In IPsec, which protocol provides data integrity and authentication without encryption?

Study for the WGU ITAS 2142 D830 Introduction to Cryptography Exam. Review flashcards and multiple choice questions with hints and explanations. Get ready for your exam!

Multiple Choice

In IPsec, which protocol provides data integrity and authentication without encryption?

Explanation:
In IPsec, the protocol that provides data integrity and authentication without encrypting the payload is Authentication Header. It verifies that a packet came from the claimed source and that the data hasn’t been altered in transit by computing and validating a message authentication code over the IP packet. Importantly, it does not encrypt the payload, so there is no confidentiality. By contrast, Encapsulating Security Payload is designed to provide confidentiality (encryption) and can offer integrity as well, but encryption is its primary role. The remaining options are used to establish and manage the security association and keys (IKE and ISAKMP) rather than to protect the payload with integrity/authentication directly.

In IPsec, the protocol that provides data integrity and authentication without encrypting the payload is Authentication Header. It verifies that a packet came from the claimed source and that the data hasn’t been altered in transit by computing and validating a message authentication code over the IP packet. Importantly, it does not encrypt the payload, so there is no confidentiality.

By contrast, Encapsulating Security Payload is designed to provide confidentiality (encryption) and can offer integrity as well, but encryption is its primary role. The remaining options are used to establish and manage the security association and keys (IKE and ISAKMP) rather than to protect the payload with integrity/authentication directly.

Subscribe

Get the latest from Passetra

You can unsubscribe at any time. Read our privacy policy