25.02.2013 Views

TCP/IP Tutorial and Technical Overview - IBM Redbooks

TCP/IP Tutorial and Technical Overview - IBM Redbooks

TCP/IP Tutorial and Technical Overview - IBM Redbooks

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

AH format<br />

The AH format is described in RFC 2402. Figure 22-24 shows the position of the<br />

Authentication Header fields in the <strong>IP</strong> packet.<br />

Figure 22-24 AH format<br />

The fields are as follows:<br />

Next header The next header t is an 8-bit field that identifies the type of<br />

what follows. The value of this field is chosen from the set<br />

of <strong>IP</strong> protocol numbers defined in the most recent<br />

Assigned Numbers RFC from the Internet Assigned<br />

Numbers Authority (IANA). In other words, the <strong>IP</strong> header<br />

protocol field is set to 51, <strong>and</strong> the value that would have<br />

gone in the protocol field goes in the AH next header field.<br />

Payload length This field is 8 bits long <strong>and</strong> contains the length of the AH<br />

header expressed in 32-bit words, minus 2. It does not<br />

relate to the actual payload length of the <strong>IP</strong> packet as a<br />

whole. If default options are used, the value is 4 (three<br />

32-bit fixed words plus three 32-bit words of<br />

authentication data minus two).<br />

Reserved This field is reserved for future use. Its length is 16 bits<br />

<strong>and</strong> it is set to zero.<br />

Security parameter index (SPI)<br />

This field is 32 bits in length. See “Security Associations”<br />

on page 810 for a definition.<br />

814 <strong>TCP</strong>/<strong>IP</strong> <strong>Tutorial</strong> <strong>and</strong> <strong>Technical</strong> <strong>Overview</strong><br />

<strong>IP</strong> Hdr AH Payload<br />

Next header Payld length Reserved<br />

Security parameter index (SPI)<br />

Sequence number<br />

Authentication data (variable size)<br />

(Integrity check value)<br />

32 bits

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!