Re: [IPsec] comments on draft-ietf-ipsecme-aes-ctr-ikev2-05.txt

Paul Hoffman <paul.hoffman@vpnc.org> Mon, 08 March 2010 19:47 UTC

Return-Path: <paul.hoffman@vpnc.org>
X-Original-To: ipsec@core3.amsl.com
Delivered-To: ipsec@core3.amsl.com
Received: from localhost (localhost [127.0.0.1]) by core3.amsl.com (Postfix) with ESMTP id 7E3F23A69EA for <ipsec@core3.amsl.com>; Mon, 8 Mar 2010 11:47:32 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -5.966
X-Spam-Level:
X-Spam-Status: No, score=-5.966 tagged_above=-999 required=5 tests=[AWL=0.080, BAYES_00=-2.599, HELO_MISMATCH_COM=0.553, RCVD_IN_DNSWL_MED=-4]
Received: from mail.ietf.org ([64.170.98.32]) by localhost (core3.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id LuO08objngbX for <ipsec@core3.amsl.com>; Mon, 8 Mar 2010 11:47:31 -0800 (PST)
Received: from balder-227.proper.com (Balder-227.Proper.COM [192.245.12.227]) by core3.amsl.com (Postfix) with ESMTP id ABBE33A6B9D for <ipsec@ietf.org>; Mon, 8 Mar 2010 11:47:31 -0800 (PST)
Received: from [10.20.30.158] (sn87.proper.com [75.101.18.87]) (authenticated bits=0) by balder-227.proper.com (8.14.2/8.14.2) with ESMTP id o28JlYQe007172 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-SHA bits=256 verify=NO); Mon, 8 Mar 2010 12:47:35 -0700 (MST) (envelope-from paul.hoffman@vpnc.org)
Mime-Version: 1.0
Message-Id: <p06240811c7bb0416d1fe@[10.20.30.158]>
In-Reply-To: <252364a0022a7cb64107ecdd2f64134f.squirrel@www.trepanning.net>
References: <p06240825c7b4519f594c@[10.20.30.158]> <5E118307-CA36-4182-B5B0-A6431487899F@cisco.com> <252364a0022a7cb64107ecdd2f64134f.squirrel@www.trepanning.net>
Date: Mon, 08 Mar 2010 11:47:32 -0800
To: Dan Harkins <dharkins@lounge.org>
From: Paul Hoffman <paul.hoffman@vpnc.org>
Content-Type: text/plain; charset="us-ascii"
Cc: IPsecme WG <ipsec@ietf.org>
Subject: Re: [IPsec] comments on draft-ietf-ipsecme-aes-ctr-ikev2-05.txt
X-BeenThere: ipsec@ietf.org
X-Mailman-Version: 2.1.9
Precedence: list
List-Id: Discussion of IPsec protocols <ipsec.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/listinfo/ipsec>, <mailto:ipsec-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/ipsec>
List-Post: <mailto:ipsec@ietf.org>
List-Help: <mailto:ipsec-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ipsec>, <mailto:ipsec-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 08 Mar 2010 19:47:32 -0000

At 11:17 AM -0800 3/8/10, Dan Harkins wrote:
>  Let me take this opportunity to point out that RFC 5297 describes
>an AES-CTR variant that does not have the performance benefits that
>GCM has but provides nonce misuse/abuse resistance.

It feels like your comment is unrelated to this thread, unless you are proposing that draft-ietf-ipsecme-aes-ctr-ikev2 needs to reference every single variant, even those that are not on standards track. If that is what you are saying, please propose wording for the WG to look at.

--Paul Hoffman, Director
--VPN Consortium