Amazon.co.uk Review
IPSec, the suite of protocols for securing any sort of traffic that moves over an Internet Protocol (IP) network, promises big things for online business.
IPSec: The New Security Standard for the Internet, Intranets, and Virtual Private Networks catalogues the specifications that compose this suite and explains how they fit into intranets, virtual private networks (VPNs), and the Internet.
Authors Doraswamy and Harkins first treat IPSec as a system, explaining how its component parts work together to provide flexible security. Their approach to this task makes sense: they first explain why standard IP packets aren't secure; then they show how the IPSec improvements make secure transactions possible. Readers get full descriptions of how various network entities talk to one another. Where appropriate, concepts that aren't specific to IPSec are explained, including IPv4 and IPv6 packet structures and addressing schemes. There's some information on cryptography too.
IPSec's parts are explained individually: the Authentication Header (AH), Encapsulating Security Payload (ESP), Internet Key Exchange (IKE), and ISAKMP/Oakley protocols are detailed with lots of prose, supplemented with a smattering of packet diagrams and conceptual sketches. Sections on implementing IPSec protocols on networks remain fairly abstract and don't mention actual products, but should prove useful to programmers designing their own network security products around the IPSec specifications. --David Wall
Product Description
IPsec offers the strongest security available to companies seeking to build VPNs and other applications that deliver confidential information across the Internet. This is the most authoritative, comprehensive guide to IPsec available -- authored by its first implementers, and active participants in the IPsec standards process. First, review the fundamentals of computer and network security, and the tradeoffs associated with implementing security at each layer of the IP stack. Next, walk through IPsec's architecture and components; the role of authentication, encryption, encapsulating security payloads (ESPs), and key management protocols. Learn how IPsec addresses security in host-to-host, host-to-gateway, and gateway-to-gateway configurations; and in VPN tunneling. Review detailed scenarios, discovering how to implement IPsec in VPNs, nested tunnels, chained tunnels, and overlapping security associations. Finally, preview the future of IPsec, with timely coverage of compression, multicast, mobility, and more.
See all Product Description