Re: is manual keying mandatory (fwd)

ho@earth.hpc.org (Hilarie Orman) Sun, 29 March 1998 03:21 UTC

Received: (from majordom@localhost) by portal.ex.tis.com (8.8.2/8.8.2) id WAA22065 for ipsec-outgoing; Sat, 28 Mar 1998 22:21:48 -0500 (EST)
Date: Sat, 28 Mar 1998 22:34:40 -0500
From: ho@earth.hpc.org
Message-Id: <199803290334.WAA29357@earth.hpc.org>
To: plambert@certicom.com
Cc: ipsec@tis.com
In-reply-to: Yourmessage <199803210201.TAA13609@baskerville.CS.Arizona.EDU>
Subject: Re: is manual keying mandatory (fwd)
Sender: owner-ipsec@ex.tis.com
Precedence: bulk

>   >>From a practical standpoint, Diffie-Hellman is
>   >extremely expensive in lessor-powered CPU's

>   This is good reason retain and fix the elliptic curve options in Oakley.

>   It's much faster and a better system solution than manual keys.

>   Paul

Can't be faster than pre-distributed manual keys, of course.  And the
conservative "fix" Certicom recommends  will slow down EC's quite a bit.

Hilarie