RE: replay field size -Reply

CJ Lee <CJ_LEE@novell.com> Wed, 12 February 1997 18:11 UTC

Received: from cnri by ietf.org id aa09924; 12 Feb 97 13:11 EST
Received: from portal.ex.tis.com by CNRI.Reston.VA.US id aa27753; 12 Feb 97 13:11 EST
Received: (from majordom@localhost) by portal.ex.tis.com (8.8.2/8.8.2) id NAA27837 for ipsec-outgoing; Wed, 12 Feb 1997 13:01:28 -0500 (EST)
Message-Id: <s30195f1.094@novell.com>
X-Mailer: Novell GroupWise 4.1
Date: Wed, 12 Feb 1997 10:04:46 -0800
From: CJ Lee <CJ_LEE@novell.com>
To: ipsec@tis.com
Subject: RE: replay field size -Reply
Sender: owner-ipsec@ex.tis.com
Precedence: bulk

> Should AH and ESP both have a fixed size replay
counter ? (Yes/No/Don't Care)

Yes.

> If they have a fixed size counter, what size should it
be? (32 bits/64 bits)

32 bits.

> Should SHA-1 output be truncated to 128 bits from
160 bits ? (Yes/No/Don't Care)

Don't care (don't have enough knowledge to judge).  In
the case of 64-bits header alignment, whether it's
necessitated by the optional RP counter or the length
of the MAC digest, trailing pad bytes can be used.