IPSEC Flashcards

1
Q

What does AH stand for

A

Authentication Header

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What does ESP stand for

A

Encapsulating Security payload

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What does IKE stand for

A

Internet Key Exchange

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What does AH do

A

Auth, integrity, replay

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What does ESP do

A

auth, confidentiality

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Two modes of IPSEC

A

tunnel, transport modes

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What does IKE phase 1 do

A

IKE SA is negotiated (Security Association)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What does IKE phase 2 do

A

IPSEC SA is negotiated

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What does the IKE policy contain

A

encryption(aes), hash(sha), authentication(pre-share), DH, lifetime

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What creates the IPSEC SA

A

ipsec transform-set command

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What does the transform set do

A

Lets you pick a set of security parameters for IPSEC (esp-sha-hmac)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

What does Crypto map/ACL do

A

Defines “interesting traffic” that will be protected by encryption

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

Which direction is the crypto ACL applied

A

neither, it works in both directions

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q
A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly