6. IKE protocol for dynamic management of security associations
To protect communications between two security devices (terminals and/or security gateways), they must share at least one security association.
Manual management is also possible. This involves manually entering all IPsec parameters (security services, encryption algorithms, encryption keys, etc.). This method is not recommended for managing a large number of IPsec devices, as it quickly becomes tedious.
On the other hand, to improve the level of safety, it is necessary to regularly renew the safety associations. To avoid repetitive manual work, it's a good idea to set up a dynamic mode.
The IETF therefore worked to define a dynamic security association management protocol called IKE for Internet Key Exchange. More precisely, two versions of this protocol have been developed. The first version, IKE...
You do not have access to this resource.
Exclusive to subscribers. 97% yet to be discovered!
Already subscribed?
Log in!
Ongoing reading
IKE protocol for dynamic management of security associations