[IPsec] IETFLC comments for draft-ietf-ipsecme-ikev2bis-08

Keith Welter <welterk@us.ibm.com> Mon, 08 March 2010 16:17 UTC

Return-Path: <welterk@us.ibm.com>
X-Original-To: ipsec@core3.amsl.com
Delivered-To: ipsec@core3.amsl.com
Received: from localhost (localhost [127.0.0.1]) by core3.amsl.com (Postfix) with ESMTP id 1D2783A6A2B for <ipsec@core3.amsl.com>; Mon, 8 Mar 2010 08:17:52 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -6.598
X-Spam-Level:
X-Spam-Status: No, score=-6.598 tagged_above=-999 required=5 tests=[BAYES_00=-2.599, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_MED=-4]
Received: from mail.ietf.org ([64.170.98.32]) by localhost (core3.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id PD2mSXYqnKYt for <ipsec@core3.amsl.com>; Mon, 8 Mar 2010 08:17:41 -0800 (PST)
Received: from e8.ny.us.ibm.com (e8.ny.us.ibm.com [32.97.182.138]) by core3.amsl.com (Postfix) with ESMTP id 7290A3A69FE for <ipsec@ietf.org>; Mon, 8 Mar 2010 08:17:40 -0800 (PST)
Received: from d01relay05.pok.ibm.com (d01relay05.pok.ibm.com [9.56.227.237]) by e8.ny.us.ibm.com (8.14.3/8.13.1) with ESMTP id o28G9YgP004085 for <ipsec@ietf.org>; Mon, 8 Mar 2010 11:09:34 -0500
Received: from d03av03.boulder.ibm.com (d03av03.boulder.ibm.com [9.17.195.169]) by d01relay05.pok.ibm.com (8.13.8/8.13.8/NCO v10.0) with ESMTP id o28GHZcu113776 for <ipsec@ietf.org>; Mon, 8 Mar 2010 11:17:35 -0500
Received: from d03av03.boulder.ibm.com (loopback [127.0.0.1]) by d03av03.boulder.ibm.com (8.14.3/8.13.1/NCO v10.0 AVout) with ESMTP id o289HWKR006517 for <ipsec@ietf.org>; Mon, 8 Mar 2010 02:17:32 -0700
Received: from d03nm118.boulder.ibm.com (d03nm118.boulder.ibm.com [9.17.195.144]) by d03av03.boulder.ibm.com (8.14.3/8.13.1/NCO v10.0 AVin) with ESMTP id o289HVwE006492 for <ipsec@ietf.org>; Mon, 8 Mar 2010 02:17:31 -0700
To: ipsec@ietf.org
MIME-Version: 1.0
X-KeepSent: E95BCCD7:8E4A6F0F-882576E0:00590B57; type=4; name=$KeepSent
X-Mailer: Lotus Notes Release 8.0.2 HF623 January 16, 2009
From: Keith Welter <welterk@us.ibm.com>
X-MIMETrack: S/MIME Sign by Notes Client on Keith Welter/Raleigh/IBM(Release 8.0.2 HF623|January 16, 2009) at 03/08/2010 08:17:29 AM, Serialize by Notes Client on Keith Welter/Raleigh/IBM(Release 8.0.2 HF623|January 16, 2009) at 03/08/2010 08:17:29 AM, Serialize complete at 03/08/2010 08:17:29 AM, S/MIME Sign failed at 03/08/2010 08:17:29 AM: The cryptographic key was not found, Serialize by Router on D03NM118/03/M/IBM(Release 8.5.1HF41 | October 22, 2009) at 03/08/2010 09:17:31, Serialize complete at 03/08/2010 09:17:31
Message-ID: <OFE95BCCD7.8E4A6F0F-ON882576E0.00590B57-882576E0.00597F3C@us.ibm.com>
Date: Mon, 08 Mar 2010 08:17:30 -0800
Content-Type: multipart/alternative; boundary="=_alternative 00597E12882576E0_="
Subject: [IPsec] IETFLC comments for draft-ietf-ipsecme-ikev2bis-08
X-BeenThere: ipsec@ietf.org
X-Mailman-Version: 2.1.9
Precedence: list
List-Id: Discussion of IPsec protocols <ipsec.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/listinfo/ipsec>, <mailto:ipsec-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/ipsec>
List-Post: <mailto:ipsec@ietf.org>
List-Help: <mailto:ipsec-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ipsec>, <mailto:ipsec-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 08 Mar 2010 16:17:52 -0000

Section 2.23, paragraph starting: 
"An initiator can use port 4500 for both IKE and ESP, regardless of
 whether or not there is a NAT, even at the beginning of IKE.".

What does, "even at the beginning of IKE" mean?

Does it mean, 
  "even when sending an IKE_SA_INIT request"
or 
  "even at any point during the initial exchanges"?

Keith Welter
IBM z/OS Communications Server Developer
1-415-545-2694 (T/L: 473-2694)