March 5, 2002
Practical Aspects of Modern Cryptography
34
IPSEC Architecture
n
Key management establishes a Security
Association (SA) for a session
n
SA used to provide authentication/confidentiality
services for that session
n
SA is referenced via a security parameter index
(SPI) in each IP datagram header