Avaya Configuring IPsec Services Manual de usuario Pagina 27

  • Descarga
  • Añadir a mis manuales
  • Imprimir
  • Pagina
    / 122
  • Tabla de contenidos
  • SOLUCIÓN DE PROBLEMAS
  • MARCADORES
  • Valorado. / 5. Basado en revisión del cliente
Vista de pagina 26
Overview of IPsec
308630-14.00 Rev 00
1-7
IPsec Elements
IPsec has three important constructs:
Security gateways
Security policies
Security associations (SAs)
In the IPsec context, hosts communicate across an untrusted network through
security gateways (routers configured for IPsec interfaces). Security policies
determine how the IPsec interfaces handle data packets for the hosts on both ends
of a connection. Security associations apply IPsec services to data packets
traveling between the security gateways.
Figure 1-2
shows the logical relationship between security policies and security
associations.
Figure 1-2. IPsec Concepts: Security Gateways, Security Policies, and SAs
IP0087A
Inbound process
Security associations
Inbound policies
criteria & action
(bypass, drop, log)
Outbound policies
criteria & action
(bypass, drop, log,
protect)
Outbound process
Security
policy
database
Unprotect SAs
Source/Dest Addr, SPI
Cipher Algo/Key,
Integrity Algo/Key
Protect SAs
Source/Dest Addr, SPI
Cipher Algo/Key,
Integrity Algo/Key
IPsec gateway WAN interface
Untrusted
network
Vista de pagina 26
1 2 ... 22 23 24 25 26 27 28 29 30 31 32 ... 121 122

Comentarios a estos manuales

Sin comentarios