comment on draft-ietf-ipsec-udp-encaps-07.txt

chris stillson <stillson@cardholder.eng.sun.com> Thu, 15 January 2004 23:52 UTC

Received: from lists.tislabs.com (portal.tislabs.com [192.94.214.101]) by ietf.org (8.9.1a/8.9.1a) with ESMTP id SAA09067 for <ipsec-archive@lists.ietf.org>; Thu, 15 Jan 2004 18:52:19 -0500 (EST)
Received: by lists.tislabs.com (8.9.1/8.9.1) id QAA08802 Thu, 15 Jan 2004 16:36:57 -0500 (EST)
From: chris stillson <stillson@cardholder.eng.sun.com>
MIME-Version: 1.0
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Message-ID: <16391.2371.833481.654023@gargle.gargle.HOWL>
Date: Thu, 15 Jan 2004 13:42:27 -0800
To: ipsec@lists.tislabs.com
Subject: comment on draft-ietf-ipsec-udp-encaps-07.txt
X-Mailer: VM 7.07 under 21.1 (patch 3) "Acadia" XEmacs Lucid
Reply-To: chris.stillson@sun.com
X-Face: ; >?o+t66!z`OvpX.6T'j.4l4Gi+L*?8ZnU3L[G/^R,ELl3.Stln=12L+t|hsa*<{/D<{OS( ybD%5<p1k'KWu~2`ggA_L%P.80xTxo5E[(Co7E2b{4tMN[z59GT8woI?%`|<N_#Hbbq=g?Czs; CGv `KH(`'4?OWT.ENXkD6]nt=k)b9pb!Mx<0OJ!l&'SK_@/F]L3-KPn`RvR*Na'T;w;}uk2y`
Sender: owner-ipsec@lists.tislabs.com
Precedence: bulk
Content-Transfer-Encoding: 7bit

According to the udp encapsulation draft, 

2. Packet Formats

2.1  UDP-encapsulated ESP Header Format
....
The UDP header is a standard [RFC 768] header, where
- Source Port and Destination Port MUST be the same as used by
   IKE traffic.

But, one of the ports must be 4500 on the wire. And the destination
port seen by any implementation must be 4500. There seems to be some
implication that encapsulation could happen over port 500. I think the 
language should be tightened to that this only happens over port 4500
(and an ephemeral port in some cases). I think this could lead to
possible interoperability problems otherwise.


chris stillson
IPSEC crypto monkey
x82477

Note: Preceding comments written by an engineer. There is nothing
to read into them. He really has no hidden motives or agendas.

1.Right Understanding 2.Right Thoughts 3.Right Speech 4.Right Action 
5.Right Livelihood 6.Right Effort 7.Right Mindfulness 8.Right Concentration 
--Please inform author if he has forgotten about any of these