RFC 3948

E524096

RFC 3948 is an IETF standard that specifies how to encapsulate IPsec ESP packets over UDP to enable IPsec traversal through NAT devices.

Try in SPARQL Jump to: Statements Referenced by

Statements (47)

Predicate Object
instanceOf IETF Request for Comments
abbreviation ESP
addressesProblem IPsec traversal through NAT devices NERFINISHED
NAT traversal for ESP
appliesTo IPv4
IPv6
area Security
category Standards Track
defines UDP encapsulation for IPsec ESP
method for IPsec ESP traversal through NAT
non-ESP marker for UDP-encapsulated traffic
definesBehaviorFor NAT devices handling ESP over UDP
definesDefaultPort UDP port 4500
documentType Standards Track RFC
enables ESP over UDP
IPsec NAT traversal
focusesOn tunnel mode IPsec ESP
intendedAudience network equipment vendors
network protocol implementers
security gateway implementers
language English
networkLayer transport layer encapsulation for security protocol
obsoletes draft-ietf-ipsec-udp-encaps
protocolFamily Internet Protocol Suite NERFINISHED
publishedBy Internet Engineering Task Force
surface form: IETF

Internet Engineering Task Force
publisher RFC Editor NERFINISHED
relatedToProtocol Encapsulating Security Payload NERFINISHED
IPsec NERFINISHED
relatedToRFC RFC 2401 NERFINISHED
RFC 3947 NERFINISHED
RFC 4301
relation part of IPsec NAT traversal specifications set
securityProperty preserves ESP security semantics over UDP
specifies demultiplexing rules for ESP and IKE over UDP port 4500
keepalive behavior for NAT traversal
packet format for ESP over UDP
standardizes UDP encapsulation format for ESP packets
port usage for ESP over UDP
status Proposed Standard
title UDP Encapsulation of IPsec ESP Packets NERFINISHED
updates NAT traversal behavior for IPsec implementations
useCase VPNs through NAT devices
remote access IPsec clients behind NAT
site-to-site IPsec tunnels across NAT
usesTransportProtocol UDP
workingGroup IP Security (ipsec) Working Group NERFINISHED

Referenced by (1)

Full triples — surface form annotated when it differs from this entity's canonical label.

NAT-T definedIn RFC 3948