Chapter 5
Configuring IPSec
Overview
IPSec Terms and Acronyms
This chapter describes Internet Protocol Security (IPSec) capabilities of the ERX
routers. It contains the following sections:
Overview on page 125
Platform Considerations on page 127
References on page 127
IPSec Concepts on page 128
IKE Overview on page 140
Configuration Tasks on page 145
Configuration Examples on page 160
Monitoring IPSec on page 168
The IP security functionality covered in this chapter includes the following major
areas:
Encapsulating protocols, including authentication (AH) and Encapsulating Security
Payload (ESP), to provide security on specified packets
The Internet Security Association and Key Management Protocol/Internet Key
Exchange (ISAKMP/IKE) protocol suite to provide automatic negotiation of security
associations, including session keys
Table 8 on page 125 describes terms and abbreviations that are used in this discussion
of IPSec.
Table 8: IPSec Terms and Abbreviations
Term or
Abbreviation
Description
3DES
Triple DES encryption/decryption algorithm
AH
Authentication header. Provides authentication of the sender and of data
integrity.
125
Overview
Need help?
Do you have a question about the IP SERVICES - CONFIGURATION GUIDE V 11.1.X and is the answer not in the manual?
Questions and answers