP header; thus, only the IP
payload is encrypted. This method allows users to apply network services
such as quality-of-service (QoS) controls to encrypted packets.
Tunnel—Encrypt data and IP header. Tunnel mode provides stronger
protection than transport mode. Because the entire IP packet is encapsulated
within AH or ESP, a new IP header is attached, and the entire datagram can
be encrypted. Tunnel mode allows network devices such as routers to act as
an IPsec proxy for multiple VPN users.
Chapter 8
Site-to-Site VPN
OL-4015-08

Advertisement

Table of Contents
loading

This manual is also suitable for:

Sdm 2.2

Table of Contents