[Contents] [Prev] [Next] [Index] [Report an Error]

Encapsulation Modes

IPSec supports two encapsulation modes—tunnel mode and transport mode. Tunnel mode creates a second IP header in the packet and uses both the local and remote security gateway addresses as source and destination IP addresses. Also, tunnel mode allows an IP interface to be created and stacked right above it.

Transport mode does not add a second IP header and does not allow an IP interface to be created and stacked right above it. Instead, transport mode allows other tunneling applications, such as an L2TP tunnel, to be created and stacked on top of an IPSec transport mode connection. See Securing L2TP and IP Tunnels with IPSec for a description of L2TP transport mode.


[Contents] [Prev] [Next] [Index] [Report an Error]