Notes

IPSec

Back to networking page


What is IPSec ?

IPSec stands for Internet Protocol Security protocol which provides source authentication , confidentiality and Privacy.

IPsec is a group of protocols that are used together to set up encrypted connections between devices. It helps keep data sent over public networks secure.


Modes of IPSec

There are two modes of IPSec

  1. Transport Mode : In Transport mode , only data payload (Transport layer data) is encapsulated in IPSec header anb trailer. IP header is not protected.
 
Transport Layer
IPSec Layer
Network Layer
  1. Tunnel Mode : In tunnel mode , both IP header and data are encapsulated within IPSec header and trailer.
 
Transport Layer
Network Layer
IPSec Layer
New Network Layer
Network Layer

IPSec modes


Two Security Protocols

  1. Authentication Header (AH)
  2. Encapsulation Security Payload (ESP)

Authentication Header

The AH protocol provides source authentication and data integrity, but not privacy.

AH Header format

IP header protocol field is changed to protocol 51


Encapsulation Security Payload

ESP provides source authentication, data integrity, and privacy.

ESP header

IP header protocol field is changed to protocol 50

Header

Trailer


Source :