05b - Network Layer Security IPSEC Flashcards
Give examples of applications of IPSEC
IKE (internet Key Exchange)
What is the difference between transport mode and tunnel mode?
- Tunnel mode involves the entirety of the ESP trailer and transport-layer segment being encrypted and the block is then replaced with its ciphertext.
- Transport mode involves
What is ESP?
Encapsulating Security Payload
- consists of an encapsulating header and trailer used to provide encryption or combined encryption/authentication.
Why does ESP include a padding field?
.
What is a Replay Attack?
.
Where does IPSEC reside in the protocol stack?
in the OSI model, it resides in Layer 3 (the Network Layer)
Present an overview of IP Security (IPSEC)
.
Explain the difference between transport mode and tunnel mode.
.
Understand the concept of Security Association (SA)
.
Explain the difference between Security Association Database and the Security Policy Database.
.
Present an overview of ESP
.
Summarize the traffic processing functions performed by IPSEC for out-bound packets and for in-bound packets.
.
Discuss the alternatives for combining SAs.
.
Present an overview of IKE
IKE - Internet Key Exchange.
.
Summarize the alternative cryptographic suites approved for use with IPSEC.
.