Well, it's not complete, YET
6/30/2010 - Optimized for Firefox 3.6.6
COPYRIGHT 1992 thru 2010 - David R. Woodsmall
Feel free to link to any of my pages
SECURE CONNECTIONS JUMP TABLE
AES |
Artificial Intelligence |
CHAP |
Compression / Decompression |
DTCP |
Encryption |
Encryption Books|
FC-SP |
FR VPN |
Fuzzy Patterns |
HDMI |
HTTPS |
IPsec |
IP VPN |
IKE |
MD5 |
OpenVPN |
REFERENCES |
RFID |
SFTP |
Smart Card |
S/MIME |
SSH - Secure Shell |
SSL |
TLS |
VPN |
WAP |
WEP |
WPA |
WPA2 |
ZOC |
IKE - Internet Key Exchange (tunnels)
In article mQEAd.344616$, AM wrote:
:After configuring a VPN I had a look to the PDM of our PIX and I wondered
:IPsec tunnel but no ISAKMP/IKE tunnel!
IPsec and ISAKMP are not fully correlated, IPSEC can run without
ISAKMP, for example with pre-defined keys or home made key exchange
protocol.
Depending on implementation, the ISAKMP daemon monitors SPD database
for needed entries (non existing or dying) and negociate new key and
parameters for SPD. If the SA is not establish to negociate keys, a
new one is started with an authentication phase. The Lifetime
negociated will determine the duration of what you called ISAKMP
tunnel which is not linked to the lifetime of the SPD (IPsec tunnel).
Since SA creation can be complex (ie certification validation),
lifetime needs to be adapted to IPSEC tunnel lifetime. For example, if
tunnel keys are changed every 5 minutes, ISAKMP association needs
probably to stay up, for a change every 6/12 hours, the SA can be
renegociated without generating to much load.
For reference:
- IPSEC charter: http://www.ietf.org/html.charters/ipsec-charter.html
- ISAKMP: http://www.ietf.org/rfc/rfc2407.txt
Regards, Alex - velocityreviews.com
Secure IPsec tunnels with a background system accessible via a gateway implementing NAT - IKE
System Management Guide: Communications and Networks - Configuring
IKE tunnel configuration scenarios - IBM
HTTPS - Secure HTTP
Not yet
SFTP - Secure FTP
Not yet
S/MIME
Not yet
SSH - Secure Shell
Secure Shell - Wikipedia
OpenSSH
OpenSSH for Windows
SSH resource page
Some how-tos on SSH tunnelling
A short guide to SSH port forwarding (Tunneling) - bitvise
SSL-Explorer - open-source, browser-based SSL VPN solution
SSH Tutorial for Linux - Suso Technology Services -
SSL - Secure Sockets Layer
What is SSL? - webopedia
OpenSSL Org
Apache-SSL
OpenSSL for Windows
IPsec and SSL: The Nitty-Gritty
mod_ssl: The Apache Interface to OpenSSL
SSL Information - Tech-Encyclopedia
SSL VPN
SSL vs IPSec VPNs
VPN's: IPSec vs. SSL
IPSec or SSL? - Nokia White Paper
SSLx Algorithms
SSL2.0 Protocol Specification
SSL3.0 Specification
Free SSL White Papers
IPSec INFORMATION - Click here
SEE IP ROUTING INFORMATION - Click here
SEE LINUX VPN INFORMATION - Click here