Wireless Network Security Tutorial

Home| Forums | Join Google Group | Join Yahoo Group | Jobs
Get custom programming done at GetAFreelancer.com!
Programming Help | Homework Help | Counseling
Astrology Advice | Tarot Advice | Parenting
Dating Advice | Love Advice | Divorce Advice
Legal Advice | Debt Advice | Career Advice
W IRELESS N ETWORK S ECURITY 3-33 Figure 3-10. In this scenario, traffic communicated from Site A to Site B is protected as it moves across the Internet. Confidentiality, integrity, and other security services are provided as discussed below. Internet Internet Site B Site B Site A Site A IPsec IPsec Protection Protection Provided Provided VPN device VPN device Internet Internet Site B Site B Site A Site A IPsec IPsec Protection Protection Provided Provided VPN device VPN device Figure 3-10. Typical Use of VPN for Secure Internet Communications From Site-to-Site Most VPNs in use today make use of the IPsec protocol suite. IPsec, developed by the Internet Engineering Task Force (IETF), is a framework of open standards for ensuring private communications over IP networks. It provides the following types of robust protection: ! Confidentiality ! Integrity ! Data origin authentication ! Traffic analysis protection. Connectionless integrity guarantees that a received message has not changed from the original message. Data origin authentication guarantees that the received message was sent by the originator and not by a person masquerading as the originator. Replay protection provides assurance that the same message is not delivered multiple times and that messages are not out of order when delivered. Confidentiality ensures that others cannot read the information in the message. Traffic analysis protection provides assurance that an eavesdropper cannot determine who is communicating or the frequency or volume of communications. The Encapsulating Security Protocol (ESP) header provides privacy and protects against malicious modification, and the Authentication header (AH) protects against modification without providing privacy. The Internet Key Exchange (IKE) Protocol allow for secret keys and other protection-related