RFC 3948
E524096
RFC 3948 is an IETF standard that specifies how to encapsulate IPsec ESP packets over UDP to enable IPsec traversal through NAT devices.
Statements (47)
| Predicate | Object |
|---|---|
| instanceOf | IETF Request for Comments ⓘ |
| abbreviation | ESP ⓘ |
| addressesProblem |
IPsec traversal through NAT devices
NERFINISHED
ⓘ
NAT traversal for ESP ⓘ |
| appliesTo |
IPv4
ⓘ
IPv6 ⓘ |
| area | Security ⓘ |
| category | Standards Track ⓘ |
| defines |
UDP encapsulation for IPsec ESP
ⓘ
method for IPsec ESP traversal through NAT ⓘ non-ESP marker for UDP-encapsulated traffic ⓘ |
| definesBehaviorFor | NAT devices handling ESP over UDP ⓘ |
| definesDefaultPort | UDP port 4500 ⓘ |
| documentType | Standards Track RFC ⓘ |
| enables |
ESP over UDP
ⓘ
IPsec NAT traversal ⓘ |
| focusesOn | tunnel mode IPsec ESP ⓘ |
| intendedAudience |
network equipment vendors
ⓘ
network protocol implementers ⓘ security gateway implementers ⓘ |
| language | English ⓘ |
| networkLayer | transport layer encapsulation for security protocol ⓘ |
| obsoletes | draft-ietf-ipsec-udp-encaps ⓘ |
| protocolFamily | Internet Protocol Suite NERFINISHED ⓘ |
| publishedBy |
Internet Engineering Task Force
ⓘ
surface form:
IETF
Internet Engineering Task Force ⓘ |
| publisher | RFC Editor NERFINISHED ⓘ |
| relatedToProtocol |
Encapsulating Security Payload
NERFINISHED
ⓘ
IPsec NERFINISHED ⓘ |
| relatedToRFC |
RFC 2401
NERFINISHED
ⓘ
RFC 3947 NERFINISHED ⓘ RFC 4301 ⓘ |
| relation | part of IPsec NAT traversal specifications set ⓘ |
| securityProperty | preserves ESP security semantics over UDP ⓘ |
| specifies |
demultiplexing rules for ESP and IKE over UDP port 4500
ⓘ
keepalive behavior for NAT traversal ⓘ packet format for ESP over UDP ⓘ |
| standardizes |
UDP encapsulation format for ESP packets
ⓘ
port usage for ESP over UDP ⓘ |
| status | Proposed Standard ⓘ |
| title | UDP Encapsulation of IPsec ESP Packets NERFINISHED ⓘ |
| updates | NAT traversal behavior for IPsec implementations ⓘ |
| useCase |
VPNs through NAT devices
ⓘ
remote access IPsec clients behind NAT ⓘ site-to-site IPsec tunnels across NAT ⓘ |
| usesTransportProtocol | UDP ⓘ |
| workingGroup | IP Security (ipsec) Working Group NERFINISHED ⓘ |
Referenced by (1)
Full triples — surface form annotated when it differs from this entity's canonical label.