❌ Negotiate one bidirectional SA (called IKE SA) *ln IKE v1, two possible ways: -Main mode: six packets exchanged -Aggressive mode: three packets exchanged *Not the same as final SAs later *Encrypted tunnel for Diffie-Hellman (DH)
❌ Authenticate peers *Pre—shared key or digital signature *Extended authentication (XAuth)
❌ DH exchange for secret keys
Klicke und ziehe, um den Text zu vervollständigen.