IPCOMP and IPSEC

Stephen Waters <Stephen.Waters@digital.com> Wed, 27 May 1998 22:26 UTC

Return-Path: Stephen.Waters@digital.com
Received: from brittany.cisco.com (brittany.cisco.com [171.69.1.168]) by ftp-eng.cisco.com (8.8.5-Cisco.1/8.6.5) with SMTP id PAA06208 for <ippcp-archive-file@ftp-eng.cisco.com>; Wed, 27 May 1998 15:26:43 -0700 (PDT)
Received: from hubbub.cisco.com (mailgate-sj-1.cisco.com [198.92.30.31]) by brittany.cisco.com (8.6.12/8.6.5) with ESMTP id PAA22743 for <extdom.ippcp@aliashost.cisco.com>; Wed, 27 May 1998 15:25:54 -0700
Received: from proxy2.cisco.com (proxy2.cisco.com [192.31.7.89]) by hubbub.cisco.com (8.8.4-Cisco.1/CISCO.GATE.1.1) with ESMTP id PAA18804 for <ippcp@external.cisco.com>; Wed, 27 May 1998 15:25:54 -0700 (PDT)
Received: (from smap@localhost) by proxy2.cisco.com (8.8.7/8.8.5) id PAA28141 for <ippcp@external.cisco.com>; Wed, 27 May 1998 15:25:52 -0700 (PDT)
Received: from mail11.digital.com(192.208.46.10) by proxy2.cisco.com via smap (V2.0) id xma028132; Wed, 27 May 98 22:25:49 GMT
X-SMAP-Received-From: outside
Received: from reohub2.reo.dec.com (reohub2.reo.dec.com [16.37.21.19]) by mail11.digital.com (8.8.8/8.8.8/WV1.0e) with ESMTP id SAA09185; Wed, 27 May 1998 18:22:03 -0400 (EDT)
Received: by reohub2.reo.dec.com with Internet Mail Service (5.5.1960.3) id <L4R2PT87>; Wed, 27 May 1998 23:22:02 +0100
Message-ID: <250F9C8DEB9ED011A14D08002BE4F64C01959165@wade.reo.dec.com>
From: Stephen Waters <Stephen.Waters@digital.com>
To: ippcp@external.cisco.com, ipsec@tis.com
Subject: IPCOMP and IPSEC
Date: Wed, 27 May 1998 23:19:08 +0100
MIME-Version: 1.0
X-Mailer: Internet Mail Service (5.5.1960.3)
Content-Type: text/plain

Is IPCOMP restricted for use by Hosts (at packet origin), or can it be
appended by a Security Gateway as part of the process of adding an IPSEC
tunnel header?

e.g.

Original host packet [IP1][TCP][data]

After passing through a security gateway/IP tunnel:

[IP2][ESP][IPCOMP][IP1][TCP][data][padding/next protocol][ESP auth]


If this is supported, is it detailed anywhere?  For example, if an
Explicit IV is used, would it come after the ESP header or after the
IPCOMP header?





Stephen Waters
DEVON, UK

National: 01548 551012 / 550474
International: 44 1548 551012 / 550474
Stephen.Waters@Digital.com