Internet Key Exchange


Internet Key Exchange (IKE) is the protocol used to set up a security association (SA) in the IPsec protocol suite.

Internet Key Exchange uses X.509 certificates for authentication ‒ either pre-shared or distributed using DNS (preferably with DNSSEC) and a Diffie-Hellman key-exchange ‒ to set up a session Shared Secret from which Cryptographic Keys are derived

