| gptkbp:instanceOf | gptkb:network_protocol 
 | 
                        
                            
                                | gptkbp:auditedBy | security audit tools 
 | 
                        
                            
                                | gptkbp:canBe | firewalls routers
 hardware-accelerated
 VPN gateways
 software-implemented
 
 | 
                        
                            
                                | gptkbp:definedIn | gptkb:RFC_4301 
 | 
                        
                            
                                | gptkbp:enables | remote access VPN site-to-site VPN
 
 | 
                        
                            
                                | gptkbp:mode | transport mode tunnel mode
 
 | 
                        
                            
                                | gptkbp:monitors | network monitoring tools 
 | 
                        
                            
                                | gptkbp:operatesIn | gptkb:network_protocol 
 | 
                        
                            
                                | gptkbp:protectedBy | gptkb:IP_packets 
 | 
                        
                            
                                | gptkbp:protocolFamily | gptkb:IPsec 
 | 
                        
                            
                                | gptkbp:provides | encryption authentication
 integrity
 
 | 
                        
                            
                                | gptkbp:requires | digital certificates shared secret
 
 | 
                        
                            
                                | gptkbp:standardizedBy | gptkb:IETF 
 | 
                        
                            
                                | gptkbp:subject | firewall rules routing policies
 
 | 
                        
                            
                                | gptkbp:supports | gptkb:IPv4 gptkb:IPv6
 gptkb:NAT_traversal
 
 | 
                        
                            
                                | gptkbp:usedFor | secure communication virtual private networks
 
 | 
                        
                            
                                | gptkbp:uses | gptkb:SHA-2 gptkb:IKE
 gptkb:ESP
 gptkb:AES
 gptkb:HMAC
 gptkb:3DES
 gptkb:Diffie-Hellman_key_exchange
 AH
 
 | 
                        
                            
                                | gptkbp:vulnerableTo | misconfiguration weak encryption algorithms
 
 | 
                        
                            
                                | gptkbp:bfsParent | gptkb:Layer_3_VPN gptkb:Cisco_Umbrella
 
 | 
                        
                            
                                | gptkbp:bfsLayer | 6 
 | 
                        
                            
                                | https://www.w3.org/2000/01/rdf-schema#label | IPsec tunnels 
 |