Internet Key Exchange (IKE or IKEv2) is the protocol used to set up a security association (SA) in the IPsec protocol suite. IKE builds upon the Oakley protocol and ISAKMP. IKE uses X.509 certificates for authentication which are either pre-shared or distributed using DNS (preferably with DNSSEC), and a Diffie–Hellman key exchange to set up a shared session secret from which cryptographic keys are derived. In addition, a security policy for every peer which will connect must be manually maintained.
Read more about Internet Key Exchange: History, Architecture, Protocol Extensions, Implementations
Famous quotes containing the words key and/or exchange:
“All meanings, we know, depend on the key of interpretation.”
—George Eliot [Mary Ann (or Marian)
“The social kiss is an exchange of insincerity between two combatants on the field of social advancement. It places hygiene before affection and condescension before all else.”
—Sunday Correspondent (London, Aug. 12, 1990)