The invention discloses an
Internet protocol security (
IPSec) flow rate security detection method, equipment and a
system. The method comprises the following steps that: when an
initiation party initiates an
Internet key exchange (IKE) request of the
IPsec communication to a response party through gateway equipment, and the gateway equipment intercepts and captures the IKE request, extracts the
source address of the request and the corresponding target address of the response party and stores the
source address of the request and the corresponding target address of the response party into a local data
list; the
encryption consultation is respectively carried out with the
initiation party and the response party, and in addition,
IPsec security channels with the
initiation party and the response party are respectively built; the initiation party encrypts a data packet to be sent to the response party by a gateway equipment consultation
encryption method and sends the data packet to the gateway equipment through the
IPsec security channel built with the gateway equipment; after the gateway equipment receives the data packet, the deep
packet detection is carried out after the data packet is decrypted by an
encryption method negotiated with the initiation party; when the deep
packet detection is passed, the gateway equipment encrypts the data packet by the encryption method negotiated with the response party, and the data packet is sent to the response party through the IPsec security channel built with the response party.