Authentication Header

E522213

Authentication Header is an IPsec protocol that provides connectionless integrity and data origin authentication for IP packets, optionally protecting against replay attacks.

All labels observed (2)

Label Occurrences
Authentication Header canonical 4
IP Authentication Header 1

How this entity was disambiguated

Statements (43)

Predicate Object
instanceOf IPsec protocol
abbreviation AH
abbreviationOfSuite IPsec
belongsTo Internet Protocol Security suite
linked to: IPsec
canBeNegotiatedBy Internet Key Exchange
linked to: IKEv1
canBeNegotiatedByAbbreviation IKE
canBeUsedWith Encapsulating Security Payload
canBeUsedWithAbbreviation ESP
canProtect IPv4 packets
IPv6 packets
category Internet standard
definedIn IPsec architecture
definedInRFC RFC 4302
linked to: RFC 2402
doesNotProvide confidentiality
encryption of payload
hasField Authentication Data
Next Header
Payload Length
Security Parameters Index
Sequence Number
hasFieldAbbreviation SPI
isSpecifiedBy IETF
operatesAtLayer network layer
optionallyProvides protection against replay attacks
predecessorRFC RFC 2402
protects IP packets
protocolNumber 51
provides connectionless integrity
data origin authentication
requires shared security association between peers
statusInRFC4302 Internet Standard Track protocol
supportsMode transport mode
tunnel mode
usedFor end-to-end IP packet authentication
gateway-to-gateway IP packet authentication
uses Integrity Check Value
Security Association
cryptographic hash functions
usesAbbreviation ICV
SA
usesMechanism sequence numbers for anti-replay
verifies integrity of immutable IP header fields
integrity of upper-layer protocol data

How these facts were elicited

Referenced by (5)

Full triples — surface form annotated when it differs from this entity's canonical label.

Encapsulating Security Payload canBeUsedWithout Authentication Header
RFC 2401 relatedTo Authentication Header
RFC 2406 relatedTo IP Authentication Header
linked to: Authentication Header
RFC 4301 uses Authentication Header
IETF IPsec Working Group standardizes Authentication Header