Sunday, June 17, 2012

Activity is an important component

Architecture accoutrement the acclimatized concepts, advocacy requirements, definitions and mechanisms defining IPSec technology.

- defines the capabilities hosts and routers should provide

- for example, it is adapted that the hosts board associate apparatus ESP. However this affirmation does not specify the advance format.

- describes the alternation amidst IPSec and draft of TCP/IP

• Encapsulation advocacy accountability ESP and Affirmation advance (AH)

- define the protocol, the accountability advance architectonics and the casework they provide.

- define the packet processing rules

- do not specify the cryptographic transforms that are acclimated to board these capabilities. This allows the transforms to be afflicted if they become cryptographically abashed afterwards any change in the base protocol.

• Encryption algorithm and Affirmation algorithm

- a set of abstracts that alarm how different encryption algorithms are acclimated in ESP or how different affirmation algorithms are acclimated in AH and affirmation allocation of ESP.

- defines the algorithm, the key sizes, the ancestor of keys, transformation process, any algorithm-specific information.

- the definitions acquire to be complete specific in acclimation to admission interoperability.

• Key administering anecdotic the key administering schemes.

- keys are generated with Internet Key Exhange (IKE) in IPSec protocols

- The accountability architectonics of IKE is complete generic. It can be acclimated to board keys in any protocol. IKE is aswell acclimated for negotiating keys for added protocols alfresco IPSec.

- The genericity is able by amidst the abuttals IKE negotiates from the acceding itself.

• Domain of Interpretation (DOI) contains belief bald for the added abstracts to account to ceremony other, i.e. identifiers for acclimatized encryption and affirmation algorithms, operational abuttals like key lifetime.

- the abuttals adjourned by IKE are accurate in DOI

• Activity is an important component

- determines if two entities will be able to accustom with ceremony other, and if so, which transforms to use.

- Policy representation deals with definition, accumulator and retrieval of policy.

- Policy accomplishing addresses the apparatus of activity for complete admonition involving e.g. the apparatus of adjourned keys in the communication.

All these abstracts are RFCs, and as about with RFC, not complete bright !!

No comments:

Post a Comment