filmov
tv
MicroNugget: How to Use Call Admission Control (CaC) for IKE
Показать описание
In this video, Keith Barker covers the functionality, configuration, and verification of Call Admission Control (CAC) for IPSec, or IKE phase 1. He’ll outline the steps you’ll take in each phase to configure this and establish a more secure network.
IPSec is divided into two separate phases. In the first, you’ll negotiate details regarding an IKE phase 1 tunnel. Keith uses the acronym “HAGLE” to help you remember each of the steps you’ll need to take. These include Hashing, Authentication, the Diffie-Hellman Group, Lifetime, and setting up the Encryption you’ll use.
Once you’ve successfully executed these steps, you’ll move into phase 2, where you set up the IPSec. The security associations you find here are going to carry the transit traffic. You’ll see how a hacker could use a DDoS to attempt an IKE phase 1 tunnel, then observe how Call Admission Control can be used to negate this effectively.
Start learning with CBT Nuggets: