SC-79
Cisco IOS XR System Security Configuration Guide for the Cisco CRS-1 Router
OL-20382-01
Implementing IPSec Network Security on
Cisco IOS XR Software
IP Security (IPSec) provides security for transmission of sensitive information over unprotected
networks such as the Internet. IPSec acts at the network layer, protecting and authenticating IP packets
between participating IPSec devices (“peers”), such as Cisco routers.
With IPSec, data can be sent across a public network without observation, modification, or spoofing,
which enables applications, such as Virtual Private Networks (VPNs), including intranets, extranets, and
remote user access.
IPSec for Cisco IOS XR software supports the following two types of traffic:
• IPSec for locally sourced traffic or traffic terminated on the router. Either tunnel-ipsec interfaces or
a transport entity are used. This type is also called software-based IPSec.
This module describes the tasks that you need to implement IPSec network security on your
Cisco
IOS XR network.
Note For a complete description of the IPSec network security commands used in this chapter, see the IPSec
Network Security Commands on Cisco
IOS XR Software module of Cisco IOS XR System Security
Command Reference. To locate documentation of other commands that appear in this chapter, use the
command reference master index, or search online.
Feature History for Implementing IPSec Network Security on Cisco CRS-1
Release Modification
Release 2.0 This feature was introduced on the Cisco CRS-1.
Release 3.0 No modification.
Release 3.2 No modification.
Release 3.3.0 No modification.
Release 3.4.0 No modification.
Release 3.5.0 No modification.