E.2.3 tunnel mode ah – Billion Electric Company BiGuard 30 User Manual

Page 163

Advertising
background image

163

Transport Mode
- This mode is used to provide data security between two networks. It provides
protection for the entire IP packet and is sent by adding an outer IP header
corresponding to the two tunnel end-points. Since tunnel mode hides the original IP
header, it provides security of the networks with private IP address space.

E.2.3 Tunnel Mode AH

AH is typically applied to a data packet in the following manner:

IP

AH/E

TC

IP

Dat

AH/E

TC

IP

Dat

Original Packet

IP Header

TCP

Data

Org IP Header

TCP

Data

Packet with IPSec Authentication Header

AH

Authenticated

New IP Header

Advertising