Re: [IPsec] New Version Notification for draft-smyslov-ipsecme-tcp-guidelines-00.txt

Valery Smyslov <svan@elvis.ru> Fri, 07 September 2018 13:23 UTC

Return-Path: <svan@elvis.ru>
X-Original-To: ipsec@ietfa.amsl.com
Delivered-To: ipsec@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 929DC130E04; Fri, 7 Sep 2018 06:23:57 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.9
X-Spam-Level:
X-Spam-Status: No, score=-1.9 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RCVD_IN_DNSWL_NONE=-0.0001] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id g1pz8zDELjt5; Fri, 7 Sep 2018 06:23:56 -0700 (PDT)
Received: from akamail.elvis.ru (akamail.elvis.ru [82.138.51.96]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id C3AE0130E00; Fri, 7 Sep 2018 06:23:52 -0700 (PDT)
Received: from kmail.elvis.ru ([93.188.44.208]) by akamail.elvis.ru with esmtp (Exim 4.88) (envelope-from <svan@elvis.ru>) id 1fyGjm-0003Ww-AB; Fri, 07 Sep 2018 16:23:51 +0300
Received: from robin.office.elvis.ru ([10.111.1.40]) by kmail.elvis.ru with esmtp (Exim 4.88) (envelope-from <svan@elvis.ru>) id 1fyGjl-0003wF-M3; Fri, 07 Sep 2018 16:23:50 +0300
Received: from buildpc (10.111.10.33) by robin.office.elvis.ru (10.111.1.40) with Microsoft SMTP Server id 14.3.382.0; Fri, 7 Sep 2018 16:23:49 +0300
From: Valery Smyslov <svan@elvis.ru>
To: IPsecME WG <ipsec@ietf.org>
CC: draft-ietf-ipsecme-tcp-encaps@ietf.org
References: <153632409170.28963.3858352353321879475.idtracker@ietfa.amsl.com>
In-Reply-To: <153632409170.28963.3858352353321879475.idtracker@ietfa.amsl.com>
Date: Fri, 07 Sep 2018 16:23:39 +0300
Message-ID: <058901d446ad$fd78b5a0$f86a20e0$@elvis.ru>
MIME-Version: 1.0
Content-Type: text/plain; charset="UTF-8"
Content-Transfer-Encoding: 7bit
X-Mailer: Microsoft Outlook 14.0
Thread-Index: AQJcXB691A5/IRakRUGL31dObam09KPUoUAg
Content-Language: ru
X-KLMS-Rule-ID: 1
X-KLMS-Message-Action: clean
X-KLMS-AntiSpam-Status: not scanned, disabled by settings
X-KLMS-AntiSpam-Interceptor-Info: not scanned
X-KLMS-AntiPhishing: Clean, 2018/09/06 15:32:42
X-KLMS-AntiVirus: Kaspersky Security 8.0 for Linux Mail Server, version 8.0.1.721, bases: 2018/09/07 08:55:00 #8682191
X-KLMS-AntiVirus-Status: Clean, skipped
Archived-At: <https://mailarchive.ietf.org/arch/msg/ipsec/PmBbICwnORaYb3nKK3gi1VAuRVY>
Subject: Re: [IPsec] New Version Notification for draft-smyslov-ipsecme-tcp-guidelines-00.txt
X-BeenThere: ipsec@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Discussion of IPsec protocols <ipsec.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ipsec>, <mailto:ipsec-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ipsec/>
List-Post: <mailto:ipsec@ietf.org>
List-Help: <mailto:ipsec-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ipsec>, <mailto:ipsec-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 07 Sep 2018 13:23:58 -0000

Hi,

I've posted a draft with clarifications and implementation guidelines
for RFC8229. These clarifications and recommendations are based 
on experience of implementing TCP encapsulation and testing it in 
various IKEv2 scenarios.

Feedback of any sort is highly appreciated.

Regards,
Valery.


> -----Original Message-----
> From: internet-drafts@ietf.org [mailto:internet-drafts@ietf.org]
> Sent: Friday, September 07, 2018 3:42 PM
> To: Valery Smyslov
> Subject: New Version Notification for draft-smyslov-ipsecme-tcp-guidelines-00.txt
> 
> 
> A new version of I-D, draft-smyslov-ipsecme-tcp-guidelines-00.txt
> has been successfully submitted by Valery Smyslov and posted to the
> IETF repository.
> 
> Name:		draft-smyslov-ipsecme-tcp-guidelines
> Revision:	00
> Title:		Clarifications and Implementation Guidelines for using TCP Encapsulation in IKEv2
> Document date:	2018-09-07
> Group:		Individual Submission
> Pages:		8
> URL:            https://www.ietf.org/internet-drafts/draft-smyslov-ipsecme-tcp-guidelines-00.txt
> Status:         https://datatracker.ietf.org/doc/draft-smyslov-ipsecme-tcp-guidelines/
> Htmlized:       https://tools.ietf.org/html/draft-smyslov-ipsecme-tcp-guidelines-00
> Htmlized:       https://datatracker.ietf.org/doc/html/draft-smyslov-ipsecme-tcp-guidelines
> 
> 
> Abstract:
>    The Internet Key Exchange Protocol version 2 (IKEv2) defined in
>    [RFC7296] uses UDP transport for its messages.  [RFC8229] specifies a
>    way to encapsulate IKEv2 and ESP (Encapsulating Security Payload)
>    messages in TCP, thus making possible to use them in network
>    environments that block UDP traffic.  However, some nuances of using
>    TCP in IKEv2 are not covered by that specification.  This document
>    provides clarifications and implementation guidelines for [RFC8229].
> 
> 
> 
> 
> Please note that it may take a couple of minutes from the time of submission
> until the htmlized version and diff are available at tools.ietf.org.
> 
> The IETF Secretariat