HP-UX IPSec version A.02.01 Administrator's Guide

369
policy selection
, 123
protocol, 362
RFC, 231
SA, 191
definition, 99
establishing, 194
negotiation failure, 218, 219
reporting, 204
SA definition, 363
installing
loading software
, 65
prerequisites, 64
verifying, 80, 144
Internet Control Message Protocol messages.
See ICMP messages
Internet Key Exchange
See IKE
Internet Key Exchange See IKE
Internet Security Association and Key
Management Protocol
See also ISAKMP
, 47
IP address
configuring in host IPsec policies
, 104
configuring in IKE policies, 125, 307
IPsec
daemons
, 203
operation, 191
overview, 33, 37
RFCs, 231
SA, 191, 363
Security Association See IPsec SA
services
, 33
topologies, 54
IPsec policy
configuring
overview
, 99
default, 102
definition, 362, 363
selection process, 102
IPsec QM SA
See also IPsec SA, 363
ipsec_admin, 80, 144, 198, 207
-auditlvl option, 202
-status option, 199
to change audit directory, 202
to change audit level, 202
to get HP-UX IPSec status, 199
ipsec_config
add certificate syntax
, 162
add crl syntax, 158, 171
ipsec_config add auth
examples, 138, 169
syntax, 130, 133, 164
ipsec_config add bypass
example
, 142
syntax, 141
ipsec_config add certificate
example, 162
ipsec_config add csr
example, 160
ipsec_config add gateway
syntax for Mobile IPv6, 294
ipsec_config add host
examples
, 112
syntax, 103, 158, 171
ipsec_config add ike
examples
, 128
syntax, 124
ipsec_config add startup
syntax, 84, 148, 180
ipsec_config add tunnel
examples
, 122
syntax, 115
ipsec_policy, 198, 206
to test which IPsec policy matches packet,
199
ipsec_report, 81, 145, 198, 203, 218, 219
IPv6
documentation
, 241
ICMPv6 messages, 235
overview, 241
ISAKMP
defined, 363
ID payload, 133
RFC, 231
See alsoIKE, 47
ISAKMP MM SA
See also IKE SA, 363
K
kernel
policy engine
, 193
SA database, 195
key
asymmetric, 153
lengths, 236
management using IKE, 47
private, 153
public, 153
shared, 51