The Seattle SAGE Group
An Advanced Overview of IPv6
IPv6 Security
- Security Association
- Combination of destination address and Security Parameter Index
- Authentication - Keyed MD5 (128 bit default)
- Encryption - DES-CBC
- Tunneled mode - can encrypt an entire IP datagram to get data across
unsecured channels from a secure endpoint to another secure endpoint
- Transport mode - will encrypt only the transport layer data
(e.g., UDP, TCP, ICMP) ip layer stuff.
More info:
rfc1825
rfc1826
rfc1827
rfc1828
rfc1829