IPSec - Virtual Private Network
The purpose of the IPSec (Internet Protocol Security) protocol suite is to provide a standard way for protecting all traffic on the Internet transparently, irrespective of the application.The InJoy IPSec VPN Plugin provides the InJoy Firewall with IPSec/IKE functionality for Virtual Private Networks (VPNs). Using VPN technology, you can create a secure, private network which encompasses a wide geographic area and multiple disparate real networks.
IPSec makes it possible to securely connect company offices, individual host, mobile users, and services to the corporate network. It makes the public Internet safe for transmitting confidential information and security is transparent, requiring absolutely no actions on the part of internal LAN users.
IPSec Key Features
The standards compliant IPSec Plugin is a seamlessly installed module that extends the InJoy products with capability of building VPN's and secure channels to other compliant vendors in the market.
The Internet Protocol Security (IPSec) protocol provides application-transparent encryption of IP traffic, providing data privacy and authenticity for the corporate e-mail communication, file transfers, source code sharing and IP traffic in general.
The optional IPSec Plugin is easily configured and offers both IPSec Server and Client support.
- Dynamic IP address support (Road Warrior support)
- Interactive userid and password prompting, avoiding storage of passwords on client PCs
- Key Exchange (IKE) using ISAKMP/Oakley
- Extended Authentication Client/Server Support
- Server Side User Database - with Enhanced GUI support
- NAT Traversal - allowing IPSec to work over NAT
- ISAKMP Config Mode for server assigned IP addresses
- Compression in full compliance with the IPComp Standard
- Split tunneling for mixing IPSec with regular Internet traffic
- Full Tunnel and Transport mode support
- RSA Signature based authentication
- X.509 Certificates Support
- NAT and Firewall integration tested to ensure fast deployment within the organization
- Fast SA (Security Association) negotiations through incremental timeouts
Wide Protocol Support
- ISAKMP SA negotiation - Main Mode, Aggressive Mode
- IPSec protocols - AH (RFC 2402) and ESP (RFC 2406)
- Encryption - NULL-ESP, DES (56 bit), 3DES (168 bit), AES and BlowFish
- AH Transforms - HMAC MD5 (RFC 2403) and HMAC SHA (RFC 2404)
- Authentication - Pre-shared Key, X-Authentication, X.509 certificates (to be announced)
- Key Exchange - ISAKMP/Oakley (RFC 2412)
- Key management - Manual, IKE
- Other - The ISAKMP Configuration Method
- Other - Nat Traversal
- Other - IP Payload Compression Protocol (IPComp) (RFC 2393)
Documented Multi-Vendor Interoperability
- Tested against the public SHH and NIST test engines
- Interoperability tested for use with other popular VPN products
- Interoperability documents minimize the configuration burden
- Multiple authentication methods support
Deployment Friendly
- Multiple communications device support: Dial-Up, LAN, DSL, PPPoE, Cable
- Same software for both Server Side and Client Side support
- GUI monitors for IPSec User Statistics and Tunnels
- Intuitive easy-to-use, step-by-step GUI wizard. Plain-text configuration also possible
- Multi-Platform support to ensure fast deployment throughout the organization
- Support for shared security policies for effective centralized management
- Ready-for-business sample configurations included
- Diagnostic capability for trouble-shooting connections

