AH
Authentication Header
The IPSec protocol that provides integrity and authentication but not confidentiality.
AH is an IPsec protocol that provides connectionless integrity, data origin authentication, and optional replay protection by signing the packet, including portions of the IP header, but it does not encrypt the payload. Because it authenticates header fields, AH breaks when traffic passes through NAT, which rewrites addresses. For the exam, contrast AH with ESP: ESP supplies confidentiality through encryption and is far more commonly deployed, so AH alone is rarely chosen when privacy of the data is required.
Looking AH up is step one. Getting tested on it is step two.
A free account opens all 4 Domain 1 objectives, 271 exam-style questions with a lesson and a lab on each, a placement check that skips what you already know, and a dated plan. No card.
Not affiliated with or endorsed by CompTIA.
