Re: "Transforms" per se going away?

Daniel Harkins <dharkins@cisco.com> Thu, 13 February 1997 01:42 UTC

Received: (from majordom@localhost) by portal.ex.tis.com (8.8.2/8.8.2) id UAA01229 for ipsec-outgoing; Wed, 12 Feb 1997 20:42:12 -0500 (EST)
Message-Id: <199702130146.RAA17392@dharkins-ss20.cisco.com>
X-Authentication-Warning: dharkins-ss20.cisco.com: Host localhost.cisco.com didn't use HELO protocol
To: Dan.McDonald@Eng.sun.com
Cc: ipsec@tis.com
Subject: Re: "Transforms" per se going away?
In-Reply-To: Your message of "Wed, 12 Feb 1997 16:07:09 PST." <199702130007.QAA28204@kebe.eng.sun.com>
Mime-Version: 1.0
Content-Type: text/plain; charset="us-ascii"
Date: Wed, 12 Feb 1997 17:46:36 -0800
From: Daniel Harkins <dharkins@cisco.com>
Sender: owner-ipsec@ex.tis.com
Precedence: bulk

Dan McDonald wrote:
> *I* was under the impression that with the next round of base document
> updates, the IPsec headers would move away from the "transform" concept, and
> into a "pick an item off the checklist" concept.  

[example snipped]

> PLEASE NOTE RIGHT NOW THAT THIS WILL NOT CHANGE THE BITS ON THE WIRE WHICH
> ARE ALREADY WELL-DEFINED, AND WORKING IN MANY PEOPLE'S CODE!  (Pardon my
> shouting, that's a very important property though.)

It will change many working ISAKMP implementations which also put bits on
the wire in a well-defined manner. Doing away with the transform and making 
everything an attribute will change existing payloads and the way payloads 
are constructed and processed. Not that this is necessarily a bad thing, 
just that these changes are not completely editorial and everyone needs to 
understand that.

  Dan.

-------------------------------------------------------------------------------
Dan Harkins                                |   E-mail:  dharkins@cisco.com
Network Protocol Security, cisco Systems   |   phone:   +1 (408) 526-5905
170 W. Tasman Drive                        |   fax:     +1 (408) 526-4952
San Jose, CA 95134-1706, U.S.A.            |   ICBM:    37.45N, 122.03W
-------------------------------------------------------------------------------
For your safety and the safety of others: concealed carry, and strong crypto
-------------------------------------------------------------------------------