文档详情

防火墙名词解释(Firewall terms explanation).doc

发布:2017-07-23约1.96万字共16页下载文档
文本预览下载声明
防火墙名词解释(Firewall terms explanation) Enterprise firewall series What is PPTP? [15:24:12 2006-7-27] The point-to-point Tunneling Protocol (PPTP) is a tunnel Protocol defined by PPTP BBS, which allows PPP packets to be encapsulated inside IP packets to be forwarded on any IP network including the Internet. Windows 98 and above support PPTP. What is the difference between transmission mode and tunnel mode? [the 2006-7-27 15:22:52] Transmission mode - packet load (data) part is encapsulated by encryption but IP header remains transparent (unchanged). The main application is to an IP host to protect locally initiated data. The transport mode only protects the upper layer protocol of the IP load (user data). The high - width VPN firewall does not support transmission mode. Tunnel mode - all parts, including the original IP header, are encapsulated to produce a new IP header. Only this new header is transparent (without protection) and is more secure. It is a security gateway that enables secure gateways to provide IPSec services to other machines that lack IPSec capabilities, which can protect the entire IP package including user data. The wide VPN firewall supports tunnel mode. What security protocols does IPSec support? [the 2006-7-27 15:21:25] : IPSec provides two kinds of agreements: AH (certification of baotou, provide data authentication, data integrity protection, replay attack protection function, protocol no. 51) and ESP (encapsulating security payload provides data confidentiality, data authentication, data integrity, replay attack protection function, protocol no. 50) What is IPsec? [the 2006-7-27 15:20:48] : IPSec is a widely used VPN security standard, used on TCP/IP networks, which works at the level of packets to verify and encrypt all packets in the VPN channel. This way, it doesnt care what application is used on your PC, and any application can use a VPN like any other network connection. IPSec VPN exchange information through a connection known as SA (se
显示全部
相似文档