HPE Community read-only access December 15, 2018
This is a maintenance upgrade. You will be able to read articles and posts, but not post or reply.
Hours:
Dec 15, 4:00 am to 10:00 am UTC
Dec 14, 10:00 pm CST to Dec 15, 4:00 am CST
Dec 14, 8:00 pm PST to Dec 15, 2:00 am PST
Comware Based
cancel
Showing results for 
Search instead for 
Did you mean: 

[A5500-EI] 5500.EI_4800G_F2218: ACL-based IPsec

 
MichaelM55
Trusted Contributor

[A5500-EI] 5500.EI_4800G_F2218: ACL-based IPsec

Nice, we are getting "ACL-based IPsec". Is this kind of 802.1ae/MACSec for IP only?

https://h10145.www1.hp.com/downloads/DownloadSoftware.aspx?SoftwareReleaseUId=9838&ProductNumber=JD374A


"The switch supports IPsec for data flows in standard mode. In standard mode, one tunnel protects one data flow. The data flow permitted by an ACL rule is protected by one tunnel that is established solely for it."

 

So this is hardware based IPSec? What performance will I get if I create an ACL with:

 

rule 0 permit ip source any destination any