Jump to content United States-English
HP.com Home Products and Services Support and Drivers Solutions How to Buy
» Contact HP
More options
HP.com home
Installing and Administering IPSec/9000 > Chapter 3 IPSec/9000 Topologies

IPSec/9000 Configurations

» 

Technical documentation

Complete book in PDF
» Feedback
Content starts here

 » Table of Contents

 » Glossary

 » Index

IPSec can be employed between hosts (that is, end nodes), between gateways, or between a host and a gateway in an IP network. At first release, the HP-UX IPSec/9000 product can only be installed on end nodes. Installing HP-UX IPSec/9000 on a gateway node is currently not supported.

Two hosts can protect communications between them, with or without intervening gateways, by both running IPSec/9000 locally. In this type of configuration, most systems can communicate with each other.

Figure 3-1 IPSec Host-to-Host Configuration

IPSec Host-to-Host Configuration

When communicating partners residing in locally untrusted networks and also wanting a secure connection across an insecure public network, such as the Internet, HP-IPSec can be employed to create a tunnel between two Internet gateway systems.

Figure 3-2 IPSec Gateway-to-Gateway Configuration

IPSec Gateway-to-Gateway Configuration

In situations where the local subnet is a trusted network, IPSec/9000 can be employed between a host system and the gateway to provide security services between these systems, thereby creating a secure Virtual Private Network (VPN).

Figure 3-3 IPSec Host-to-Gateway Configuration (VPN)

IPSec Host-to-Gateway Configuration (VPN)

Printable version
Privacy statement Using this site means you accept its terms Feedback to webmaster
© 2001 Hewlett-Packard Development Company, L.P.