\relax \catcode`"\active \select@language{italian} \@writefile{toc}{\select@language{italian}} \@writefile{lof}{\select@language{italian}} \@writefile{lot}{\select@language{italian}} \select@language{italian} \@writefile{toc}{\select@language{italian}} \@writefile{lof}{\select@language{italian}} \@writefile{lot}{\select@language{italian}} \@writefile{toc}{\contentsline {part}{I\hspace {1em}Nozioni teoriche}{1}} \@writefile{toc}{\contentsline {chapter}{\numberline {1}Soluzioni di sicurezza a livello IP: IPSEC}{2}} \@writefile{lof}{\addvspace {10\p@ }} \@writefile{lot}{\addvspace {10\p@ }} \@writefile{toc}{\contentsline {section}{\numberline {1.1}Obiettivi}{2}} \@writefile{toc}{\contentsline {section}{\numberline {1.2}Architettura}{2}} \@writefile{lof}{\contentsline {figure}{\numberline {1.1}{\ignorespaces Transport Mode}}{3}} \newlabel{TRMode}{{1.1}{3}} \@writefile{lof}{\contentsline {figure}{\numberline {1.2}{\ignorespaces Tunnel Mode}}{3}} \newlabel{TUMode}{{1.2}{3}} \@writefile{toc}{\contentsline {subsection}{\numberline {1.2.1}Protocollo AH}{4}} \@writefile{lof}{\contentsline {figure}{\numberline {1.3}{\ignorespaces Protocollo AH}}{4}} \newlabel{TRMode}{{1.3}{4}} \@writefile{toc}{\contentsline {subsection}{\numberline {1.2.2}Protocollo ESP}{4}} \@writefile{lof}{\contentsline {figure}{\numberline {1.4}{\ignorespaces Protocollo ESP}}{5}} \newlabel{ESP}{{1.4}{5}} \@writefile{lof}{\contentsline {figure}{\numberline {1.5}{\ignorespaces Protocollo ESP in transport mode}}{6}} \newlabel{ESPTR}{{1.5}{6}} \@writefile{lof}{\contentsline {figure}{\numberline {1.6}{\ignorespaces Protocollo ESP in tunnel mode}}{6}} \newlabel{ESPTU}{{1.6}{6}} \@writefile{toc}{\contentsline {subsection}{\numberline {1.2.3}Protocollo IKE}{6}} \@writefile{lof}{\contentsline {figure}{\numberline {1.7}{\ignorespaces Protocollo IKE fase 1}}{7}} \newlabel{IKE1}{{1.7}{7}} \@writefile{lof}{\contentsline {figure}{\numberline {1.8}{\ignorespaces Protocollo IKE fase 2}}{7}} \newlabel{IKE2}{{1.8}{7}} \@writefile{toc}{\contentsline {section}{\numberline {1.3}Funzionalit{\`a}}{8}} \@writefile{toc}{\contentsline {section}{\numberline {1.4}Estensioni multicast/broadcast}{8}} \@writefile{toc}{\contentsline {subsection}{\numberline {1.4.1}Group Security Policy Database - GSPD}{9}} \@writefile{toc}{\contentsline {subsection}{\numberline {1.4.2}Group Controller Key Server - GCKS}{9}} \@writefile{toc}{\contentsline {subsection}{\numberline {1.4.3}Security Association Database - SAD}{9}} \@writefile{toc}{\contentsline {subsection}{\numberline {1.4.4}Peer Authorization Database - PAD}{9}} \@writefile{toc}{\contentsline {subsection}{\numberline {1.4.5}Modalit{\`a} tunnel con protezione di indirizzo}{10}} \@writefile{toc}{\contentsline {section}{\numberline {1.5}Problemi di sicurezza IPsec}{11}} \@writefile{toc}{\contentsline {subsection}{\numberline {1.5.1}Problematiche di sicurezza risolte dalle estensioni IPsec di tipo multicast}{11}} \@writefile{toc}{\contentsline {subsection}{\numberline {1.5.2}Problematiche di sicurezza non risolte dalle estensioni IPsec di tipo multicast}{11}} \@writefile{toc}{\contentsline {subsection}{\numberline {1.5.3}Problematiche di implementazione o installazione che impattano la sicurezza}{13}} \@writefile{toc}{\contentsline {chapter}{\numberline {2}Implementazioni opensource per Linux}{14}} \@writefile{lof}{\addvspace {10\p@ }} \@writefile{lot}{\addvspace {10\p@ }} \@writefile{toc}{\contentsline {section}{\numberline {2.1}Storia}{14}} \@writefile{toc}{\contentsline {section}{\numberline {2.2}Implementazioni disponibili}{14}} \@writefile{toc}{\contentsline {subsection}{\numberline {2.2.1}Racoon}{14}} \@writefile{toc}{\contentsline {subsection}{\numberline {2.2.2}FreeSWAN}{14}} \@writefile{toc}{\contentsline {subsection}{\numberline {2.2.3}OpenSWAN}{14}} \@writefile{toc}{\contentsline {subsection}{\numberline {2.2.4}StrongSWAN}{15}} \@writefile{toc}{\contentsline {section}{\numberline {2.3}Confronto funzionale}{15}} \@writefile{lot}{\contentsline {table}{\numberline {2.1}{\ignorespaces Confronto implementazioni IPSEC }}{15}} \newlabel{t:1}{{2.1}{15}} \@writefile{toc}{\contentsline {part}{II\hspace {1em}Applicazioni in ambiente Linux}{16}} \@writefile{toc}{\contentsline {chapter}{\numberline {3}OpenSWAN}{17}} \@writefile{lof}{\addvspace {10\p@ }} \@writefile{lot}{\addvspace {10\p@ }} \@writefile{toc}{\contentsline {section}{\numberline {3.1}Descrizione architettura}{17}} \@writefile{toc}{\contentsline {section}{\numberline {3.2}Descrizione funzionalit{\`a}}{17}} \@writefile{toc}{\contentsline {section}{\numberline {3.3}Installazione}{17}} \@writefile{toc}{\contentsline {subsection}{\numberline {3.3.1}Setup}{17}} \@writefile{toc}{\contentsline {subsection}{\numberline {3.3.2}Configurazione di base}{17}} \@writefile{toc}{\contentsline {chapter}{\numberline {4}Piattaforma di test}{18}} \@writefile{lof}{\addvspace {10\p@ }} \@writefile{lot}{\addvspace {10\p@ }} \@writefile{toc}{\contentsline {section}{\numberline {4.1}Descrizione}{18}} \@writefile{toc}{\contentsline {section}{\numberline {4.2}Configurazione}{18}} \@writefile{toc}{\contentsline {section}{\numberline {4.3}Strumenti di misura}{18}} \@writefile{toc}{\contentsline {subsection}{\numberline {4.3.1}Tcpdump}{18}} \@writefile{toc}{\contentsline {subsection}{\numberline {4.3.2}Wireshark}{18}} \@writefile{toc}{\contentsline {section}{\numberline {4.4}Misura diretta di tempi di trasferimento di file}{18}} \@writefile{toc}{\contentsline {subsection}{\numberline {4.4.1}Wget}{18}} \@writefile{toc}{\contentsline {subsection}{\numberline {4.4.2}Curl}{18}} \@writefile{toc}{\contentsline {chapter}{\numberline {5}Test}{19}} \@writefile{lof}{\addvspace {10\p@ }} \@writefile{lot}{\addvspace {10\p@ }} \@writefile{toc}{\contentsline {section}{\numberline {5.1}Formati IPSEC}{20}} \@writefile{toc}{\contentsline {subsection}{\numberline {5.1.1}AH}{20}} \@writefile{toc}{\contentsline {subsection}{\numberline {5.1.2}ESP}{20}} \@writefile{toc}{\contentsline {subsection}{\numberline {5.1.3}Combinazioni AH ed ESP}{20}} \@writefile{toc}{\contentsline {subsection}{\numberline {5.1.4}Transport}{20}} \@writefile{toc}{\contentsline {subsection}{\numberline {5.1.5}Tunnel}{20}} \@writefile{toc}{\contentsline {section}{\numberline {5.2}Algoritmi supportati}{20}} \@writefile{toc}{\contentsline {section}{\numberline {5.3}IKE con chiavi statiche}{20}} \@writefile{toc}{\contentsline {section}{\numberline {5.4}IKE con certificati}{20}} \@writefile{toc}{\contentsline {section}{\numberline {5.5}Broadcast IPV4}{20}} \@writefile{toc}{\contentsline {section}{\numberline {5.6}Misura di prestazioni}{20}} \@writefile{toc}{\contentsline {section}{\numberline {5.7}Interoperabilit{\`a} OpenSWAN / Windows XP}{20}} \bibcite{disp}{1} \bibcite{sito1}{2} \bibcite{sito2}{3} \bibcite{sito3}{4} \bibcite{sito4}{5} \@writefile{toc}{\contentsline {chapter}{Bibliografia}{21}}