¨Identify interesting traffic by an IPsec peer that has been configured to initiate an IPsec session for this traffic
¨IPsec peers negotiate a secure authenticated communication channel using main mode or aggressive mode negotiation, resulting in creation of an IKE
Security Association (SA) between the two
IPsec peers (IKE phase I)
¨Create two IPsec SAs between the two IPsec peers via IKE quick mode negotiation (IKE phase II)
¨Send data over encrypted tunnel using ESP and/or AH encapsulation