2 ipsec architecture, 1 ipsec algorithms, 2 key management – ZyXEL Communications 802.11g Wireless ADSL2+ 4-port VoIP IAD P-2602HWNLI User Manual
Page 237: 3 encapsulation, 1 ipsec algorithms 16.2.2 key management, Figure 127 ipsec architecture

P-2602HWNLI User’s Guide
Chapter 16 Introduction to IPSec
237
16.2 IPSec Architecture
The overall IPSec architecture is shown as follows.
Figure 127 IPSec Architecture
16.2.1 IPSec Algorithms
The ESP (Encapsulating Security Payload) Protocol (RFC 2406) and AH (Authentication
Header) protocol (RFC 2402) describe the packet formats and the default standards for packet
structure (including implementation algorithms).
The Encryption Algorithm describes the use of encryption techniques such as DES (Data
Encryption Standard) and Triple DES algorithms.
The Authentication Algorithms, HMAC-MD5 (RFC 2403) and HMAC-SHA-1 (RFC 2404,
provide an authentication mechanism for the AH and ESP protocols. Please see
16.2.2 Key Management
Key management allows you to determine whether to use IKE (ISAKMP) or manual key
configuration in order to set up a VPN.
16.3 Encapsulation
The two modes of operation for IPSec VPNs are Transport mode and Tunnel mode.