The ability of keeping the ip packet ' s integrity , secrecy , authentication , data origination , anti - relay is discussed . the relationship of ipsec component authentication header ( ah ) , encapsulating security payload ( esp ) and ike ( internet key exchange ) is also talked about . this discussion of ipsec makes the impression that ipsec make ip layer security enough 論述了ipsec在ip報文的完整性、機(jī)密性、數(shù)據(jù)來源認(rèn)證和抗重播等方面的能力, ipsec的基本協(xié)議? ?認(rèn)證報文頭( ah )和安全封裝載荷報頭( esp )與ipsec安全體系的其它組成部分如安全策略、加密和認(rèn)證算法、密鑰管理等如何合作,共同完成對ip報文的安全保護(hù)。