How2Pass community forum for CCNA, CCDA, CCNP exams Cisco CCNA Forum, CCDA Forum, CCNP forums Share your Cisco exam experience, Cisco exams training, tips and tricks
Site Home | CCNA | CCNP | CCDA | Free Test | Signup/Purchase | FAQ | Members | Lo-Fi Version
September 08, 2010, 07:45:34 PM *
Welcome, Guest. Please login or register.
Did you miss your activation email?

Login with username, password and session length
News: The last day for candidates to take the BSCI, BCMSN, ISCW and ONT exams will be July 31, 2010.
 
   Home   Help Search Login Register  
Pages: [1]
  Print  
Author Topic: ISCW356  (Read 727 times)
0 Members and 1 Guest are viewing this topic.
Con_50
Newbie
*
Offline Offline

Posts: 1


« on: January 06, 2010, 01:15:43 PM »

This question's been confusing me a bit.

From what I've been reading, in this scenario: tunnel mode with ESP_SHA_HMAC as integrity and ESP_AES_256 as the encryption algorithm then everything after the ESP trailer (ie the orginal packet including its IP header) will be encrypted and hashed - but the new IP header won't be either (you would need AH to hash that header).

So this suggests to me that the right answer is:

"Only the data field of the packet will be encrypted..."

Am I on the wrong track here?
Logged
Pages: [1]
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.7 | SMF © 2006-2008, Simple Machines LLC Valid XHTML 1.0! Valid CSS!