isoftwire-7----Page:32
1  2  3  4  5  6  7  8  9  10  11  12  13  14  15  16  17  18  19  20  21  22  23  24  25  26  27  28  29  30  31  32  33  34  35 

L2TPv3 Security – What is the L2TPv3 “Cookie”?
The L2TPv3 Cookie is a cryptographically random value, present in each L2TPv3 packet
Chosen by the receiver, associated with a Session ID, and signaled to the sender
Cookies in the header must match upon receipt, otherwise the packet is dropped
Provides an additional layer of security at a very important place: before switching packets out of the core and into the customer premises
Casts a strategic balance for the SP: Stronger than ACLs, but less complex than IPSec encryption and key negotiation

PPT Version