© Copyright Lenovo 2017
417
Chapter 25. Using IPsec with IPv6
Internet
Protocol
Security
(IPsec)
is
a
protocol
suite
for
securing
Internet
Protocol
(IP)
communications
by
authenticating
and
encrypting
each
IP
packet
of
a
communication
session.
IPsec
also
includes
protocols
for
establishing
mutual
authentication
between
agents
at
the
beginning
of
the
session
and
negotiation
of
cryptographic
keys
to
be
used
during
the
session.
Since
IPsec
was
implemented
in
conjunction
with
IPv6,
all
implementations
of
IPv6
must
contain
IPsec.
To
support
the
National
Institute
of
Standards
and
Technology
(NIST)
recommendations
for
IPv6
implementations,
Enterprise
NOS
IPv6
feature
compliance
has
been
extended
to
include
the
following
IETF
RFCs,
with
an
emphasis
on
IP
Security
(IPsec)
and
Internet
Key
Exchange
version 2,
and
authentication/confidentiality
for
OSPFv3:
RFC
4301
for
IPv6
security
RFC
4302
for
the
IPv6
Authentication
Header
RFCs
2404,
2410,
2451,
3602,
and
4303
for
IPv6
Encapsulating
Security
Payload
(ESP),
including
NULL
encryption,
CBC
‐
mode
3DES
and
AES
ciphers,
and
HMAC
‐
SHA
‐
1
‐
96.
RFCs
4306,
4307,
4718,
and
4835
for
IKEv2
and
cryptography
RFC
4552
for
OSPFv3
IPv6
authentication
RFC
5114
for
Diffie
‐
Hellman
groups
Note:
This
implementation
of
IPsec
supports
DH
groups
1,
2,
5,
14,
and
24.
The
following
topics
are
discussed
in
this
chapter:
Summary of Contents for Flex System Fabric CN4093
Page 27: ... Copyright Lenovo 2017 27 Part 1 Getting Started ...
Page 28: ...28 CN4093 Application Guide for N OS 8 4 ...
Page 58: ...58 CN4093 Application Guide for N OS 8 4 ...
Page 72: ...72 CN4093 Application Guide for N OS 8 4 ...
Page 85: ... Copyright Lenovo 2017 85 Part 2 Securing the Switch ...
Page 86: ...86 CN4093 Application Guide for N OS 8 4 ...
Page 98: ...98 CN4093 Application Guide for N OS 8 4 ...
Page 112: ...112 CN4093 Application Guide for N OS 8 4 ...
Page 136: ...136 CN4093 Application Guide for N OS 8 4 ...
Page 156: ...156 CN4093 Application Guide for N OS 8 4 ...
Page 192: ...192 CN4093 Application Guide for N OS 8 4 ...
Page 228: ...228 CN4093 Application Guide for N OS 8 4 ...
Page 229: ... Copyright Lenovo 2017 229 Part 4 Advanced Switching Features ...
Page 230: ...230 CN4093 Application Guide for N OS 8 4 ...
Page 298: ...298 CN4093 Application Guide for N OS 8 4 ...
Page 382: ...382 CN4093 Application Guide for N OS 8 4 ...
Page 392: ...392 CN4093 Application Guide for N OS 8 4 ...
Page 416: ...416 CN4093 Application Guide for N OS 8 4 ...
Page 452: ...452 CN4093 Application Guide for N OS 8 4 ...
Page 466: ...466 CN4093 Application Guide for N OS 8 4 ...
Page 496: ...496 CN4093 Application Guide for N OS 8 4 ...
Page 508: ...508 CN4093 Application Guide for N OS 8 4 ...
Page 510: ...510 CN4093 Application Guide for N OS 8 4 ...
Page 514: ...514 CN4093 Application Guide for N OS 8 4 ...
Page 538: ...538 CN4093 Application Guide for N OS 8 4 ...
Page 539: ... Copyright Lenovo 2017 539 Part 7 Network Management ...
Page 540: ...540 CN4093 Application Guide for N OS 8 4 ...
Page 554: ...554 CN4093 Application Guide for N OS 8 4 ...
Page 576: ...576 CN4093 Application Guide for N OS 8 4 ...
Page 596: ...596 CN4093 Application Guide for N OS 8 4 ...
Page 604: ...604 CN4093 Application Guide for N OS 8 4 ...
Page 609: ... Copyright Lenovo 2017 609 Part 9 Appendices ...
Page 610: ...610 CN4093 Application Guide for N OS 8 4 ...
Page 626: ...626 CN4093 Application Guide for N OS 8 4 ...
Page 633: ......
Page 634: ...Part Number 00MY375 Printed in USA IP P N 00MY375 ...