First page Back Continue Last page Summary Graphic
Phase 2 - Quick Mode
Aim: Establish symmetric IPsec SAs
- Negotiate IPsec parameters (SA bundles).
- Exchange nonces to derive session keys from the IKE shared secret; optionally exchange DH values to generate a new key.
- Optionally identify which traffic this SA bundle will protect using selectors (IDi and IDr payloads).