Re: [tcpm] Review of draft-ietf-tcpm-tcp-auth-opt-01

"Caitlin Bestler" <Caitlin.Bestler@neterion.com> Tue, 29 July 2008 19:10 UTC

Return-Path: <tcpm-bounces@ietf.org>
X-Original-To: tcpm-archive@megatron.ietf.org
Delivered-To: ietfarch-tcpm-archive@core3.amsl.com
Received: from [127.0.0.1] (localhost [127.0.0.1]) by core3.amsl.com (Postfix) with ESMTP id AE6A73A6B19; Tue, 29 Jul 2008 12:10:50 -0700 (PDT)
X-Original-To: tcpm@core3.amsl.com
Delivered-To: tcpm@core3.amsl.com
Received: from localhost (localhost [127.0.0.1]) by core3.amsl.com (Postfix) with ESMTP id 5EEEB3A6B19 for <tcpm@core3.amsl.com>; Tue, 29 Jul 2008 12:10:49 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.599
X-Spam-Level:
X-Spam-Status: No, score=-2.599 tagged_above=-999 required=5 tests=[BAYES_00=-2.599]
Received: from mail.ietf.org ([64.170.98.32]) by localhost (core3.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id H-lF4AFJOSWA for <tcpm@core3.amsl.com>; Tue, 29 Jul 2008 12:10:48 -0700 (PDT)
Received: from owa.neterion.com (mx.neterion.com [72.1.205.142]) by core3.amsl.com (Postfix) with ESMTP id F24BE3A687A for <tcpm@ietf.org>; Tue, 29 Jul 2008 12:10:47 -0700 (PDT)
X-MimeOLE: Produced By Microsoft Exchange V6.5
Content-class: urn:content-classes:message
MIME-Version: 1.0
Date: Tue, 29 Jul 2008 15:10:57 -0400
Message-ID: <78C9135A3D2ECE4B8162EBDCE82CAD7703FA4633@nekter>
In-Reply-To: <488F24CB.8060803@isi.edu>
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
Thread-Topic: [tcpm] Review of draft-ietf-tcpm-tcp-auth-opt-01
Thread-Index: AcjxhRecZf76mQahSuSDpbvZJgOS2AAKM0Kg
References: <20080728042451.C7A174B7AD3@kilo.rtfm.com> <488D6968.9010102@isi.edu> <20080728131254.3DD764B88F7@kilo.rtfm.com> <488DD77D.9070608@isi.edu> <20080728144721.AC9184B905A@kilo.rtfm.com> <488DE021.7070307@isi.edu> <396556a20807280931i257c6597o14cf45f8710611bf@mail.gmail.com> <20080728164235.8DD974B96B6@kilo.rtfm.com> <488E0749.4020402@isi.edu> <396556a20807281106kfe6eb89sdb32d3836e508ea0@mail.gmail.com> <0C53DCFB700D144284A584F54711EC58058C3506@xmb-sjc-21c.amer.cisco.com> <488F1DE0.3060502@isi.edu><20080729135300.0E4AD4BD2AA@kilo.rtfm.com> <488F24CB.8060803@isi.edu>
From: Caitlin Bestler <Caitlin.Bestler@neterion.com>
To: Joe Touch <touch@ISI.EDU>, Eric Rescorla <ekr@networkresonance.com>
Cc: Adam Langley <agl@imperialviolet.org>, tcpm@ietf.org, "Anantha Ramaiah (ananth)" <ananth@cisco.com>
Subject: Re: [tcpm] Review of draft-ietf-tcpm-tcp-auth-opt-01
X-BeenThere: tcpm@ietf.org
X-Mailman-Version: 2.1.9
Precedence: list
List-Id: TCP Maintenance and Minor Extensions Working Group <tcpm.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/listinfo/tcpm>, <mailto:tcpm-request@ietf.org?subject=unsubscribe>
List-Archive: <https://www.ietf.org/mailman/private/tcpm>
List-Post: <mailto:tcpm@ietf.org>
List-Help: <mailto:tcpm-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/tcpm>, <mailto:tcpm-request@ietf.org?subject=subscribe>
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Sender: tcpm-bounces@ietf.org
Errors-To: tcpm-bounces@ietf.org

A few comments on the alignment issue:

1) Compared to the cost of supporting the crypto-engines and their
supporting
   data, dealing with variable alignment is unlikely to be a major
factor in
   determining whether to include hardware support for TCP-Auth or not.
2) The optimizing alignment might be 64-bits anyway. This only
emphasizes the
   point that putting padding in TCP headers based on presumptions of
what is
   efficient is short-sighted.
3) Hardware support for TCP-Auth is in competition with MACsec, IPSEC
and TLS.
   So any thoughts of optimizing for implementation should probably
focus on
   software implementations and/or specialized devices. I would be
surprised
   to see hardware assists for this in general purpose NICs.

_______________________________________________
tcpm mailing list
tcpm@ietf.org
https://www.ietf.org/mailman/listinfo/tcpm