Motorola 49901 Instruction Manual - Page 32

Standard-based Tunneling and Encryption for IP Traffic, Multi-protocol Tunneling and Encryption, IPSec

Page 32 highlights

Target Applications IPSec Standard-based Tunneling and Encryption for IP Traffic IPSec is the predominant tunneling and security standard for IP Networks. It defines protocols required for site-to-site as well as remote access VPN implementations at layer 3 of the OSI model. Vanguard Applications Ware release 5.5 and greater supports these IPSec features: • Authentication Header (AH) and Encapsulating Security Payload (ESP) for user authentication and encryption. • Internet Key Exchange (IKE) using preshared keys for key management. • Message Digest (MD5) and Secure Hashing Algorithm-1 (SHA-1) for data integrity. 340 Enhanced: • ISAKMP supports DES, Triple-DES and AES • ESP support DES, Triple-DES and AES Note ISAKMP and ESP support is available with the ECC DIMM on the Vanguard 340 Enhanced. Multi-protocol Tunneling and Encryption General Router Encryption (GRE) Whereas IPSec can only tunnel IP traffic over IP Networks, GRE tunneling is a Layer 2 protocol that can tunnel multi-protocol traffic over IP Networks. This enables the Vanguard to tunnel and encrypt IP, IPX, AppleTalk, and other bridge data. DES and Triple-DES (112-bit) are used as encryption algorithms and the fast and efficient SAM proprietary key exchange protocol is used for key management. Integrity Check Character (ICC) establishes data integrity when the SAM protocol is implemented. 1-12 About the Vanguard 340 and 340 Enhanced

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121

1-12
About the Vanguard 340 and 340 Enhanced
Target Applications
Standard-based Tunneling and Encryption for IP Traffic
IPSec
IPSec is the predominant tunneling and security standard for IP Networks. It defines
protocols required for site-to-site as well as remote access VPN implementations at
layer 3 of the OSI model. Vanguard Applications Ware release 5.5 and greater
supports these IPSec features:
Authentication Header (AH) and Encapsulating Security Payload (ESP) for
user authentication and encryption.
Internet Key Exchange (IKE) using preshared keys for key management.
Message Digest (MD5) and Secure Hashing Algorithm-1 (SHA-1) for data
integrity.
340 Enhanced
:
ISAKMP supports DES, Triple-DES and AES
ESP support DES, Triple-DES and AES
Note
ISAKMP and ESP support is available with the ECC DIMM on the Vanguard
340 Enhanced.
Multi-protocol Tunneling and Encryption
General Router
Encryption (GRE)
Whereas IPSec can only tunnel IP traffic over IP Networks, GRE tunneling is a
Layer 2 protocol that can tunnel multi-protocol traffic over IP Networks. This
enables the Vanguard to tunnel and encrypt IP, IPX, AppleTalk, and other bridge
data.
DES and Triple-DES (112-bit) are used as encryption algorithms and the fast and
efficient SAM proprietary key exchange protocol is used for key management.
Integrity Check Character (ICC) establishes data integrity when the SAM protocol is
implemented.