Please enable JavaScript.
Coggle requires JavaScript to display documents.
IP FLOW (IP HEADER (Control and flags (IP Verson 4 bits = IP V4 IPV6, IP…
IP FLOW
IP HEADER
Control and flags
IP Verson 4 bits = IP V4 IPV6
IP HEADER LENGTH 4 BITS
DIFF SERV
flag
time to leave
protocol 6 for TCP or 17 for UDP
CHECK SUM for error detection
Source and destination ips
RFC 1918 IP SPACE PRIVATE
TCP Segment
GRE /generic routing encapsulation
Networks can be on the same IGP
configure the tunnel interface
source interface destination ip public ip from the other end
id an ip address to the tunnel interface from the remote network
GRE no security
VPN
Define the traffic to be encrypted
phase 1 isakmp policy
define the share key
Phase 2 ; IPSEC tranfrom set
creating a crypto map
apply the crypto map to the interface
SITE TO SITE, REMOTE ACCESS VPN
IPSEC IS OPEN STANDAD FOR VPN IMPLEMENTATIONS
OPERATES IN THE NETWORK LAYER
IP SEC IS USE TO PROVIDE SECURITY AT THE IP LAYE
operates to either transpoert or tunnel mode
IPSEC COMPONETS
security asociatioins (SA)
HA encapsulation header
encapsulation security payload
TUNNEL MODEADD NEW IP HEADER SITE TO SITE
Internet key exchange
Proxy
Types
Haft proxy
only up lo layer 4
Does the first set up and then allow traffic by passing the proxy
full proxy/reverse/big ip
SSL offload
Load balancing
L7 deep packet inspection
establish a separte connection
optimization
security