I-D Action:draft-zhang-ipsecme-anti-replay-00.txt

Internet-Drafts@ietf.org Tue, 10 May 2011 19:45 UTC

Return-Path: <Internet-Drafts@ietf.org>
X-Original-To: i-d-announce@ietfa.amsl.com
Delivered-To: i-d-announce@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 2C0DBE069F for <i-d-announce@ietfa.amsl.com>; Tue, 10 May 2011 12:45:04 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -102.578
X-Spam-Level:
X-Spam-Status: No, score=-102.578 tagged_above=-999 required=5 tests=[AWL=0.021, BAYES_00=-2.599, USER_IN_WHITELIST=-100]
Received: from mail.ietf.org ([64.170.98.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id dAfkJGWaFcUx for <i-d-announce@ietfa.amsl.com>; Tue, 10 May 2011 12:45:03 -0700 (PDT)
Received: from ietfa.amsl.com (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 66CB6E06A2 for <i-d-announce@ietf.org>; Tue, 10 May 2011 12:45:03 -0700 (PDT)
MIME-Version: 1.0
Content-Type: Multipart/Mixed; Boundary="NextPart"
From: Internet-Drafts@ietf.org
To: i-d-announce@ietf.org
Subject: I-D Action:draft-zhang-ipsecme-anti-replay-00.txt
X-Test-IDTracker: no
X-IETF-IDTracker: 3.54
Message-ID: <20110510194503.9883.48684.idtracker@ietfa.amsl.com>
Date: Tue, 10 May 2011 12:45:03 -0700
X-BeenThere: i-d-announce@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
Reply-To: internet-drafts@ietf.org
List-Id: Internet Draft Announcements only <i-d-announce.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/i-d-announce>, <mailto:i-d-announce-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/i-d-announce>
List-Post: <mailto:i-d-announce@ietf.org>
List-Help: <mailto:i-d-announce-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/i-d-announce>, <mailto:i-d-announce-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 10 May 2011 19:45:04 -0000

A New Internet-Draft is available from the on-line Internet-Drafts directories.

	Title           : IPsec anti-replay algorithm without bit-shifting
	Author(s)       : X. Zhang, T. Tsou (Ting ZOU)
	Filename        : draft-zhang-ipsecme-anti-replay-00.txt
	Pages           : 9
	Date            : 2011-05-10

This document presents a new method to do anti-replay check and 
update, which becomes one alternative to the anti-replay 
algorithm in RFC 4302 and RFC4303.  The new method will deem the 
bit-shifting unnecessary.  It will reduce the number of times 
to slide the window.  In addition, it makes bit-check and 
bit-update easier as it does not depend on the low index of the 
sliding window.  It is especially beneficial when the window size 
is much bigger than 64 bits, for example, 1024 bits.

IPsec employs one anti-replay sliding window protocol to secure 
against an adversary that can insert the messages inside the 
network tunnel.  This method still inherits the sliding window 
protocol, but use one or more redundant bytes to ease the update 
of sliding window.  The bit-shifting is deemed unnecessary with 
updating the high and low index of the window, which is especially 
efficient in case of the big window size.  Thus the method reduces
the number of times to update the window.  

In addition, the bit location is fixed for one sequence number, 
thus makes the bit check easier and faster.

A URL for this Internet-Draft is:
http://www.ietf.org/internet-drafts/draft-zhang-ipsecme-anti-replay-00.txt

Internet-Drafts are also available by anonymous FTP at:
ftp://ftp.ietf.org/internet-drafts/

Below is the data which will enable a MIME compliant mail reader
implementation to automatically retrieve the ASCII version of the
Internet-Draft.
ftp://ftp.ietf.org/internet-drafts/draft-zhang-ipsecme-anti-replay-00.txt"><ftp://ftp.ietf.org/internet-drafts/draft-zhang-ipsecme-anti-replay-00.txt>