Re: [IPsec] Please review draft-ietf-ipsecme-aes-ctr-ikev2-05.txt

Yoav Nir <ynir@checkpoint.com> Thu, 04 March 2010 05:16 UTC

Return-Path: <ynir@checkpoint.com>
X-Original-To: ipsec@core3.amsl.com
Delivered-To: ipsec@core3.amsl.com
Received: from localhost (localhost [127.0.0.1]) by core3.amsl.com (Postfix) with ESMTP id E1B5E3A8AF2 for <ipsec@core3.amsl.com>; Wed, 3 Mar 2010 21:16:41 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -3.599
X-Spam-Level:
X-Spam-Status: No, score=-3.599 tagged_above=-999 required=5 tests=[BAYES_00=-2.599, RCVD_IN_DNSWL_LOW=-1]
Received: from mail.ietf.org ([64.170.98.32]) by localhost (core3.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id Kvq2AFzECOFB for <ipsec@core3.amsl.com>; Wed, 3 Mar 2010 21:16:37 -0800 (PST)
Received: from michael.checkpoint.com (michael.checkpoint.com [194.29.32.68]) by core3.amsl.com (Postfix) with ESMTP id 766123A88C0 for <ipsec@ietf.org>; Wed, 3 Mar 2010 21:16:36 -0800 (PST)
Received: from il-ex01.ad.checkpoint.com (il-ex01.checkpoint.com [194.29.34.26]) by michael.checkpoint.com (8.12.10+Sun/8.12.10) with ESMTP id o245Gasd000599; Thu, 4 Mar 2010 07:16:36 +0200 (IST)
X-CheckPoint: {4B8F40EB-0-1B201DC2-2FFFF}
Received: from il-ex01.ad.checkpoint.com ([126.0.0.2]) by il-ex01.ad.checkpoint.com ([126.0.0.2]) with mapi; Thu, 4 Mar 2010 07:16:55 +0200
From: Yoav Nir <ynir@checkpoint.com>
To: 'Paul Hoffman' <paul.hoffman@vpnc.org>, IPsecme WG <ipsec@ietf.org>
Date: Thu, 04 Mar 2010 07:16:55 +0200
Thread-Topic: [IPsec] Please review draft-ietf-ipsecme-aes-ctr-ikev2-05.txt
Thread-Index: Acq6+j6wSRRlqDh3QCmrRdSUtJxy6wAX18Dw
Message-ID: <006FEB08D9C6444AB014105C9AEB133FB37650C4EA@il-ex01.ad.checkpoint.com>
References: <p06240825c7b4519f594c@[10.20.30.158]>
In-Reply-To: <p06240825c7b4519f594c@[10.20.30.158]>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
acceptlanguage: en-US
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: quoted-printable
MIME-Version: 1.0
Subject: Re: [IPsec] Please review draft-ietf-ipsecme-aes-ctr-ikev2-05.txt
X-BeenThere: ipsec@ietf.org
X-Mailman-Version: 2.1.9
Precedence: list
List-Id: Discussion of IPsec protocols <ipsec.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/listinfo/ipsec>, <mailto:ipsec-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/ipsec>
List-Post: <mailto:ipsec@ietf.org>
List-Help: <mailto:ipsec-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ipsec>, <mailto:ipsec-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 04 Mar 2010 05:16:42 -0000

Paragraph 5 of section #2:
   MUST accept any length that results in proper alignment.  It should
   be noticed that the ESP [RFC4303] Encrypted Payload requires

Please change "noticed" to "noted".

Other than that, the document looks good enough for implementation.

-----Original Message-----
From: ipsec-bounces@ietf.org [mailto:ipsec-bounces@ietf.org] On Behalf Of Paul Hoffman
Sent: Wednesday, March 03, 2010 7:52 PM
To: IPsecme WG
Subject: [IPsec] Please review draft-ietf-ipsecme-aes-ctr-ikev2-05.txt

>A New Internet-Draft is available from the on-line Internet-Drafts
>directories.
>This draft is a work item of the IP Security Maintenance and Extensions Working Group of the IETF.
>
>	Title		: Using Advanced Encryption Standard (AES) Counter Mode with IKEv2
>	Author(s)	: S. Shen, Y. Mao, S. murthy
>	Filename	: draft-ietf-ipsecme-aes-ctr-ikev2-05.txt
>	Pages		: 10
>	Date		: 2010-3-2
>	
>This document describes the usage of Advanced Encryption Standard
>   Counter Mode (AES-CTR), with an explicit initialization vector, by
>   IKEv2 for encrypting the IKEv2 exchanges that follow the IKE_SA_INIT
>   exchange.
>
>A URL for this Internet-Draft is:
>http://www.ietf.org/internet-drafts/draft-ietf-ipsecme-aes-ctr-ikev2-05.txt

Based on Pasi's AD review, the authors significantly shortened the document. It seems prudent to have the WG review the new, shorter version. In particular, it would be good for developers to look at the new short document and see if it is complete enough to implement from.

This review cycle will end in a week, but please do the review early in case problems are found.

--Paul Hoffman, Director
--VPN Consortium
_______________________________________________
IPsec mailing list
IPsec@ietf.org
https://www.ietf.org/mailman/listinfo/ipsec

Scanned by Check Point Total Security Gateway.