7-5 Flashcards
PROVIDES A FRAMEWORK FOR AUTHENTICATION AND KEY EXCHANGE
internet security association and key management protocol ISAKMP
the first exchange between VPn endpoints establishes the basic __________
security policy
once the IKE SA is established, IPSec __________begins
negotiation ( Quick Mode )
this mode squeezes the IKE SA negotiation into three packets with all data required for SA passed by the initiator
aggressive mode
a new type of firewall uses SSL or ____ to provide VPN access through a web portal
TLS
if you find a website with HTTPS then traffic to and from the website is encrypted using ____ or ____. but nowadays it will be TLS.
TLS or SSL
just because you logon to a website that has SSL or TLS that doesn’t mean your on a ______
VPN
the following is the VPN SSL handshake
client hello
sever hello
client sends pre master secret
client has session key and finishes handshake
server has session key and finishes handshake
Cisco VPN solutions include VPN modules for Cisco 1841._____ , _________series intergrated services router
2800, 3800
the advantage to using VPNmodules for Series integrated services routers is that they will
work seemlessly with other cisco products
cisco vpn solutions can use 3des but ________ is prefered . it can handle packets larger then ______ bytes. it can create ___ new virtual VPN tunnels per second
AES // 500 // 60
with a large WAN VPN you might want to invest in the assets to monitor __________
CPN connectionws
open-source vpn solution
Openswan
_______ supports either remote users logging on via VPN or onsite connection
Openswan