  • ESP = Port less Protocol Like ICMP. Session = SPI => Divided into 2 parts to get Src/Dst Ports
  • VPN = 5th & 6th packets - PSK is used to generate Session Key
  • IKE ID is used in Dailup Mode to Validate Peer
  • NAT-T = PAT Device - IP + Port no will uniquely identify Peer
  • IKEv2 has 4 Packets - Initiator request, Responder response, Ike auth, Ike resp