IPSec
IPSec
3 IP security (IPsec)
• The IP security (IPsec) is an Internet Engineering Task Force (IETF) standard suite of
protocols between 2 communication points across the IP network that provide data
authentication, integrity, and confidentiality
• It also defines the encrypted, decrypted and authenticated packets. The protocols needed
for secure key exchange and key management are defined in it.
• It is used in virtual private networks (VPNs).
Uses of IP Security –
•
To encrypt application layer data.
• To provide security for routers sending routing data across the public internet.
• To provide authentication without encryption, like to authenticate that the data originates
from a known sender.
• To protect network data by setting up circuits using IPsec tunneling in which all data is
being sent between the two endpoints is encrypted, as with a Virtual Private
Network(VPN) connection.
Components of IP Security –
❑ Types of firewalls
• Proxy firewall
• Stateful inspection firewall
• Packet Filtering Gateway
• Guards
• Personal Firewall
Intrusion Detection System (IDS)
• An Intrusion Detection System (IDS) is a system that monitors network traffic for
suspicious activity and issues alerts when such activity is discovered.
• It is a software application that scans a network or a system for harmful activity or policy
breaching.
• Any malicious venture or violation is normally reported either to an administrator or
collected centrally using a security information and event management (SIEM) system.
• A SIEM system integrates outputs from multiple sources and uses alarm filtering
techniques to differentiate malicious activity from false alarms.
• Although intrusion detection systems monitor networks for potentially malicious activity,
they are also disposed to false alarms.
• Hence, organizations need to fine-tune their IDS products when they first install them.
• It means properly setting up the intrusion detection systems to recognize what normal
traffic on the network looks like as compared to malicious activity.