Final answer:
The Authentication Header (AH) transform in IPsec operates in different modes: transport mode and tunnel mode. AH is commonly used between IPsec gateways, and it protects all fields of the AH header, inner IP header, and payload in tunnel mode.
Step-by-step explanation:
The subject of this question is Computers and Technology. Specifically, it is related to IPsec (Internet Protocol Security) and its modes of operation: transport mode and tunnel mode.
Option A is correct. In IPsec, the ah (Authentication Header) transform is typically used between IPsec gateways rather than the end points of the communication.
Option C is incorrect. AH does not provide confidentiality in tunnel mode; it only ensures data integrity and data-origin authentication.
Option D is correct. In tunnel mode, AH protects all fields of the AH header, the inner IP header, and the inner IP payload.
Option B is incorrect. The widespread use of Network Address Translation (NAT) has not limited the use of the AH transform in transport mode. While the IP header is modified, AH can still be used alongside NAT.