Re: [SLUG] IKE

From: Derek Glidden (dglidden@illusionary.com)
Date: Wed May 09 2001 - 11:04:26 EDT


Mikes work account wrote:
>
> Just read a Tech Republic article on VPN's and in it the writer referred to
> 'technical stuff' like IKE,,,What the heck is IKE??

(Internet|IPSEC) Key Exchange

It comes from IPSEc, which is an extension (of sorts) to the IP protocol
that adds encryption. Public/private key encryption is used to set up
the session key, very similar to SSL, which is also the way a lot of VPN
softwares do it. So IKE is the way the two machines involved in the
IPSEC/VPN session xfer their public keys so that they can establish the
session key that actually is used for the encrypted session.

You might also see things like ISAKMP/Oakley, SKIP, ESP, and other weird
acronyms. They all have to do with various key-exchange and session
management techniques used by IPSEC and shared by a lot of VPN
softwares.

http://www.ietf.org/html.charters/ipsec-charter.html

is a good location for references to a lot of IPSEC-related info.

-- 
-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-
#!/usr/bin/perl -w
$_='while(read+STDIN,$_,2048){$a=29;$b=73;$c=142;$t=255;@t=map
{$_%16or$t^=$c^=($m=(11,10,116,100,11,122,20,100)[$_/16%8])&110;
$t^=(72,@z=(64,72,$a^=12*($_%16-2?0:$m&17)),$b^=$_%64?12:0,@z)
[$_%8]}(16..271);if((@a=unx"C*",$_)[20]&48){$h=5;$_=unxb24,join
"",@b=map{xB8,unxb8,chr($_^$a[--$h+84])}@ARGV;s/...$/1$&/;$d=
unxV,xb25,$_;$e=256|(ord$b[4])<<9|ord$b[3];$d=$d>>8^($f=$t&($d
>>12^$d>>4^$d^$d/8))<<17,$e=$e>>8^($t&($g=($q=$e>>14&7^$e)^$q*
8^$q<<6))<<9,$_=$t[$_]^(($h>>=8)+=$f+(~$g&$t))for@a[128..$#a]}
print+x"C*",@a}';s/x/pack+/g;eval 

usage: qrpff 153 2 8 105 225 < /mnt/dvd/VOB_FILENAME \ | extract_mpeg2 | mpeg2dec -

http://www.eff.org/ http://www.opendvd.org/ http://www.cs.cmu.edu/~dst/DeCSS/Gallery/



This archive was generated by hypermail 2.1.3 : Fri Aug 01 2014 - 19:57:53 EDT