HP-UX IPSec version A.02.01 Administrator's Guide

HP-UX IPSec Overview
HP-UX IPSec Topologies
Chapter 1 55
Host-to-Host Security Within an Internal Network
Two end hosts can run HP-UX IPSec locally to protect communication
between them, with or without intermediate gateways.
You can use HP-UX IPSec to secure sensitive network communication
within an enterprise, such as network communication for Human
Resources (HR) or payroll groups. In Figure 1-14, host-to-host IPsec
secures all packets within the HR subnet, and between node E1 in the
engineering subnet and H1 in the HR subnet.
Figure 1-14 HP-UX IPSec Host-to-Host IPsec in an Internal Network
Host-to-Host VPN Across the Internet
IPsec can provide secure VPN tunnels through the public Internet. VPN
tunnels protect packet transfer from a remote workstation to a corporate
intranet or link geographically dispersed portions of an intranet without
using expensive leased lines. VPN tunnels can also link the computing
facilities of business partners and secure mobile and wireless node
communications.