RE: replay field size

Roy Shamir <roy@checkpoint.com> Wed, 12 February 1997 14:07 UTC

Received: from cnri by ietf.org id aa25412; 12 Feb 97 9:07 EST
Received: from portal.ex.tis.com by CNRI.Reston.VA.US id aa09022; 12 Feb 97 9:07 EST
Received: (from majordom@localhost) by portal.ex.tis.com (8.8.2/8.8.2) id IAA25887 for ipsec-outgoing; Wed, 12 Feb 1997 08:56:34 -0500 (EST)
Date: Wed, 12 Feb 1997 15:59:41 +0200
From: Roy Shamir <roy@checkpoint.com>
Message-Id: <9702121359.AA02547@dana.checkpoint.com>
To: ipsec@tis.com
Subject: RE: replay field size
X-Sun-Charset: US-ASCII
Sender: owner-ipsec@ex.tis.com
Precedence: bulk

> Should AH and ESP both have a fixed size replay counter ? (Yes/No/Don't Care)

Yes.

> If they have a fixed size counter, what size should it be? (32 bits/64 bits)

32 bits.

> Should SHA-1 output be truncated to 128 bits from 160 bits ? (Yes/No/Don't Care)

Yes, trucate to 128.


***************************************************************************
	Roy Shamir
	roy@checkpoint.com

	Tel: + 972 3 6131833 extension 178
---------------------------------------------------------------------------
Check Point Software Technologies Ltd.
3A Jabotinsky St.                     | Tel: + 972 3 6131833
Ramat-Gan 52511 Israel                | Fax: + 972 3 5759256

http://www.checkpoint.com