Add IP Security (IPSec) to any of our User Data applications in order to more closely simulate a real-world mix of User Plane traffic. Simulate telecommuters and business travelers using VPN clients to remotely access enterprise networks or individuals utilizing commercial VPN gateways to protect their information while on public WiFi networks. dsTest supports IPSec with IKEv2 for all User Data applications. Our IP Client, whether standalone or on the User Plane, includes an IPSec client. IPSec may be terminated by our Security Gateway emulator, which will forward decrypted traffic to the destination host, or it may be terminated by our IP Server emulator.
Supports IKEv2 with pre-shared key, configurable lifetime, and configurable cipher suite. Encapsulating Security Payload (ESP) supports tunnel and transport modes with configurable lifetime and cipher suite.
Supported cipher suites:
- Encryption algorithm: AES 128, AES 192, AES 256, AES GMAC
- Integrity algorithm: HMAC-MD5-96, HMAC-SHA1-96
- Pseudorandom function: HMAC-MD5, HMAC-SHA1
- Diffie-Hellman Group: 768, 1024, 1536, 2048, 2072, 4096
See our Online Help for more details.
As with all dsTest products, the node configurations and test scenarios are easily defined and configured with XML files that are validated against a published XML Schema to avoid invalid definitions. With our dsClient GUI, you can create, run, and archive tests, capture, graph and archive operational measurements, capture real-time data flows, and manage your dsTest servers and testing scenarios with a standalone application that runs on your PC.
dsTest provides a rich set of measurements for IPSec, including separate measurements for IKE Phase 1 and IKE Phase 2, as well as counters for the various types of IPSec control messages exchanged. See our Online Help for IPSec measurements and socket measurements.
You can read more about the reporting features offered with dsTest and dsClient GUI here.