IKEv2 (son-of-ike) draft

Radia Perlman - Boston Center for Networking <Radia.Perlman@sun.com> Mon, 19 November 2001 20:37 UTC

Received: from lists.tislabs.com (portal.gw.tislabs.com [192.94.214.101]) by above.proper.com (8.11.6/8.11.3) with ESMTP id fAJKbr820951; Mon, 19 Nov 2001 12:37:54 -0800 (PST)
Received: by lists.tislabs.com (8.9.1/8.9.1) id OAA10254 Mon, 19 Nov 2001 14:46:07 -0500 (EST)
Message-Id: <200111191955.OAA16361@bcn.East.Sun.COM>
Date: Mon, 19 Nov 2001 14:55:26 -0500
From: Radia Perlman - Boston Center for Networking <Radia.Perlman@sun.com>
Reply-To: Radia Perlman - Boston Center for Networking <Radia.Perlman@sun.com>
Subject: IKEv2 (son-of-ike) draft
To: ipsec@lists.tislabs.com
MIME-Version: 1.0
Content-Type: TEXT/plain; charset="us-ascii"
Content-MD5: NoPI9eIPL6XZXDlNjxnf9w==
X-Mailer: dtmail 1.3.0 @(#)CDE Version 1.4.2 SunOS 5.8 sun4u sparc
Sender: owner-ipsec@lists.tislabs.com
Precedence: bulk

And to answer some of the recent email on the list...this
protocol does maintain the phase 1/phase 2 notion, but sets up
both phase 1 and phase 2 in a single 2-round-trip exchange.
After the initial exchange, additional SAs can be set up,
or the SA can be rekeyed, with a single round trip. And it
does identity hiding of both ends.

Most of the work was in rewriting the three documents into
a single self-contained document, and cleaning up the "networking"
type issues and overly complex encodings such as
the SA payload.

Radia
------------- Begin Forwarded Message -------------

To: ipsec@lists.tislabs.com
From: dharkins@tibernian.com
Subject: IKEv2 (son-of-ike) draft
MIME-Version: 1.0
Content-ID: <2377.1006067452.1@SailPix.com>

   This draft was submitted but hasn't shown up yet in the repository
(the I-D editor is, no doubt, swamped) so in the interest of giving
people more time to look at it prior to Salt Lake here's a link:

             http://www.lounge.org/draft-ietf-ipsec-ikev2-00.txt

Please send comments to the list.

   Dan.



------------- End Forwarded Message -------------