The SAs are also protocol specific. There is an SA for each protocol. If two hosts A and B are communicating securely using both AH and ESP, then each host builds a separate SA for each protocol.
- 4. IPSec Architecture
- from IPSec: The New Security Standard for the Internet, Intranets, and Virtual Private Networks, Second Edition
- Publisher: Prentice Hall
- Released: March 2003
if use both AH, ESP, 2 SAs for each direction, thus, 4 SAs in total
Share this highlighthttp://www.safaribooksonline.com/a/ipsec-the-new/1630263/