Re: IP Security......

"Jeffrey I. Schiller" <jis@mit.edu> Wed, 15 March 1995 15:44 UTC

Received: from ietf.nri.reston.va.us by IETF.CNRI.Reston.VA.US id aa04493; 15 Mar 95 10:44 EST
Received: from CNRI.Reston.VA.US by IETF.CNRI.Reston.VA.US id aa04489; 15 Mar 95 10:44 EST
Received: from ietf.cnri.reston.va.us by CNRI.Reston.VA.US id aa07653; 15 Mar 95 10:44 EST
Received: from ietf.nri.reston.va.us by IETF.CNRI.Reston.VA.US id aa04462; 15 Mar 95 10:44 EST
Received: from CNRI.Reston.VA.US by IETF.CNRI.Reston.VA.US id aa04457; 15 Mar 95 10:44 EST
Received: from BIG-SCREW.MIT.EDU by CNRI.Reston.VA.US id aa07635; 15 Mar 95 10:43 EST
Received: by big-screw id AA23486; Wed, 15 Mar 95 10:43:58 -0500
Message-Id: <ab8cbaaa01021004720f@[18.74.3.75]>
Mime-Version: 1.0
Content-Type: text/plain; charset="us-ascii"
Date: Wed, 15 Mar 1995 10:44:12 -0500
To: Mike O'Dell <mo@uunet.uu.net>
X-Orig-Sender: iesg-request@IETF.CNRI.Reston.VA.US
Sender: ietf-archive-request@IETF.CNRI.Reston.VA.US
From: "Jeffrey I. Schiller" <jis@mit.edu>
Subject: Re: IP Security......
Cc: sob@harvard.edu, iesg@CNRI.Reston.VA.US

At 9:26 3/15/95, Mike O'Dell wrote:
>Well, I'm in a cranky mood this morning reflecting on the
>general state of affairs, and though I'd vent some of the
>dark thoughts clouding my vision this morning......

I feel the same way sometimes too. Look at the IPSEC working group. It
looks like a bunch of children arguing... and work gets delayed. As I have
said before "Deployment Wins."

Netscape is working on the deployment part right now... without even
interacting (much) with the IETF. Of course SSL will eventually run into a
bottleneck when server operators discover that they either have to buy
their software from Netscape or have to get a (per server) certificate from
RSA DSI (which costs money and involves signing a legal agreement). If SSL
is ever used for client authentication (rather then for sending encrypted
"stuff" to a server) then every client (person) will have to pay money and
sign an agreement (in front of a notary). Look at Apple's AOCE, thats the
model.

                        -Jeff

P.S. I am working hard behind the scenes of the IPSEC working group in an
attempt to get a combined IPv4 and IPv6 security document (ESP and AH) to
proposed standard shortly after Danvers. I will attempt to push the WG to
consensous in Danvers. We'll see.