HP-UX IPSec version A.02.00 Administrator's Guide

309
Numerics
3DES (Triple Data Encryption Standard)
, 33,
305
A
Advanced Encryption Standard
See AES
advanced troubleshooting
, 149
AES (Advanced Encryption Standard), 33,
305
Linux interoperability, 285
AH (Authentication Header)
algorithms
, 30, 284
configuring in host IPSec policies, 75
configuring in tunnel IPSec policies, 86
definition, 305
description, 29
negotiation, 147
processing, 151
RFC, 279
asymmetric key, 115
public/private, 305
audit file, 178
determining the name of current, 158
audit level
changing
, 155
default, 164
auditing, 155, 164
authenticated ESP (Encapsulating Security
Payload)
, 36
authentication, 305
algorithms, 30, 284
IKE primary, 41
methods, 41
with ESP (Encapsulating Security
Payload)
, 36
authentication algorithm
configuring in IKE policies, 93
Authentication Header
See AH
authentication records
configuring
, 96
B
Baltimore
certificate request
, 128
configuring, 126
CRL, 142
prerequisites, 126
requesting a certificate, 128
troubleshooting, 176
Basic Operation (Mobile IPv6)
defined
, 202
bootup options
configuring
, 109
bypass interfaces
configuring
, 102
C
Care-of Address (Mobile IPv6)
defined
, 201
certificate, 115
certificate authority (CA), 118
defined, 305
Certificate Revocation List (CRL), 116, 305
Baltimore, 142
retrieval, 142
VeriSign, 118, 142
certificates, 115
Baltimore, 126
configuring Baltimore certificates, 126
configuring IKE ID information, 134
configuring VeriSign certificates, 118
definition, 115, 305
how they work, 115
ID types accepted, 282
IPv6 with, 281
troubleshooting, 176
troubleshooting VeriSign, 185
VeriSign, 118
clear text
configuring in host IPSec policies
, 75
processing, 151
components, 66
configuration
examples
host IPSec policy order
, 299
host-to-gateway, 302
manual keys, 304
Mobile IPv6, 227
preshared keys, 295
telnet, 295
configuring
auditing
, 164
authentication records, 95
bypass list, 101
certificates, 129
gateway IPSec policies, 208