Re: SHA2 in AH/ESP

Sheila Frankel <sheila.frankel@nist.gov> Mon, 13 August 2001 19:38 UTC

Received: from lists.tislabs.com (portal.gw.tislabs.com [192.94.214.101]) by above.proper.com (8.11.3/8.11.3) with ESMTP id f7DJccN05441; Mon, 13 Aug 2001 12:38:39 -0700 (PDT)
Received: by lists.tislabs.com (8.9.1/8.9.1) id OAA04397 Mon, 13 Aug 2001 14:51:12 -0400 (EDT)
Message-Id: <4.3.2.7.2.20010813145450.00ac1520@email.nist.gov>
X-Sender: sfrankel@email.nist.gov
X-Mailer: QUALCOMM Windows Eudora Version 4.3.2
Date: Mon, 13 Aug 2001 14:58:22 -0400
To: Jun-ichiro itojun Hagino <itojun@iijlab.net>
From: Sheila Frankel <sheila.frankel@nist.gov>
Subject: Re: SHA2 in AH/ESP
Cc: ipsec@lists.tislabs.com
In-Reply-To: <20010813172347.E40307BA@starfruit.itojun.org>
Mime-Version: 1.0
Content-Type: text/plain; charset="us-ascii"; format="flowed"
Sender: owner-ipsec@lists.tislabs.com
Precedence: bulk

The document is in the works, but has not yet been published as an Internet 
Draft. SHA-256 would most likely be truncated to 128 bits.

Sheila Frankel

At 01:23 PM 8/13/01, you wrote:
>         sorry if it is a well-known topic.
>
>         draft-ietf-ipsec-ciph-aes-cbc-01.txt refers the following document on
>         the use of SHA-2 (SHA-256/384/512) within AH/ESP/IKE, however, I 
> can't
>         seem to find the document.  does anyone have the copy somewhere?
>         what is the name of the i-d?  how many bits should we attach to the
>         AH/ESP crypto checksum field?  is it acceptable to truncate to
>         align border like 96bit, like we do for SHA1?
>
>itojun
>
>
> >    [SHA2-2]    Frankel, S. and S. Kelly, "The Use of SHA-256, SHA-384,
> >               and SHA-512 within ESP, AH and IKE," Work in progress.