9533: The New z/OS Communications Server Internet Key Exchange Version 2 - What Is It and How Does It Integrate With An Existing IKEv1 Deployment?

Tuesday, August 9, 2011: 9:30 AM-10:30 AM
Europe 11 (Walt Disney World Dolphin )
Speaker: Lin Overby (IBM Corporation)
Handouts
  • The New z/OS Communications Server Internet Key Exchange Version 2 - What Is It and How Does It Integrate With An Existing IKEv1 Deployment? (1.7 MB)
  • The Internet Key Exchange (IKE) protocol is responsible for negotiating security associations between two hosts that have implemented IPSec. This negotiation includes selection of cryptographic algorithms, creation of session keys, and mutual authentication using X.509 digital certificates. The new version of Internet Key Exchange, IKEv2, introduces improvements to the current suite of IPSec functions. In z/OS V1R12, the Communications Server has added IKEv2 to its IP Security offering. This session will cover a tutorial on the IKEv2 protocol as implemented by the z/OS Communications Server, and how it compares to IKEv1. Since it is anticipated that IKEv2 deployment will occur gradually over a number of years, IKEv1 and IKEv2 coexistance is critical. This session will cover those considerations needed for a successful integration of IKEv1 and IKEv2 capable resources in an IPSec environment.

    Tracks: Network Support and Management and Security and Compliance
    Share |




    See more of Project: Network Management and Security
    See more of Program: Communications Infrastructure