FortiGate IPsec VPN

In the section where we introduced the SSL VPN, we said that looking at the TCP/IP protocol stack, usually the delivery protocol is located on a higher level than the payload protocol. This statement is not valid for the next type of VPN, which will be discussed. An IPsec VPN secures each IP (Internet Protocol) packet with authentication and encryption. IPsec uses two different protocols: AH and ESP, to provide authentication, integrity, and confidentiality of the communication. Basic operations related to IPsec include:

  • Transport mode: Only the payload of the IP datagram is handled by IPsec, which inserts the header between the IP header and the upper levels.
  • Tunnel mode: This is used to protect the entire IP datagram. This ...

Get Getting Started with FortiGate now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.