RFC 5840-2010

Wrapped Encapsulating Security Payload (ESP) for Traffic Visibility


 

 

非常抱歉,我们暂时无法提供预览,您可以试试: 免费下载 RFC 5840-2010 前三页,或者稍后再访问。

如果您需要购买此标准的全文,请联系:

点击下载后,生成下载文件时间比较长,请耐心等待......

 

标准号
RFC 5840-2010
发布日期
2010年04月01日
实施日期
2011年09月23日
废止日期
中国标准分类号
/
国际标准分类号
/
发布单位
IETF - Internet Engineering Task Force
引用标准
15
适用范围
This document describes the Wrapped Encapsulating Security Payload (WESP) protocol@ which builds on the Encapsulating Security Payload (ESP) RFC 4303 and is designed to allow intermediate devices to (1) ascertain if data confidentiality is being employed within ESP@ and if not@ (2) inspect the IPsec packets for network monitoring and access control functions. Currently@ in the IPsec ESP standard@ there is no deterministic way to differentiate between encrypted and unencrypted payloads by simply examining a packet. This poses certain challenges to the intermediate devices that need to deep inspect the packet before making a decision on what should be done with that packet (Inspect and/or Allow/Drop). The mechanism described in this document can be used to easily disambiguate integrity-only ESP from ESP-encrypted packets@ without compromising on the security provided by ESP.




Copyright ©2007-2022 ANTPEDIA, All Rights Reserved
京ICP备07018254号 京公网安备1101085018 电信与信息服务业务经营许可证:京ICP证110310号