[IPsec] HUSH protocol: an EKE-based password authentication mode for IKEv2

Yaron Sheffer <yaronf.ietf@gmail.com> Wed, 17 March 2010 14:04 UTC

Return-Path: <yaronf.ietf@gmail.com>
X-Original-To: ipsec@core3.amsl.com
Delivered-To: ipsec@core3.amsl.com
Received: from localhost (localhost [127.0.0.1]) by core3.amsl.com (Postfix) with ESMTP id 4B9D13A6903 for <ipsec@core3.amsl.com>; Wed, 17 Mar 2010 07:04:30 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.271
X-Spam-Level:
X-Spam-Status: No, score=-1.271 tagged_above=-999 required=5 tests=[AWL=-0.565, BAYES_00=-2.599, DNS_FROM_OPENWHOIS=1.13, SARE_RECV_BEZEQINT_B=0.763]
Received: from mail.ietf.org ([64.170.98.32]) by localhost (core3.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 2Ylk-94H6J-b for <ipsec@core3.amsl.com>; Wed, 17 Mar 2010 07:04:28 -0700 (PDT)
Received: from mail-fx0-f179.google.com (mail-fx0-f179.google.com [209.85.220.179]) by core3.amsl.com (Postfix) with ESMTP id 576983A6C2B for <ipsec@ietf.org>; Wed, 17 Mar 2010 07:03:57 -0700 (PDT)
Received: by fxm27 with SMTP id 27so240895fxm.9 for <ipsec@ietf.org>; Wed, 17 Mar 2010 07:04:04 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=gamma; h=domainkey-signature:received:received:message-id:date:from :user-agent:mime-version:to:subject:content-type :content-transfer-encoding; bh=B96AaWiQ3V95y9El4F0IuLYNBt+m1UtZVfn6ClurLeo=; b=Zd2owcDKfGHnvQkjBTch2OZACL5DASjzHtdMrs1MDwGoG6nZT0hM+cSfepuq5aMDHk rPl09Z4m0F06Zm0PDAD+VI2qoBnGRh4RzjmGz2MexEMgzjbQXjGV2h91ZkWWy261D38Y +4kXLHb4IwcIDDytHp6qCCEmninaAC6wAKnvs=
DomainKey-Signature: a=rsa-sha1; c=nofws; d=gmail.com; s=gamma; h=message-id:date:from:user-agent:mime-version:to:subject :content-type:content-transfer-encoding; b=mzHMrzRpkTwNyvQKOKq16kq16Pc2b0Bu1mdZCTtn2e55eVhhqH64RzO2O86BQla0/Z oV87g6mjQ9ZkOgIr4yRi9VKENtdzORnzH0/d0toQFsCm4Jro9yRWKUv3FzbaZVyJu1r7 JX1GWEpZWRJgs2PUNK9J4qGlDLgvTMu8Z4MPk=
Received: by 10.87.47.32 with SMTP id z32mr2008356fgj.36.1268834643620; Wed, 17 Mar 2010 07:04:03 -0700 (PDT)
Received: from [10.20.30.6] ([62.219.129.160]) by mx.google.com with ESMTPS id d8sm1730755fga.5.2010.03.17.07.04.02 (version=SSLv3 cipher=RC4-MD5); Wed, 17 Mar 2010 07:04:02 -0700 (PDT)
Message-ID: <4BA0E166.3070901@gmail.com>
Date: Wed, 17 Mar 2010 16:04:22 +0200
From: Yaron Sheffer <yaronf.ietf@gmail.com>
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 5.1; en-US; rv:1.9.1.8) Gecko/20100227 Thunderbird/3.0.3
MIME-Version: 1.0
To: ipsec@ietf.org
Content-Type: text/plain; charset="ISO-8859-1"; format="flowed"
Content-Transfer-Encoding: 7bit
Subject: [IPsec] HUSH protocol: an EKE-based password authentication mode for IKEv2
X-BeenThere: ipsec@ietf.org
X-Mailman-Version: 2.1.9
Precedence: list
List-Id: Discussion of IPsec protocols <ipsec.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/listinfo/ipsec>, <mailto:ipsec-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/ipsec>
List-Post: <mailto:ipsec@ietf.org>
List-Help: <mailto:ipsec-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ipsec>, <mailto:ipsec-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 17 Mar 2010 14:04:30 -0000

Hi,


[WG chair hat off]


I just published a draft proposing a new IKEv2 authentication mode using 
EKE on our wiki, at http://trac.tools.ietf.org/wg/ipsecme/trac/wiki/TempDocs


I will submit the draft as an I-D early next week, when the submission 
window reopens. In the meantime, any comments are welcome.


Note that the Anaheim discussion will cover selection criteria of 
password authentication protocols. We will attempt to focus on these 
criteria, rather than on discussing any individual protocol, including 
this one.


Thanks,

     Yaron