Professional Documents
Culture Documents
DW3 3 IPSEC WWW - Underwar.co - Il
DW3 3 IPSEC WWW - Underwar.co - Il
IPSEC ,
. ,
.
?
.
( - )
.
. , Arp Poisoning
, Replay Attack
.Timestamp
. .IPSEC-
, .
.
.
.
.
,IP-
. TCP, UDP, ICMP, BGP :'.
2 Authentication :
) Header (AH ,Encapsulation Security Payload (ESP)-
.
IPSec , .
,
IPSEC .
.
:
-Secrecy .
IPSec
www.DigitalWhisper.co.il
,3 2009
16 bits
8 bits
Reserved
Payload Length
Next Header
IPSec
www.DigitalWhisper.co.il
,3 2009
24 bits
16 bits
Pad Length
)Authentication Data (variable
IPSec
www.DigitalWhisper.co.il
,3 2009
32 bits
24 bits
12 bits 16 bits
8 bits
Initiator Cookie
Responder Cookie
Flags
Next Payload
Message ID
Length
IPSec
www.DigitalWhisper.co.il
,3 2009
IKE-
IKE-
( DH ,
, ).
IPSec
www.DigitalWhisper.co.il
,3 2009
IPSec- ,
.
: IKE- ,
, IKE
.DH-
DoS IKE ()IP Spoofing
, IP ,
IP.
: .Cookies
( )Cookie ,
,
.
, IKE- .
IPSec
www.DigitalWhisper.co.il
,3 2009
: Arp- ,
.
: .
, MITM
- .
Replay Attack
" , -
, .
:
MITM ,
.
: .Timestamp
Timestamp "" .
.
"" , . , .
,IPSec-
.
IPSec
www.DigitalWhisper.co.il
,3 2009