A group of VPN protocols that encrypt and authenticate at the IP packet level.
A group of protocols that perform packet-level encryption and authentication at the network layer, combining IKE for key exchange with ESP/AH for the actual encryption and authentication. It has two operating modes: transport mode, which encrypts only the IP payload, and tunnel mode, which wraps the entire original IP packet inside a new IP header; site-to-site VPNs mainly use tunnel mode.
© 2026 ITBGM