What is the relationship between Enrollment Server for VPN and the IPSec Toolkit for C?
top) Many third-party VPN vendors use the Entrust Authority™ IPSec Toolkit for C to implement IKE or PKI support in their VPN client software. These products use the PKIX-CMP protocol (RFC2510) for digital certificate enrollment. However, these vendors often build their own security support capabilities for their dedicated VPN gateway devices rather than integrating the device with the IPSEC Toolkit for C. Typically, the enrollment methods supported by these devices are PKCS#10 or the SCEP protocol. In these cases, an Enrollment Server for VPN can be used to provide digital certificates to the VPN gateway. Since the digital certificate supplied to the two communicating nodes are from the same Security Manager, the VPN devices or applications will trust one another, and successful secure session negotiation can take place.