Dynamic Host Configuration Protocol Configuration of IPsec Tunnel Mode
RFC 3456, “Dynamic Host Configuration Protocol Configuration of IPsec Tunnel Mode”, is a Proposed Standard document published in January 2003 by B. Patel, B. Aboba, S. Kelly, V. Gupta. The canonical text is published by the RFC Editor.
Abstract
This memo explores the requirements for host configuration in IPsec tunnel mode, and describes how the Dynamic Host Configuration Protocol (DHCPv4) may be leveraged for configuration. In many remote access scenarios, a mechanism for making the remote host appear to be present on the local corporate network is quite useful. This may be accomplished by assigning the host a "virtual" address from the corporate network, and then tunneling traffic via IPsec from the host's ISP-assigned address to the corporate security gateway. In IPv4, DHCP provides for such remote host configuration. [STANDARDS-TRACK]
What “Proposed Standard” means
An entry-level standards-track specification: stable, peer-reviewed and a solid basis for implementation, though it may still evolve before becoming an Internet Standard.
The canonical text of RFC 3456 is hosted at rfc-editor.org. Available in TXT,HTML.
- RFC 3455 Private Header Extensions to the Session Initiation Protocol for the 3rd-Generation Partnership Project
- RFC 3457 Requirements for IPsec Remote Access Scenarios
- RFC 3454 Preparation of Internationalized Strings
- RFC 3458 Message Context for Internet Mail
- RFC 3459 Critical Content Multi-purpose Internet Mail Extensions Parameter
- RFC 3460 Policy Core Information Model Extensions
- RFC 3461 Simple Mail Transfer Protocol Service Extension for Delivery Status Notifications
- RFC 3462 The Multipart/Report Content Type for the Reporting of Mail System Administrative Messages